I'm looking for a Cyber Security Engineer to join a leading Defence organisation that can be based out of any of the following sites: Frimley, Bristol, Weymouth, Portsmouth, Barrow or Brough.
What you'll be doing:
- Building a risk based set of cyber security requirements for a system or sub system, providing technical guidance and support for all aspects of cyber security and resilience
- Conducting cyber security analysis work, developing threat taxonomies, security architectures, security baselines and risk mitigation
- Producing test plans-and schedules together conducting informal and formal cyber security testing
- Supporting engineering gated reviews and design assurance activities
- Production of security artefacts such as risk registers, security assurance cases, plans and schedules
- Provide security input into related engineering documentation
Essential Skills:
- Degree (or equivalent experience) in a relevant STEM subject or Information Security related
- Recognised industry qualifications like CCP, CISSP, CISM (or able to achieve)
- Proven experience of assessing and managing risk in line with industry good practice (NIST, ISO 27001)
- Significant experience with using security baselines, mitigations and controls
- Engineering background and or strong familiarity with a life cycle phased approach
Desirable Skills:
- Experience of Product Security activities in the defence, maritime or closely linked domain
- Experience of MOD Policies and regulations such as SPF, JSP 440 and JSP604 and production of Risk Management Accreditation Document Set (RMADS)
- Knowledge of the challenges affecting security of Operational Technologies/ Industrial Control Systems and approaches to secure them
- Project Management exposure
The salary is 60,000 to 70,000 plus benefits and is a hybrid role.
You MUST be eligible for SC Clearance to be considered for this position.