Cyber Security Engineer
Lancing (West Sussex) Infra / Networks / Telecom
Job description
Airbus Defence and Space GmbH
Airbus is a global leader in aeronautics, space and related services. In 2018 it generated revenues of € 64 billion and employed a workforce of around 134,000. Airbus offers the most comprehensive range of passenger airliners. Airbus is also a European leader providing tanker, combat, transport and mission aircraft, as well as one of the world's leading space companies. In helicopters, Airbus provides the most efficient civil and military rotorcraft solutions worldwide.
Our people work with passion and determination to make the world a more connected, safer and smarter place. Taking pride in our work, we draw on each other's expertise and experience to achieve excellence. Our diversity and teamwork culture propel us to accomplish the extraordinary - on the ground, in the sky and in space.
Job Description
A vacancy for a Senior Cyber Security Engineer (d/m/w) has arisen within Airbus Defence and Space in Manching. The successful applicant will join „Product Security Military Aircraft' .
Job Description:
The jobholder will contribute to ensure the Security of Airbus products, supporting services and systems across Airbus Defence and Space.
The jobholder will be joining a team in charge of the analysis, definition and specification of the security aspects of Airbus DS products and their development, test, integration, production and support systems for Military Aircraft, Space Systems, CIS and UAS Business Lines, throughout their lifecycle.
The jobholder will be a key member TEIS supporting Military Aircraft and UAS business lines in Manching, initially MALE RPAS Programme (both Aircraft and Ground Support Systems), and work collaboratively with TEIS colleagues in Spain, Germany France and the UK to achieve the required deliverables for Military Aircraft and UAS programmes.
The jobholder will contribute to the security activities of the MALE RPAS programme.
The jobholder may also have a supporting role in the Product Security activities on the FCAS programme.
The jobholder may also be required to utilise their expertise and represent Airbus Defence and Space, thus TEIS, at Airbus transversal meetings and collaborative workshops.
The Job holder will report into the Product Security Team Lead for Military Aircraft.
Tasks and Responsibilities: In support of the Business Line the main tasks and responsibilities will be focused on:
- Assist Programme management, Chief Engineer Office and supply chain in Technical oversight of the major sub-contractors with regards to INFOSEC activities.
- Performance of security risk analysis (threat and vulnerability assessment) on products and supporting information systems.
- Definition of security requirements for products and information systems.
- Design of security architectures for products and information systems.
- To specify and assist in the development of security measures to protect and defend Airbus products and systems by ensuring their confidentiality, integrity and availability.
- Work proactively to ensure the compliance of the security requirements, thus implementation, with any applicable national and international security regulations.
- Provision of innovative technology solutions in term of information security.
- Support assessments and audits of the information security aspects of projects and product lines across Airbus Defence and Space to ensure compliance with Airbus business, customer and national security requirements.
- Supporting programs and projects in the definition and production of product security documents and records in line with customer national security requirements and Airbus business requirements.
- To develop, review and improve the Airbus product security policies, methods and tools
- To assist projects and programmes in the development of secure configuration guidelines for products and systems.
- To specify and support penetration testing and health checks on products and systems.
- Support a culture of engagement across the engineering organization, which emphasizes shared responsibility in achieving secure designs.
- Conduct formal compliance process (security evaluation, certification and accreditation processes) in accordance to the appropriate criteria and methodologies. (CC/CEM, ITSEC/ITSEM) and the national and NATO security regulations.
- Perform information systems security evaluation for verification and validation processes.
- Perform security technical audits.
- Production of the security operating procedures to guarantee the security of information systems throughout their lifecycle.
The successful candidate will be subjected to a NATO/National security clearance in order to undertake related work in accordance with the business needs.
This role will involve occasional travel for business and as such the jobholder must be able to travel according to the business needs.
You have the following knowledge and qualifications:
- University degree in telecommunications, computer science or similar
- Sound understanding of information security standards and their implementation (Mainly oriented towards ISO27001, but knowledge in other fields (Frameworks like NIST, desirable).
- Derivation of system security requirements and architectural design for systems and applications.
- Conduct a maturity assessment of products and systems.
- Familiarity with the threat and risk analysis methods and tools used within NATO. (EBIOS/PILAR/MAGERIT).
- Implementation of decisions in the area of safety risk management and necessary mitigation measures.
- Preparation and management of product safety documentation.
- Assessment of the impact of legislative changes on product safety.
- Understanding the safety management concepts within customer organizations across the customer base of Airbus Defence and Space.
- Understanding the EUROCAE Aviation Cyber Security processes, tools and documentation. (ED202, ED203)
- Sound knowledge of information security and information systems.
- Knowledge of NATO/National Security Regulations.
- Sound knowledge of security assessment, certification and accreditation procedures.
- Sound understanding of network and communication protocols.
- Strong team spirit
- Excellent interpersonal and strong leadership qualities.
- Strong oral and written communication skills.
- Enthusiastic and proactive approach.
- Advanced level in English.
- Ability to learn and grow in an evolving environment.
- Ability to work in a cross-sectional function.
This job requires an awareness of any potential compliance risks and a commitment to act with integrity, as the foundation for the Company’s success, reputation and sustainable growth.
By submitting your CV or application you are consenting to Airbus using and storing information about you for monitoring purposes relating to your application or future employment. This information will only be used by Airbus.
Airbus is committed to achieving workforce diversity and creating an inclusive working environment. We welcome all applications irrespective of social and cultural background, age, gender, disability, sexual orientation or religious belief.