Jobs

    Principal/Cyber Systems Security Engineer - Dulles, United States - Northrop Grumman

    Northrop Grumman
    Northrop Grumman Dulles, United States

    5 days ago

    Northrop Grumman background
    Description
    At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work - and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history.
    This Principal Cyber Systems Security Engineering position requires demonstrated technical accomplishments in securing complex systems and can apply this expertise to Space Systems. Space Systems are comprised of multiple segments and this position has responsibilities across Ground Segments, Communications Segments, and Space Segments. As a Principal Engineer, you must have demonstrated technical accomplishments in the below tasks. This is a fully funded requisition for National Security Space missions that require the most trustworthy personnel; new hire start date is contingent on TS clearance transfer.

    Responsibilities Include
    • Working as part of an integrated product team (IPT) to architect, implement, and satisfy Risk Management Framework (RMF) CyberSecurity, CyberResilience, and/or CyberSurvivability requirements of satellite systems, communications links, and ground command & control (C2) systems. The principal engineer engages with multiple engineering disciplines and contributes to the secure design of complex systems.
    • System Security Engineering Requirements management in support of program protection (PP) requirements, working with systems engineers to decompose system-level security controls into technical performance requirements across the segments and down to specific components, across disciplines Anti-Tamper, TEMPEST, Cybersecurity (RMF), and cryptographic component integration/development. The principal engineer ensures that Cyber requirements are included in the formal requirements tracking process and is Cyber/SSE contributor for a segment or subsystem.
    • Performing Attack Surface Analysis (ASA) and preparing Systems Security Plan (SSP) documentation for complex space systems, including Risk Assessment Reports (RAR), Security Control Traceability Matrices (SCTM), Security Assessment Procedures, and POA&Ms.
    • Implements and maintains COTS security products (firewalls, anti-virus, two-factor authentication, SIEM tools, etc., within terrestrial systems.
    • For space segments, the Principal Cyber SSE supports design and implementation of space vehicle hardening, for embedded processors and flight software. Experience with real-time operating systems, secure coding best practices, or other mission critical operational systems is required.
    • Preparing and Executing assessment procedures to verify conformance with Commercial, Federal Civilian agency, Department of Defense (DoD), Intelligence Community, and/or Special Access Program, Cyber/SSE security controls, and or survivability requirements, as required based on the specified customer/system requirements.
    • Working in an Agile engineering environment, where the Cyber/SSE may assist in triage of Static Code Analysis (SCA) tool findings (e.g. Fortify) and assist in prioritizing the findings as technical debt in the SwDLC backlog.
    • Working in small teams to complete systems engineering, assembly, integration, and test activities for security-critical components, such as Cross Domain Solutions, cryptographic devices, and controlled interfaces.
    • Securely deploying Mission Unique Software (MUS) in computing clouds and/or highly virtualized environments. Preparing Certification to Field (CTF) assessment procedures. Executing CTF test cases for observation by customer cybersecurity representatives.
    • Interfacing with customer representatives to accomplish Cyber Test & Evaluation of systems to meet critical program milestones.
    • Performing system vulnerability scanning, remediation and patch management activities on Windows and Red Hat operating systems and various COTS/GOTS applications, including those within virtualized and/or cloud environments.
    • Documenting (or updating) Standard Operating Procedures (SOPs), and when needed, performing software patch installation, other flaw remediation, antivirus updates, and continuous monitoring (ConMon) activities.
    • Ensuring systems are operated, maintained, and disposed of in accordance with security policies and procedures as outlined in the system security authorization package.
    This position can be filled at a level 2 or level 3.

    Basic Qualifications
    Cyber Engineer
    • Minimum BS degree in engineering, with Electrical Engineering or Software Engineering preferred with 2 years of experience or a Master's degree. Cybersecurity experience can be considered in lieu of degree
    • Minimum 2 years of Cyber/SSE experience, preferably within the defense aerospace industry
    • US Citizen with active Top Secret security clearance, with SCI and DCID 6/4 eligibility
    • Current DoD 8570 IASAE Level II certification (i.e., CASP CE, CISSP (or associate) or CSSLP).
    • Experience designing systems/networks to use, or hands-on experience operating, DISA Host Based Security System (HBSS) or Endpoint Security Suite (ESS) solutions.
    • Experience designing systems/networks to use, or hands-on experience with industry platform hardening practices, such as DISA Security Technical Implementation Guide (STIG) implementation, as well as documentation of deviations and mitigations.
    • Experience designing systems/networks to use, or scanning, remediating, mitigating, and reporting cybersecurity vulnerabilities discovered through use of audit reduction tools and/or the DISA Automated Security Compliance Assessment Solution (ACAS) tool or Tenable NESSUS.
    • Experience implementing the RMF process from system categorization through continuous monitoring.
    • Excellent technical document preparation skills with a demonstrated ability to communicate with a variety of stakeholders ranging from technical staffers up to senior program managers.
    Principal Engineer
    • Minimum BS degree in engineering, with Electrical Engineering or Software Engineering preferred with 5 years of experience; or a Master's degree with 3 years; or a PhD. Cybersecurity experience can be considered in lieu of degree
    • Minimum 5 years of Cyber/SSE experience, preferably within the defense aerospace industry.
    • US Citizen with active Top Secret security clearance, with SCI and DCID 6/4 eligibility.
    • Current DoD 8570 IASAE Level II certification (i.e., CASP CE, CISSP (or associate) or CSSLP).
    • Experience designing systems/networks to use, or hands-on experience operating, DISA Host Based Security System (HBSS) or Endpoint Security Suite (ESS) solutions.
    • Experience designing systems/networks to use, or hands-on experience with industry platform hardening practices, such as DISA Security Technical Implementation Guide (STIG) implementation, as well as documentation of deviations and mitigations.
    • Experience designing systems/networks to use, or scanning, remediating, mitigating, and reporting cybersecurity vulnerabilities discovered through use of audit reduction tools and/or the DISA Automated Security Compliance Assessment Solution (ACAS) tool or Tenable NESSUS.
    • Experience implementing the RMF process from system categorization through continuous monitoring.
    • Excellent technical document preparation skills with a demonstrated ability to communicate with a variety of stakeholders ranging from technical staffers up to senior program managers.
    Preferred Qualifications
    • MS degree in Electrical, Systems, or Aerospace Engineering.
    • Current CISSP-ISSEP or CISSP-ISSAP.
    • 7 years of IA/cybersecurity experience, with are least 3 of those within the SAP community in the defense aerospace industry.
    • Strong preference for candidates with experience hardening Docker containers.
    The Northrop Grumman Tactical Space Division is a strategic partner specializing in commercial and classified partnerships with the design, delivery, operation and sustainment of satellites and human spacecraft. We support science and space exploration through our various partnerships, including NASA's Artemis program with the goal to return humans to the Moon in 2024 and the TESS (Transiting Exoplanet Survey Satellite) program that has discovered more than twenty confirmed plants. Recognized as an industry leader, we also develop highly specialized space and satellite components.

    Northrop Grumman offers a competitive and robust benefits program.
    As a full-time employee of Northrop Grumman, you are eligible for our robust benefits package including:
    Medical
    Dental & Vision coverage
    401k
    Educational Assistance
    Life Insurance
    Employee Assistance Programs & Work/Life Solutions
    Paid Time Off
    Health & Wellness Resources
    Employee Discounts
    Flexible Schedules (For example the ability to work a 9/80 work schedule, which allows an employee to work a nine-hour day Monday through Thursday and take every other Friday off work)
    For more details, please visit our total rewards site or chat with one of our recruiters to learn more.
    Link:

    Tags
    NGFeaturedJobs
    Space System
    NoVASpace
    DIVSE
    MMIC
    #LI-BC1
    NGIS-SSEngineering
    ESCSO
    NGCIMSMD
    Cyber
    InformationSecurity

    Salary Range: $95,900 - $143,900
    Salary Range 2: $118,000 - $177,000

    The above salary range represents a general guideline; however, Northrop Grumman considers a number of factors when determining base salary offers such as the scope and responsibilities of the position and the candidate's experience, education, skills and current market conditions.

    Employees may be eligible for a discretionary bonus in addition to base pay. Annual bonuses are designed to reward individual contributions as well as allow employees to share in company results. Employees in Vice President or Director positions may be eligible for Long Term Incentives. In addition, Northrop Grumman provides a variety of benefits including health insurance coverage, life and disability insurance, savings plan, Company paid holidays and paid time off (PTO) for vacation and/or personal business.
    The application period for the job is estimated to be 20 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates.

    Northrop Grumman is committed to hiring and retaining a diverse workforce. We are proud to be an Equal Opportunity/Affirmative Action Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. For our complete EEO/AA and Pay Transparency statement, please visit . U.S. Citizenship is required for all positions with a government clearance and certain other restricted positions.


  • Avid Technology Professionals, LLC Dulles, United States

    The Sr Cyber Security Engineer designs, develops, documents, analyzes, tests, integrates, debugs, conducts research and/or discovers and analyzes security flaws or vulnerabilities in software, networks, systems, and applications. The Sr Cyber Security Engineer ensures system secu ...


  • Nodel Dulles, United States

    Job Description · Job DescriptionSenior Cyber Security Engineer · Location: Dulles, VA · Must have an active Secret Security Clearance · Node is supporting a U.S. Government customer on a large mission-critical development and sustainment program to design, build, deliver, and op ...


  • BCMC Dulles, United States

    Job Description · Job DescriptionBCMC is supporting a U.S. Government customer on a large mission critical development and sustainment program to design, build, deliver, and operate a network operations environment, including introducing new cyber capabilities to address emerging ...


  • Parsons Chantilly, Loudoun County, VA, United States

    In a world of possibilities, pursue one with endless opportunities. Imagine NextWhen it comes to what you want in your career, if you can imagine it, you can do it at Parsons. Imagine a career working with intelligent, diverse people sharing a common quest. Imagine a workplace wh ...


  • Nodel Dulles, United States

    Job Description · Job DescriptionNetwork Security Tools Engineer · Location: Dulles, VA · Must have Public Trust Security Clearance · Node is supporting a U.S. Government customer on a large mission-critical development and sustainment program to design, build, deliver, and opera ...


  • BCMC Dulles, United States

    Job Description · Job DescriptionWe are supporting a U.S. Government customer on a large mission critical development and sustainment program to design, build, deliver, and operate a network operations environment, including introducing new cyber capabilities to address emerging ...


  • Northrop Grumman Dulles, United States

    At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advanc ...


  • The Talent Trove Company Dulles, United States

    Are you ready to dive into the forefront of technology and digital forensics? If so, **Ardent Principles** in Dulles, VA is searching for a **full-time Network Engineering and Digital Forensics Support Consultant** to join our talented team. This position does require TS/SCI clea ...


  • SAIC Dulles, United States

    Job ID: DULLES-VA · **Location**:DULLES, VA, US · **Date Posted**: · **Category**:Engineering and Sciences · **Subcategory**:Systems Engineer · **Schedule**:Full-time · **Shift**:Day Job · **Travel**:No · **Minimum Clearance Required**:Top Secret · **Clearance Level Must Be Able ...


  • Metropolitan Washington Airports Authority Dulles, United States

    Compensation Grade: · T16 · Salary Range: · $27.07-$35.19 · Opening Date: · May 17, 2024 · Closing Date: · June 1, 2024 · Please Note: All job announcements close at 11:59 p.m. of the day before the posted closing date. · As a Mobile Lounge Operator, your work is essential for sa ...


  • Metropolitan Washington Airports Authority Dulles, United States

    Compensation Grade: · T16 · Salary Range: · $27.07-$35.19 · Opening Date: · May 17, 2024 · Closing Date: · June 1, 2024 · Please Note: All job announcements close at 11:59 p.m. of the day before the posted closing date. · As a Heavy Equipment Repairer, you will perform a wide ran ...


  • Metropolitan Washington Airports Authority Dulles, United States

    Compensation Grade: · T16 · Salary Range: · $27.07-$35.19 · Opening Date: · April 19, 2024 · Closing Date: · May 4, 2024 · Please Note: All job announcements close at 11:59 p.m. of the day before the posted closing date. · As a Heavy Equipment Repairer, you will perform a wide ra ...


  • L3Harris Technologies Dulles, United States

    **Job Title: Deputy Program Manager** · **Job Code: 10938** · **Job Location: Dulles, VA** · L3Harris is dedicated to recruiting and developing diverse, high-performing talent who are passionate about what they do. Our employees are unified in a shared dedication to our customers ...


  • L3Harris Technologies Dulles, United States

    **Job Title: Lead Program Manager** · **Job Code: 10954** · **Job Location: Dulles, VA** · L3Harris is dedicated to recruiting and developing diverse, high-performing talent who are passionate about what they do. Our employees are unified in a shared dedication to our customers' ...

  • Solvere One/HouseCall

    Vcio

    1 week ago


    Solvere One/HouseCall Dulles, United States

    Solvere One is seeking highly qualified applicants to perform Senior Network Engineer work for our clients. · Solvere One has established a top-level brand that focuses on network security and proactive management solutions as a chosen provider of IT services and consulting. Insp ...


  • Giesecke+Devrient Dulles, United States

    **When it comes to digital, physical or electronic payments, the whole world trusts Giesecke+Devrient. Now you too can discover your passion for the world of payment systems. Giesecke+Devrient is a globally active high-tech company headquartered in Munich, Germany. As a trusted p ...


  • Marriott International, Inc Dulles, United States

    **Additional Information** Pay: $18.27/hour, Full-Time (Sunday-Thursday), Off · - Friday, Saturday · **Job Number** · **Job Category** Engineering & Facilities · **Location** Residence Inn Dulles Airport at Dulles 28 Centre, 45250 Monterey Place, Dulles, Virginia, United States ...


  • Metropolitan Washington Airports Authority Dulles, United States

    Compensation Grade: · S20 · Salary Range: · $89,671.00-$130,023.00 · Opening Date: · May 17, 2024 · Closing Date: · June 1, 2024 · Please Note: All job announcements close at 11:59 p.m. of the day before the posted closing date. · Contracting Officer II · This is the full perform ...


  • Microsoft Dulles, United States

    As a Data Center Technician (DCT), you will develop an understanding of standard processes and procedures for preparing, installing, performing diagnostics, troubleshooting, replacing, and/or decommissioning equipment under the guidance of more experienced Data Center colleagues. ...

  • SkyePoint Decisions

    Division Lead

    1 week ago


    SkyePoint Decisions Dulles, United States

    Overview: · SkyePoint Decisions is a leading Cybersecurity Architecture and Engineering, Critical Infrastructure and Operations, and Applications Development and Maintenance IT service provider headquartered in Dulles, Virginia with operations across the U.S. We provide innovativ ...