6 дней назад
Security Assurance Analyst (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Security Assurance Analyst (Cybersecurity): Conducting security design reviews, assessments, and assurance for defence and aerospace IT programmes with an accent on security controls, compliance verification, threat modelling, and risk mitigation. Focus on evaluating IT architectures, validating control implementation, supporting certification and accreditation, and communicating security findings to technical and customer stakeholders.
Location: Farnborough, United Kingdom; onsite 5 days per week. Candidates must meet applicable UK Government and contractual personnel security and residency requirements and have the right to work in the United Kingdom. Some roles may also have nationality requirements.
Company
provides technology services and supports defence, aerospace, government, and enterprise IT programmes.
What you will do
- Lead security design reviews and assessments of IT architectures, design documentation, threat models, and security specifications.
- Identify security gaps and residual risks, then recommend controls and mitigation strategies.
- Verify compliance with Defence Security Policy, Classification Guides, ITAR, export controls, IS1/IS1A, and data-handling requirements.
- Work with architects, infrastructure, network, application, and customer security teams in joint design meetings and architecture workshops.
- Prepare assessment reports, security control specifications, risk matrices, compliance traceability matrices, and executive summaries.
- Validate security controls, review security test plans, and support certification and accreditation activities.
Requirements
- Experience in information security, security assessment, or security assurance roles.
- Demonstrated experience conducting security design reviews and assessments, preferably within defence, aerospace, or government security programmes.
- Experience with security certification and accreditation processes and team management in a security or joint design team function.
- Strong knowledge of security controls, network, infrastructure, application and data security, threat modelling, and risk assessment methodologies.
- Knowledge of ITAR regulations, export controls, ISO 27001, NIST CSF, and common IT architectures and technologies.
- Strong analytical, leadership, communication, collaboration, and problem-solving skills.
Culture & Benefits
- In-person collaboration is prioritised through the work model.
- Flexibility is provided to support wellbeing, productivity, individual work styles, and life circumstances.
- Inclusive and accessible working environment with reasonable adjustments throughout the hiring process.
- Commitment to diverse teams and a supportive workplace.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
2 дня назад
Security Architect IV (Cybersecurity)
6 дней назад
Security Risk Analyst (Cybersecurity)
55 000GBP
1 день назад
IAM Governance Specialist (Cybersecurity)
5 дней назад
GRC Consultant (Cybersecurity)
5 дней назад
OT Security Consultant
5 дней назад