> Markdown version of [/jobs/ext/2525419-staff-sr-principal-cybersecurity-systems-engineer-cse](https://www.wearedevelopers.com/jobs/ext/2525419-staff-sr-principal-cybersecurity-systems-engineer-cse). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Staff/Sr. Principal Cybersecurity Systems Engineer (CSE) - **Company:** Northrop Grumman - **Location:** San Diego, CA, United States - **Experience:** Expert - **Salary:** $127,900.0 - $191,900.0 - **Contract:** Permanent contract - **Skills:** Systems Engineering, Static Program Analysis, Cyber Security, Computer Engineering, Identity and Access Management, Network Security, Systems Development Life Cycle, Software Requirements Analysis, Information Security Management System, Information Technology, Vulnerability Analysis - **Published:** August 3, 2026 - **Apply:** https://dejobs.org/x/x/91043B6C2930482DA09861E4B8817BEB/job/ ## About the Role * Bachelor's degree in Computer Science, Computer Engineering, Electrical Engineering, Systems Engineering, Cybersecurity Engineering, or another STEM degree with a minimum 12 years of relevant experience OR 10 years of relevant experience with a Master's degree OR 8 years of experience with a PhD. * Demonstrated experience in Cybersecurity vulnerability assessments and evaluation * Knowledge of NIST 800-53, NIST 800-171, NSS/CSA PM 9-12 and JSIG * Demonstrated experience in Cybersecurity vulnerability assessments and evaluation * Current/active DoD Secret clearance. * Current CISSP or Security+ CE certificate or IAM III certification or higher, or ability to attain Security+ CE certificate within 6 months. * Ability to be Program cleared. Basic Qualifications for a Senior Principal Cyber Systems Engineer/Level 4 * Bachelor's degree in Computer Science, Computer Engineering, Electrical Engineering, Systems Engineering, Cybersecurity Engineering, or another STEM degree with a minimum 8 years of relevant experience OR 6 years of relevant experience with a Master's degree OR 4 years of experience with a PhD. * Demonstrated experience in Cybersecurity vulnerability assessments and evaluation * Knowledge of NIST 800-53, NIST 800-171, NSS/CSA PM 9-12 and JSIG * Demonstrated experience in Cybersecurity vulnerability assessments and evaluation * Current/active DoD Secret clearance . * Current Security+ CE certificate or IAM II certification or higher, or ability to attain Security+ CE certificate within 6 months. * Ability to be Program cleared. Preferred Qualifications * Program cleared * Current CSSLP, CISSP or other IAM III certification per DoD 8140 ## Description Northrop Grumman Aeronautics Systems has an opening for a Staff Cybersecurity Systems Engineer OR Senior Principal Cybersecurity Systems Engineer supporting the B-2 program. Cybersecurity Systems Engineer (CSE) assesses software and hardware for vulnerabilities, develops automation for cybersecurity processes, and investigates complex technical issues. The ideal applicant also guides/supports the security layout / architecture and influences the security tools selection and development. This individual evaluates/assesses the proposed and realized implementation to identify security risks and verify the cybersecurity protections from the design are realized and integrated. The position requires the ability to guide/support the development of verification efforts to ensure the cybersecurity protections / capabilities are functional, effective, and complete. As a Staff Cybersecurity Systems Engineer / Senior Principal Cybersecurity Systems Engineer on this team, you will have the following responsibilities: * Solve complex technical problems involving low level cybersecurity concepts. * Technical Leadership skills in cybersecurity concepts and tasks * Assess software static code analysis results. * Complete Cybersecurity Impact Appraisals/Evaluations on hardware projects * Generating and maintaining appropriate artifacts for Air Force authorization decisions. * Experience performing system vulnerability scans utilizing tools such as ACAS and STIGs. * Experience performing manual STIG / SRG verifications on disparate types of equipment including collecting and evaluating findings. Additional Responsibilities: * Perform system categorization based on impact analysis * Develop artifacts required for a Risk Management Framework (RMF) package: System Security Plan, Continuous Monitoring Plan, Risk Assessment Report, Security Control Traceability Matrix, Plan Of Actions & Milestones, etc * Participate and lead in systems engineering events across the system development lifecycle * Participate in Systems Engineering Technical Review (SETR) events across the system development lifecycle including PDR, CDR, SRR, TRR * Implement, review and assess cybersecurity system requirements verification/validation methods ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Small, Secure, Interconnected: The next Internet Protocol](https://www.wearedevelopers.com/videos/100062-small-secure-interconnected-the-next-internet-protocol) - [Model Based Systems Engineering in an Agile Product Development Process](https://www.wearedevelopers.com/videos/68-model-based-systems-engineering-in-an-agile-product-development-process) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)