Standard Job Description
Lockheed Martin is seeking a junior Cyber Systems Security Engineer for engineering and IT cybersecurity. This Enterprise Operations role supports Lockheed Martin Space Information Security Office supporting the LM Space Business Area.
What You Will Be Doing:
In this role, you will be responsible for conducting threat analysis and modeling, defining security requirements, analyzing and testing the environment against the requirements, recommending remediation for identified risks, documenting the security posture of the environment, including unmitigated risks. Additionally, you will provide security engineering designs and implementation in all aspects of Information Assurance, Information Security (InfoSec), and Network Security Engineering. You will assess and mitigate system security threats/risks throughout the program life cycle; validate system security requirements definition and analysis; establish system security designs; implement security
designs in hardware, software, data, and procedures; verify security requirements; perform system certification and accreditation planning and testing and liaison activities; and
support secure systems operations and maintenance.
Further Information About This Opportunity:
This role is mostly remote with occasional support needed onsite at LM Space locations. Preference is for location alignment to these locations:
- Huntsville, AL
- King of Prussia, PA
- Titusville, FL
- Denver, CO
- Sunnyvale, CA
US Citizenship is required, with eligibility for Secret clearance.
In light of current internal business pressures, priority consideration will be given to qualified candidates who are currently affiliated with the Enterprise Operations’ EBDT Enterprise Business & Digital Transformation) organization. #EBDT
Responsible for applying an interdisciplinary, collaborative approach to plan, design, develop, validate and verify Cyber solutions across the lifecycle. Conduct cyber risk assessment activities including threat modeling, vulnerability analysis and analysis of mitigation solutions. Coordinates and addresses Supply Chain risk management concerns. Develop, evaluate and analyze design constrains, trade-offs and detailed system and security design as they pertain to the Cyber domain. Coordinate with Cyber and system architects and developers to provide oversight in the development of solutions. Conduct cybersecurity test and evaluation of hardware and/or software designs to verify and validate compliance with defined specifications and requirements. Employs cyber security processes, methods, techniques and tools and assure their consistent application. Implements appropriate Assessment and Authorization activities as required by customers.
Basic Qualifications
- Experience in Information Assurance and security engineering principles (application security, security testing, computer security, etc)
- Strong understanding of the 7 layers of Open Systems Interconnection model
- Experience or familiarity with DevSecOps
- Familiary with forward and reverse web proxies and stateful firewalls
- Substantial knowledge of networking principles (routine protocols, layer 2 switching, wireless networks, etc)
- Familiarity with security controls and encryption
- Familiarity with Identity and Access Management principles used for authentication (public key cryptography, PKI certifications, etc)
- Familiarity or experience with AWS & elastic computing principles (including physical/cloud security architectures, software defined network constructs, etc)
- Familiarity or experience with Threat Models such as STRIDE and threat modeling techniques
- Strong communication and collaboration skills
- US Citizenship with eligibility for DoD Secret Clearance
Desired Skills
- Experience or familiarity with software development
- Knowledge of LM security policies and Information Protection Manual (IPM).
- CISSP, CISM or other relevant security certification • Working knowledge of LM scanning and vulnerability remediation, CyRIS and exception processes.
- Knowledge of Cyber DFARS, CMMC, NIST, SP 800 series and FIPS
- Knowledge of networks, especially enterprise grade 802.11 architectures.
- Familiarity with Hashing, Salting, and other cryptographic methodologies and approaches.
- Understanding of OWASP Top 10 Web Application Security Risks and their countermeasures
- Understanding of the SANS Top 25 Most Dangerous Software Errors and their countermeasures
- Experience analyzing the security posture of a system from hardware, networking, and software perspectives
- Understanding of common enterprise services as it intersects with large scale corporate networks
- Active DoD Secret Security Clearance
Pay Information
GeoZone Definition: GeoZones are geographic groupings created by Lockheed Martin to align compensation ranges with regional labor markets and cost-of-labor differences across the United States. Locations are assigned a Geo Zone based on the primary work location of the role.
- Full-time salary range (GEOZONE 1): $101400.00 - $188200.00
- Includes metropolitan areas such as Sunnyvale CA; Pal Alto, CA; New York City metropolitan area; Newark, New Jersey; etc.
- Full-time salary range (GEOZONE 2): $91200.00 - $169400.00
- Includes metropolitan areas such as Denver, CO; King of Prussia, PA; Stratford, CT; Moorestown, NJ; etc.
- Full-time salary range (GEOZONE 3): $81100.00 - $150500.00
- Includes metropolitan areas such as Dallas–Fort Worth, TX; Orlando, FL; Grand Prairie, TX; Marietta, GA; etc.
- Full-time salary range (GEOZONE 4): $72900.00 - $135500.00
- Includes metropolitan areas such as Camden, AR; Lexington, KY; Ocala, FL; Lufkin, TX; etc.
At Lockheed Martin, we know mission success starts with taking care of our people. Our Total Rewards program is designed to attract top talent, support your well-being, and help you grow—both professionally and personally.
The salary range for this position is as listed on the requisition. Please note that the salary information listed is a general guideline only.
Lockheed Martin considers factors such as (but not limited to) scope and responsibilities of the position, candidate's work experience, education/ training, key skills as well as market(work location) and business considerations when extending an offer.
Benefits offered: Medical, Dental, Vision, Flexible work arrangements and schedules (e.g., 4x10), 401(k) match, Paid time off, Holidays, Parental Leave, EAP, Flexible Spending Accounts, Education Assistance, Life Insurance, Short-Term Disability, and Long-Term Disability.
- Annual short-term and/or long-term incentive compensation programs may be offered depending on the position. Payments under these annual programs are not guaranteed and can vary from year to year and are tied to a range of performance metrics.
- For (Washington state applicants only) Non-represented full-time employees: accrue at least 10 hours per month of Paid Time Off (PTO) to be used for incidental absences and other reasons; receive at least 90 hours for holidays. Represented full time employees accrue 6.67 hours of Vacation per month; accrue up to 52 hours of sick leave annually; receive at least 96 hours for holidays. PTO, Vacation, sick leave, and holiday hours are prorated based on start date during the calendar year.