Jobs

    Principal/Cyber Systems Security Engineer - Dulles, United States - Northrop Grumman

    Northrop Grumman
    Northrop Grumman Dulles, United States

    1 week ago

    Northrop Grumman background
    Description

    At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come.

    Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon.

    We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way.

    Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work - and we have an insatiable drive to do what others think is impossible.

    Our employees are not only part of history, they're making history.

    This Principal Cyber Systems Security Engineering position requires demonstrated technical accomplishments in securing complex systems and can apply this expertise to Space Systems.

    Space Systems are comprised of multiple segments and this position has responsibilities across Ground Segments, Communications Segments, and Space Segments.

    As a Principal Engineer, you must have demonstrated technical accomplishments in the below tasks.

    This is a fully funded requisition for National Security Space missions that require the most trustworthy personnel; new hire start date is contingent on TS clearance transfer.

    Responsibilities Include

    • Working as part of an integrated product team (IPT) to architect, implement, and satisfy Risk Management Framework (RMF) CyberSecurity, CyberResilience, and/or CyberSurvivability requirements of satellite systems, communications links, and ground command & control (C2) systems. The principal engineer engages with multiple engineering disciplines and contributes to the secure design of complex systems.
    • System Security Engineering Requirements management in support of program protection (PP) requirements, working with systems engineers to decompose system-level security controls into technical performance requirements across the segments and down to specific components, across disciplines Anti-Tamper, TEMPEST, Cybersecurity (RMF), and cryptographic component integration/development. The principal engineer ensures that Cyber requirements are included in the formal requirements tracking process and is Cyber/SSE contributor for a segment or subsystem.
    • Performing Attack Surface Analysis (ASA) and preparing Systems Security Plan (SSP) documentation for complex space systems, including Risk Assessment Reports (RAR), Security Control Traceability Matrices (SCTM), Security Assessment Procedures, and POA&Ms.
    • Implements and maintains COTS security products (firewalls, anti-virus, two-factor authentication, SIEM tools, etc., within terrestrial systems.
    • For space segments, the Principal Cyber SSE supports design and implementation of space vehicle hardening, for embedded processors and flight software. Experience with real-time operating systems, secure coding best practices, or other mission critical operational systems is required.
    • Preparing and Executing assessment procedures to verify conformance with Commercial, Federal Civilian agency, Department of Defense (DoD), Intelligence Community, and/or Special Access Program, Cyber/SSE security controls, and or survivability requirements, as required based on the specified customer/system requirements.
    • Working in an Agile engineering environment, where the Cyber/SSE may assist in triage of Static Code Analysis (SCA) tool findings (e.g. Fortify) and assist in prioritizing the findings as technical debt in the SwDLC backlog.
    • Working in small teams to complete systems engineering, assembly, integration, and test activities for security-critical components, such as Cross Domain Solutions, cryptographic devices, and controlled interfaces.
    • Securely deploying Mission Unique Software (MUS) in computing clouds and/or highly virtualized environments. Preparing Certification to Field (CTF) assessment procedures. Executing CTF test cases for observation by customer cybersecurity representatives.
    • Interfacing with customer representatives to accomplish Cyber Test & Evaluation of systems to meet critical program milestones.
    • Performing system vulnerability scanning, remediation and patch management activities on Windows and Red Hat operating systems and various COTS/GOTS applications, including those within virtualized and/or cloud environments.
    • Documenting (or updating) Standard Operating Procedures (SOPs), and when needed, performing software patch installation, other flaw remediation, antivirus updates, and continuous monitoring (ConMon) activities.
    • Ensuring systems are operated, maintained, and disposed of in accordance with security policies and procedures as outlined in the system security authorization package.
    This position can be filled at a level 2 or level 3.

    Basic Qualifications Cyber Engineer * Minimum BS degree in engineering, with Electrical Engineering or Software Engineering preferred with 2 years of experience or a Master's degree.

    Cybersecurity experience can be considered in lieu of degree

    • Minimum 2 years of Cyber/SSE experience, preferably within the defense aerospace industry
    • US Citizen with active Top Secret security clearance, with SCI and DCID 6/4 eligibility
    • Current DoD 8570 IASAE Level II certification (i.e., CASP CE, CISSP (or associate) or CSSLP).
    • Experience designing systems/networks to use, or hands-on experience operating, DISA Host Based Security System (HBSS) or Endpoint Security Suite (ESS) solutions.
    • Experience designing systems/networks to use, or hands-on experience with industry platform hardening practices, such as DISA Security Technical Implementation Guide (STIG) implementation, as well as documentation of deviations and mitigations.
    • Experience designing systems/networks to use, or scanning, remediating, mitigating, and reporting cybersecurity vulnerabilities discovered through use of audit reduction tools and/or the DISA Automated Security Compliance Assessment Solution (ACAS) tool or Tenable NESSUS.
    • Experience implementing the RMF process from system categorization through continuous monitoring.
    • Excellent technical document preparation skills with a demonstrated ability to communicate with a variety of stakeholders ranging from technical staffers up to senior program managers. Principal Engineer
    • Minimum BS degree in engineering, with Electrical Engineering or Software Engineering preferred with 5 years of experience; or a Master's degree with 3 years; or a PhD. Cybersecurity experience can be considered in lieu of degree
    • Minimum 5 years of Cyber/SSE experience, preferably within the defense aerospace industry.
    • US Citizen with active Top Secret security clearance, with SCI and DCID 6/4 eligibility
    .

    • Current DoD 8570 IASAE Level II certification (i.e., CASP CE, CISSP (or associate) or CSSLP).
    • Experience designing systems/networks to use, or hands-on experience operating, DISA Host Based Security System (HBSS) or Endpoint Security Suite (ESS) solutions.
    • Experience designing systems/networks to use, or hands-on experience with industry platform hardening practices, such as DISA Security Technical Implementation Guide (STIG) implementation, as well as documentation of deviations and mitigations.
    • Experience designing systems/networks to use, or scanning, remediating, mitigating, and reporting cybersecurity vulnerabilities discovered through use of audit reduction tools and/or the DISA Automated Security Compliance Assessment Solution (ACAS) tool or Tenable NESSUS.
    • Experience implementing the RMF process from system categorization through continuous monitoring.
    • Excellent technical document preparation skills with a demonstrated ability to communicate with a variety of stakeholders ranging from technical staffers up to senior program managers.
    Preferred Qualifications

    • MS degree in Electrical, Systems, or Aerospace Engineering.
    • Current CISSP-ISSEP or CISSP-ISSAP.
    • 7 years of IA/cybersecurity experience, with are least 3 of those within the SAP community in the defense aerospace industry.
    • Strong preference for candidates with experience hardening Docker containers.

    The Northrop Grumman Tactical Space Division is a strategic partner specializing in commercial and classified partnerships with the design, delivery, operation and sustainment of satellites and human spacecraft.

    We support science and space exploration through our various partnerships, including NASA's Artemis program with the goal to return humans to the Moon in 2024 and the TESS (Transiting Exoplanet Survey Satellite) program that has discovered more than twenty confirmed plants.

    Recognized as an industry leader, we also develop highly specialized space and satellite components. Northrop Grumman offers a competitive and robust benefits program. As a full-time employee of Northrop Grumman, you are eligible for our robust benefits package including: Medical
    Dental & Vision coverage
    401k
    Educational Assistance
    Life Insurance
    Employee Assistance Programs & Work/Life Solutions
    Paid Time Off
    Health & Wellness Resources
    Employee Discounts
    Flexible Schedules (For example the ability to work a 9/80 work schedule, which allows an employee to work a nine-hour day Monday through Thursday and take every other Friday off work)
    For more details, please visit our total rewards site or chat with one of our recruiters to learn more.

    Link:
    Tags NGFeaturedJobs

    Space System
    NoVASpace

    DIVSE

    MMIC
    #LI-BC1
    NGIS-SSEngineering

    ESCSO

    NGCIMSMD
    Cyber

    InformationSecurity Salary Range:
    $95,900 - $143,900

    Salary Range 2:
    $118,000 - $177,000 The above salary range represents a general guideline; however, Northrop Grumman considers a number of factors when determining base salary offers such as the scope and responsibilities of the position and the candidate's experience, education, skills and current market conditions. Employees


  • Avid Technology Professionals Dulles, United States

    The Sr Cyber Security Engineer designs, develops, documents, analyzes, tests, integrates, debugs, conducts research and/or discovers and analyzes security flaws or vulnerabilities in software, networks, systems, and applications. The Sr Cyber Security Engineer ensures system secu ...


  • Quantum Science Solutions Dulles, United States

    Position Number: 3239 · Location: · Dulles, VA · Task Order: · SCE04 · Target Rate: · $104,751.11 SCE04 - Open · Quantum Science Solutions is supporting a U.S. Government customer on a large mission critical development and sustainment program to design, build, deliver, and opera ...


  • Avid Technology Professionals Dulles, United States

    Responsibilities Include: · - Providing cybersecurity engineering support on systems, system elements, interfacing systems, components, security tools, devices and/or processes for developmental and operational cyber tools · - Working independently or as a team member to solve cy ...


  • Avid Technology Professionals Dulles, United States

    Responsibilities Include: Defines, plans and performs test assignments for large scale, complex, software and hardware systems Establishes automated and manual test methods and techniques, develops test plans and requirements, writes test procedures and reports, and conducts test ...


  • Avid Technology Professionals Dulles, United States

    Defines, plans and performs test assignments for large scale, complex, software and hardware systems Establishes automated and manual test methods and techniques, develops test plans and requirements, writes test procedures and reports, and conducts tests Participates in test rea ...


  • Avid Technology Professionals Dulles, United States

    Seeking a Systems Engineer to collaborate with the Customers SE&I team to assess architectures and requirements, to develop derived requirements and systems engineering artifacts, and to guide Agile scrum teams in the development of advanced cybersecurity capabilities. · Responsi ...


  • Avid Technology Professionals Dulles, United States

    Responsibilities Include: · 1. Full Stack Development · a. Develop, maintain, and enhance front-end and back-end components of web applications. · b. Collaborate with cross-functional teams to gather and refine software requirements. · c. Write clean, maintainable, and efficient ...


  • Avid Technology Professionals Dulles, United States

    Responsibilities Include: · - Leading and collaborating within Agile Scrum teams as an Agile Release Train (ART) lead responsible for the design, development, integration, deployment, and maintenance of advanced, cloud-based (AWS, Azure) cybersecurity software capabilities · - Le ...


  • Avid Technology Professionals Dulles, United States

    Providing Systems Engineering project leadership in support of a large, leading edge cybersecurity system Coordinating teams in the development, integration, and testing of advanced leading-edge cybersecurity, with the assistance of the Design & Development Lead and Chief Enginee ...


  • Avid Technology Professionals Dulles, United States

    null MANDATORY SKILLS: 8+ years of directly relevant experience 2+ years of experience with the ServiceNow platform supporting ITSM and ITIL process flow development and tuning Significant consulting experience within complex, global organizations with the ability to influence an ...


  • Avid Technology Professionals Dulles, United States

    null MANDATORY SKILLS: Knowledge of the principles, methods, and techniques used in ServiceNow development Enterprise and/or IT Service Management ServiceNow System Administration Experience with gathering requirements, database design schemas, and data modeling Six (6) or more y ...


  • Avid Technology Professionals Dulles, United States

    Responsibilities Include: Collaborating within Agile Scrum teams as a key contributor responsible for the design, test and implementation of advanced cybersecurity software capabilities. Developing and performing automated builds, testing, and deployments Developing high quality ...


  • Avid Technology Professionals Dulles, United States

    Responsibilities Include: Collaborating within Agile Scrum teams as a key contributor responsible for the design, test and implementation of advanced cybersecurity software capabilities. Developing and performing automated builds, testing, and deployments Developing high quality ...


  • Acclaim Technical Services Dulles, United States

    Acclaim Technical Services, founded in 2000, is a leading language, operations, and technology services company supporting a wide range of U.S. Federal agencies. We are an Employee Stock Ownership Plan (ESOP) company, which is uncommon within our business sector. We see this as a ...


  • Avid Technology Professionals Dulles, United States

    The ServiceNow Developer is a technical resource possessing ServiceNow administration capability and is able to design, build, and customize ServiceNow applications and services. The ServiceNow Application Developer has a software development background in addition to ServiceNow ...


  • Avid Technology Professionals Dulles, United States

    null MANDATORY SKILLS: U.S. Citizenship Active Secret clearance. Must be able to obtain a TS/SCI clearance Must be able to obtain DHS Suitability 8+ years of directly relevant software development experience 4+ years of experience with Agile software development Experience with c ...


  • Avid Technology Professionals Dulles, United States

    Responsibilities: Assists with the technical design for architecture, responsible for overall code quality ensuring a highly available and recoverable environment Assist with the design, prototype, implement, test, and deploy business rules and technical solutions Develop custom ...


  • ALDER TECHNOLOGY Dulles, United States

    The candidate will design, install, configure and support the customer's data communications systems; maintain the network hardware and software as well as monitor the network to ensure network availability to all system users; and preform the necessary maintenance to support net ...


  • Avid Technology Professionals Dulles, United States

    Responsibilities Include: Leading and collaborating within an Agile Scrum team as an Agile Release Train (ART) lead responsible for developing advanced, leading-edge, cloud-oriented automation and orchestration architectures that provide rigorous, self-validating cybersecurity ca ...


  • Quantum Science Solutions Dulles, United States

    Position Number: 3304 · Location: · Dulles, VA · Task Order: · ESE04 · Target Rate: · $104,751.11 Systems Engineer - Senior II - ESE04 - Full Performance · Quantum Science Solutions is supporting a U.S. Government customer on a large mission critical development and sustainment p ...