Product Cyber Resilience Manager driving innovation at Leonardo with a focus on cybersecurity management. Responsible for security strategies and product assurance across multiple teams in the UK.
Responsibilities
Undertake the production of Security Managements Plans, work package descriptions and cost estimates in support of product bids, services and proposals.
Review and provide guidance of security risk assessments, risk mitigation plans, mitigation gap analysis and preparation of security management documentation for system Accreditation, such as solution hardening guidance and security operating procedures.
Defining product security requirements, advising development teams on suitable implementation standards and techniques and overseeing product development activities.
Liaison with Security Accreditors and Security Assurance Coordinators in support of security Accreditation.
Participate in internal and external discipline working groups and with academic partners covering Product Cyber Resilience and Product Security for various established and emerging standards.
Contribute to continual improvement of the engineering capability.
Responsible for the management of Product Security Risk of all the product families within your sector.
Accountable to the respective product family System Design Authority (the Risk Owner), providing subject matter advice to the Integrated Product Team, whilst collaborating with fellow Product Cyber Resilience Managers (PCRMs) across the Electronics Business Unit.
Conducting risk assessments, developing and implementing product security strategies and collaborating with cross-functional teams, including Leonardo's Cyber Security Business Unit, to embed product and cyber security best practices throughout the product development lifecycle.
Support product assurance activities to verify compliance to those objectives and the transition to operations and ongoing through-life support.
Requirements
Bachelor's degree in Electronics Engineering and/or a related subject e.g. functional safety assessment methods or safety risk management system for complex products based on a recognised framework in a highly regulated industry such as aerospace, nuclear, automotive, rail or oil & gas
Practical experience of the System Development Life Cycle, Software Development Life Cycle, V-Models and Agile frameworks.
Experience in managing product information security, including risk assessment, threat modelling, vulnerability management, and incident response
Strong knowledge of cybersecurity standards and best practices, such as ISO 27001, NIST Cybersecurity Framework, and Knowledge of UK/NATO Information Assurance/Accreditation frameworks;
Familiarity with the application of cyber resilience controls to embedded systems.
Experience with cybersecurity tools and technologies, such as SIEM, IDS/IPS, DLP, and endpoint protection
Proficiency in cybersecurity frameworks, such as MITRE ATT&CK and the Cybersecurity Capability Maturity Model (CMMC)
Excellent problem-solving and analytical skills
Certifications such as CISSP, CISM, or CEH are a plus
Security Clearance: Must have the ability to obtain UK SC security clearance and work within UKEO and US ITAR TAA restrictions.
Benefits
Time to Recharge: Enjoy generous leave with the opportunity to accrue up to 12 additional flexi-days each year.
Secure your Future: Benefit from our award-winning pension scheme with up to 15% employer contribution.
Your Wellbeing Matters: Free access to mental health support, financial advice, and employee-led networks championing inclusion and diversity (Enable, Pride, Equalise, Armed Forces, Carers, Wellbeing and Ethnicity).
Rewarding Performance: All employees at management level and below are eligible for our bonus scheme.
Never Stop Learning: Free access to 4,000+ online courses via Coursera and LinkedIn Learning.
Refer a friend: Receive a financial reward through our referral programme.
Tailored Perks: Spend up to £500 annually on flexible benefits including private healthcare, dental, family cover, tech & lifestyle discounts, gym memberships and more.
Flexible working: Flexible hours with hybrid working options.
Technical Packaging Manager providing expertise in packaging technology for Haleon's healthcare brands. Responsible for ensuring compliance and optimizing packaging processes within a dynamic supply chain team.
Global Acquisitions Manager responsible for sourcing content for UKTV channels. Collaborating with stakeholders and negotiating deals across multiple territories in a hybrid working environment.
CRE Credit Products Portfolio Manager II managing complex commercial credit transactions and loan portfolios. Analyzing credit risk, negotiating loan terms, and providing strategic support to team members, ensuring client success.
Practice Manager at Shriners Children’s overseeing daily clinic operations and fostering multidisciplinary collaboration. Driving continuous improvement in quality care and patient experiences at pediatric specialty care.
Projektmanager:in für effiziente technische Lösungen in der Herstellung von Kabeln und Leitungen. Engagierte Zusammenarbeit mit internationalen Sales und Kundenbetreuung im Maschinen - und Anlagenbau.
Product Manager at Westinghouse Electric Company shaping future energy in nuclear sectors. Leading product development and ensuring optimal project execution for market needs.
Safety Manager overseeing implementation of safety programs for construction projects at JE Dunn. Collaborating with teams for compliance and safety audits while promoting diversity and inclusion.
Food Service District Manager overseeing food services at Bluewater Market locations in Charleston, SC. Driving operational excellence, profitability, and team development across multiple restaurant locations.
Gerente liderando a entrega de soluções tecnológicas na NEKI, alinhando necessidades dos clientes e objetivos estratégicos, promovendo eficiência operacional.