Cyber Security Design Authority
Role details
Job location
Tech stack
Job description
List core activities here that the role will be required to conduct & deliver
- Act in capacity as the Cyber Design Authority (DA) across the Thales Business Line (BL) Programme covering Core, Low & High team activities, services & deliverables with a direct reporting line to the UK Chief Product Security Officer and BL Technical Director.
- Ensure adherence to and intelligent application of Thales UK Cyber Engineering Governance and processes across all BL activities.
- Support cybersecurity maturity development of BL, including cybersecurity knowledge transfer and upskilling to senior BL staff.
- Assess and assure cybersecurity aspects of products and solutions through life. This includes, but is no limited to, assessing key cybersecurity approach, the cyber engineering artefacts and the overall security case.
- Provide guidance on the applicable Policies & Standards required for the relevant industrial applications.
- Evaluation and guidance for technology selection and the impact to security / cyber risks.
Requirements
-
Able to operate in multi stakeholder environments with the ability to influence to ensure right outcomes are reached.
-
Able to select and follow structured processes to identify threats, vulnerabilities, assess exposure and identify & mitigate security risks.
-
Ability to guide teams to take systems through formal assurance and acceptance including working with customer organisations and 3rd parties.
-
Ability to apply secure by design approach through engineering lifecycle and in service.
-
Ability to understand where and how key cybersecurity technologies are applied, the fundamentals behind the technology and the ability to assess suitability of candidate products.
-
Ability to articulate (and distinguish between) cyber security and cyber resilience approaches. Experience:
-
5 years + in senior Cyber Security Engineering roles.
-
Proven experience of guiding complex projects through security risks and mitigation activities.
-
Working with external partners and accreditation bodies.
-
Experience of applying cybersecurity to OT, IOT and/or embedded environments., + Engineering degree or equivalent in an appropriate field. Desirable:
-
CISSP Accreditation
-
CCP Architect
-
SABSA Chartered Security Arch - Foundation & Practitioner
-
IEng/CEng Behaviours & Motivation/Aptitude:
-
Enthusiastic about the way in which Cybersecurity & Trust will make the world a safer place.
-
Possess a desire to expand knowledge and continually acquire new knowledge & skills required for the job & personal growth.
-
Connects at a deep level with others; is a trusted adviser to top stakeholders; develops and maintains a network of influential players in the industry critical to Thales's future success.
-
Makes timely, high-impact, high-quality decisions in uncertain and ambiguous contexts; sees these through to completion. This role will require SC Clearance. It would be advantageous if currently held, however, if not currently held, it is a requirement that the successful applicant will undergo, achieve, and maintain SC Clearance. Please visit the UKSV website for further guidance. To be eligible for full SC, you generally need to have resided in the UK for the last 5 years. In some circumstances, a minimum of 3 years' residence in the UK over the last 5 years may be accepted, with additional overseas checks.