At a Glance
- Tasks: Lead cyber security efforts, analyze threats, and create security plans for submarine systems.
- Company: Join BAE Systems, a leader in defense technology, committed to innovation and security.
- Benefits: Enjoy flexible working, competitive pension, enhanced leave, and employee discounts.
- Why this job: Make a real impact in a diverse team while supporting national security initiatives.
- Qualifications: Degree in STEM or Information Security; industry certifications like CISSP preferred.
- Other info: Relocation support available; inclusive culture welcoming diverse backgrounds.
The predicted salary is between 48000 - 72000 £ per year.
<b>Job Description</b><p><b>Job Title: </b>Principal Engineer – Cyber Security</p>n<p><b>Location: </b>Coventry. We offer a range of hybrid and flexible working arrangements – please speak to your recruiter about the options for this particular role. </p>n<p><b>Salary: </b>Competitive</p>n<p></p>n<p><b>What you’ll be doing: </b></p>n<ul>n<li>Building a risk based set of cyber security requirements for a system or sub system, providing technical guidance and support for all aspects of cyber security and resilience </li>n<li>Conducting cyber security analysis work, developing threat taxonomies, security architectures, security baselines and risk mitigations</li>n<li>Producing test plans-and schedules together conducting informal and formal cyber security testing</li>n<li>Supporting engineering gated reviews and design assurance activities</li>n<li>Production of security artefacts such as risk registers, security assurance cases, plans and schedules. Provide security input into related engineering documentation</li>n</ul>n<p><b>Your skills and experiences: </b></p>n<p>Essential: </p>n<ul>n<li>Degree (or equivalent experience) in a relevant STEM subject or Information Security related</li>n<li>Recognised Industry Security Qualifications, e.g. CCP, CISSP, CISM (or able to achieve)</li>n<li>Proven experience of assessing and managing risk in line with industry good practice (NIST, ISO 27001)</li>n<li>Significant experience with using security baselines, mitigations and controls</li>n<li>Engineering background and or strong familiarity with a life cycle phased approach</li>n</ul>n<p>Desirable: <b> </b></p>n<ul>n<li>Experience of Product Security activities in the defence, maritime or closely linked domain</li>n<li>Experience of MOD Policies and regulations such as SPF, JSP 440 and JSP604 and production of Risk Management Accreditation Document Set (RMADS)</li>n<li>Knowledge of the challenges affecting security of Operational Technologies/ Industrial Control Systems and approaches to secure them</li>n<li>Project Management exposure</li>n</ul>n<p><b>Benefits: </b></p>n<p>You’ll receive benefits including a competitive pension scheme, enhanced annual leave allowance and a Company contributed Share Incentive Plan. You’ll also have access to additional benefits such as flexible working, an employee assistance programme, Cycle2work and employee discounts – you may also be eligible for an annual incentive.</p>n<p><b>The Engineering Delivery Team:</b></p>n<p>The team designs, builds, integrates and provides through life support to all the Submarine Platforms in the Royal Naval fleet. You will ensure the submarine systems and products are developed to support the delivery of an appropriately secure and resilient product. </p>n<p>To support our ongoing need to recruit the best engineering talent, BAE Systems Submarines is delighted to shortly be opening a brand new office in Coventry. BAE Systems Submarines is experiencing a period of significant growth and we are now actively recruiting a variety of roles and specialisms to support our ongoing submarines programs which is critical to delivering our national endeavour.</p>n<p>We offer relocation support packages across all Submarines roles, subject to meeting eligibility criteria.</p>n<p><b>Why BAE Systems? </b></p>n<p>This is a place where you’ll be able to make a real difference. You’ll be part of an inclusive culture that values diversity, rewards integrity, and merit, and where you’ll be empowered to fulfil your potential. We welcome candidates from all backgrounds and particularly from sections of the community who are currently underrepresented within our industry, including women, ethnic minorities, people with disabilities and LGBTQ+ individuals. We also want to make sure that our recruitment processes are as inclusive as possible. If you have a disability or health condition (for example dyslexia, autism, an anxiety disorder etc.) that may affect your performance in certain assessment types, please speak to your recruiter about potential reasonable adjustments.</p>n<p>Please be aware that many roles at BAE Systems are subject to both security and export control restrictions. These restrictions mean that factors such as your nationality, any nationalities you may have previously held, and your place of birth can restrict the roles you are eligible to perform within the organisation. All applicants must as a minimum achieve Baseline Personnel Security Standard. Many roles also require higher levels of National Security Vetting where applicants must typically have 5 to 10 years of continuous residency in the UK depending on the vetting level required for the role, to allow for meaningful security vetting checks.</p>n<p><b>Closing Date: </b>6th January 2025</p>n<p>We reserve the right to close this vacancy early if we receive sufficient applications for the role. Therefore, if you are interested, please submit your application as early as possible.</p>n<p>#LI-Hybrid</p>n<p>#LI-GV1</p>
BAE Systems | Principal Engineer - Product Security employer: BAE Systems
Contact Detail:
BAE Systems Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land BAE Systems | Principal Engineer - Product Security
✨Tip Number 1
Familiarize yourself with the specific cyber security frameworks mentioned in the job description, such as NIST and ISO 27001. Understanding these standards will not only help you in interviews but also demonstrate your commitment to industry best practices.
✨Tip Number 2
Highlight any experience you have with risk management accreditation documents, especially if you have worked with MOD policies like JSP 440. This knowledge is particularly relevant for the role and can set you apart from other candidates.
✨Tip Number 3
If you have experience in Product Security within the defence or maritime sectors, make sure to discuss this in your conversations with recruiters. This background aligns well with the role and shows that you understand the unique challenges of the industry.
✨Tip Number 4
Engage with current employees on platforms like LinkedIn to gain insights into the company culture and the specifics of the engineering delivery team. This can provide you with valuable information to tailor your discussions during the interview process.
We think you need these skills to ace BAE Systems | Principal Engineer - Product Security
Some tips for your application 🫡
Understand the Role: Make sure to thoroughly read the job description for the Principal Engineer - Cyber Security position. Understand the key responsibilities and required skills, and think about how your experience aligns with these.
Highlight Relevant Experience: In your CV and cover letter, emphasize your experience in cyber security, risk management, and any relevant industry qualifications like CCP, CISSP, or CISM. Be specific about your achievements and how they relate to the job.
Tailor Your Application: Customize your application materials to reflect the language and requirements mentioned in the job description. Use keywords from the listing to demonstrate that you are a good fit for the role.
Proofread Your Documents: Before submitting your application, carefully proofread your CV and cover letter for any spelling or grammatical errors. A polished application reflects your attention to detail and professionalism.
How to prepare for a job interview at BAE Systems
✨Understand Cyber Security Fundamentals
Make sure you have a solid grasp of cyber security principles, especially those related to risk management and security baselines. Be prepared to discuss how you've applied these concepts in previous roles.
✨Familiarize Yourself with Relevant Standards
Review key industry standards such as NIST and ISO 27001. Be ready to explain how you have implemented these standards in your work, particularly in assessing and managing risks.
✨Prepare for Technical Questions
Expect technical questions related to threat taxonomies, security architectures, and testing methodologies. Brush up on your knowledge and be ready to provide examples from your experience.
✨Showcase Your Engineering Background
Highlight your engineering experience and familiarity with life cycle approaches. Discuss specific projects where you contributed to security assurance and design reviews.