Product Cyber Resilience Manager driving innovation at Leonardo with a focus on cybersecurity management. Responsible for security strategies and product assurance across multiple teams in the UK.
Responsibilities
Undertake the production of Security Managements Plans, work package descriptions and cost estimates in support of product bids, services and proposals.
Review and provide guidance of security risk assessments, risk mitigation plans, mitigation gap analysis and preparation of security management documentation for system Accreditation, such as solution hardening guidance and security operating procedures.
Defining product security requirements, advising development teams on suitable implementation standards and techniques and overseeing product development activities.
Liaison with Security Accreditors and Security Assurance Coordinators in support of security Accreditation.
Participate in internal and external discipline working groups and with academic partners covering Product Cyber Resilience and Product Security for various established and emerging standards.
Contribute to continual improvement of the engineering capability.
Responsible for the management of Product Security Risk of all the product families within your sector.
Accountable to the respective product family System Design Authority (the Risk Owner), providing subject matter advice to the Integrated Product Team, whilst collaborating with fellow Product Cyber Resilience Managers (PCRMs) across the Electronics Business Unit.
Conducting risk assessments, developing and implementing product security strategies and collaborating with cross-functional teams, including Leonardo's Cyber Security Business Unit, to embed product and cyber security best practices throughout the product development lifecycle.
Support product assurance activities to verify compliance to those objectives and the transition to operations and ongoing through-life support.
Requirements
Bachelor's degree in Electronics Engineering and/or a related subject e.g. functional safety assessment methods or safety risk management system for complex products based on a recognised framework in a highly regulated industry such as aerospace, nuclear, automotive, rail or oil & gas
Practical experience of the System Development Life Cycle, Software Development Life Cycle, V-Models and Agile frameworks.
Experience in managing product information security, including risk assessment, threat modelling, vulnerability management, and incident response
Strong knowledge of cybersecurity standards and best practices, such as ISO 27001, NIST Cybersecurity Framework, and Knowledge of UK/NATO Information Assurance/Accreditation frameworks;
Familiarity with the application of cyber resilience controls to embedded systems.
Experience with cybersecurity tools and technologies, such as SIEM, IDS/IPS, DLP, and endpoint protection
Proficiency in cybersecurity frameworks, such as MITRE ATT&CK and the Cybersecurity Capability Maturity Model (CMMC)
Excellent problem-solving and analytical skills
Certifications such as CISSP, CISM, or CEH are a plus
Security Clearance: Must have the ability to obtain UK SC security clearance and work within UKEO and US ITAR TAA restrictions.
Benefits
Time to Recharge: Enjoy generous leave with the opportunity to accrue up to 12 additional flexi-days each year.
Secure your Future: Benefit from our award-winning pension scheme with up to 15% employer contribution.
Your Wellbeing Matters: Free access to mental health support, financial advice, and employee-led networks championing inclusion and diversity (Enable, Pride, Equalise, Armed Forces, Carers, Wellbeing and Ethnicity).
Rewarding Performance: All employees at management level and below are eligible for our bonus scheme.
Never Stop Learning: Free access to 4,000+ online courses via Coursera and LinkedIn Learning.
Refer a friend: Receive a financial reward through our referral programme.
Tailored Perks: Spend up to £500 annually on flexible benefits including private healthcare, dental, family cover, tech & lifestyle discounts, gym memberships and more.
Flexible working: Flexible hours with hybrid working options.
Trackwork Installation Manager overseeing installation activities on Surrey - Langley SkyTrain project. Leading teams and ensuring safety, quality, and schedule compliance throughout all project phases.
Commercial Program Manager at Royal Caribbean Group translating strategy into execution. Planning, coordinating initiatives, owning processes, and driving improvements across teams in Miami.
Manager Fleet & Transportation Strategy overseeing national fleet operations in electrical supply distribution. Focus on optimizing logistics, compliance, and carrier management in a hybrid role.
Technology Transformation Manager providing advisory services in developing IT operating models. Collaborating on technology strategies and transformation for clients in various sectors.
Sales Manager for Assembly products in North Mexico, responsible for business development with distributors and end customers. Focus on sales growth, strategies, and technical support.
Communication Manager responsible for developing impactful content for Agrifirm's Ruminants segment. Focused on activating and converting customers through various marketing channels.
Deputy Restaurant Manager leading operational restaurant tasks while managing a young team. Providing team training and ensuring quality and service goals at a popular eatery in Mainz.
Manufacturing Manager at SPX Technologies overseeing EM assembly operations in Fremont, California. Responsible for EHS and facility management while ensuring production quality and efficiency.