Principal or Sr. Principal Cybersecurity Systems Engineer - R10221576-2
Listed on 2026-05-16
-
Engineering
Cybersecurity, Systems Engineer -
IT/Tech
Cybersecurity, Systems Engineer
Relocation Assistance
Relocation assistance may be available.
Clearance Required for StartYes. Clearance type:
Secret.
Yes, 10% of the time.
DescriptionAt Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history. Northrop Grumman Mission Systems is a trusted provider of mission‑enabling solutions for global security.
Our Engineering and Sciences (E&S) organization pushes the boundaries of innovation, redefines engineering capabilities, and drives advances in various sciences.
Principal or Sr. Principal Cybersecurity Systems Engineer (CSSE) supporting the Sentinel program based out of Roy, UT. Other operating locations include Annapolis Junction, MD;
San Antonio, TX;
Redondo Beach, CA;
Huntsville, AL;
San Diego, CA; and Colorado Springs, CO.
A Cybersecurity Systems Engineer (CSSE) ensures cyber survivability attributes are implemented in system designs, assesses and evaluates customers’ and stakeholders’ cybersecurity requirements, decomposes, derives, and refines the system’s cybersecurity requirements at all levels, and drives built‑in cybersecurity protections into the architecture and design. The CSSE guides and supports the security layout/architecture, influences security tools selection and development, evaluates implementations to identify security risks and attack surface, verifies that cybersecurity protections from the design are realized and integrated, and supports the development of verification efforts to ensure cybersecurity protections are functional, effective, and complete.
The CSSE also supports the definition of security governance and risk management.
- Implement and review cyber requirement decomposition, derivation, and flow down
- Implement and review traceability of cyber requirements throughout a spec tree architecture
- Support the architecture and design of baked‑in cybersecurity requirements and protections
- Implement and review traceability of cyber requirements to the design & its models
- Implement and review the application of cyber security profile stereotypes to a Model Based System Engineering (MBSE) Architecture
- Provide cybersecurity system engineering implementation guidance and oversight to technical teams/implementers
- Review and assess stakeholder security objectives, protection needs and concerns, security requirements, and associated verification/validation methods
- Implement, review and assess cybersecurity system requirements verification/validation methods
- Identify and/or assess vulnerabilities and susceptibility to life cycle disruptions, hazards, and threats
- Provide security considerations to inform systems engineering efforts with the objective to reduce errors, flaws, and weaknesses that may constitute security vulnerability leading to unacceptable asset loss and consequences
- Identify, quantify, and evaluate the costs/benefits of security functions and considerations to inform analysis of alternatives, engineering trade‑offs, and risk treatment decisions
- Author, support and maintain cybersecurity program documentation & RMF package documentation:
Cybersecurity Strategies, System Security Plans, Continuous Monitoring Plans, Risk Assessment Report, Security Control Traceability Matrix, Plan Of Actions & Milestones, etc. - Perform other duties and directed
- Bachelor’s degree with 5 years, Master’s degree with 3 years, or a PhD with 1 year of experience in:
Systems Engineering, Cybersecurity Engineering, Computer Engineering, Computer Science, or 9 years’ experience in a cyber systems engineering related field in lieu of a degree. - In possession of a current IASAE II certification (CISSP preferred) in accordance with DoDI 8570 or able to obtain within six months of hire.
- Direct experience utilizing NIST 800‑160 system security engineer and the system development life cycle.
- Direct experience in one or more of the following Systems…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).