Northrop Grumman logo
Northrop GrummanPosted 1 month ago

Sr Principal Cyber System Security Engineer - 18310

$122,800–$184,200 year

On-siteRoy, Utah, United States

Full TimeSenior LevelEnterprise

Job Summary

Design, implement, and maintain security architectures for aerospace and defense systems while conducting risk assessments, threat modeling, and vulnerability analyses. Integrate encryption, authentication, and access-control mechanisms into mission-critical platforms and perform security testing including penetration testing and code reviews. Manage RMF, CMMC, and other certifications by authoring Security Plans and leading anti-tamper and cyber-security engineering efforts across the full systems-engineer lifecycle. Collaborate with cross-functional teams to embed security requirements into the SDLC and coordinate technology release and exportability activities. This role operates on a 9/80 schedule in Roy, Utah, with a competitive salary range of $122,800 to $184,200.

Required Qualifications

  • Relocation assistance
  • 10% of the Time travel
  • U.S. Citizen
  • Active U.S. Government Secret Clearance
  • Ability to obtain and maintain Top-Secret Clearance
  • Special Access Program (SAP) approval
  • Current DoD 8570 IAM Level II security certification
  • Two (2) years' experience with requirements development
  • Two (2) years' experience with system integration
  • Two (2) years' experience with test
  • Two (2) years' experience with validation & verification
  • Two (2) years' experience with anti-tamper
  • Two (2) years' experience with cyber-security risk-management activities
  • Bachelor's degree in a Science, Technology, Engineering or Mathematics (STEM) discipline
  • 8 years of relevant experience (with Bachelor's)
  • Master's degree and 6 years of relevant experience
  • PhD and 4 years of relevant experience

Desired Qualifications

  • Active DoD Top-Secret Clearance
  • Experience with requirements management tools such as DOORS, Cameo, or CPLM
  • Experience with collaboration platforms like JIRA, Confluence, or Fisheye
  • Hands-on experience in hardware/firmware assurance
  • Hands-on experience in software attack-surface analysis
  • Hands-on experience in selective encryption
  • Hands-on experience in secure key handling
  • Proven track record developing and mitigating software-assurance vulnerabilities
  • Proven track record conducting integration testing of remediation measures
  • Demonstrated ability to deliver technical presentations to internal and external customers
  • Demonstrated ability to contribute to business-development efforts

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce