Key Responsibilities
- Undertake security risk assessments, mitigation planning and gap analysis.
- Define and manage Product Security requirements across the product lifecycle.
- Produce Security Management Plans, Security Cases, SOPs and wider assurance documentation.
- Advise engineering teams on secure product design, platform hardening and security controls.
- Support penetration testing, analyse findings and drive remediation.
- Liaise with internal and external security assurance authorities, including Defence stakeholders and the NCSC.
- Manage through-life security including vulnerability, patch and obsolescence management.
- Support security activities across development, testing and manufacturing.
- Contribute to Product Security policies, processes and training.
What We're Looking For
- Proven Product Security / Security Engineering experience within Defence, Aerospace, military or complex engineering environments.
- Active SC Clearance – essential.
- Strong understanding of UK MOD Secure by Design and Defence security assurance.
- Experience with frameworks including GovS 007, HMG IS1/IS2, ISO 27001, NIST and MOD JSPs.
- Understanding of Systems Engineering, V&V, Product Test experience
- Experience with product-specific OS, firmware and software security controls.
This is an excellent opportunity for an SC-cleared security professional who wants to work at the intersection of Cyber Security, Product Security and Defence Engineering, influencing security from initial design through to deployment and in-service support.