> Markdown version of [/jobs/ext/2025342-principal-cyber-systems-engineer-sr-cyber-systems-security-test-engineer](https://www.wearedevelopers.com/jobs/ext/2025342-principal-cyber-systems-engineer-sr-cyber-systems-security-test-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Principal Cyber Systems Engineer - Sr Cyber Systems Security Test Engineer - **Company:** Northrop Grumman - **Location:** Colorado Springs, CO, United States - **Experience:** Expert - **Salary:** $113,900.0 - $170,900.0 - **Contract:** Internship / Graduate position - **Skills:** Microsoft Windows, Agile Methodology, Software Applications, Systems Engineering, User Authentication, Configuration Management, CompTIA Security+, Cyber Security, Information Systems, Computer Engineering, Data Security, Multi-Factor Authentication, Internet Security, Intrusion Detection and Prevention, Intrusion Detection Systems, Network Security, Network Administration, Scrum Methodology, Systems Development Life Cycle, Requirements Management, Service Pack, Security Information and Event Management, Software Engineering, System Testing, Test Case, Software Vulnerability Management, SC Clearance, Information Technology, Patch Management, Enterprise Integration, Cisco, Vulnerability Analysis - **Published:** August 11, 2026 - **Apply:** https://www.careerbuilder.com/job-details/cyber-sys-engineer-level-3-26-171-172-colorado-springs-co--d7713897-4164-460a-983e-9ff911fbf467 ## About the Role Please list your current security clearance and IAT or relevant certifications on your resume, if applicable. * A Bachelor's Degree in Computer Science, Computer Engineering, Cybersecurity Engineering, Electrical Engineering, Information Technology, Mathematics, Physics, or a related field from an accredited university, along with 5 years of experience; or a Master's degree in a related field with 3 years of relevant work experience; or 9 years of relevant work experience may be considered as an alternative to a degree * Applicants must have a current, active DoD 8140 certification at IAT Level II or higher (such as Security+ CE, CCNA-Security, CySA+, CND, etc.) at the time of application, which is required to start. The candidate is responsible for maintaining their DoD 8140 certification throughout the entire contract period * Applicants must have a current, active in-scope DoD-issued Secret security clearance at the time of application, which is required to start * Strong working knowledge of cyber capabilities-including patch management, multi-factor authentication, host-based security, intrusion detection, security event management, active/passive system scanning, and defense-in-depth * Must possess a strong working knowledge of core cyber capabilities-including patch management, Group Policy Object (GPO) management, and proven remediation techniques for cybersecurity vulnerabilities and threats-as well as security engineering expertise in Information Assurance (IA) technologies, NIST standards, DoDI8500.2, and Risk Management Framework (RMF) security controls * Must have hands-on experience throughout the Agile development lifecycle, specifically using the Scrum framework-identifying requirements, defining user stories, and participating in sprint planning, daily stand-ups, and sprint reviews * Will review test plans and test cases provided by development teams, verify their proper implementation, execute the tests, and give clear, actionable feedback to ensure cybersecurity compliance * Experience in configuring cyber audit tools, conducting cyber vulnerability assessments, and managing configuration activities is also necessary * A solid understanding of Software Development Life Cycle (SDLC) models and testing processes, along with proficiency in cyber-tool software applications, is essential * Leadership experience, solid interpersonal skills, and the ability to manage complex organizational relationships are essential * Strong technical writing and verbal communication skills are crucial for presenting technical cyber issues and reports to government stakeholders, program management, and other C2BMC functional areas Preferred Qualifications: * An individual who extensively applies principles, theories, and concepts in their field and offers creative, comprehensive solutions to a wide range of complex problems * Works under general direction, and results are reviewed upon completion to ensure they meet objectives. Failure to achieve results typically causes serious program delays and significant resource expenditure * Maintains regular contact with internal and external customers and represents the organization in providing solutions to challenging technical issues related to specific projects, Administrative Skills, Agile Programming Methodologies, Analysis Skills, Auditing, Authentication, CCNA - Cisco Certified Network Associate, Communication Skills, CompTIA Security+, Computer Engineering, Computer Network Defense (CND), Computer Science, Computer Security, Configuration Management, Contact Management, Defense Information Systems Agency (DISA), Defense in Depth, Diversity, DoD Directive 8140, DoD Directive 8570, Electrical Engineering, Event Management, Government Reporting, Health Plan, IAT - Information Assurance Technical, Information Technology & Information Systems, Information/Data Security (InfoSec), Internet Security, Interpersonal Skills, Intrusion Detection Systems, Leadership, Maintain Compliance, Mathematics, Microsoft Windows NT Group Policy, Network Administration/Management, Network Integration, Operations Planning, Organizational Development/Management, Performance Management, Physics, Presentation/Verbal Skills, Process Modeling, Product Lifecycle, Project/Program Management, Quality Assurance Methodology, Requirements Management, Risk Management Framework (RMF), Scrum Project Management and Software Development, Secret Clearance, Security Attacks, Security Clearance, Security Information and Event Management (SIEM), Software Development Lifecycle (SDLC), Software Patches, Sprint Planning, Standup Meetings, System Operations, System Test, Systems Engineering, Technical Presentation, Technical Writing, Test Case, Test Plan/Schedule, Testing, U.S. National Institute of Standards and Technology (NIST), United States Department of Defense (DoD), Writing Skills ## Description The Command and Control, Battle Management, and Communications (C2BMC) program is a vital component of the Missile Defense System. It serves as an essential operational tool that enables the U.S. president, the secretary of defense, and combatant commanders at strategic, regional, and operational levels to plan ballistic missile defense operations systematically, monitor the battle collectively, and dynamically manage networked sensors and weapon systems to achieve global and regional mission goals. C2BMC supports layered missile defense capabilities that deliver an optimized response to threats across all ranges and flight phases. It functions as a force multiplier by networking, integrating, and synchronizing autonomous sensor and weapon systems and operations at both global and regional scales to improve performance. C2BMC is critical for all ground and flight tests that verify and demonstrate the current and future capabilities of missile defense systems. The candidate will work directly with the Cyber Engineering team to integrate and verify cybersecurity solutions on the C2BMC platform at COS HWY-83, ensuring all security controls are properly implemented and thoroughly tested. They will serve as the primary liaison with the Cyber Test Facility (CTF) at MIDOC, coordinating test events, reviewing test plans submitted by cyber teams, and briefing program leadership on their analysis of those plans. They will also assist teams in identifying the specific cyber requirements for successful execution. Additionally, the role involves supporting cyber teams by facilitating the prompt delivery of capabilities and solutions, with a strong focus on vulnerability management. Essential Functions: * Responsibilities include managing the full lifecycle of Information Assurance Vulnerability Management (IAVM) tickets, executing Cyber Tasking Orders (CTO), addressing Common Vulnerabilities and Exposures (CVE), integrating vendor-issued patches, and applying and verifying DISA STIG configurations ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [IKEA Story: Transforming an Iconic Retail Brand](https://www.wearedevelopers.com/videos/444-ikea-story-transforming-an-iconic-retail-brand) - [AIQSpecFlow: Improves and automates your agile process of specification and creation of testcases.](https://www.wearedevelopers.com/videos/100084-aiqspecflow-improves-and-automates-your-agile-process-of-specification-and-creation-of-testcases) - [How Cisco embraced a DevOps culture within its network engineering team](https://www.wearedevelopers.com/videos/99-how-cisco-embraced-a-devops-culture-within-its-network-engineering-team) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [What's (new) with Spring Boot and Containers?](https://www.wearedevelopers.com/videos/1514-what-s-new-with-spring-boot-and-containers) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [7 Important Tips That Every Software Developer Should Know](https://www.wearedevelopers.com/magazine/101-7-important-tips-that-every-software-developer-should-know) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Quick guide: How to write a Software Developer CV](https://www.wearedevelopers.com/magazine/37-quick-guide-how-to-write-a-software-developer-cv) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)