Sr. Principal Cyber Software Engineer – 15327-1

Northrop Grumman Northrop Grumman · Aerospace · Huntsville, AL +4 · Cyber

Seeking a Senior Principal Cyber Software Engineer to support the Sentinel program. Responsibilities include developing and maintaining design review procedures, performing requirements decomposition, providing systems engineering expertise to cybersecurity systems, participating in technical planning and risk analysis, evaluating designs against DoD and industry standards, and using model-based engineering tools for analysis. The role requires experience in cybersecurity, system vulnerability management, DoD A&A activities, and familiarity with Windows/UNIX platforms. A Secret clearance is required, with the ability to obtain a Top Secret clearance and SAP. Relevant certifications (DoD 8140/8570) are also required.

What you'd actually do

  1. The candidate will develop and maintain design review procedures, tools for tracking progress and action items against major milestones, incorporate lessons learned, and facilitate design reviews.
  2. Perform decomposition of requirements and allocating them to design teams for implementation
  3. Provide systems engineering expertise to the design, integration, and testing of an enterprise level cybersecurity system.
  4. Participate in technical planning, system integration, verification, validation, risk, supportability, and analysis for enterprise level cybersecurity systems.
  5. Evaluate the design based on the Department of Defense and industry standards.

Skills

Required

  • Bachelor’s in related field of study (or equivalent experience)
  • Active U.S Government DoD Secret security clearance
  • Ability to obtain U.S. Government DoD Top Secret Security Clearance
  • Ability to obtain Special Program Access (SAP)
  • DoD 8140 Cyber Workforce Qualification Program (CWQP) or DoD 8570 IAT Level II Certifications (CompTIA Sec+, CompTIA CySA+, SSCP) within 6 months
  • Experience in cybersecurity
  • Experience with system vulnerability management
  • Experience with DoD Assessment and Authorization (A&A) activities
  • Familiarity with Windows and UNIX based platforms
  • Familiarity with hypervisor and containerized environments
  • Basic systems engineering principles and concepts
  • Experience with compliance and vulnerability reporting tools (Nessus, Nexpose, SCAP, ACAS, Nmap, SAST, DAST)

Nice to have

  • Current/active Top-Secret clearance
  • Direct experience developing RMF assessment and authorization artifacts
  • Experience modeling and analyzing cybersecurity threats using the MITRE ATT&CK framework
  • DoD 8570 certification for IASAE II/III (CompTIA SecurityX (CASP), CISSP, CSSLP)
  • Experience with Agile methodologies
  • Experience with SIEM and SOAR tools (Splunk, Splunk SOAR, Elastic, Swimlane Turbine)
  • Experience with development, review and approval methods to monitor and measure risk, compliance, and assurance efforts.

What the JD emphasized

  • Must be a United States citizen and have an active U.S Government DoD Secret security clearance at the time of application, current and within scope, with the ability to obtain a U.S. Government DoD Top Secret Security Clearance.
  • Ability to obtain Special Program Access (SAP) within a reasonable period of time, as determined by the company to meet its business need.
  • One of the following or able to get within the first 6 months upon hire: DoD 8140 Cyber Workforce Qualification Program (CWQP), DoD 8570 IAT Level II Certifications (CompTIA Sec+, CompTIA CySA+, SSCP)
  • Experience in the field of cybersecurity including common terms, fundamental technical elements, operating system security, network security, and software security.
  • Experience with system vulnerability management and security implementation as well as direct experience with DoD Assessment and Authorization (A&A) activities, security processes, and documentation/reporting using RMF, NIST, or CNSSI guidance as required.