Risk and Security Consultant in Devon, Plymouth

Risk and Security Consultant in Devon, Plymouth

Devon +1 Temporary 85.4 - 85.4 £ / hour (est.) No working from home possible
J

At a Glance

  • Tasks: Lead security engineering activities and develop innovative solutions to protect vital systems.
  • Company: Join a leading defence and aerospace company with a focus on collaboration.
  • Benefits: Competitive hourly rate, flexible working days, and opportunities for professional growth.
  • Other info: Dynamic role with strong potential for career advancement and skill development.
  • Why this job: Make a real impact in security while working on complex, meaningful projects.
  • Qualifications: Experience in information assurance and product security within regulated environments.

The predicted salary is between 85.4 - 85.4 £ per hour.

12 month contract, 1-2 days per month - Barrow - LA14 £85.40 per hour (Inside IR35).

In this role you'll do work that matters. You'll be part of a team tackling complex challenges, developing innovative solutions and helping to protect the people and places that depend on us.

Whether you're bringing years of experience or looking to take the next step in your career, you'll have the opportunity to work on meaningful projects, collaborate with talented people and develop your skills in an environment where your contribution can make a real difference.

Join us and help shape the future of defence, security and aerospace.

The Principal Product Security Engineer is a senior technical leader within the Product Security team, acting as the focal point for Information Assurance (IA) and Product Security across the PMS domain within the wider platform programme.

Operating within a highly collaborative, multi-disciplinary engineering environment, the role is responsible for defining and delivering security engineering activities in line with the programme Engineering Management Plan and Project Information Assurance Management Plan, ensuring consistency with approved processes, templates and governance.

The Principal Engineer leads the development of security artefacts required to achieve system design maturity and contractually agreed readiness, including Security Cases, risk management activities, and support to design assurance and review gates. They work closely with internal engineering teams, transversal Whole Boat Product Security (WBPSec) stakeholders, and external suppliers to ensure coherent and integrated security outcomes across the platform.

This is a delivery focused, milestone driven role requiring strong systems engineering awareness, stakeholder influence and the ability to apply pragmatic, risk based security solutions within programme constraints.

Typical duties include:

  • Programme Delivery & Governance: Define, agree and deliver Product Security engineering activities in line with the programme Engineering Management Plan. Ensure all security activities are performed in accordance with approved processes, templates and guidance with deviations appropriately controlled. Act as the primary Product Security SME for PMS within programme working groups (e.g. PMS SWG).
  • Security Case & Risk Management: Lead the development of PMS Interim and Final Security Cases across defined programme phases. Maintain alignment between system-level security artefacts and Whole Boat IA risk management approaches (WBPSec). Maintain and manage PMS contributions to the Whole Boat IA Risk Register. Identify, assess and document IA requirement shortfalls and associated risks.
  • Technical Governance & Communication: Manage and coordinate IA Technical Queries (TQs) and formal communications in line with programme processes. Ensure technical outputs consider security classification and handling constraints (e.g. NNPPI, ITAR). Operate within defined communication and data management processes (e.g. formal transmittals, controlled repositories, structured workflows).
  • Planning, Reporting & Performance: Plan and manage Product Security activities to meet programme milestones and delivery schedules. Provide regular reporting into project governance, including schedule and activity progress, risk and opportunity updates, key milestone status. Identify risks to delivery early and support mitigation and recovery planning.
  • Team & Capability Contribution: Provide technical leadership and mentoring within the PMS Product Security team. Support consistency, quality and repeatability across Product Security outputs. Contribute to continuous improvement of Product Security methods, tooling and practices.

Key Accountabilities and Deliverables:

  • PMS Interim and Final Security Cases (multi-phase delivery).
  • Development and maintenance of the PMS IA/Security Risk Register.
  • Contributions to the Whole Boat IA Risk Register and associated artefacts.
  • IA inputs to PMS Test, Set-to-Work, and verification strategies.
  • Management and resolution of supplier IA Technical Queries (TQs).
  • Supplier IA/Cyber artefact reviews and assurance outputs.
  • Inputs to PMS Formal Design Reviews, FDP/FTP Groups, and lifecycle review gates.
  • PMS IA requirement capture, validation and gap analysis outputs.
  • Contributions to PMS IA process development and continuous improvement activities.
  • Monthly project review inputs, including progress, risks, issues and milestone tracking.

Knowledge:

  • Strong understanding of Information Assurance and Product Security within complex engineered systems.
  • Possesses an understanding of Secure by Design concept versus Security Accreditation process.
  • Experience within large scale, highly regulated programmes (e.g. defence, maritime, aerospace).
  • Working knowledge of systems engineering lifecycle and design assurance processes.
  • Proven experience delivering security cases and managing information risk.
  • Experience engaging with and assuring supplier deliverables.
  • Awareness of Whole Boat/Platform level security integration approaches (desirable).
  • Awareness and knowledge of the application of HM Government Information Security Standards IS 1 & 2 to complex products.
  • Awareness and knowledge of the application of ISO 27000 series of Standards to complex products.
  • Awareness and knowledge of the application of IEC 62443 series of Standards to complex products.
  • Familiarity with Security Technical Security Testing scoping and test specification.

Locations

DevonPlymouth

Risk and Security Consultant in Devon, Plymouth employer: JAM Recruitment Ltd

BAE Systems is an exceptional employer, offering a dynamic work environment where innovation and collaboration thrive. With a strong focus on employee growth and development, you will have access to cutting-edge technology and the opportunity to contribute to meaningful projects that enhance global security. Located in Christchurch or Frimley, you will be part of a diverse team dedicated to pioneering advancements in defence and aerospace, ensuring a rewarding career path in a company that values your unique skills and perspectives.

J

Contact Details:

JAM Recruitment Ltd Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Risk and Security Consultant in Devon, Plymouth

Get Engaged in Cybersecurity Communities

Dive into online forums or local meetups, like OWASP events or Cybersecurity conferences. These spaces are packed with pros who can share insights and might even know about temporary roles at places like JAM Recruitment Ltd.

Showcase Your Skills Publicly

Link your GitHub or create a series of blogs sharing your knowledge on cybersecurity topics. It’s a great way to demonstrate your expertise and attract attention from hiring managers, especially when they see your passion in action.

Stay On Top of Temp Opportunities

Keep an eye on platforms that list temporary positions specifically in tech. Websites focusing on contract roles in cybersecurity can lead straight to employers like JAM Recruitment Ltd.

Make Contact with Recruiters Specialising in Cybersecurity

Reach out to recruitment agencies that focus on cybersecurity roles. They often have insights into temporary roles before they’re advertised and can put your name forward to companies like JAM Recruitment Ltd.

We think you need these skills to ace Risk and Security Consultant in Devon, Plymouth

Information Assurance (IA)
Product Security
Risk Management
Security Case Development
Systems Engineering Awareness
Stakeholder Influence
Technical Governance

Some tips for your application 🫡

Show Off Your Technical Skills:In cybersecurity, it's vital to highlight your skills with relevant tools and technologies. Make sure your CV showcases your experience with firewalls, intrusion detection systems, and any cybersecurity frameworks you've worked with. This gives JAM Recruitment Ltd a clear view of your capabilities right off the bat.

Certifications Matter:If you’ve got any cybersecurity certifications, like CompTIA Security+ or CISSP, flaunt them! These not only validate your skills but also show that you’re committed to the field. Add a section to your CV specifically for this, because in a temporary role like this, those credentials can really set you apart.

Tailor Your Cover Letter to the Role:For a temporary position, we want to see your willingness to learn and adapt quickly. Make your cover letter specific to the role at JAM Recruitment Ltd; mention why you’re excited about the opportunity and how it fits your career goals. A personal touch can make a big difference!

Don’t Forget the Soft Skills:In cybersecurity, technical skills are crucial, but so are soft skills like teamwork and communication. Make sure to weave examples of how you've collaborated with teams or communicated complex ideas into your application. This shows that you're not just a tech whizz but also a great team player, perfect for a temporary role at JAM Recruitment Ltd.

How to prepare for a job interview at JAM Recruitment Ltd

Brush Up on Technical Skills

Make sure you’re familiar with the latest cybersecurity tools and techniques, like firewalls, intrusion detection systems, and malware analysis. During the interview with JAM Recruitment Ltd for the Risk and Security Consultant, be prepared to discuss specific scenarios where you tackled security threats or vulnerabilities.

Show Your Problem-Solving Prowess

Cybersecurity is all about thinking on your feet. Expect technical questions that require you to demonstrate your problem-solving abilities. You might be presented with a mock security breach scenario, so practising your responses to potential threats can be a game changer!

Demonstrate Your Adaptability

As this is a temporary role, showing that you're adaptable and quick to learn is crucial. Talk about times you've picked up new skills or reacted to changing situations quickly. Employers want to know you can hit the ground running and keep things secure during your short stay at JAM Recruitment Ltd.

Bring Relevant Certifications

If you have any relevant cybersecurity certifications, like CompTIA Security+ or CEH, be sure to mention them. This can really help you stand out during a temporary hiring process, as it showcases your commitment to the field and your readiness to take on the Risk and Security Consultant role at JAM Recruitment Ltd.