RELOCATION ASSISTANCE: No relocation assistance available
CLEARANCE TYPE: Top Secret
TRAVEL: Yes, 10% of the Time
Description
At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work — and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history.
This Principal Cyber Systems Security Engineering position requires demonstrated technical competency in the cybersecurity domain and proven coordination skills. This position has responsibilities for establishing and securing a local (El Segundo) cluster of classified terminals that are connected to a remote computing infrastructure. You must have experience securing classified networks. Most desired are cybersecurity professionals with the aptitude to apply skills to complex systems, particularly Space Systems. Space Systems are comprised of multiple segments – Ground, Communications, and Space. This position has responsibilities focused on a complex, distributed Ground Segment. You must have demonstrated technical accomplishments in the below tasks. This is a fully-funded requisition for National Security Space missions that require the most trustworthy personnel; new hire start date is contingent on TS clearance transfer.
- As part of establishing a new node, extensive coordination is required with internal and external stakeholders to include Program Managers, Customers, SETA Support, ISSM, ISSO, security personnel, and facilities managers.
- Working as an ISSE that is part of an integrated product team (IPT) to architect, implement, and satisfy Risk Management Framework (RMF) CyberSecurity, CyberResilience, and/or CyberSurvivability requirements of: satellite ground command & control (C2) systems. The principal engineer engages with multiple engineering disciplines and contributes to the secure design of complex systems.
- System Security Engineering Requirements management in support of program protection (PP) requirements, working with systems engineers to decompose system-level security controls into technical performance requirements across the segments and down to specific components, across disciplines Anti-Tamper, TEMPEST, Cybersecurity (RMF), and cryptographic component integration/development. The principal engineer ensures that Cyber requirements are included in the formal requirements tracking process and is Cyber/SSE contributor for a segment or subsystem.
- Performing Attack Surface Analysis (ASA) and preparing Systems Security Plan (SSP) documentation for complex space systems, including Risk Assessment Reports (RAR), Security Control Traceability Matrices (SCTM), Security Assessment Procedures, and POA&Ms.
- Documents all collocated External Information Systems (EIS), Memorandum of Agreements (MOA)s, and other paperwork to ensure the node is included in the larger ATO boundary.
- Implements and maintains security posture (switches, thin clients) within local node.
- Responsible for issuing and tracking multi-factor authentication tokens to local users.
- Preparing and Executing assessment procedures to verify conformance with Commercial, Federal Civilian agency, Department of Defense (DoD), Intelligence Community, and/or Special Access Program, Cyber/SSE security controls, and or survivability requirements, as required based on the specified customer/system requirements.
- Working in small teams to complete systems engineering, assembly, integration, and test activities for security-critical components, such as Cross Domain Solutions, cryptographic devices, and controlled interfaces.
- Supporting the securely deployment of Mission Unique Software (MUS) in computing clouds and/or highly virtualized environments. Preparing Certification To Field (CTF) assessment procedures. Executing CTF test cases for observation by customer cybersecurity representatives.
- Interfacing with customer representatives to accomplish Cyber Test & Evaluation of systems to meet critical program milestones.
- Performing system vulnerability scanning, remediation and patch management activities on Windows and Red Hat operating systems and various COTS/GOTS applications, including those within virtualized and/or cloud environments.
- Documenting (or updating) Standard Operating Procedures (SOPs), and when needed, performing software patch installation, other flaw remediation, antivirus updates, and continuous monitoring (ConMon) activities.
- Ensuring systems are operated, maintained, and disposed of in accordance with security policies and procedures as outlined in the system security authorization package.
To be successful in this role you must have:
- Excellent technical document preparation skills with a demonstrated ability to communicate with a variety of stakeholders ranging from technical staffers up to senior program managers
- Experience implementing the RMF process from system categorization through continuous monitoring.
- Experience designing systems/networks to use, or scanning, remediating, mitigating, and reporting cybersecurity vulnerabilities discovered through use of audit reduction tools and/or the DISA Automated Security Compliance Assessment Solution (ACAS) tool or Tenable NESSUS.
- Experience designing systems/networks to use, or hands-on experience with industry platform hardening practices, such as DISA Security Technical Implementation Guide (STIG) implementation, as well as documentation of deviations and mitigations.
- Experience designing systems/networks to use, or hands-on experience operating, DISA Host Based Security System (HBSS) or Endpoint Security Suite (ESS) solutions.
This position can be filled at a level 3 or level 4.
Basic Qualifications
Principal Engineer
- Bachelor’s in Engineering (Electrical Engineering or Software Engineering preferred) with 5 years Cybersecurity experience in the Space industry; or a Masters with 3 years of experience; or a PhD. Experience may be considered in lieu of degree
- Minimum 5 years of Cyber/SSE experience, preferably within the defense aerospace industry.
- Current DoD 8570 IASAE Level II certification (i.e., CASP CE, CISSP (or associate) or CSSLP).
- US Citizen with active Top Secret security clearance, with Active SCI at time of application
Sr. Principal Engineer
- Bachelor’s in Engineering (Electrical Engineering or Software Engineering preferred) with 9 years Cybersecurity experience in the Space industry; or a Masters with 7 years of experience; or a PhD with 4 years of experience. Experience may be considered in lieu of degree
- Minimum 5 years of Cyber/SSE experience, preferably within the defense aerospace industry.
- Current DoD 8570 IASAE Level II certification (i.e., CASP CE, CISSP (or associate) or CSSLP).
- US Citizen with active Top Secret security clearance, with Active SCI at time of application
Preferred Qualifications
- MS degree in Electrical, Systems, or Aerospace Engineering.
- Current CISSP-ISSEP or CISSP-ISSAP.
- 7 years of IA/cybersecurity experience, with are least 3 of those within the SAP community in the defense aerospace industry.
- Strong preference for candidates with experience hardening Docker containers.
The Northrop Grumman Tactical Space Division is a strategic partner specializing in commercial and classified partnerships with the design, delivery, operation and sustainment of satellites and human spacecraft. We support science and space exploration through our various partnerships, including NASA’s Artemis program with the goal to return humans to the Moon in 2024 and the TESS (Transiting Exoplanet Survey Satellite) program that has discovered more than twenty confirmed plants. Recognized as an industry leader, we also develop highly specialized space and satellite components.
Northrop Grumman offers a competitive and robust benefits program.
As a full-time employee of Northrop Grumman, you are eligible for our robust benefits package including:
Medical
Dental & Vision coverage
401k
Educational Assistance
Life Insurance
Employee Assistance Programs & Work/Life Solutions
Paid Time Off
Health & Wellness Resources
Employee Discounts
Flexible Schedules (For example the ability to work a 9/80 work schedule, which allows an employee to work a nine-hour day Monday through Thursday and take every other Friday off of work)
For more details please visit our total rewards site or chat with one of our recruiters to learn more.
Link: www.northropgrumman.com/benefits
Tags
NGFeaturedJobs
Space System
LosAngelesSpace
DIVSE
MMIC
#LI-BC1
NGIS-SSEngineering
Cyber: ESCSO
NGCIMSMD
Cyber
InformationSecurity
Salary Range: $118,000.00 - $177,000.00Salary Range 2: $146,300.00 - $219,500.00
The above salary range represents a general guideline; however, Northrop Grumman considers a number of factors when determining base salary offers such as the scope and responsibilities of the position and the candidate's experience, education, skills and current market conditions.
Employees may be eligible for a discretionary bonus in addition to base pay. Annual bonuses are designed to reward individual contributions as well as allow employees to share in company results. Employees in Vice President or Director positions may be eligible for Long Term Incentives. In addition, Northrop Grumman provides a variety of benefits including health insurance coverage, life and disability insurance, savings plan, Company paid holidays and paid time off (PTO) for vacation and/or personal business.
The application period for the job is estimated to be 20 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates.
Northrop Grumman is committed to hiring and retaining a diverse workforce. We are proud to be an Equal Opportunity/Affirmative Action Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. For our complete EEO/AA and Pay Transparency statement, please visit http://www.northropgrumman.com/EEO. U.S. Citizenship is required for all positions with a government clearance and certain other restricted positions.