Northrop Grumman Space Systems is seeking a Principal Software Cyber Engineer to serve as the cyber and software security lead on a program developing and fielding a new ground-based radar performing Space Domain Awareness (SDA) missions. As the Software Cyber Engineer lead, you will be a key member of the senior technical team and will be responsible for defining, implementing, and sustaining the software and cybersecurity architecture for mission systems supporting operational execution, software development, and long-term sustainment of the radar system. The ideal candidate will have a strong foundational knowledge of secure software engineering and cybersecurity principles and be able to collaboratively apply systems engineering practices to design, implement, and document robust cyber protections for mission software and supporting services across the program.
Designs, develops, documents, tests and debugs applications software and systems that contain logical and mathematical solutions. Conducts multidisciplinary research and collaborates with equipment designers and/or hardware engineers in the planning, design, development, and utilization of electronic data processing systems for product and commercial software. Determines computer user needs; analyzes system capabilities to resolve problems on program intent, output requirements, input data acquisition, programming techniques and controls; prepares operating instructions; designs and develops compilers and assemblers, utility programs, and operating systems. Ensures software standards are met.
Basic Qualifications:
- Programming languages: Java, Python, JavaScript, C, C++
- Spring Framework
- Experience debugging existing software and correcting defects
- Familiarity with Agile development methodologies and working in cross-functional scrum teams
- Ability to analyze static and dynamic scan results, distinguish actionable security findings from false positives/non-applicable items, and draft technical justifications and remediation plans (POA&M)
- Practical experience with secure coding practices and code review to identify common vulnerabilities
- Knowledge of CI/CD pipelines and how security gates integrate into build/release processes
- Comfortable reading and interpreting security requirements and translating them into developer-facing tasks and acceptance criteria
- Experience using version control systems and branching strategies in team environments
- Experience with multiple Linux distributions with a focus on Red Hat Enterprise Linux and Ubuntu
- Must have an active U.S. Government Top Secret security clearance at time of application, current and within scope.
Preferred Qualifications:
- Experience overseeing software integrity and supply chain security (dependency management, SBOMs, vendor assessment)
- Familiarity with NIST SP 800-53 Risk Management Framework (RMF) and DISA Application Security and Development STIG to assess the design of information systems
- Hands-on experience with one or more SAST tools (e.g., SonarQube, Fortify)
- Hands-on experience with one or more SCA tools (e.g., Sonatype Nexus)
- Certifications such as Security+, CISSP, or CSSLP
- Familiarity with container security and orchestration hardening (Docker, Kubernetes) and image scanning tools
- Practical knowledge of vulnerability lifecycle management and patching processes across environments
- Understanding of data protection requirements and handling of sensitive data (PII, classified, export-controlled)
- Experience supporting or obtaining low-to-high (CDS) transfer approvals and familiarity with compliance workflows
Skills Required
- Programming experience with Java, Python, JavaScript, C, and C++
- Spring Framework experience
- Experience debugging existing software and correcting defects
- Familiarity with Agile methodologies and cross-functional Scrum teams
- Ability to analyze static and dynamic security scan results and prepare remediation plans
- Practical secure coding and code review experience
- Knowledge of CI/CD pipelines and integrated security gates
- Ability to translate security requirements into developer tasks and acceptance criteria
- Experience using version control systems and branching strategies
- Experience with multiple Linux distributions, especially Red Hat Enterprise Linux and Ubuntu
- Active U.S. Government Top Secret security clearance, current and within scope, at application
- Experience with software integrity and supply chain security, including dependency management, SBOMs, and vendor assessment
- Familiarity with NIST SP 800-53 Risk Management Framework and DISA Application Security and Development STIG
- Hands-on experience with SAST tools such as SonarQube or Fortify
- Hands-on experience with SCA tools such as Sonatype Nexus
- Security+, CISSP, or CSSLP certification
- Familiarity with Docker, Kubernetes, container hardening, and image scanning
- Knowledge of vulnerability lifecycle management and patching processes
- Understanding of PII, classified, and export-controlled data protection requirements
- Experience supporting or obtaining cross-domain solution transfer approvals and compliance workflows
Northrop Grumman Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Northrop Grumman and has not been reviewed or approved by Northrop Grumman.
-
Healthcare Strength — Health coverage offers multiple medical plan options by region alongside dental, vision, mental‑health resources, and wellness programs. Recent materials also highlight added family‑building support, including a dedicated fertility benefit.
-
Retirement Support — The 401(k) savings plan is positioned as competitive with a company match, auto‑escalation features, and access to an employee stock fund/ESPP. Official filings and benefits guides emphasize retirement as a core element of the Total Rewards package.
-
Leave & Time Off Breadth — Many sites offer a 9/80 schedule, generous PTO, paid holidays, and flexible/telework options where program needs allow. Paid parental and caregiver leave are prominently featured, with recent enhancements for the delivering parent.
Northrop Grumman Insights
What We Do
We are a close-knit community of big thinkers collaborating to keep the world safe. Our passion, creativity and expertise bring next-level technology solutions to life in autonomous systems, cyber, C4ISR, strike, space, and logistics and modernization for our customers around the globe. On the Northrop Grumman team, you’ll join our pursuit of excellence immersed in a dynamic culture of innovation and respect. Your unique perspective will help achieve our shared vision for the future of global security. Every step of the way, you'll be supported by world-class training, employee resource groups and a comprehensive benefits package that enables greater health and happiness for you and your family. Worldwide and across disciplines, we’re challenging what’s possible for technology to protect people and places from undersea to outer space and into cyberspace. And we see the impact of our performance every day. We are Northrop Grumman, and we work on what matters—now, you too can make a difference. Explore opportunities in engineering, IT, manufacturing, business management, cybersecurity and more with us. Northrop Grumman is committed to hiring and retaining a diverse workforce. We are proud to be an Equal Opportunity/Affirmative Action Employer.







