Sr Principal Cyber Systems Engineer

Northrop Grumman Northrop Grumman · Aerospace · Colorado Springs, CO +1 · Cyber

Northrop Grumman is seeking a Principal Cyber Systems Engineer to support the Command, Control, Battle Management, and Communications (C2BMC) program. This role involves processing user accounts, conducting system and network assessments, performing STIG assessments and hardening, developing test plans, updating RMF artifact documentation, establishing program control processes, assisting with government policy implementation, performing analyses of cybersecurity controls, supporting program test milestones, preparing authorization artifacts, conducting system audits, and coordinating to address deficiencies. A Bachelor's degree with 8 years of experience or equivalent is required, along with a current DoD 8140 certification (IAT Level II / IAM Level I or higher) and an active in-scope DoD-issued Top Secret security clearance.

What you'd actually do

  1. Process and track DD Form 2875 user account forms and required training for privileged and non-privileged accounts, perform annual account validation, and work with the system administrator on the creation, modification, and removal of accounts
  2. Conduct an assessment of systems and networks within a virtual environment to identify deviations from acceptable configurations, enclave policies, or local policies. This involves passive evaluations like compliance audits with STIG Viewer and SCAP, as well as active evaluations, including vulnerability assessments with ACAS
  3. Perform Security Technical Implementation Guide (STIG) assessments and hardening for Windows, Red Hat Enterprise Linux (RHEL) systems, and networking equipment using ConfigOS
  4. Update Risk Management Framework (RMF) artifact documentation to ensure that non-compliant system hardening is tracked and remediated
  5. Assist in implementing the required government policy (e.g., NISPOM, NIST, DoD), make recommendations on process tailoring, and participate in and document process activities

Skills

Required

  • Bachelor’s Degree in a related field or equivalent experience
  • 8 years of experience (or 6 with Master's, or 12 without degree)
  • Current DoD 8140 certification (IAT Level II / IAM Level I or higher)
  • Current, active in-scope DoD-issued Top Secret security clearance
  • Security engineering skills
  • Working knowledge of cybersecurity

Nice to have

  • Security+ CE
  • CCNA-Security
  • CySA+
  • CND
  • CGRC
  • CASP
  • CISM
  • CISSP for Associate
  • CCISO

What the JD emphasized

  • Top Secret
  • DoD 8140 certification at IAT Level II / IAM Level I or higher
  • Security+ CE, CCNA-Security, CySA+, CND, CGRC, CASP, CISM, CISSP for Associate, CCISO