Cyber Systems Engineer - Level 2 or ; AHT
Listed on 2026-09-12
-
IT/Tech
Cybersecurity, Systems Engineer, Information Security & Data Protection
RELOCATION ASSISTANCE:
Relocation assistance may be available
CLEARANCE REQUIRED FOR START:
Yes
CLEARANCE TYPE: SCI
TRAVEL:
Yes, 10% of the Time
At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon.
We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work — and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history.
Northrop Grumman Space Systems (NGSP) is seeking a Cyber Systems Engineer – Level 2 or 3 to join our team at our facility in Aurora, Colorado.
We are seeking a highly motivated Cyber Engineer to support the design, implementation, and protection of complex systems and cloud environments. The ideal candidate will have deep experience in systems security engineering, Risk Management Framework (RMF), and modern cyber tools and platforms, with a proven track record operating in highly classified environments.
Job responsibilities include, but are not limited to, the following:Apply Systems Security Engineering principles (per NIST SP 800-160) across the system lifecycle, including requirements definition, architecture, design, implementation, verification, validation, and operations.
Design, implement, and secure cloud-based infrastructures (AWS, Azure, or Google Cloud), including servers, networks, storage, and associated services.
Configure, integrate, and operate cyber security tools such as Rapid7, Trellix, Splunk, and other industry-standard technologies to support monitoring, detection, incident response, and compliance.
Implement and maintain cloud security platforms, including configuration of security controls, monitoring, logging, and alerting.
Interpret and apply DoD 8500-series and DoDI 8510.01 directives, cyber security approaches, security procedures, and accreditation requirements (IATT/ATO).
Lead and support RMF (NIST 800-37) accreditation activities, including documentation development, control implementation, security scanning, assessment, and continuous monitoring.
Develop, maintain, and manage Plan of Action and Milestones (POA&M) to track remediation activities and residual risk.
Produce and maintain RMF assessment and authorization documentation (e.g., System Security Plan, Security Assessment Plan/Report, Contingency Plan, Incident Response Plan, Continuous Monitoring Strategy).
Collaborate with systems engineers, software engineers, network engineers, and program management to ensure security requirements are understood, implemented, and validated.
Provide technical guidance and recommendations to leadership and stakeholders on cyber risks, mitigations, and trade-offs.
This requisition may be filled at a higher job grade based on the qualifications listed below.
This requisition may be filled as either a level 2 or level 3.
Basic Qualifications for a Level 2:Requires an active Top-Secret/Sensitive Compartmented Information (SCI) clearance with CI polygraph at time of application
Bachelor's degree with 2 years of relevant experience - OR
- Master's degree with 0 years of relevant experience. An additional 4 years of relevant experience may be considered in lieu of a degree.Possession of Security+ or Certified Information Systems Security Professional (CISSP) certification
Demonstrated exposure to cloud infrastructure, network, and architecture design and implementation (servers, networks, storage) on AWS, Azure, or Google Cloud
Background with Systems Security Engineering as defined in NIST SP 800-160
Experience configuring and implementing tools such as Rapid7, Trellix, and Splunk, along with other industry-standard cyber security technologies
Experience working with cloud security platforms (e.g., cloud-native security services, CSPM, CWPP, cloud logging and monitoring)
Working knowledge of DoD 8500-series and DoDI 8510.01 IA directives, cyber security approaches, security procedures, and IATT/ATO requirements
Experience with RMF (NIST 800-37) accreditation functions, to include…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).