> Markdown version of [/jobs/ext/3552289-principal-cyber-systems-engineer](https://www.wearedevelopers.com/jobs/ext/3552289-principal-cyber-systems-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Principal Cyber Systems Engineer - **Company:** Northrop Grumman - **Location:** San Diego, CA, United States - **Experience:** Experienced - **Salary:** $125,300.0 - $187,900.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Systems Engineering, Cyber Security, Data Transmissions, Linux, Intrusion Detection Systems, Network Protocols, Red Hat Enterprise Linux, Penetration Tools, Scripting, Splunk, Plan of Action and Milestones - **Published:** October 2, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9209512/principal-cyber-systems-engineer ## About the Role * Bachelors degree in science, engineering, or related discipline with 5 years of technical experience; or 3 years of relevant experience with a Masters degree; or 1 year with a PhD * Current DoD 8570 IAT Level II Certification (Security+) or higher. * Candidate must be a US Citizen * Experience translating technical concepts and program information to others. * Clearance: A current/active DoD Secret clearance * undefined Preferred Qualifications for Principal Cyber Systems Engineer: * In-depth knowledge of DoD 8500-series directives. * Excellent communication (written and oral), negotiation and interpersonal skills necessary to support known activities/challenges working with engineering teams, management, customers, partners and government. * System Administrator Experience with Red Hat Enterprise Linux and Windows Systems * In-depth understanding of planning, design, and implementation necessary to support a large enterprise system. * Working knowledge of NIST 800-series documents * Experience with configuring Security Incident Event Monitoring and IDS/IPS tools such as ACAS, ESS, and Splunk on Linux RedHat and Windows environments. * Experience with vulnerability and compliance scanners such. * Working experience deploying and configuring Linux and Windows systems in accordance with DoD STIG requirements. * Experience in developing scripts to automate security processes. * In-depth systems engineering knowledge to include understanding of systems engineering lifecycle. * Experience in managing stakeholder expectations, programmatic risk management, and customer engagement. ## Description * Design, plan, implement, and perform assessment of security controls, polices, and processes that are compliant with National Security Agency (NSA) programs and DoD wide frameworks such as Risk Management Framework (RMF) and CMMC. * Participate in assessment of systems security controls to validate control implementation and identify weaknesses. * Document the results of Certification and Accreditation activities, technical or coordination activity, prepare the system Security Plans, and update the POA&M. * Periodically conduct a complete review of each system's audits and monitor corrective actions until all actions are closed Implementation, automation, configuration and maintenance of security tools, centralized authentication solutions, IDS/IPS, and compliance baselines. * Provide advanced technical analyses of cyber infrastructure challenges and problems; develop/identify technical solutions responsive to customer needs. * Participate in team reviews of technical requirements, design and implementation plans prior to deployment. * Recommend and implement system enhancements that will improve the performance, reliability, and security of the system including installing, upgrading, monitoring, problem resolution, and configuration. * Serve as a Cyber SME supporting high-level technical and practical expertise. * Assures the implementation of Cyber Security disciplines, including COMSEC, EMSEC, OPSEC, digital communications systems, network protocols and architectures, and penetration tools and techniques. * Support the continuous assessment of Cyber Control compliance for systems within their responsibility. ## Related Videos - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Intermediate Bitcoin Script](https://www.wearedevelopers.com/videos/25-intermediate-bitcoin-script) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [7 Important Tips That Every Software Developer Should Know](https://www.wearedevelopers.com/magazine/101-7-important-tips-that-every-software-developer-should-know)