Our Client - one of the Leading Defence companies is looking for Principal Engineer - Product Security (PSec Analyst) to join their team on a contract basis.
The PSA Principal Engineer will be a focal point for security and information risk matters within the Product Security Engineering (PSyE) team and will be able to apply their deep level of subject matter expertise and experience to ensure that submarine systems and products are delivered and can be managed and supported through-life. They will be able to support the appropriate authorities/management to ensure the delivered solutions meet the specified contractual and regulatory requirements and can be operated securely, correctly and safely.
Responsibilities:
- Provide advice on Product Security matters for programmes to a wide range of stakeholders which will include; System Engineers, Engineering Managers and Technical Authorities as required.
- Gain sufficient understanding of a system, its concept of use and architectures in order to provide an accurate assessment of Product Security in terms of possible threats, potential avenues of attack and to advise on the application of secure development practices.
- Be able to select appropriate Product Security techniques which are consistent and repeatable for use across a programme.
- Understand and be able to provide relevant guidance on the threat environment for a programme.
- Ensure that Product Security analysis of a project, system or equipment, is delivered and is managed using recognised risk analysis techniques
- Ensure that Product Security analysis work is fully documented, enabling the management of risk throughout the product lifecycle.
- Be able to contribute and influence the development of Product Security strategies, policies, guidance, good practices and awareness.
Skills:
- Good understanding of information security principles and is able to advise on the potential impact to Product Systems.
- Experience of Product Security Engineering activities in the defence, maritime or closely linked domain.
- Knowledge of security related activities required to support the engineering lifecycle with experience of operating in the phase relevant to the role.
- Proven experience of assessing and managing information risk in line with industry good practice.
- Experience of assessing and advising on controls to support Product Safety.
- Proven experience of applying Product Security/Information Security concepts to applicable technologies within the environment (or similar).