Cyber Systems Engineer - level 3 or 4 - R10215806 jobs in United States
cer-icon
Apply on Employer Site
company-logo

Northrop Grumman · 2 weeks ago

Cyber Systems Engineer - level 3 or 4 - R10215806

Northrop Grumman is a leader in technological advancements and is seeking a Cyber Systems Engineer - Level 3 or 4 to contribute to critical national security space missions. The role involves securing complex systems, engaging with multiple engineering disciplines, and ensuring compliance with cybersecurity requirements.

AerospaceData IntegrationManufacturingRemote SensingSecurity
check
Growth Opportunities
badNo H1BnoteSecurity Clearance RequirednoteU.S. Citizen Onlynote

Responsibilities

Work as part of an integrated product team (IPT) to architect, implement, and satisfy Risk Management Framework (RMF) CyberSecurity, CyberResilience, and/or CyberSurvivability requirements of satellite systems, communications links, and ground command & control (C2) systems. You will engage with multiple engineering disciplines and contribute to the secure design of complex systems
System Security Engineering Requirements management in support of program protection (PP) requirements, work with systems engineers to decompose system-level security controls into technical performance requirements across the segments and down to specific components, across disciplines Anti-Tamper, TEMPEST, Cybersecurity (RMF), and cryptographic component integration/development. You will ensure that Cyber requirements are included in the formal requirements tracking process and is Cyber/SSE contributor for a segment or subsystem
Perform Attack Surface Analysis (ASA) and prepare Systems Security Plan (SSP) documentation for complex space systems, including Risk Assessment Reports (RAR), Security Control Traceability Matrices (SCTM), Security Assessment Procedures, and POA&Ms
Implement and maintain COTS security products (firewalls, anti-virus, two-factor authentication, SIEM tools, etc. within terrestrial systems
For space segments, you will support design and implementation of space vehicle hardening, for embedded processors and flight software. Experience with real-time operating systems, secure coding best practices, or other mission critical operational systems is required
Prepare and Execute assessment procedures to verify conformance with Commercial, Federal Civilian agency, Department of Defense (DoD), Intelligence Community, and/or Special Access Program, Cyber/SSE security controls, and or survivability requirements, as required based on the specified customer/system requirements
Work in an Agile engineering environment, where the Cyber/SSE may assist in triage of Static Code Analysis (SCA) tool findings (e.g. Fortify) and assist in prioritizing the findings as technical debt in the SwDLC backlog
Work in small teams to complete systems engineering, assembly, integration, and test activities for security-critical components, such as Cross Domain Solutions, cryptographic devices, and controlled interfaces
Securely deploy Mission Unique Software (MUS) in computing clouds and/or highly virtualized environments. Prepare Certification to Field (CTF) assessment procedures. Execute CTF test cases for observation by customer cybersecurity representatives
Interface with customer representatives to accomplish Cyber Test & Evaluation of systems to meet critical program milestones
Perform system vulnerability scanning, remediation, and patch management activities on Windows and Red Hat operating systems and various COTS/GOTS applications including those within virtualized and/or cloud environments
Document (or update) Standard Operating Procedures (SOPs) and when needed, perform software patch installation, other flaw remediation, antivirus updates, and continuous monitoring (ConMon) activities
Ensure systems are operated, maintained, and disposed of in accordance with security policies and procedures as outlined in the system security authorization package
Other duties as assigned

Qualification

Cybersecurity Vulnerability ManagementRisk Management Framework (RMF)DISA STIG ImplementationCompTIA Sec+ CertificationTechnical Document PreparationCISSP-ISSEP CertificationCISSP-ISSAP CertificationAgile Environment ExperienceSystem Security EngineeringTeam CollaborationCommunication Skills

Required

Bachelor's degree in STEM field with 5 years of cyber systems experience – OR – Master's degree in a STEM field with 3 years of cyber systems experience – OR – PhD in a STEM field with 1 year of cyber systems experience
Requires an active Top-Secret/Sensitive Compartmented Information (SCI) clearance [TS/SCI] at time of application [US citizenship required]
Must hold a current CompTIA Sec+ certification
Experience designing systems/networks to use, or hands-on experience with industry platform hardening practices, such as DISA Security Technical Implementation Guide (STIG) implementation, as well as documentation of deviations and mitigations
Experience designing systems/networks to use, or scanning, remediating, mitigating, and reporting cybersecurity vulnerabilities discovered through use of audit reduction tools and/or the DISA Automated Security Compliance Assessment Solution (ACAS) tool or Tenable NESSUS
Experience implementing the RMF process from system categorization through continuous monitoring
Bachelor's degree in STEM field with 8 years of cyber systems experience – OR – Master's degree in a STEM field with 6 years of cyber systems experience – OR – PhD in a STEM field with 4 years of cyber systems experience
Requires an active Top-Secret/Sensitive Compartmented Information (SCI) clearance [TS/SCI] at time of application [US citizenship required]
Must hold a current CompTIA Sec+ certification
Experience designing systems/networks to use, or hands-on experience with industry platform hardening practices, such as DISA Security Technical Implementation Guide (STIG) implementation, as well as documentation of deviations and mitigations
Experience designing systems/networks to use, or scanning, remediating, mitigating, and reporting cybersecurity vulnerabilities discovered through use of audit reduction tools and/or the DISA Automated Security Compliance Assessment Solution (ACAS) tool or Tenable NESSUS
Experience implementing the RMF process from system categorization through continuous monitoring

Preferred

Current CISSP-ISSEP or CISSP-ISSAP certification
Degree in Electrical Engineering, Software Engineering, or Aerospace Engineering
Experience with IA/cybersecurity experience, with at least 3 of those within the SAP community in the defense aerospace industry
Experience hardening Docker containers

Benefits

Health insurance coverage
Life and disability insurance
Savings plan
Company paid holidays
Paid time off (PTO) for vacation and/or personal business

Company

Northrop Grumman

company-logo
Northrop Grumman is an aerospace, defense and security company that provides training and satellite ground network communications software.

Funding

Current Stage
Public Company
Total Funding
$3.7B
Key Investors
U.S. Department of DefenseNASA
2025-05-27Post Ipo Debt· $1B
2024-01-29Post Ipo Debt· $2.5B
2023-12-20Grant· $72M

Leadership Team

leader-logo
Kenneth Crews
Corporate Vice President and Chief Financial Officer
linkedin
leader-logo
Tom Wilson
Corporate Vice President, Enterprise Business Development
linkedin
Company data provided by crunchbase