Product Cyber Resilience Manager
ExternalPart-timeHybrid1w ago
AgileComplianceDocumentationEmbedded SystemsIncident ResponseInformation Security
Prepare for this interview
EliteAI-generated questions, company research, and talking points tailored to this role
Responsibilities
- Ready to make your mark on next generation products and help define the resilience of tomorrow's defence technology?
- As a Product Cyber Resilience Manager, you will:
- Undertake the production of Security Managements Plans, work package descriptions and cost estimates in support of product bids, services and proposals.
- Review and provide guidance of security risk assessments, risk mitigation plans, mitigation gap analysis and preparation of security management documentation for system Accreditation, such as solution hardening guidance and security operating procedures.
- Defining product security requirements, advising development teams on suitable implementation standards and techniques and overseeing product development activities.
- Liaison with Security Accreditors and Security Assurance Coordinators in support of security Accreditation.
- Participate in internal and external discipline working groups and with academic partners covering Product Cyber Resilience and Product Security for various established and emerging standards.
- Contribute to continual improvement of the engineering capability.
Requirements
- Experience with product security assessment methods or security risk management systems for complex products based on a recognised framework in a highly regulated industry such as aerospace, nuclear, automotive, rail or oil & gas.
- Practical experience of the System Development Life Cycle, Software Development Life Cycle, V-Models and Agile frameworks.
- Experience in managing product information security, including risk assessment, threat modelling, vulnerability management, and incident response.
- Strong knowledge of cybersecurity standards and best practices, such as ISO 27001, NIST Cybersecurity Framework, and Knowledge of UK/NATO Information Assurance/Accreditation frameworks; Familiarity with the application of cyber resilience controls to embedded systems.
- Experience with cybersecurity tools and technologies, such as SIEM, IDS/IPS, DLP, and endpoint protection.
- Proficiency in cybersecurity frameworks, such as MITRE ATT&CK and the Cybersecurity Capability Maturity Model (CMMC).
- Certifications such as CISSP, CISM, or CEH are a plus.
- This is not an exhaustive list, and we are keen to hear from you even if you might not have experience in all the above. The most important skill is a good attitude and willingness to learn.
- Security Clearance
- You must have the ability to obtain UK SC security clearance and work within UKEO and US ITAR TAA restrictions.
- Why join us
- At Leona
Benefits
Equity / stock options
Additional Information
Job Description: Salary: £60,000 to £80,000 Leonardo UK operates a grade-based salary framework with broad bands. The salary range shown reflects the approved grade band for this role, or a narrower hiring range published within that band, and is benchmarked against the external market. Exceptions above the standard range are managed through governance controls to protect internal equity.
Your Match
How well this role fits your profile.
Company Intel
What employees say
Worked at leonardocompany? Share your experience