Sr Principal Cyber Systems Engineer
Requisition ID: R10122470
Category: Information Technology
Location: Roy, Utah, United States of America
Citizenship required: United States Citizenship
Clearance Type: Secret
Telecommute: No- Teleworking not available for this position
Shift: 1st Shift (United States of America)
Travel Required: Yes, 25% of the Time
Relocation Assistance: Relocation assistance may be available
Positions Available: 1
Join Northrop Grumman on our continued mission to push the boundaries of possible across land, sea, air, space, and cyberspace. Enjoy a culture where your voice is valued and start contributing to our team of passionate professionals providing real-life solutions to our world’s biggest challenges. We take pride in creating purposeful work and allowing our employees to grow and achieve their goals every day by Defining Possible. With our competitive pay and comprehensive benefits, we have the right opportunities to fit your life and launch your career today.
Cybersecurity Professionals, We Want You!
Cyber assets everywhere are under siege from a wide spectrum of threats. Almost daily, these threats grow in sophistication, breadth and speed.
At Northrop Grumman, we take a holistic approach to cybersecurity, looking at the whole cyber landscape of people, processes and technology and the whole security realm of offense, defense, and exploitation. Thought leadership demands nothing less.
If you are skilled with classified computers within the Department of Defense (DoD) and Intelligence Community computing environments, Northrop Grumman Corporation has fantastic opportunities for your career growth.
We are seeking experienced Cybersecurity Professionals at our Roy, UT location to support cybersecurity lifecycle activities.
Job Description:
Northrop Grumman Chief Information Office is seeking a Sr. Principal Cyber Systems Engineer to function as a Red Hat Enterprise Linux (RHEL) Subject Matter Expert (SME) selecting, designing, configuring, and engineering cybersecurity tools on classified information systems. This position is in Roy, UT and will support the Sentinel Program Infrastructure Cybersecurity Engineering Team. Due to the classified nature of the work performed, this position does not offer any virtual or telecommute working options. Applicants are encouraged to apply only if they are willing to work on-site.
Primary Responsibilities:
Role will function as the Red Hat Enterprise Linux (RHEL) Cyber Engineer Subject Matter Expert (SME). This role requires the ability to design, build, employ, and maintain security hardening, granular role-based access, and automation of repeated tasks. Specialized knowledge with security configuration of Red Hat Satellite Server, Capsule Servers, System Build Automation (Ansible, Red Hat Ansible Tower, Red Hat Automation Controller), YUM, LUKS and PostgreSQL among others.
Designing, implementing, and configuring Windows enterprise security systems to include Active Directory, DHCP, GPOs, DNS, LDAP, Bitlocker and Certificate Authorities. Technical expertise with MS Exchange, MECM (Microsoft Endpoint Configuration Manager), MS SQL, WSUS, Windows operating system and Windows Server environments.
Ability to design, build, employ, and maintain the cybersecurity posture of a physical and virtual network environment including alignments between on-prem and cloud configurations. Technical expertise with Cisco, VMware NSX, VMware vCenter, ESXi, and VCF virtual technologies hardening and security baselines & requirements.
Knowledge of routing protocols, employment of distributed logical routers and firewalls, and network micro-segmentation.
Working with chief cyber architect to illustrate network design and configuration diagrams in Visio for small to large networks and interconnectivity.
Coordinating cybersecurity technical solutions with the Cyber Operations and Cyber Assessment & Authorization teams.
Other Responsibilities will also include:
Assessing systems and networks within their networking environment or enclave identifying where those systems and networks deviate from acceptable configurations, enclave policy, or local policy. This is achieved through passive evaluations such as compliance audits and active evaluations such as vulnerability assessments.
Enforce strict program control processes to ensure mitigation of risks and supports obtaining certification and accreditation of systems. Includes support of process, analysis, coordination, security certification test, security documentation, as well as investigations, software research, hardware introduction and release, emerging technology research inspections and periodic audits.
Implement the required government RMF policy (i.e. ICD 503, JSIG, DAAPM, CNSSI), make recommendations on process tailoring, participate in and document process activities.
Perform analyses to validate established security controls and to recommend additional security requirements and safeguards.
Support the formal Security Test and Evaluation (ST&E) required by each government accrediting authority through pre-test preparations, participation in the tests, analysis of the results and preparation of required reports.
Ensure completion all associated Assessment and Authorization activities, which includes all RMF Body Of Evidence (BOE) documentation: System Security Plan (SSP), Security Controls Traceability Matrix (SCTM), Control Family Security Operating Plans (SOPs), Continuous Monitoring (ConMon) Plan, Plan of Actions and Milestones (POA&M), etc.
Lead the recurring cybersecurity SOW to completion; includes auditing, configuration management, hardware inventory, software inventory, user training, POA&M updates, ConMon checklists, Self-Inspections, etc.
Basic Qualifications:
Master's Degree with 7 years of experience; OR a Bachelor's Degree with 9 years of experience; OR an Associate's Degree with 11 years of experience; OR a High School Diploma/GED with 13 years of experience is required
Must have a current DoD 8570 IAM level III security certification (CISM, GSLC, CCISO, CISSP)
Must have a current DOD Secret security clearance (at a minimum) to include a closed investigation date completed within the last 6 years OR must be enrolled in the DOD Continuous Evaluation Program (CEP) to be considered
Must have the ability to obtain, and maintain, access to Special Programs as condition of continued employment
Must have experience with building, configuring and maintaining cybersecurity systems with Linux.
Preferred Qualifications:
The ideal candidate will have at least a Bachelor’s degree in Cyber Security, and 10 years of experience with engineering cybersecurity tools for classified systems
Experience engineering ACAS, NESSUS, SPLUNK, McAfee / Trellix, VMWare, or MECM
Expert level with scripting / automating engineering tasks
Experience building cybersecurity systems with Red Hat Enterprise Linux or CentOS Operating Systems
Current Top Secret clearance with SAP access level is highly desirable
The health and safety of our employees and their families is a top priority. The company encourages employees to remain up-to-date on their COVID-19 vaccinations. U.S. Northrop Grumman employees may be required, in the future, to be vaccinated or have an approved disability/medical or religious accommodation, pursuant to future court decisions and/or government action on the currently stayed federal contractor vaccine mandate under Executive Order 14042 https://www.saferfederalworkforce.gov/contractors/.
Northrop Grumman is committed to hiring and retaining a diverse workforce. We are proud to be an Equal Opportunity/Affirmative Action Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. For our complete EEO/AA and Pay Transparency statement, please visit http://www.northropgrumman.com/EEO. U.S. Citizenship is required for most positions.
What's great about
Northrop Grumman
- Be part of a culture that thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work.
- Use your skills to build and deliver innovative tech solutions that protect the world and shape a better future.
- Enjoy benefits like work-life balance, education assistance and paid time off.
Did you know?
Northrop Grumman leads the industry team for NASA’s James Webb Space Telescope, the largest, most complex and powerful space telescope ever built. Launched in December 2021, the telescope incorporates innovative design, advanced technology, and groundbreaking engineering, and will fundamentally alter our understanding of the universe.