At a Glance
- Tasks: Lead product security strategies and protect advanced defence technology.
- Company: Join Leonardo, a global leader in Aerospace, Defence, and Security.
- Benefits: Enjoy flexible working, generous leave, and a strong pension scheme.
- Other info: Be part of an inclusive team driving innovation and creativity.
- Why this job: Make a real impact on the future of defence technology.
- Qualifications: Experience in cybersecurity and risk management is essential.
The predicted salary is between 60000 - 80000 £ per year.
Salary: £60,000 to £80,000. Leonardo UK operates a grade-based salary framework with broad bands. The salary range shown reflects the approved grade band for this role, or a narrower hiring range published within that band, and is benchmarked against the external market. Exceptions above the standard range are managed through governance controls to protect internal equity.
Your impact
Ready to make your mark on next generation products and help define the resilience of tomorrow’s defence technology? As a Product Cyber Resilience Manager within our Radar and Advanced Targeting (RATs) business, you’ll join a multi discipline team at the forefront of innovation and play a pivotal role in protecting some of the UK’s most advanced systems. You’ll shape the product security strategy from concept to delivery and champion strengthening product integrity and support exciting technical challenges, ensuring a strong security culture across the business.
As a Product Cyber Resilience Manager, you will:
- Undertake the production of Security Management Plans, work package descriptions and cost estimates in support of product bids, services and proposals.
- Review and provide guidance of security risk assessments, risk mitigation plans, mitigation gap analysis and preparation of security management documentation for system Accreditation, such as solution hardening guidance and security operating procedures.
- Defining product security requirements, advising development teams on suitable implementation standards and techniques and overseeing product development activities.
- Liaison with Security Accreditors and Security Assurance Coordinators in support of security Accreditation.
- Participate in internal and external discipline working groups and with academic partners covering Product Cyber Resilience and Product Security for various established and emerging standards.
- Contribute to continual improvement of the engineering capability.
You will be responsible for the management of Product Security Risk of all the product families within your sector. You will be accountable to the respective product family System Design Authority (the Risk Owner), providing subject matter advice to the Integrated Product Team, whilst collaborating with your fellow Product Cyber Resilience Managers (PCRMs) across the Electronics Business Unit. The role involves conducting risk assessments, developing and implementing product security strategies and collaborating with cross-functional teams, including Leonardo's Cyber Security Business Unit, to embed product and cyber security best practices throughout the product development lifecycle.
You will be responsible for determining product cyber resilience objectives through security risk management techniques in relation to the Integrated Sensing products and then working with the engineering teams to achieve those objectives through the architecture and design of the solution. You’ll also support the product assurance activities to verify compliance to those objectives and the transition to operations and ongoing through-life support.
What you’ll bring
- Experience with product security assessment methods or security risk management systems for complex products based on a recognised framework in a highly regulated industry such as aerospace, nuclear, automotive, rail or oil & gas.
- Practical experience of the System Development Life Cycle, Software Development Life Cycle, V-Models and Agile frameworks.
- Experience in managing product information security, including risk assessment, threat modelling, vulnerability management, and incident response.
- Strong knowledge of cybersecurity standards and best practices, such as ISO 27001, NIST Cybersecurity Framework, and Knowledge of UK/NATO Information Assurance/Accreditation frameworks; Familiarity with the application of cyber resilience controls to embedded systems.
- Experience with cybersecurity tools and technologies, such as SIEM, IDS/IPS, DLP, and endpoint protection.
- Proficiency in cybersecurity frameworks, such as MITRE ATT&CK and the Cybersecurity Capability Maturity Model (CMMC).
- Certifications such as CISSP, CISM, or CEH are a plus.
This is not an exhaustive list, and we are keen to hear from you even if you might not have experience in all the above. The most important skill is a good attitude and willingness to learn.
Security Clearance
This role is subject to pre-employment screening in line with the UK Government’s Baseline Personnel Security Standard (BPSS). An additional range of Personnel Security Controls referred to as National Security Vetting (NSV) may apply, this could include meeting the eligibility requirements for The Security Check (SC) or Developed Vetting (DV). You must have the ability to obtain UK SC security clearance and work within UKEO and US ITAR TAA restrictions.
Why join us
At Leonardo, our people are at the heart of everything we do. We offer a comprehensive, company-funded benefits package that supports your wellbeing, career development, and work–life balance. Whether you're looking to grow professionally, care for your health, or plan for the future, we’re here to help you thrive.
- Time to Recharge: Enjoy generous leave with the opportunity to accrue up to 12 additional flexi-days each year.
- Secure your Future: Benefit from our award-winning pension scheme with up to 15% employer contribution.
- Your Wellbeing Matters: Free access to mental health support, financial advice, and employee-led networks championing inclusion and diversity.
- Rewarding Performance: All employees at management level and below are eligible for our bonus scheme.
- Never Stop Learning: Free access to 4,000+ online courses via Coursera and LinkedIn Learning.
- Refer a friend: Receive a financial reward through our referral programme.
- Tailored Perks: Spend up to £500 annually on flexible benefits including private healthcare, dental, family cover, tech & lifestyle discounts, gym memberships and more.
- Flexible working: Flexible hours with hybrid working options. For part time opportunities, please talk to us about what might be possible for this role.
For a full list of our company benefits please visit our website. Leonardo is a global leader in Aerospace, Defence, and Security. Our employees are not just part of a team—they are key contributors to shaping innovation, advancing technology, and enhancing global safety. At Leonardo we are committed to building an inclusive, accessible, and welcoming workplace. We believe that a diverse workforce sparks creativity, drives innovation, and leads to better outcomes for our people and our customers.
If you have any accessibility requirements to support you during the recruitment process, just let us know. Be part of something bigger - apply now!
Product Cyber Resilience Manager employer: Leonardo Worldwide Corporation
Leonardo UK is an exceptional employer, offering a dynamic work environment in Edinburgh and Newcastle where innovation meets security. With a strong focus on employee wellbeing, professional development, and a culture that champions diversity and inclusion, you will have access to extensive benefits including flexible working options, generous leave, and a robust pension scheme. Join us to make a meaningful impact in the defence technology sector while enjoying opportunities for growth and collaboration within a global leader.
Contact Details:
Leonardo Worldwide Corporation Recruitment Team
StudySmarter Expert Advice🤫
We think this is how you could land Product Cyber Resilience Manager
✨Tip Number 1
Network like a pro! Reach out to folks in the industry, attend events, and connect on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Prepare for interviews by researching the company and its products. Understand their mission and values, and think about how your skills align with their needs. This will help you stand out as a candidate who truly gets them.
✨Tip Number 3
Practice makes perfect! Do mock interviews with friends or use online platforms to get comfortable with common questions. The more you practice, the more confident you'll feel when it’s time to shine.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, we love seeing candidates who are proactive about their job search.
We think you need these skills to ace Product Cyber Resilience Manager
Some tips for your application 🫡
Tailor Your Application:Make sure to customise your CV and cover letter for the Product Cyber Resilience Manager role. Highlight your relevant experience in product security assessment methods and risk management systems, as this will show us you understand what we're looking for.
Showcase Your Skills:Don’t just list your qualifications; demonstrate how your skills align with our needs. If you've got experience with cybersecurity standards like ISO 27001 or frameworks like MITRE ATT&CK, make it pop in your application!
Be Authentic:We love a good attitude! Don’t hesitate to share your willingness to learn and grow. If you don’t tick every box, that’s okay—show us your passion for cybersecurity and resilience in your application.
Apply Through Our Website:For the best chance of getting noticed, apply directly through our website. It’s the easiest way for us to see your application and get you into the process. We can’t wait to hear from you!
How to prepare for a job interview at Leonardo Worldwide Corporation
✨Know Your Cybersecurity Standards
Familiarise yourself with key cybersecurity frameworks like ISO 27001 and NIST. Be ready to discuss how these standards apply to product security and your experience with them, as this will show your depth of knowledge in the field.
✨Showcase Your Risk Management Skills
Prepare examples of how you've conducted risk assessments and developed mitigation plans in previous roles. Highlight specific challenges you faced and how you overcame them, as this will demonstrate your practical experience in managing product information security.
✨Understand the Development Life Cycle
Brush up on the System Development Life Cycle and Agile frameworks. Be prepared to explain how you've applied these methodologies in past projects, especially in relation to product security, to show that you can integrate security into the development process.
✨Ask Insightful Questions
Prepare thoughtful questions about the company's approach to product cyber resilience and how they handle security accreditation. This not only shows your interest in the role but also gives you a chance to assess if the company aligns with your values and career goals.