RELOCATION ASSISTANCE: Relocation assistance may be available
CLEARANCE REQUIRED FOR START: Yes
CLEARANCE TYPE: Top Secret
TRAVEL: Yes, 10% of the Time
DescriptionNorthrop Grumman Defense Systems is hiring a
Lead Systems Security Engineer - COTS Vulnerability Assessment. This position is in
Roy, Utah and will support the Sentinel program. Northrop Grumman supports the Air Force's sustainment, development, production and deployment of hardware and system modifications for Intercontinental Ballistic Missile (ICBM) Ground and Airborne Launch Control Systems, Launch Facilities and associated infrastructure.
What you will get to do:The Systems Security Engineering (SSE) team is seeking a Lead Systems Security Engineer - COTS Vulnerability Assessment (Staff Systems Engineer - level 5). In this role, you will be responsible for leading a team and mentoring junior engineers towards researching, testing, and documenting the cybersecurity posture of commercial off-the-shelf hardware and software products.
Responsibilities Include:
- Perform vulnerability assessments against COTs hardware / software
- Develop, lead, and provide oversight for lab procedures
- Review, Interpret, and Communicate vulnerability assessment results
- Participate in a variety of working groups, customer meetings
- Contributes to the ongoing enhancement of assessment capabilities through the development and implementation of improved methodology, processes, infrastructure, tools, and deliverables
Basic Qualifications:- Bachelor of Science in STEM with 12 years of experience; 10 years of experience with a master's degree; or 8 years with PhD
- Must be a U.S Citizen with an active DoD Top Secret clearance (with a background investigation within the past 6 years or enrolled into Continuous Evaluation
- Ability to obtain and maintain Special Program Access (SAP/PAR).
- 8-12 years of progressive experience in systems security engineering, cyber risk management, and/or vulnerability assessment of COTS hardware and software
- 4 years of experience with/demonstrated ability to develop, document, and execute formal test plans focused on penetration testing, supply chain risk management, and counterfeit part assurance
- 4 years of experience with/knowledge of DoD cybersecurity policies, NIST RMF, and CMMC
Preferred Qualifications:- Top-Secret clearance with SAP eligibility (SCI a plus)
- Any of the following certifications, or equivalent, that demonstrate ability to analyze / test a system : OSCP, GREM, PenTest+, CSSLP
- Experience developing on or evaluating Real Time Operating Systems (VxWorks, GreenHills Integrity, LynxOS, FreeRTOS, etc.)
- Experience validating software configurations (STIG, OpenSCAP, SCAP SC) and implementing policy as code pipelines (GitLab CI, Jenkins, Azure DevOps)
- Experience with SCRM chain of custody processes and provenance assessments for COTS components
- Familiarity with MBSE concepts and tools (SysML, Cameo, Enterprise Architect, IBM?DOORS) to trace security requirements to verification artifacts
As a full-time employee of Northrop Grumman, you are eligible for our robust benefits package including:
- Medical, Dental & Vision coverage
- 401k
- Educational Assistance
- Life Insurance
- Employee Assistance Programs & Work/Life Solutions
- Paid Time Off
- Health & Wellness Resources
- Employee Discounts
This position's standard work schedule is 9/80. The 9/80 schedule allows employees who work a nine-hour day Monday through Thursday to take every other Friday off.
#SentinelSystems Primary Level Salary Range: $152,900.00 - $229,300.00
The above salary range represents a general guideline; however, Northrop Grumman considers a number of factors when determining base salary offers such as the scope and responsibilities of the position and the candidate's experience, education, skills and current market conditions.
Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. Annual bonuses are designed to reward individual contributions as well as allow employees to share in company results. Employees in Vice President or Director positions may be eligible for Long Term Incentives. In addition, Northrop Grumman provides a variety of benefits including health insurance coverage, life and disability insurance, savings plan, Company paid holidays and paid time off (PTO) for vacation and/or personal business.
The application period for the job is estimated to be 20 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates.