Northrop Grumman Logo

Northrop Grumman

Senior Principal Engineer Software - Cyber Security (San Diego CA)

Posted 10 Days Ago
Be an Early Applicant
In-Office
San Diego, CA
142K-213K Annually
Senior level
In-Office
San Diego, CA
142K-213K Annually
Senior level
Lead cybersecurity engineering for systems, ensuring compliance with RMF/NIST and security standards (STIG, OWASP, CIS). Perform vulnerability assessments, A&A support, risk analyses, implementation guidance, and vulnerability remediation using tools like Nessus, Nexpose, ACAS, and SAST/DAST. Coordinate stakeholders, document security posture, and obtain required special access and clearances.
The summary above was generated by AI
RELOCATION ASSISTANCE: Relocation assistance may be available

CLEARANCE REQUIRED FOR START: Yes

CLEARANCE TYPE: Top Secret

TRAVEL: Yes, 25% of the TimeDescription

At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work — and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history.

 Please note that this opportunity is contingent on program funding. Start dates are determined after funding confirmation.

Northrop Grumman Aeronautics Systems is looking to add a Senior Principal Engineer Software - Cyber Security to join our team on site in San Diego, CA. The candidate should be a self-starter with familiarity working in an Integrated Product Team construct.

Roles and Responsibilities will include:

  • Ensure system designs and implementations are consistent with policies, requirements, and directives, including compliance with Security Technical Implementation Guides (STIG), Security Requirements Guides (SRGs), Center for Internet Security (CIS) Benchmark, Common Vulnerabilities and Exposures (CVE), Common Weakness Enumeration (CWE) and Open Web Application Security Project (OWASP). Identify Cyber vulnerabilities and compliance issues.

  • Administer strict program control processes to ensure mitigation of risks and supports obtaining Assessment and Authorization (A&A) of systems.

  • Support security process, analysis, coordination, assessment, documentation, software research.

  • Provide security impacts and risk assessments of new system components and emerging technologies.

  • Contribute to the implementation of the Risk Management Framework (RMF), through the required government policy (i.e., NIST SP 800-53, NIST SP 800-37, CNSSI, etc.), make recommendations on process tailoring, participate in and document process activities.

  • Perform active evaluations such as compliance and vulnerability tests and adjudicate deviations from acceptable configurations, and policies

Basic Qualifications:

  • Bachelor’s Degree in a STEM (Science, Technology, Engineering or Mathematics) discipline and 8 years of related engineering experience; OR a Master’s degree in a STEM discipline and 6 years of related engineering experience; OR a PhD in a STEM discipline and 4 years of related engineering experience.

  • One of the following: DoD 8140 Cyber Workforce Qualification Program (CWQP), DoD 8570  IAM Level II Certifications (CompTIA SecurityX (CASP), CISSP, CSSLP)

  • Experience in the field of cybersecurity including common terms, fundamental technical elements, operating system security, network security, and software security.

  • Experience with Development, review and approval methods to monitor and measure risk, compliance, and assurance efforts.

  • Experience with system vulnerability management and security implementation as well as direct experience with DoD Assessment and Authorization (A&A) activities, security processes, and documentation/reporting using RMF, NIST, or CNSSI guidance as required.

  • Experience using and working with fundamental information technology principles, concepts and techniques including software languages, design concepts, test methods, and integration practices.

  • Must possess familiarity/knowledge of both Windows and UNIX based platforms (e.g. RedHat), hypervisor, and containerized environments as well as basic systems engineering principles and concepts.

  • Experience with compliance and vulnerability reporting tools (Nessus, Nexpose, SCAP, ACAS, Nmap, SAST, DAST).

  • Strong organizational and communication skills and experience working with stakeholders at a variety of levels between organizations.

  • Active U.S. Government Top Secret SCI Clearance (with a background investigation within the past 5 years or enrolled into Continuous Evaluation).

  • Ability to obtain and maintain Special Program Access (SAP/PAR). This SAP/PAR must be obtained prior to commencement of employment and must be obtained within a reasonable amount of time as determined by the company to meet its business needs.

Preferred Qualifications:

  • Current applicable Special Access Program (SAP) clearance.

  • Systems security experience and one of the following higher-level certifications (CISSP-  ISSEP, CISSP-ISSAP, CSSLP).

  • Experience with the implementation of National Institute of Standards and Technology (NIST) special publications, federal regulations, and DoD policies.

  • Experience in documenting the security posture of an information system and reporting on security controls assigned to the system.

  • Experience submitting authorization content and artifacts to support authorizing authority’s ongoing assessment and risk acceptance decisions.

  • Experience performing complex security information technology tasks independently and validating security assessments and reviews.

  • Experience applying security hardening to information systems and networks under the guidance of the RMF.

  • Designs, develops, tests, and evaluates information systems throughout the systems development lifecycle.

We offer phenomenal learning opportunities, exposure to a wide variety of projects and customers, and a very friendly collaborative workplace. We are looking for self-motivated, proactive, and goal-oriented people to help us grow our services and become even better at what we do.

At Northrop Grumman, we are innovating-- building the next generation of sophisticated aircraft to protect our country. Our diverse portfolio of programs means there are endless paths to cultivate your career. We are well-known for our inclusive, family environment, as well as our excellent work/life balance. We also offer exceptional benefits/healthcare, a 9/80 schedule, and a great 401K matching program.

Primary Level Salary Range: $142,200.00 - $213,400.00

The above salary range represents a general guideline; however, Northrop Grumman considers a number of factors when determining base salary offers such as the scope and responsibilities of the position and the candidate's experience, education, skills and current market conditions.

Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. Annual bonuses are designed to reward individual contributions as well as allow employees to share in company results. Employees in Vice President or Director positions may be eligible for Long Term Incentives. In addition, Northrop Grumman provides a variety of benefits including health insurance coverage, life and disability insurance, savings plan, Company paid holidays and paid time off (PTO) for vacation and/or personal business.

The application period for the job is estimated to be 20 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates.

Northrop Grumman is an Equal Opportunity Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. For our complete EEO and pay transparency statement, please visit http://www.northropgrumman.com/EEO. U.S. Citizenship is required for all positions with a government clearance and certain other restricted positions.

Northrop Grumman Azusa, California, USA Office

Azusa, United States

Northrop Grumman Camarillo, California, USA Office

Camarillo, United States

Northrop Grumman Carson, California, USA Office

Carson, United States

Northrop Grumman El Segundo, California, USA Office

El Segundo, United States

Northrop Grumman Fullerton, California, USA Office

Fullerton, United States

Northrop Grumman Hawthorne, California, USA Office

Hawthorne, United States

Northrop Grumman Huntington Beach, California, USA Office

Huntington Beach, United States

Northrop Grumman Laguna Hills, California, USA Office

Laguna Hills, United States

Northrop Grumman Los Angeles, California, USA Office

Los Angeles, United States

Northrop Grumman Los Angeles, California, USA Office

Los Angeles, United States

Northrop Grumman Manhattan Beach, California, USA Office

Manhattan Beach, United States

Northrop Grumman Oxnard, California, USA Office

Oxnard, United States

Northrop Grumman Pico Rivera, California, USA Office

Pico Rivera, United States

Northrop Grumman Pomona, California, USA Office

Pomona, United States

Northrop Grumman Port Hueneme, California, USA Office

Port Hueneme, United States

Northrop Grumman Redondo Beach, California, USA Office

Redondo Beach, United States

Northrop Grumman Santa Monica, California, USA Office

Santa Monica, United States

Northrop Grumman Torrance, California, USA Office

Torrance, United States

Northrop Grumman West Whittier, California, USA Office

West Whittier, United States

Similar Jobs

A Minute Ago
Hybrid
210K-287K Annually
Senior level
210K-287K Annually
Senior level
Fintech • Machine Learning • Payments • Software • Financial Services
Leads resiliency and reliability engineering programs, identifying and mitigating technical risks across delivery. Builds scalable, highly available distributed systems and cloud-based services; drives observability, incident response, disaster recovery, chaos engineering, and reliability initiatives. Owns technical vision, coordinates large cross-functional teams, removes blockers, and delivers business impact. Develops TPM talent, strengthens the TPM practice, and influences product, engineering, design, and data science decisions in a regulated environment.
Top Skills: AgileChaos EngineeringCloud ComputingDisaster RecoveryDistributed ComputingDistributed SystemsFailure Mode AnalysisIncident ResponseObservabilitySite Reliability Engineering
2 Minutes Ago
Hybrid
230K-286K Annually
Senior level
230K-286K Annually
Senior level
Fintech • Machine Learning • Payments • Software • Financial Services
Lead the design, development, deployment, and support of foundational AI systems, including LLM training and inference, similarity search, guardrails, evaluation, governance, and observability. Develop optimization techniques that improve scalability, cost, latency, throughput, and hardware utilization. Partner with engineering, research, product, and program teams while contributing to AI platform strategy, technical vision, and long-term roadmaps.
Top Skills: AWSAws UltraclustersAzureC#C++GoGCPHugging FaceJavaLarge Language ModelsNemo GuardrailsPythonPyTorchReinforcement LearningScalaVectordbs
2 Minutes Ago
Hybrid
197K-246K Annually
Mid level
197K-246K Annually
Mid level
Fintech • Machine Learning • Payments • Software • Financial Services
Lead the design, development, testing, deployment, and support of foundational AI systems, including model training, LLM inference, similarity search, guardrails, evaluation, governance, and observability. Optimize large-scale production AI systems for scalability, latency, throughput, cost, and hardware utilization. Collaborate with engineering, research, program management, and product teams while shaping the technical vision and roadmap for responsible AI platforms.
Top Skills: AWSAws UltraclustersAzureC#C++Foundation ModelsGoGCPHugging FaceJavaLarge Language ModelsNemo GuardrailsPythonPyTorchScalaSimilarity SearchVectordbsVision Language Models

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account