Cyber Systems Engineer (Level 2 OR 3)

Northrop GrummanColorado Springs, CO
14d

About The Position

At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work — and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history. Northrop Grumman Space Systems is seeking a knowledgeable and proactive Cyber Systems Engineer to lead project-based test events focused on identifying, assessing, and mitigating system vulnerabilities while ensuring compliance with cybersecurity policies, procedures, and mandates. This role involves performing compliance audits, vulnerability assessments, and security certification tests, as well as developing and maintaining critical documentation such as Security Plans and POA&Ms. The ideal candidate will collaborate with internal stakeholders and government representatives to monitor and enhance the security posture of systems, assign corrective tasks, and provide regular updates. This position requires expertise in security compliance frameworks (e.g., NISPOM, DCID 6-3) and the ability to oversee risk mitigation and accreditation processes effectively. This role is based in Colorado Springs, CO and can be filled at Level 2 or 3.

Requirements

  • Bachelor of Science degree in a STEM (Science, Technology, Engineering or Math) discipline with 2 years of relevant experience, OR a Master of Science degree in a STEM discipline
  • Bachelor of Science degree in a STEM (Science, Technology, Engineering or Math) discipline with 5 years of relevant experience, OR a Master of Science degree in a STEM discipline and 3 years of experience, OR 1 year of experience with a PhD in a STEM discipline
  • Active DoD Secret clearance at the time of application
  • Must have ability to obtain DoD 8570/8140 Level 2 Certification, such as Security+ CE, within 6 months of start.
  • Must have experience working in an Agile or DevOps environment in one of the following areas: Cybersecurity, requirements development, systems engineering, product design, system integration or test.
  • Must have experience with ACAS and STIGs.
  • Must be familiar with NIST 800-53 and other NIST and DOD guidance.
  • Must have hands on experience in one of the following Cyber engineering disciplines: cybersecurity principles, security components, implementation, or testing.
  • Must have project management experience.

Nice To Haves

  • PenTest certified (GPEN, Pentest+, CPENT, HTB CPTS, etc.)
  • Familiarity with computer architecture and applications.
  • Experience with RHEL operating systems, virtualization, system administrator functions.
  • Experience with contract requirement language and addressing those requirements.
  • Experience conducting integration and verification testing through formal test acceptance and sign off.
  • Experience working with Government contracts and customer representatives.

Responsibilities

  • Perform system and network assessments to identify deviations from configurations, policies, or standards through compliance audits and vulnerability assessments.
  • Establish and enforce program control processes to mitigate risks and obtain system certifications and accreditations.
  • Conduct security analyses to validate and recommend enhancements to established security requirements.
  • Support Security Test and Evaluation (ST&E) efforts, including preparation, execution, analysis of results, and reporting.
  • Develop and maintain required security documentation, including Security Plans and Plans of Action and Milestones (POA&M).
  • Periodically review system audit logs and track corrective actions to completion.
  • Lead project-based cybersecurity test events with internal stakeholders and government representatives.
  • Evaluate system security posture and ensure compliance with cybersecurity policies, procedures, and mandates.
  • Assign and track remediation tasks to system administrators; ensure accuracy of fixes and corrective actions.
  • Provide regular status updates and reports to internal teams and government customers.

Benefits

  • health insurance coverage
  • life and disability insurance
  • savings plan
  • Company paid holidays and paid time off (PTO) for vacation and/or personal business
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service