Northrop Grumman Mission Systems (NGMS) is seeking a Principal or Senior Principal Cyber Protection Engineer to join our team of qualified, diverse individuals conducting penetration and cybersecurity testing activities in San Antonio, TX.
In this role, the Cyber Protection Engineer assesses and tests system cybersecurity requirements, system security architecture, and system security layout. The candidate will operate in a team environment and collaborate across the organization (as required) to accomplish team goals by coordinating with customers and other testing organizations.
Essential duties:
- Conduct cloud-focused penetration testing and security assessment activities to identify vulnerabilities, attack paths, and potential threat vectors across cloud-native and hybrid environments.
- Support offensive security operations targeting cloud infrastructure, CI/CD pipelines, containerized workloads, applications, and enterprise services within AWS, Azure, and related platforms.
- Assists with development of attack methodologies, testing procedures, and technical analysis while collaborating with senior operators and engineers.
- Apply cybersecurity knowledge to evaluate cloud security posture, validate security controls, and contribute to technical reporting, operational recommendations, and remediation guidance.
This position can be filled at the Principal or Sr. Principal Level.
Basic Qualifications for Principal Engineer:
- Bachelor's Degree and 5 years of related experience; or a Master's degree and 3 years of related experience. Note: 9 years of related experience may be considered in lieu of degree.
- US Citizenship is required
- Active US Government Top Secret Security Clearance is required with the ability to obtain an SCI.
- Must possess a DoD 8570 Certification for IAT Level II or higher(Sec+, CCNA, CySA+ or CND).
- Experience conducting penetration testing, vulnerability analysis, or security assessments against cloud, enterprise, or hybrid environments.
- Experience with cloud platforms such as AWS and Azure, including familiarity with IAM, networking, storage, logging, and security services.
- Familiarity with CI/CD pipeline technologies and concepts, including GitHub Actions, GitLab CI/CD, Jenkins, Azure DevOps, or similar platforms.
- Experience or familiarity with containerization and virtualization technologies such as Docker, Kubernetes, or VMware.
- Knowledge of Windows and Linux operating systems, networking fundamentals, and common enterprise architecture.
- Experience using scripting or automation languages such as Python, Bash, or PowerShell to support testing, analysis, or operational workflows.
- Familiarity with offensive security methodologies, vulnerability management processes, and common attacker TTPs.
Basic Qualifications for Sr. Principal Engineer:
- Bachelor's Degree and 8 years of related experience; or a Master's degree and 6 years of related experience. Note:12 years of related experience may be considered in lieu of degree.
- US Citizenship is required
- Active US Government Top Secret Security Clearance is required with the ability to obtain an SCI.
- Must possess a DoD 8570 Certification for IAT Level II or higher(Sec+, CCNA, CySA+ or CND).
- Experience conducting penetration testing, vulnerability analysis, or security assessments against cloud, enterprise, or hybrid environments.
- Experience with cloud platforms such as AWS and Azure, including familiarity with IAM, networking, storage, logging, and security services.
- Familiarity with CI/CD pipeline technologies and concepts, including GitHub Actions, GitLab CI/CD, Jenkins, Azure DevOps, or similar platforms.
- Experience or familiarity with containerization and virtualization technologies such as Docker, Kubernetes, or VMware.
- Knowledge of Windows and Linux operating systems, networking fundamentals, and common enterprise architecture.
- Experience using scripting or automation languages such as Python, Bash, or PowerShell to support testing, analysis, or operational workflows.
- Familiarity with offensive security methodologies, vulnerability management processes, and common attacker TTPs.
Preferred Qualifications for both:
- Ability to analyze technical findings and contribute to assessment reports, presentations, and client deliverables, and communicate findings to both technical and non-technical stakeholders.
- Experience assessing cloud-native technologies, including Kubernetes, containers, serverless functions, or Infrastructure-as-Code deployments.
- Familiarity with cloud security assessment tools, vulnerability scanners, and offensive security frameworks.
- Familiarity with Terraform, Ansible, ARM templates, CloudFormation, or Infrastructure-as-Code concepts.
- Experience with logging, monitoring, and detection technologies such as Splunk, Sentinel, ELK, Defender, or CrowdStrike.
- Familiarity with RMF, A&A activities, STIGs, SCAP, ACAS, or cybersecurity compliance frameworks.
- Ability to rapidly learn emerging technologies, cloud attack methodologies, and evolving threat landscapes.
- Relevant certifications such as AWS Security Specialty, Azure Security Engineer Associate, PenTest+, CySA+, CEH, AZ-500, SC-200, CRTO, GPEN, GXPN, OSCP, or similar cybersecurity certifications preferred.
Skills Required
- Bachelor's degree and 5 years related experience, OR Master's degree and 3 years related experience, OR 9 years related experience in lieu of degree (Principal level)
- Bachelor's degree and 8 years related experience, OR Master's degree and 6 years related experience, OR 12 years related experience in lieu of degree (Sr Principal level)
- US Citizenship required
- Active US Government Top Secret security clearance required with ability to obtain an SCI
- DoD 8570 Certification for IAT Level II or higher (e.g., Sec+, CCNA, CySA+, CND)
- Experience conducting penetration testing, vulnerability analysis, or security assessments against cloud, enterprise, or hybrid environments
- Experience with cloud platforms such as AWS and Azure, including IAM, networking, storage, logging, and security services
- Familiarity with CI/CD pipeline technologies (GitHub Actions, GitLab CI/CD, Jenkins, Azure DevOps)
- Experience or familiarity with containerization and virtualization technologies such as Docker, Kubernetes, or VMware
- Knowledge of Windows and Linux operating systems, networking fundamentals, and common enterprise architecture
- Experience using scripting or automation languages such as Python, Bash, or PowerShell
- Familiarity with offensive security methodologies, vulnerability management processes, and common attacker TTPs
- Ability to analyze technical findings and communicate to technical and non-technical stakeholders
- Experience assessing cloud-native technologies including Kubernetes, containers, serverless functions, or IaC deployments
- Familiarity with cloud security assessment tools, vulnerability scanners, and offensive security frameworks
- Familiarity with Terraform, Ansible, ARM templates, CloudFormation, or Infrastructure-as-Code concepts
- Experience with logging, monitoring, and detection technologies such as Splunk, Sentinel, ELK, Defender, or CrowdStrike
- Familiarity with RMF, A&A activities, STIGs, SCAP, ACAS, or cybersecurity compliance frameworks
- Relevant certifications such as AWS Security Specialty, Azure Security Engineer Associate, PenTest+, CySA+, CEH, AZ-500, SC-200, CRTO, GPEN, GXPN, OSCP
Northrop Grumman Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Northrop Grumman and has not been reviewed or approved by Northrop Grumman.
-
Retirement Support — 401(k) matching is considered strong, with additional defined-benefit coverage for certain cohorts and options like catch-up contributions. Retirement programs are repeatedly highlighted as a core strength of the total rewards.
-
Leave & Time Off Breadth — PTO, company-paid holidays, and compressed work schedules (such as 9/80) provide meaningful time away and flexibility. These scheduling options are cited as a major quality-of-life benefit across many locations.
-
Parental & Family Support — Paid parental leave alongside caregiver leave, adoption assistance, and back-up care supports a range of family needs. These programs have been expanded recently, signaling continued investment in family support.
Northrop Grumman Insights
What We Do
We are a close-knit community of big thinkers collaborating to keep the world safe. Our passion, creativity and expertise bring next-level technology solutions to life in autonomous systems, cyber, C4ISR, strike, space, and logistics and modernization for our customers around the globe. On the Northrop Grumman team, you’ll join our pursuit of excellence immersed in a dynamic culture of innovation and respect. Your unique perspective will help achieve our shared vision for the future of global security. Every step of the way, you'll be supported by world-class training, employee resource groups and a comprehensive benefits package that enables greater health and happiness for you and your family. Worldwide and across disciplines, we’re challenging what’s possible for technology to protect people and places from undersea to outer space and into cyberspace. And we see the impact of our performance every day. We are Northrop Grumman, and we work on what matters—now, you too can make a difference. Explore opportunities in engineering, IT, manufacturing, business management, cybersecurity and more with us. Northrop Grumman is committed to hiring and retaining a diverse workforce. We are proud to be an Equal Opportunity/Affirmative Action Employer.


_0.png)






