> Markdown version of [/jobs/ext/1247431-cyber-systems-engineer-engineer-or-principal-engineer-level](https://www.wearedevelopers.com/jobs/ext/1247431-cyber-systems-engineer-engineer-or-principal-engineer-level). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Systems Engineer (Engineer or Principal Engineer Level) - **Company:** Northrop Grumman - **Location:** Oklahoma City, OK, United States - **Experience:** Expert - **Salary:** $75,100.0 - $112,700.0 - **Contract:** Permanent contract - **Skills:** Agile Methodology, Computing Platforms, Systems Engineering, Cloud Computing, CompTIA Security+, Cyber Security, Information Systems Security Architecture Professional, SAP (Applications), Trusted Systems - **Published:** July 12, 2026 - **Apply:** https://www.careerjet.com/job/us5ff204f831376bee4490d67f923f5e3d/eaa ## About the Role At an Engineer Level: * Must have a Bachelors of Science degree in a STEM field and at least 2 years of relevant military / professional experience, OR a Master's Degree in a STEM field and at least some of relevant military / professional / academic experience At a Principal Engineer Level: * Must have a Bachelors of Science degree in a STEM field and at least 5 years of relevant military / professional experience, OR a Master's Degree in a STEM field and at least 3 years of relevant military / professional experience, OR a PhD and at least 1 year of relevant military / professional / academic experience At Both Levels: * Must have experience with US Government System Security Engineering activities (security requirements engineering, risk assessment and management, secure architecture design, implementation and verification activities) * Must have an active US Government Secret or higher clearance (with a background investigation completed within the last 6 years or currently enrolled into Continuous Evaluation). * Must have the ability to obtain and maintain Special Access Program (SAP) clearance within a reasonable amount of time as determined by business needs. * Must have a DODD 8140.01 qualifying certification, such as CompTIA Security+, CISSP, or similar network/security certifications Preferred Qualifications: * Experience working with, and providing oversight and guidance to, different IPTs and Suppliers/Subcontractors in support of design development, implementation, and test/verification activities * Experience with developing, executing, and managing Program Protection, Supply Chain Risk, and Counterfeit Parts Prevention plans as well as performing Criticality Analysis of system components * Risk Management Framework (RMF), development of System Security Plans, Assessment Reports, attack path modeling, and mitigation strategies * Experience with embedded computing environments and technologies * Experience with cloud computing environments and technologies * Experience with Model Based Systems Engineering tools such as Cameo or other similar system modeling tools * Familiarity with DoDI 5000.02 (Operation of the Adaptive Acquisition Framework), DoDI 5200.44 (Protection of Mission Critical Functions to Achieve Trusted Systems and Networks), DoDI 5000.83 (Technology and Program Protection to Maintain Technological Advantage), NIST SP 800-161 (Cybersecurity Supply Chain Risk Management Practices for Systems and Organizations), US Government Program Protection Plan and Guidance * Experience applying agile methodologies to the development of cybersecurity capabilities for embedded systems. * Experience working on a multidisciplinary team and writing technical proposals * Excellent communication, interpersonal skills, and the ability to interface with all levels of employees and management * Familiarity with U.S Government Anti-Tamper (AT) processes and implementations * Ability to obtain a US Government Top Secret security clearance to include a Single Scope Background Investigation (SSBI) ## Description Northrop Grumman Aeronautics Systems is currently seeking a Cyber Systems Engineer or Principal Cyber Systems Engineer to join our team of qualified, diverse individuals in our Systems Engineering organization. This role is located in Oklahoma City, OK. In this role, you will be responsible for System Security Engineering across all phases of a system's acquisition / development lifecycle. Success in this position requires a strong background in Program Protection, Supply Chain Risk Management, and Counterfeit Parts Prevention. You will need experience with Cybersecurity engineering and implementations based on US Government standards, National Institute of Standards and Technology (NIST), Committee on National Security Systems Instruction (CNSSI), and Risk Management Framework (RMF) processes, policies and guidelines. Essential Functions: * Support Program Protection, Supply Chain Risk Management, and supply chain vulnerability and risk assessment activities * Develop/update Program Protection Implementation Plan(s), Supply Chain Risk Management (SCRM) plans, and Counterfeit Prevention Plan(s) * Perform supply chain vulnerability and risk assessments, document findings and recommend mitigations/countermeasures * Develop/refine Hardware/Software Bill of Materials and conduct Criticality Analysis of system components * Monitor system changes impacted through the supply chain * Review system vulnerability scans and mitigation reports * Support inquiries into, and auditing of, suppliers * Leverage knowledge and experience using systems security engineering methodologies and techniques * Prepare technical documents, provide briefings, attend security-related working groups, support ongoing authorization efforts including development of supporting documentation, develop procedures, and work in a fast-changing dynamic environment with minimal direction * Perform other System Security Engineering (SSE) duties as assigned * Comfortable working in an Agile Development environment * Interface with internal management, other cyber functional areas, and other internal and external stakeholders as a technical liaison This role can be filled at either the Engineer or Principal Engineer Level based on the qualifications below. ## Related Videos - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Green Cloud Computing](https://www.wearedevelopers.com/videos/592-green-cloud-computing) - [Security Challenges of Breaking A Monolith](https://www.wearedevelopers.com/videos/362-security-challenges-of-breaking-a-monolith) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Real-world Threat Modeling](https://www.wearedevelopers.com/videos/936-real-world-threat-modeling) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers)