Principal Cyber Systems Engineer – Cyber A&A Engr (26-324)

Posted 4 Days Ago
Be an Early Applicant
Schriever AFB, CO, USA
In-Office
114K-171K Annually
Senior level
Aerospace • Logistics • Security • Software • Cybersecurity
The Role
Performs cybersecurity Assessment and Authorization activities for mission-critical defense systems. Analyzes ACAS, SCC, and ConfigOS findings; manages RMF controls, STIG compliance, POA&Ms, risk assessments, and eMASS/Xacta authorization packages. Supports Cross Domain Solution accreditation, vulnerability remediation, account auditing, patch and configuration management, and coordination with assessors, auditors, engineering teams, leadership, and customers.
Summary Generated by Built In
RELOCATION ASSISTANCE: No relocation assistance available

CLEARANCE REQUIRED FOR START: Yes

CLEARANCE TYPE: Top Secret

TRAVEL: Yes, 10% of the TimeDescription

At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work — and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history.

Northrop Grumman Space Systems—Missile Defense Integration offers an excellent opportunity for a Principal Cyber Systems Engineer – Cyber A&A Engr (26-324) to join our team of skilled and diverse professionals. Based at Schriever Space Force Base, CO, this role is essential to supporting the U.S. President, the Secretary of Defense, and combatant commanders at the strategic, regional, and operational levels.


This position does not provide relocation assistance and requires on-site work with no remote options.


Position Overview:


Northrop Grumman Space Systems – Launch and Missile Defense Systems seeks a highly motivated Cyber Assessment & Authorization (A&A) Engineer to join the C2BMC (Command and Control, Battle Management, and Communications) program in Colorado Springs, CO.


C2BMC integrates the Missile Defense System and is a vital operational capability that enables senior decision-makers and combatant commanders to plan ballistic missile defense operations, maintain shared situational awareness, and dynamically manage sensors and weapon systems to achieve global and regional mission objectives. This role directly supports continuous system authorization by ensuring the cybersecurity posture of complex, distributed mission systems.


The Cyber A&A Engineer will apply deep cybersecurity engineering expertise and hands-on experience with RMF, ACAS/SCC/ConfigOS, and eMASS/Xacta to drive risk-informed decisions, maintain strong cyber hygiene, and support mission-critical accreditation activities.


Essential Functions:


  • Perform Assessment & Authorization (A&A) activities in support of continuous system Authorization for C2BMC and associated mission systems
  • Analyze ACAS, SCC, and ConfigOS scan results to identify vulnerabilities, misconfigurations, and control gaps across complex enterprise environments
  • Review, interpret, and validate STIGs, RMF controls (NIST SP 800‑53), and DoD cybersecurity requirements; provide clear technical guidance to engineering and operations teams
  • Develop and maintain Plan of Action & Milestones (POA&Ms), including engineering responses, remediation plans, and residual risk documentation
  • Conduct risk analysis for Risk Acceptance Requests (RARs) and provide recommendations to leadership based on mission impact and risk posture
  • Utilize eMASS/Xacta to create, maintain, and update system authorization packages, ensuring accuracy, completeness, and compliance with DoD RMF processes
  • Support the accreditation of Cross Domain Solutions (CDS), including documentation, control implementation evidence, and coordination with security stakeholders
  • Collaborate closely with C2BMC internal teams and external stakeholders (including 3rd party assessors and auditors) to plan, execute, and document cybersecurity assessments
  • Assist with the management and auditing of user and privileged accounts, ensuring adherence to least-privilege and separation-of-duties principles
  • Contribute to patch and configuration management activities by analyzing scan results, validating remediation actions, and verifying system compliance
  • Prepare and present clear, concise technical documentation and briefings for program management, cybersecurity leadership, and customer representatives

Basic Qualifications:

 

Please list your current security clearance and IAT or relevant certifications on your resume, if applicable.

 

  • A Bachelor’s Degree in Computer Science, Cybersecurity Engineering, Information Assurance, Engineering, Mathematics, Physics, or a related field from an accredited university, along with 5 years of experience; or a Master’s degree in a related field with 3 years of relevant work experience; or 9 years of relevant work experience may be considered as an alternative to a degree
  • Applicants must have a current, active Government-Issued 8140 certification at IAT Level II or higher (such as Security+ CE, GSEC, SSCP, CCNA-Security, CySA+, CND, etc.) at the time of application, which is required to start. The candidate is responsible for maintaining their 8140 certifications throughout the entire contract period
  • Applicants must have a current, active in-scope Government-issued Top Secret security clearance at the time of application, which is required to start

Cybersecurity & RMF

  • Strong cybersecurity engineering background with practical experience applying DoD Risk Management Framework (RMF) and NIST SP 800‑53 security controls
  • Working knowledge of DoDI 8500-series requirements and DoD cybersecurity directives and standards

Tools & Technologies

  • Hands-on experience reviewing and interpreting ACAS and SCC outputs, including vulnerability findings and compliance check results.
  • Demonstrated experience with STIGs, vulnerability scanning tools, and security configuration baselines
  • Experience using eMASS (and/or Xacta) to develop, maintain, and track RMF authorization packages
  • Experience supporting or participating in the accreditation of Cross Domain Solutions (CDS)

Communication & Documentation

  • Excellent technical writing skills for preparing security plans, POA&Ms, risk assessments, and supporting documentation
  • Strong verbal communication skills with the ability to clearly articulate complex technical concepts to both technical and non-technical audiences

Preferred Qualifications:


  • Experience managing and responding to Cyber Tasking Orders (CTOs) and Information Assurance Vulnerability Management (IAVM) directives across enterprise environments
  • Demonstrated experience leading or coordinating POA&M management, including tracking remediation status and verifying closure of vulnerabilities
  • Experience working with third-party assessors and auditors, including coordinating evidence collection, interviews, and follow-up actions
  • Experience performing self-assessments against STIGs and RMF controls, and developing corrective action plans
  • Hands-on experience with account management and auditing for user, admin, and service accounts in complex, multi-domain environments
  • Knowledge of and experience with patch and configuration management processes for large, distributed, and mission-critical enterprise systems
  • Familiarity with missile defense, command and control (C2), or space/defense systems environments

What We Can Offer You:


Northrop Grumman provides a comprehensive benefits package and a supportive work environment that encourages your growth, benefiting both employees and the company. The benefits are flexible and customizable, enabling you to choose options that suit your individual and family needs. Your benefits will include the following:


  • Health Plan
  • Savings Plan
  • Paid Time Off
  • Education Assistance
  • Training and Development
  • Flexible Work Arrangements

https://benefits.northropgrumman.com/us/en2/BenefitsOverview/Pages/default.aspx


#NGSpace

#COSpace

#NGFeaturedJobs

#C2BMC

#Cybersecurity

#CyberEngineering

Primary Level Salary Range: $113,900.00 - $170,900.00

The above salary range represents a general guideline; however, Northrop Grumman considers a number of factors when determining base salary offers such as the scope and responsibilities of the position and the candidate's experience, education, skills and current market conditions.

Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. Annual bonuses are designed to reward individual contributions as well as allow employees to share in company results. Employees in Vice President or Director positions may be eligible for Long Term Incentives. In addition, Northrop Grumman provides a variety of benefits including health insurance coverage, life and disability insurance, savings plan, Company paid holidays and paid time off (PTO) for vacation and/or personal business.

The application period for the job is estimated to be 20 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates.

Northrop Grumman is an Equal Opportunity Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. For our complete EEO and pay transparency statement, please visit http://www.northropgrumman.com/EEO. U.S. Citizenship is required for all positions with a government clearance and certain other restricted positions.

Skills Required

  • Bachelor’s degree in Computer Science, Cybersecurity Engineering, Information Assurance, Engineering, Mathematics, Physics, or a related field, plus 5 years of experience; or a related master’s degree plus 3 years of relevant experience; or 9 years of relevant experience in lieu of a degree
  • Current, active government-issued 8140 certification at IAT Level II or higher, such as Security+ CE, GSEC, SSCP, CCNA-Security, CySA+, or CND
  • Current, active, in-scope government-issued Top Secret security clearance
  • Cybersecurity engineering experience applying DoD Risk Management Framework and NIST SP 800-53 security controls
  • Knowledge of DoDI 8500-series requirements and DoD cybersecurity directives and standards
  • Experience reviewing ACAS and SCC outputs, including vulnerability findings and compliance checks
  • Experience with STIGs, vulnerability scanning tools, and security configuration baselines
  • Experience using eMASS or Xacta to develop, maintain, and track RMF authorization packages
  • Experience supporting or participating in Cross Domain Solution accreditation
  • Excellent technical writing skills for security plans, POA&Ms, risk assessments, and supporting documentation
  • Strong verbal communication skills for technical and non-technical audiences
  • Experience managing Cyber Tasking Orders and IAVM directives
  • Experience leading or coordinating POA&M management and vulnerability remediation closure
  • Experience working with third-party assessors and auditors
  • Experience performing STIG and RMF control self-assessments and developing corrective action plans
  • Experience auditing user, administrator, and service accounts in multi-domain environments
  • Knowledge of patch and configuration management for distributed enterprise systems
  • Familiarity with missile defense, command and control, or space and defense systems

Northrop Grumman Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Northrop Grumman and has not been reviewed or approved by Northrop Grumman.

  • Healthcare Strength — Health coverage offers multiple medical plan options by region alongside dental, vision, mental‑health resources, and wellness programs. Recent materials also highlight added family‑building support, including a dedicated fertility benefit.
  • Retirement Support — The 401(k) savings plan is positioned as competitive with a company match, auto‑escalation features, and access to an employee stock fund/ESPP. Official filings and benefits guides emphasize retirement as a core element of the Total Rewards package.
  • Leave & Time Off Breadth — Many sites offer a 9/80 schedule, generous PTO, paid holidays, and flexible/telework options where program needs allow. Paid parental and caregiver leave are prominently featured, with recent enhancements for the delivering parent.

Northrop Grumman Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Charlotte, North Carolina
85,636 Employees

What We Do

We are a close-knit community of big thinkers collaborating to keep the world safe. Our passion, creativity and expertise bring next-level technology solutions to life in autonomous systems, cyber, C4ISR, strike, space, and logistics and modernization for our customers around the globe. On the Northrop Grumman team, you’ll join our pursuit of excellence immersed in a dynamic culture of innovation and respect. Your unique perspective will help achieve our shared vision for the future of global security. Every step of the way, you'll be supported by world-class training, employee resource groups and a comprehensive benefits package that enables greater health and happiness for you and your family. Worldwide and across disciplines, we’re challenging what’s possible for technology to protect people and places from undersea to outer space and into cyberspace. And we see the impact of our performance every day. We are Northrop Grumman, and we work on what matters—now, you too can make a difference. Explore opportunities in engineering, IT, manufacturing, business management, cybersecurity and more with us. Northrop Grumman is committed to hiring and retaining a diverse workforce. We are proud to be an Equal Opportunity/Affirmative Action Employer.

Similar Jobs

Remote or Hybrid
2 Locations
289097 Employees

Sprinter Health Logo Sprinter Health

Clinical Operations Liaison (Temporary, Remote)

Artificial Intelligence • Healthtech • Logistics • Social Impact • Software • Telehealth
Remote or Hybrid
United States
500 Employees
65K-75K Annually
In-Office
Berthoud, CO, USA
330 Employees
125K-150K Annually
In-Office
Berthoud, CO, USA
330 Employees
133K-166K Annually

Similar Companies Hiring

Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees
Revel Thumbnail
Aerospace • Hardware • Robotics • Software
Marina Del Rey, California
60 Employees
Blee Thumbnail
Artificial Intelligence • Marketing Tech • Software
New York, New York
30 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account