Principal/Cyber Systems Security Engineer (Top Secret/SCI) - Spa with Security Clearance Engineering - Dulles, VA at Geebo

Principal/Cyber Systems Security Engineer (Top Secret/SCI) - Spa with Security Clearance

At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to comeOur pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moonWe look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the wayOur culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work - and we have an insatiable drive to do what others think is impossibleOur employees are not only part of history, they're making history.
This Principal Cyber Systems Security Engineering position requires demonstrated technical accomplishments in securing complex systems and can apply this expertise to Space SystemsSpace Systems are comprised of multiple segments and this position has responsibilities across Ground Segments, Communications Segments, and Space SegmentsAs a Principal Engineer, you must have demonstrated technical accomplishments in the below tasksThis is a fully funded requisition for National Security Space missions that require the most trustworthy personnel; new hire start date is contingent on TS clearance transferResponsibilities Include Working as part of an integrated product team (IPT) to architect, implement, and satisfy Risk Management Framework (RMF) CyberSecurity, CyberResilience, and/or CyberSurvivability requirements of satellite systems, communications links, and ground command & control (C2) systemsThe principal engineer engages with multiple engineering disciplines and contributes to the secure design of complex systems.
System Security Engineering Requirements management in support of program protection (PP) requirements, working with systems engineers to decompose system-level security controls into technical performance requirements across the segments and down to specific components, across disciplines Anti-Tamper, TEMPEST, Cybersecurity (RMF), and cryptographic component integration/developmentThe principal engineer ensures that Cyber requirements are included in the formal requirements tracking process and is Cyber/SSE contributor for a segment or subsystem.
Performing Attack Surface Analysis (ASA) and preparing Systems Security Plan (SSP) documentation for complex space systems, including Risk Assessment Reports (RAR), Security Control Traceability Matrices (SCTM), Security Assessment Procedures, and POA&Ms.
Implements and maintains COTS security products (firewalls, anti-virus, two-factor authentication, SIEM tools, etc.
, within terrestrial systems.
For space segments, the Principal Cyber SSE supports design and implementation of space vehicle hardening, for embedded processors and flight softwareExperience with real-time operating systems, secure coding best practices, or other mission critical operational systems is required.
Preparing and Executing assessment procedures to verify conformance with Commercial, Federal Civilian agency, Department of Defense (DoD), Intelligence Community, and/or Special Access Program, Cyber/SSE security controls, and or survivability requirements, as required based on the specified customer/system requirements.
Working in an Agile engineering environment, where the Cyber/SSE may assist in triage of Static Code Analysis (SCA) tool findings (e.
gFortify) and assist in prioritizing the findings as technical debt in the SwDLC backlog.
Working in small teams to complete systems engineering, assembly, integration, and test activities for security-critical components, such as Cross Domain Solutions, cryptographic devices, and controlled interfaces.
Securely deploying Mission Unique Software (MUS) in computing clouds and/or highly virtualized environmentsPreparing Certification to Field (CTF) assessment proceduresExecuting CTF test cases for observation by customer cybersecurity representatives.
Interfacing with customer representatives to accomplish Cyber Test & Evaluation of systems to meet critical program milestones.
Performing system vulnerability scanning, remediation and patch management activities on Windows and Red Hat operating systems and various COTS/GOTS applications, including those within virtualized and/or cloud environments.
o Documenting (or updating) Standard Operating Procedures (SOPs), and when needed, performing software patch installation, other flaw remediation, antivirus updates, and continuous monitoring (ConMon) activities.
Ensuring systems are operated, maintained, and disposed of in accordance with security policies and procedures as outlined in the system security authorization package.
This position can be filled at a level 2 or level 3Basic Qualifications Cyber Engineero Minimum BS degree in engineering, with Electrical Engineering or Software Engineering preferred with 2 years of experience or a Master's degreeCybersecurity experience can be considered in lieu of degree Minimum 2 years of Cyber/SSE experience, preferably within the defense aerospace industry US Citizen with active Top Secret security clearance, with SCI and DCID 6/4 eligibility Current DoD 8570 IASAE Level II certification (i.
e.
, CASP CE, CISSP (or associate) or CSSLP).
Experience designing systems/networks to use, or hands-on experience operating, DISA Host Based Security System (HBSS) or Endpoint Security Suite (ESS) solutions.
Experience designing systems/networks to use, or hands-on experience with industry platform hardening practices, such as DISA Security Technical Implementation Guide (STIG) implementation, as well as documentation of deviations and mitigations.
Experience designing systems/networks to use, or scanning, remediating, mitigating, and reporting cybersecurity vulnerabilities discovered through use of audit reduction tools and/or the DISA Automated Security Compliance Assessment Solution (ACAS) tool or Tenable NESSUS.
Experience implementing the RMF process from system categorization through continuous monitoring.
Excellent technical document preparation skills with a demonstrated ability to communicate with a variety of stakeholders ranging from technical staffers up to senior program managersPrincipal Engineero Minimum BS degree in engineering, with Electrical Engineering or Software Engineering preferred with 5 years of experience; or a Master's degree with 3 years; or a PhDCybersecurity experience can be considered in lieu of degree Minimum 5 years of Cyber/SSE experience, preferably within the defense aerospace industry.
US Citizen with active Top Secret security clearance, with SCI and DCID 6/4 eligibility.
Current DoD 8570 IASAE Level II certification (i.
e.
, CASP CE, CISSP (or associate) or CSSLP).
Experience designing systems/networks to use, or hands-on experience operating, DISA Host Based Security System (HBSS) or Endpoint Security Suite (ESS) solutions.
Experience designing systems/networks to use, or hands-on experience with industry platform hardening practices, such as DISA Security Technical Implementation Guide (STIG) implementation, as well as documentation of deviations and mitigations.
Experience designing systems/networks to use, or scanning, remediating, mitigating, and reporting cybersecurity vulnerabilities discovered through use of audit reduction tools and/or the DISA Automated Security Compliance Assessment Solution (ACAS) tool or Tenable NESSUS.
Experience implementing the RMF process from system categorization through continuous monitoring.
Excellent technical document preparation skills with a demonstrated ability to communicate with a variety of stakeholders ranging from technical staffers up to senior program managers.
Preferred Qualifications MS degree in Electrical, Systems, or Aerospace Engineering.
o Current CISSP-ISSEP or CISSP-ISSAP.
7 years of IA/cybersecurity experience, with are least 3 of those within the SAP community in the defense aerospace industry.
Strong preference for candidates with experience hardening Docker containers.
The Northrop Grumman Tactical Space Division is a strategic partner specializing in commercial and classified partnerships with the design, delivery, operation and sustainment of satellites and human spacecraftWe support science and space exploration through our various partnerships, including NASA's Artemis program with the goal to return humans to the Moon in 2024 and the TESS (Transiting Exoplanet Survey Satellite) program that has discovered more than twenty confirmed plantsRecognized as an industry leader, we also develop highly specialized space and satellite componentsNorthrop Grumman offers a competitive and robust benefits programAs a full-time employee of Northrop Grumman, you are eligible for our robust benefits package including:
MedicalDental & Vision coverage401kEducational AssistanceLife InsuranceEmployee Assistance Programs & Work/Life SolutionsPaid Time OffHealth & Wellness ResourcesEmployee DiscountsFlexible Schedules (For example the ability to work a 9/80 work schedule, which allows an employee to work a nine-hour day Monday through Thursday and take every other Friday off work)For more details, please visit our total rewards site or chat with one of our recruiters to learn more.
Link:
www.
northropgrumman.
com/benefits Tags NGFeaturedJobsSpace SystemNoVASpaceDIVSEMMIC#LI-BC1NGIS-SSEngineeringESCSONGCIMSMDCyberInformationSecurity Salary Range:
$95,900 - $143,900Salary Range 2:
$118,000 - $177,000 The above salary range represents a general guideline; however, Northrop Grumman considers a number of factors when determining base salary offers such as the scope and responsibilities of the position and the candidate's experience, education, skills and current market conditionsEmployees Recommended Skills Agile Methodology Antivirus Softwares Auditing Certified Information Systems Security Professional Certified Secure Software Lifecycle Professional Electrical Engineering Apply to this job.
Think you're the perfect candidate? Apply on company site Estimated Salary: $20 to $28 per hour based on qualifications.

Don't Be a Victim of Fraud

  • Electronic Scams
  • Home-based jobs
  • Fake Rentals
  • Bad Buyers
  • Non-Existent Merchandise
  • Secondhand Items
  • More...

Don't Be Fooled

The fraudster will send a check to the victim who has accepted a job. The check can be for multiple reasons such as signing bonus, supplies, etc. The victim will be instructed to deposit the check and use the money for any of these reasons and then instructed to send the remaining funds to the fraudster. The check will bounce and the victim is left responsible.