At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work — and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history.
Expand your horizons, advance your career, and contribute to a secure future for generations. Northrop Grumman’s Space Sector invites you to bring your pioneering spirit to our collaborative teams. As a Cyber Systems Engineer – Level 3/4 located in Dulles, VA or Gilbert, AZ, you’ll be a linchpin in missions of paramount importance, defining the art of the possible from day one. This position is 100% onsite and cannot accommodate telecommute work.
A Cyber Systems Security Engineering position requires demonstrated technical accomplishments in securing complex systems that can be applied to Space Systems. Space Systems are comprised of multiple segments, and this position has responsibilities across Ground Segments, Communications Segments, and Space Segments. This position supports National Security Space missions that require the most trustworthy personnel and a new hire start date is contingent on TS/SCI clearance transfer.
To be successful you should have:
- Experience designing systems/networks to use, or hands-on experience with industry platform hardening practices, such as DISA Security Technical Implementation Guide (STIG) implementation, as well as documentation of deviations and mitigations
- Experience designing systems/networks to use, or scanning, remediating, mitigating, and reporting cybersecurity vulnerabilities discovered through use of audit reduction tools and/or the DISA Automated Security Compliance Assessment Solution (ACAS) tool or Tenable NESSUS
- Experience implementing the RMF process from system categorization through continuous monitoring
- Excellent technical document preparation skills with a demonstrated ability to communicate with a variety of stakeholders ranging from technical staffers up to senior program managers
This position will work a 9/80 schedule, with every other Friday off. This position is 100% onsite and cannot accommodate telecommute work.
Job responsibilities include, but are not limited to, the following:
- Work as part of an integrated product team (IPT) to architect, implement, and satisfy Risk Management Framework (RMF) CyberSecurity, CyberResilience, and/or CyberSurvivability requirements of satellite systems, communications links, and ground command & control (C2) systems. You will engage with multiple engineering disciplines and contribute to the secure design of complex systems
- System Security Engineering Requirements management in support of program protection (PP) requirements, work with systems engineers to decompose system-level security controls into technical performance requirements across the segments and down to specific components, across disciplines Anti-Tamper, TEMPEST, Cybersecurity (RMF), and cryptographic component integration/development. You will ensure that Cyber requirements are included in the formal requirements tracking process and is Cyber/SSE contributor for a segment or subsystem
- Perform Attack Surface Analysis (ASA) and prepare Systems Security Plan (SSP) documentation for complex space systems, including Risk Assessment Reports (RAR), Security Control Traceability Matrices (SCTM), Security Assessment Procedures, and POA&Ms
- Implement and maintain COTS security products (firewalls, anti-virus, two-factor authentication, SIEM tools, etc. within terrestrial systems
- For space segments, you will support design and implementation of space vehicle hardening, for embedded processors and flight software. Experience with real-time operating systems, secure coding best practices, or other mission critical operational systems is required
- Prepare and Execute assessment procedures to verify conformance with Commercial, Federal Civilian agency, Department of Defense (DoD), Intelligence Community, and/or Special Access Program, Cyber/SSE security controls, and or survivability requirements, as required based on the specified customer/system requirements
- Work in an Agile engineering environment, where the Cyber/SSE may assist in triage of Static Code Analysis (SCA) tool findings (e.g. Fortify) and assist in prioritizing the findings as technical debt in the SwDLC backlog
- Work in small teams to complete systems engineering, assembly, integration, and test activities for security-critical components, such as Cross Domain Solutions, cryptographic devices, and controlled interfaces
- Securely deploy Mission Unique Software (MUS) in computing clouds and/or highly virtualized environments. Prepare Certification to Field (CTF) assessment procedures. Execute CTF test cases for observation by customer cybersecurity representatives
- Interface with customer representatives to accomplish Cyber Test & Evaluation of systems to meet critical program milestones
- Perform system vulnerability scanning, remediation, and patch management activities on Windows and Red Hat operating systems and various COTS/GOTS applications including those within virtualized and/or cloud environments
- Document (or update) Standard Operating Procedures (SOPs) and when needed, perform software patch installation, other flaw remediation, antivirus updates, and continuous monitoring (ConMon) activities
- Ensure systems are operated, maintained, and disposed of in accordance with security policies and procedures as outlined in the system security authorization package
- Other duties as assigned
If this job description reads like it was written specifically for you, consider joining our team!
This position is contingent upon the candidate obtaining final clearances and program access(es) within a reasonable period of time as determined by the company.
Basic Qualifications:
- Principal Cyber Systems Engineer: Bachelor’s degree in STEM field with 5 years of cyber systems experience – OR – Master’s degree in a STEM field with 3 years of cyber systems experience.
- Sr Principal Cyber Systems Engineer: Bachelor’s degree in STEM field with 8 years of cyber systems experience – OR – Master’s degree in a STEM field with 6 years of cyber systems experience.
- Requires an active Top-Secret/Sensitive Compartmented Information (SCI) clearance [TS/SCI] at time of application [US citizenship required]
- Experience designing systems/networks to use, or hands-on experience with industry platform hardening practices, such as DISA Security Technical Implementation Guide (STIG) implementation, as well as documentation of deviations and mitigations.
- Experience designing systems/networks to use, or scanning, remediating, mitigating, and reporting cybersecurity vulnerabilities discovered through use of audit reduction tools and/or the DISA Automated Security Compliance Assessment Solution (ACAS) tool or Tenable NESSUS.
- Experience implementing the RMF process from system categorization through continuous monitoring.
Preferred Qualifications:
- Current CISSP-ISSEP or CISSP-ISSAP certification
- Degree in Electrical Engineering, Software Engineering, or Aerospace Engineering
- Experience with IA/cybersecurity experience, with are least 3 of those within the SAP community in the defense aerospace industry
- Experience hardening Docker containers
Skills Required
- Bachelor's or Master's degree in a STEM field with required years of cyber systems experience per level (Principal: Bachelors+5yrs or Masters+3yrs; Sr Principal: Bachelors+8yrs or Masters+6yrs).
- Active Top-Secret/Sensitive Compartmented Information (TS/SCI) clearance at time of application (U.S. citizenship required).
- Experience implementing the Risk Management Framework (RMF) from system categorization through continuous monitoring.
- Experience with DISA STIG implementation, including documenting deviations and mitigations.
- Experience scanning, remediating, mitigating, and reporting vulnerabilities using tools such as DISA ACAS or Tenable NESSUS.
- Experience performing system vulnerability scanning, remediation, and patch management on Windows and Red Hat operating systems and COTS/GOTS applications in virtualized/cloud environments.
- Experience preparing Systems Security Plans (SSP), Risk Assessment Reports (RAR), Security Control Traceability Matrices (SCTM), Security Assessment Procedures, and POA&Ms.
- Excellent technical writing and communication skills to interact with technical staff and senior program managers.
- Ability to work 100% onsite in Dulles, VA or Gilbert, AZ (9/80 schedule).
- Experience with real-time operating systems, secure coding best practices, or other mission-critical operational systems for space segments.
- Experience with IA/cybersecurity within the SAP/SAP community in defense aerospace (three or more within SAP)
- CISSP-ISSEP or CISSP-ISSAP certification.
- Degree in Electrical Engineering, Software Engineering, or Aerospace Engineering.
- Experience hardening Docker containers.
Northrop Grumman Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Northrop Grumman and has not been reviewed or approved by Northrop Grumman.
-
Retirement Support — 401(k) matching is considered strong, with additional defined-benefit coverage for certain cohorts and options like catch-up contributions. Retirement programs are repeatedly highlighted as a core strength of the total rewards.
-
Leave & Time Off Breadth — PTO, company-paid holidays, and compressed work schedules (such as 9/80) provide meaningful time away and flexibility. These scheduling options are cited as a major quality-of-life benefit across many locations.
-
Parental & Family Support — Paid parental leave alongside caregiver leave, adoption assistance, and back-up care supports a range of family needs. These programs have been expanded recently, signaling continued investment in family support.
Northrop Grumman Insights
What We Do
We are a close-knit community of big thinkers collaborating to keep the world safe. Our passion, creativity and expertise bring next-level technology solutions to life in autonomous systems, cyber, C4ISR, strike, space, and logistics and modernization for our customers around the globe. On the Northrop Grumman team, you’ll join our pursuit of excellence immersed in a dynamic culture of innovation and respect. Your unique perspective will help achieve our shared vision for the future of global security. Every step of the way, you'll be supported by world-class training, employee resource groups and a comprehensive benefits package that enables greater health and happiness for you and your family. Worldwide and across disciplines, we’re challenging what’s possible for technology to protect people and places from undersea to outer space and into cyberspace. And we see the impact of our performance every day. We are Northrop Grumman, and we work on what matters—now, you too can make a difference. Explore opportunities in engineering, IT, manufacturing, business management, cybersecurity and more with us. Northrop Grumman is committed to hiring and retaining a diverse workforce. We are proud to be an Equal Opportunity/Affirmative Action Employer.







