Northrop Grumman logo
Northrop GrummanPosted 3 weeks ago

Sentinel - Systems Engineer (SCRM Vulnerability Assessment)

$79,300–$118,900 year

On-siteRoy, Utah, United States

Full TimeMasters DegreeEnterprise

Job Summary

Conduct vulnerability assessments against commercial off-the-shelf hardware and software products, then review, interpret, and communicate assessment results. Participate in working groups and customer meetings while contributing to the enhancement of assessment capabilities through improved methodology, processes, infrastructure, tools, and deliverables. Perform formal test plans and procedures focusing on vulnerability/penetration testing and counterfeit part assurance, utilizing tools such as Kali Linux, Metasploit, and NESSUS. Validate software configurations against STIG and OpenSCAP standards, execute OSINT analysis, and bridge software and hardware in cross-disciplinary testing. This role supports the Systems Security Engineering team with a 9/80 schedule and a base salary range of $79,300 to $118,900.

Required Qualifications

  • BS in one of the following or equivalent disciplines: Software Engineering, Computer Science, Digital Forensics, Computer Engineering, or Electrical Engineering with 2 years of related experience
  • Master's degree in the above disciplines with 0 years of related experience
  • US Citizenship
  • Active U.S. Government Secret security clearance at time of application
  • Clearance current and within scope (<6 years)
  • Ability to obtain and maintain Special Access Program (SAP) approval within a reasonable period
  • Minimum 2 years of combined experience in software engineering, software or hardware testing, systems security engineering, or electrical engineering
  • 0 years with a Master's degree in the above fields
  • Ability to obtain CompTIA Security+ certification within 6 months of starting in the position
  • Familiarity of developing, documenting, and executing formal test plans and procedures
  • Specific focus on vulnerability/penetration testing
  • Counterfeit part assurance

Desired Qualifications

  • Top Secret Security Clearance
  • OSCP certification
  • GREM certification
  • PenTest+ certification
  • Comparable industry-recognized certifications
  • Experience utilizing penetration testing and vulnerability assessment tools (Kali Linux / Metasploit / NESSUS / ACAS / OpenVAS / Etc.)
  • Experience validating software configurations (STIG / OpenSCAP)
  • Experience with software forensics activities / processes
  • Experience with SCRM chain of custody processes / procedures
  • Experience in software or hardware reverse engineering and exploratory reconnaissance
  • Experience performing with OSINT analysis
  • Familiarity with MBSE concepts and tools to trace security requirements to test verification
  • Experience in bridging SW and HW in cross-disciplinary testing

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce