Cyber Systems Engineer - Level 4 (AHT) - R10248345
Description
At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work — and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history.Northrop Grumman Space Systems, Multi-Domain Operations, and Missile Defense Integration Business Unit (BU) has an exciting career opportunity for a Sr. Principal Cyber Systems Engineer – Level 4 to join our team of qualified, diverse individuals. With positions in both Colorado Springs, CO and Schriever Space Force Base in Colorado Springs, CO. This position will require working in both locations at times.
Position Overview:
The TASD contract is seeking a Sr. Principal Cyber Systems engineer to configure, operate and maintain the Endpoint Security Solution (ESS) and the Assured Compliance Assessment Solution (ACAS) tools in accordance with DISA Computer Network Defense requirements, and take the role of ISSO. Responsibilities include installing and upgrading ESS products, monitoring and responding to ESS alerts in accordance with organizational policy, conducting ACAS configuration and vulnerability assessment scans, reviewing software prior to being placed on networks. Additional duties include, but are not limited to, working with the IT team to communicate and resolve issues within the environment, tracking and reporting on open CTOs, and signing off on user accounts.
This position will be supporting two separate networks, one located at the COCO5 Northrop Grumman facility, and one located on Schriever Space Force Base. The primary duty location is on Schriever Space Force Base, with 1-2 days per week at the other Northrop Grumman facility.
Essential Functions:
- Evaluate system and network configurations for compliance with DISA STIG, NIST 800-53 Security Controls and ISO/IEC 15408 Common Criteria to formulate and implement effective high-quality RMF accreditation packages.
- RMF processes and NIST 800-171 Protecting CUI in Nonfederal Systems and Organizations.
- Read and interpret ACAS results.
- Prioritize and execute tasks and enjoy working in a collaborative team environment.
- Create and work within schedules and timelines.
Basic Qualifications:
- Bachelor’s Degree in a STEM (Science, Technology, Engineering or Mathematics) discipline preferred from an accredited university and 8 years of related work experience, or a Master's Degree and 6 years of related work experience, or 4 years of related work experience with a PhD, or an Associate’s Degree and 10 years of related work experience, or 12 years of related experience in lieu of degree may be considered.
- Must possess CompTIA Security+ CE or ISC2 CISSP certification or equivalent certification under DoD 8140
- Applicants must have a current, active in-scope U.S. Government issued Secret security clearance at the time of application, which is required to start.
- Demonstrated experience authoring or updating RMF documentation (e.g., System Security Plan (SSP), Plan of Action & Milestones [POA&M]) within eMASS.
- ESS 201 and 301 Certificates
- Demonstrated experience with a Security Information and Event Management (SIEM) platform (e.g., Splunk, Elastic Stack).
- Account Management experience
- Hands-on experience operating ESS solutions
- Experience scanning, remediating, mitigating, and/or reporting cybersecurity vulnerabilities discovered through use of audit reduction tools and/or the DISA ACAS tool or Tenable NESSUS.
Preferred Qualifications:
- Prior Systems Administrator Experience (Windows and/or Linux)
- ACAS Certification
- Experience with Governance, Risk, and Compliance tools such as Archer.
- Understanding of Patch Management leveraging tools such as WSUS, DNF/YUM
