Principal Cyber Systems Engineer – Network Security Engineer III (26-212)

Northrop Grumman Northrop Grumman · Aerospace · Colorado Springs, CO +1 · Cyber

This role is for a Principal Cyber Systems Engineer – Network Security Engineer III at Northrop Grumman, focusing on supporting the U.S. President, the Secretary of Defense, and combatant commanders. The primary responsibility is to assess the compliance of information systems with DoD RMF standards by reviewing and validating documentation. The role involves developing cyber-secure network configurations, planning and testing network upgrades, conducting research on networking and security, ensuring STIG compliance, and assisting with real-world events. Requires a STEM degree or equivalent experience, a current DoD 8140 certification (IAT Level II or higher), and an active Top Secret security clearance. Familiarity with network protocols (OSI Model, TCP/IP, VLANs, UDP Multicast), firewall configuration (Juniper, Cisco, Palo Alto), ACLs, multi-vendor switching/routing, NIST CVE, STIG compliance, and virtualization is necessary. Travel is required.

What you'd actually do

  1. Must have proven experience developing cyber-secure network device configurations (firewalls, switches, routers)
  2. Will be responsible for planning, deploying, integrating, and testing upgrades to the C2BMC network at operational sites
  3. Will be required to conduct independent research on various networking and security-related topics and produce reports on findings
  4. Will be required to ensure that the team’s devices are STIG-compliant and hardened appropriately
  5. Along with running all Cyber protocols needed

Skills

Required

  • STEM degree or equivalent experience
  • DoD 8140 certification (IAT Level II or higher)
  • Active Top Secret security clearance
  • OSI Model
  • TCP/IP
  • VLANs
  • UDP Multicast
  • Firewall configuration (Juniper, Cisco, Palo Alto)
  • ACL design and function
  • Multi-vendor switching and routing (Juniper, Cisco)
  • NIST CVE framework
  • Virtualization experience
  • STIG compliance
  • System accreditation implementation

Nice to have

  • Relocation assistance
  • Remote work options
  • Microsoft PowerPoint
  • Visio drawing tools
  • Security design, development, and testing methods
  • Security hardening basics for a wide range of niche products, software, and applications
  • Summarize, brief, and recommend solutions to security issues for leadership

What the JD emphasized

  • DoD RMF standards
  • DoDI 8510.01/DoD Risk Management Framework
  • STIG-compliant
  • NIST CVE framework
  • Top Secret