Northrop Grumman Space Systems—Missile Defense Integration offers an excellent opportunity for an NG-Only Sr. Principal Cyber Systems Engineer – Cybersecurity (ISSE) Engr (26-431) to join our team of skilled and diverse professionals. Based at Schriever Space Force Base, CO, this role is essential to supporting the U.S. President, the Secretary of Defense, and combatant commanders at the strategic, regional, and operational levels.
This position does not provide relocation assistance and requires on-site work with no remote options.
Position Overview:
The Command and Control, Battle Management, and Communications (C2BMC) program is a key component of the Missile Defense System. It is a vital operational system that enables the U.S. president, the Secretary of Defense, and combatant commanders at strategic, regional, and operational levels to plan ballistic missile defense operations systematically, collectively monitor the battle, and dynamically control networked sensors and weapon systems to achieve global and regional mission goals.
C2BMC supports layered missile defense capabilities that enable an optimized response to threats across all ranges and flight phases. It serves as a force multiplier by networking, integrating, and synchronizing autonomous sensor and weapon systems and operations, both globally and regionally, to improve performance. C2BMC is essential for all ground and flight tests that verify and demonstrate the current and future capabilities of missile defense systems.
Essential Functions:
In this position, a successful candidate will be responsible for the following:
- Install, configure, and administer cybersecurity software specializing in: Endpoint protection (e.g., antivirus, HIPS, DLP), Endpoint monitoring (e.g., security log and auditing event collection).
- Vulnerability and compliance scanning
- Write and maintain scripts and/or playbooks to automate the deployment of cybersecurity agent software to endpoints in a large, virtualized environment
- Analyze endpoint protection events to identify and filter out false positives and non–security-relevant data to enhance information system auditing capabilities and reduce alert fatigue
- Utilize cybersecurity software to perform Security Technical Implementation Guide (STIG) assessments for: Windows and Red Hat Enterprise Linux (RHEL) operating systems, Virtualization platforms, Endpoint applications (e.g., browsers, word processors)
- Write queries and build dashboards in SIEM solutions to help visualize security-relevant data for information system monitoring and analysis
- Create and manage data pipelines to transform and/or parse data being ingested into SIEM solutions to:, Add security-relevant metadata, Extract useful fields for analysis and reporting, Implement government requirements (e.g., NISPOM, NIST, DoD, ICD), validate the effectiveness of established cybersecurity controls, and make recommendations based on subject matter expertise
- Assist the Information System Security Officers (ISSOs) with Control Validation Test (CVT) preparation, including: Remediating open findings and noncompliant security controls, Addressing Plans of Action and Milestones (POA&Ms), Responding to Cyber Tasking Orders (CTOs)
Basic Qualifications:
Please list your current security clearance and IAT or relevant certifications on your resume, if applicable.
- A Bachelor’s Degree in Computer Science, Cybersecurity Engineering, Mathematics, Physics, or a related field from an accredited university, along with 8 years of experience; or a Master’s degree (in a related field with 6 years of relevant work experience; or 12 years of relevant work experience may be considered as an alternative to a degree
- Applicants must have a current, active Government-Issued 8140 certification at IAT Level II / IAM Level I or higher (such as Security+ CE, CCNA-Security, CySA+, CND, etc.) at the time of application, which is required to start. The candidate is responsible for maintaining their 8140 certifications throughout the entire contract period
- Applicants must have a current, active in-scope Government-issued Top Secret security clearance at the time of application, which is required to start
- Willingness to travel 10% of the time for business needs
- Security engineering skills with a working knowledge of cybersecurity technology and DoD/Federal cybersecurity guidance (e.g., DoDI 8500.01, NIST SP 800 53)
- Experience installing, configuring, or administering a SIEM solution.
- Experience installing, configuring, or administering endpoint protection software
- Experience installing, configuring, or administering vulnerability and compliance scanning software
- Windows and Linux system administration skills
Preferred Qualifications:
- Experience installing and administering Elastic or Splunk
- Experience with SPL, EQL, KQL, and/or ES/QL query languages
- Experience deploying and configuring Elastic Defend
- Experience installing and administering ACAS (e.g., Tenable Security Center and Nessus)
- Experience installing and configuring SCAP Compliance Checker (SCC)
- Experience with Scripting (e.g., PowerShell, Bash) and /or automation (e.g., Ansible)
- Experience with Kubernetes or working with containers
What We Can Offer You:
Northrop Grumman provides a comprehensive benefits package and a supportive work environment that encourages your growth, benefiting both employees and the company. The benefits are flexible and customizable, enabling you to choose options that suit your individual and family needs. Your benefits will include the following:
- Health Plan
- Savings Plan
- Paid Time Off
- Education Assistance
- Training and Development
- Flexible Work Arrangements
https://benefits.northropgrumman.com/us/en2/BenefitsOverview/Pages/default.aspx
#NGSpace
#COSpace
#NGFeaturedJobs
#C2BMC
#Cybersecurity
#ISSE