> Markdown version of [/jobs/ext/1909500-security-culture-improvement-incident-manager](https://www.wearedevelopers.com/jobs/ext/1909500-security-culture-improvement-incident-manager). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Culture Improvement & Incident Manager - **Company:** MBDA S.A.S. - **Location:** Stevenage, UK (Remote available) - **Salary:** £45,000.0 - **Contract:** Permanent contract - **Skills:** Cyber Security, SAP ERP - **Published:** August 4, 2026 - **Apply:** https://mbda.wd3.myworkdayjobs.com/MBDA-UK/job/Stevenage/Security-Culture-Improvement---Incident-Manager_R38615/apply ## About the Role * Experience in change or project management * Experience and knowledge to work functionally with key MBDA stakeholders and with our National customers to provide guidance and actively manage expectations to ensure MBDA is compliant with National Authority Security Standards. * Clear knowledge and experience of Government Functional Standard GovS 007: Security and Policy and Guidance for MOD Industry partners. * Skills and experience to provide guidance on inception and close down of projects/programmes in line with the contract, to ensure the good life cycle of classified and commercial information. * Understand customer security aspects to drive alignment of our services, solutions and departments to allow MBDA to prepare ahead and remain on schedule for business delivery. * Have the skills and experience to visible support to internal and external relevant planning meetings, forums and communities to build strong stakeholder networks with our customers and represent MBDA Security. * Provide engagement on the release of new security aspects, to align the relevant teams to minimise reputational risk and delivery issues and ensure smooth implementation. * Strong communication and consensus building skills. * Focussed on encouraging innovation and continual improvement * Alignment to business mission and programme level objectives * Provide efficient and effective issue resolution Desirable Criteria * Awareness of MOD policy in support of SAL and SGG requirements. * Hold protective security qualification or strong experience within MOD or defence industry security. * Member of a professional security body. * Able to achieve and maintain DV clearance. * Working knowledge of SAP and STRAP. ## Description This role focuses on identifying vulnerabilities, implementing security improvements, and ensuring that the MBDA is compliant with the latest security standards, regulations, and industry best practices. Supporting the overarching security culture improvement plan, the Security Culture Improvement & Incident Manager will collaborate with internal teams, external vendors, and stakeholders to enhance the security posture of MBDA. * The role of the Security Culture Improvement & Incident Manager is to provide security advice to identify and mitigate security risks in line with business needs at Programme level - physical, personnel. * Lead the incident response during security incidents in collaboration with other security senior management. * Detect, analyse and investigate security incidents. * Coordinate investigations into Physical, Personnel and Information Security incidents * Develop, implement, and maintain a comprehensive security improvement strategy in line with the Security Culture Improvement plan. * Measure and report MBDA UK security culture maturity * Identify, assess, and prioritise security vulnerabilities and weaknesses across the organization's infrastructure, operations, and technology. * Create and manage action plans for remediation and improvement, ensuring alignment with the organization's broader business objectives. * Stay up-to-date on evolving security threats, risk management frameworks, and compliance requirements (e.g.,GovS 007, FSC, IPSA, ISN/FSN's). * Perform regular risk assessments and audits to evaluate the effectiveness of current security controls. * Collaborate with the compliance and security teams and external stakeholders to ensure security strategies are in line with industry standards and regulatory requirements. * Implement systems and processes to continuously monitor security risks and vulnerabilities. * Generate and present reports on security performance, highlighting areas for improvement, successes, and progress on remediation efforts. * Regularly assess and report on the status of security improvement projects to senior leadership., Employees receive 25 days of paid annual leave per calendar year, in addition to all statutory and public holidays. After 5, 10 and 15 years of service, an additional day of annual leave is added to your allowance at each of these milestones. You can also enjoy more time off by purchasing up to an additional five days holiday through payroll., We trust our people to agree, within their teams, where and when they can be most effective. Our Dynamic Working policies allow individuals great levels of flexibility around the hours they work and where they work. Depending on your role and function, this may include options for paid overtime, dynamic leave (time in lieu) and more., Our MBDA Retirement Savings Plan is a 'Defined Contribution' plan in the Mercer Master Trust. The standard contributions are 4% of an employee's base salary and 6% employer contributions. You can increase both employee and employer contributions by up to 2%. Financial Awareness - Employees have access to free financial webinars hosted throughout the year, along with access to a financial education website which provides plenty of useful hints, tips and guidance on managing financial wellness. Share Incentive Plan - Acquire shares in our UK Shareholder, BAE Systems PLC, the scheme is tax efficient on shares purchased. Mortgage Advice - As part of our financial wellbeing initiative employees can access free of charge mortgage advice and webinars. Season Ticket Loan - Employees can borrow the value of public transport season ticket for bus or train journeys to and from work and spread the cost over 12 months. Critical Illness - To help reduce the financial impact after being diagnosed with a critical illness, employees receive a tax-free lump sum payment that can be used for any purpose including covering medical expenses, adjustments to lifestyle and more., Employee Assistance Programme - The Employee Assistance Programme is free, independent, confidential and is available 24 hours a day/365 days a year. Employees have access to short-term counselling (which includes up to 8 structured face to face, telephone or virtual sessions). Voluntary Private Medical Insurance - Private Medical Insurance offers three healthcare plans to suit your individual requirements for you and your family. Funded Private Medical Insurance - Eligible employees (Grade C & Above) are enrolled as standard into the company funded Private Medical Insurance benefit. Dental Insurance - The Dental Insurance benefit provides the option to claim cash back on everyday dental expenses such as, minor treatments, routine examinations, restorative treatment and more. There are six levels of cover available, with each level providing increased claim limits. Healthcare Cash Plan - The Healthcare Cash Plan benefit provides the option to claim cash back on everyday healthcare expenses such as optical, dental, health and wellbeing and more. There are six levels of cover available, with each level providing increased claim limits. Healthcare and Leisure - The Healthcare and Leisure benefit provides the option to claim cash back on everyday healthcare expenses such as medical fees, dentist fees, opticians and also provides access to special deals and concessions on sporting and recreational facilities. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Headless by Design: Building Enterprise Systems That Agents Can Actually Use](https://www.wearedevelopers.com/videos/100092-headless-by-design-building-enterprise-systems-that-agents-can-actually-use) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Organizational Change Through The Power Of Why - DevSecOps Enablement](https://www.wearedevelopers.com/videos/478-organizational-change-through-the-power-of-why-devsecops-enablement) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [UK Business Culture and Etiquette](https://www.wearedevelopers.com/magazine/326-uk-business-culture-and-etiquette) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers)