At a Glance
- Tasks: Lead product security initiatives and ensure compliance with cyber security standards.
- Company: Leonardo is a global leader in Aerospace, Defence, and Security, employing over 53,000 worldwide.
- Benefits: Enjoy flexible working, generous leave, mental health support, and access to 4,000+ online courses.
- Why this job: Join a diverse team shaping innovation and enhancing global safety while developing your career.
- Qualifications: Hands-on experience in security risk management and knowledge of UK/NATO Information Assurance standards required.
- Other info: This role offers hybrid working options across multiple UK locations.
The predicted salary is between 48000 - 72000 £ per year.
Leonardo Bristol, England, United Kingdom
Join or sign in to find your next job
Join to apply for the Product Security Capability Manager role at Leonardo
Leonardo Bristol, England, United Kingdom
4 days ago Be among the first 25 applicants
Join to apply for the Product Security Capability Manager role at Leonardo
Your Impact
Our Design Integrity function is currently recruiting for a Product Security Capability Manager. Working in our Electronics division (LEUK), the main purpose of your role is the coordination of product cyber resilience activities, in particular, within the technical and business functions, to ensure continued product compliance with internal and external cyber security standards. Working with the Heads of Product Security across all lines of business, you will have responsibility for the Electronics UK Product Security and Information Management System, security tools and process and their effectiveness. In addition to this, you will also lead the Product Compliance Team Product Security Working Group. Please note, the role is working on a hybrid basis and can be based at any of the following sites; Edinburgh, Luton, Basildon, Southampton, Newcastle, Bristol and Lincoln. Internal applicants please note that the job title for this role is Product Cyber Resilience Officer.
Job Description
Your Impact
Our Design Integrity function is currently recruiting for a Product Security Capability Manager. Working in our Electronics division (LEUK), the main purpose of your role is the coordination of product cyber resilience activities, in particular, within the technical and business functions, to ensure continued product compliance with internal and external cyber security standards. Working with the Heads of Product Security across all lines of business, you will have responsibility for the Electronics UK Product Security and Information Management System, security tools and process and their effectiveness. In addition to this, you will also lead the Product Compliance Team Product Security Working Group. Please note, the role is working on a hybrid basis and can be based at any of the following sites; Edinburgh, Luton, Basildon, Southampton, Newcastle, Bristol and Lincoln. Internal applicants please note that the job title for this role is Product Cyber Resilience Officer.
Your responsibilities include;
- Partnering with technical and business functions across LEUK, including; Engineering, Manufacturing, Customer Support, Physical Security and Information Technology to ensure continued compliance with internal and external cyber security standards specified by national security authorities or by international bodies and with cyber security requirements expressed by the customer.
- Maintain the Electronics Product Security and Information Management System, security tools and process.
- Liaise with external Security Accreditors and Security Assurance Coordinators in support of security accreditation.
- Regularly refresh current knowledge of security legislation in UK, EU and relevant markets for LEUK.
- Advising internal stakeholders to promote security culture, working with security teams to ensure secure working practices are adhered to.
- Developing and delivering training courses and presenting (with confidence) on Product Security and Information Assurance matters.
- Performing audits of internal and external subcontract teams assuring that security and Information Assurance requirements are achieved.
What you’ll bring;
- Recent Hands-on experience of developing a robust security risk management system for complex products and high integrity electronic systems in accordance with customer, regulatory and legislative expectations.
- Familiarity with current Legislation – eg IPA, DPA, Official Secrets Act.
- Registration with NCSC Certified Professional at lead level, or equivalent NCSC recognised qualification.
- Knowledge of UK/NATO Information Assurance standards, procedures & systems, including HMG Security Policy Framework, ISO security standards, DO326A.
- Familiarity with incident investigation processes and knowledge of how to implement an investigation process.
- Practical experience of NCSC and Common Criteria security evaluation techniques and requirements up to High Grade.
- Knowledge of current Crypto technologies, Key Management Systems & practical COMSEC implementations.
- Ideally a background in design implementation of high integrity complex electronics, such as Software design to DO178C, Complex Electronics hardware to DO254.
- Good understanding and experience in delivery and maintenance of products to meet regulatory requirements, for example MAA DAOS, ARP4754,
- Understanding of the concept of operations for products, in order to understand the functional security risks and define/agree the appropriate mitigations.
- Knowledge of the role of advisory boards within the UK Government or NATO for security.
This is not an exhaustive list, and we are keen to hear from you even if you might not have experience in all the above. The most important skill is a good attitude and willingness to learn.
Security Clearance
This role is subject to pre-employment screening in line with the UK Government’s Baseline Personnel Security Standard (BPSS). An additional range of Personnel Security Controls referred to as National Security Vetting (NSV) may apply, this could include meeting the eligibility requirements for The Security Check (SC) or Developed Vetting (DV). For more information and guidance, please visit https //careers.uk.leonardo.com/gb/en/security-and-vetting
Why join us
At Leonardo, our people are at the heart of everything we do. We offer a comprehensive, company-funded benefits package that supports your wellbeing, career development, and work–life balance. Whether you\’re looking to grow professionally, care for your health, or plan for the future, we’re here to help you thrive.
- Time to Recharge Enjoy generous leave with the opportunity to accrue up to 12 additional flexi-days each year.
- Secure your Future Benefit from our award-winning pension scheme with up to 15% employer contribution.
- Your Wellbeing Matters Free access to mental health support, financial advice, and employee-led networks championing inclusion and diversity (Enable, Pride, Equalise, Armed Forces, Carers, Wellbeing and Ethnicity).
- Rewarding Performance All employees at management level and below are eligible for our bonus scheme.
- Never Stop Learning Free access to 4,000+ online courses via Coursera and LinkedIn Learning.
- Refer a friend Receive a financial reward through our referral programme.
- Tailored Perks Spend up to £500 annually on flexible benefits including private healthcare, dental, family cover, tech & lifestyle discounts, gym memberships and more.
- Flexible working Flexible hours with hybrid working options. For part time opportunities, please talk to us about what might be possible for this role.
For a full list of our company, benefits please visit our website.
Leonardo is a global leader in Aerospace, Defence, and Security. Headquartered in Italy, we employ over 53,000 people worldwide including 8,500 across 9 sites in the UK. Our employees are not just part of a team—they are key contributors to shaping innovation, advancing technology, and enhancing global safety.
At Leonardo, we are committed to building an inclusive, accessible, and welcoming workplace. We believe that a diverse workforce sparks creativity, drives innovation, and leads to better outcomes for our people and our customers. If you have any accessibility requirements to support you during the recruitment process, just let us know.
Be part of something bigger – apply now!
Primary Location
GB – Bristol – Others
Additional Locations
GB – Basildon, GB – Edinburgh, GB – Lincoln, GB – Luton – Cap. Green 300, GB – Newcastle, GB – Southampton
Contract Type
Permanent
Hybrid Working
Hybrid
Seniority level
-
Seniority level
Mid-Senior level
Employment type
-
Employment type
Full-time
Job function
-
Job function
Information Technology
-
Industries
Defense and Space Manufacturing, Aviation and Aerospace Component Manufacturing, and Computer and Network Security
Referrals increase your chances of interviewing at Leonardo by 2x
Get notified about new Product Security Manager jobs in Bristol, England, United Kingdom .
We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-Ljbffr
Head of Product Security Capability (UK) employer: Leonardo
Contact Detail:
Leonardo Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Head of Product Security Capability (UK)
✨Tip Number 1
Familiarise yourself with the latest UK and EU cyber security legislation. This knowledge will not only help you in interviews but also demonstrate your commitment to staying updated in a rapidly evolving field.
✨Tip Number 2
Network with professionals in the defence and aerospace sectors, especially those involved in product security. Attend relevant industry events or webinars to make connections that could lead to valuable insights or referrals.
✨Tip Number 3
Prepare to discuss specific examples of how you've implemented security risk management systems in previous roles. Highlighting your hands-on experience will set you apart from other candidates.
✨Tip Number 4
Showcase your ability to work collaboratively across various functions, such as engineering and IT. Be ready to explain how you’ve successfully partnered with different teams to enhance product security compliance.
We think you need these skills to ace Head of Product Security Capability (UK)
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience in product security and cyber resilience. Use keywords from the job description to demonstrate that you meet the specific requirements of the role.
Craft a Compelling Cover Letter: Write a cover letter that not only outlines your qualifications but also expresses your enthusiasm for the role at Leonardo. Mention how your skills align with their mission and values, particularly in relation to compliance with cyber security standards.
Showcase Relevant Experience: In your application, emphasise any hands-on experience you have with security risk management systems and compliance with UK/NATO Information Assurance standards. Provide specific examples of past projects or roles that relate directly to the responsibilities outlined in the job description.
Proofread Your Application: Before submitting, carefully proofread your application for any spelling or grammatical errors. A polished application reflects attention to detail, which is crucial in a role focused on security and compliance.
How to prepare for a job interview at Leonardo
✨Understand the Role Thoroughly
Before your interview, make sure you have a solid grasp of the responsibilities and expectations for the Product Security Capability Manager role. Familiarise yourself with the key areas such as product cyber resilience, compliance with security standards, and collaboration with various technical and business functions.
✨Showcase Relevant Experience
Be prepared to discuss your hands-on experience in developing security risk management systems and your familiarity with relevant legislation. Highlight specific projects or situations where you've successfully implemented security measures or led teams in compliance activities.
✨Demonstrate Your Knowledge of Cyber Security Standards
Since the role involves ensuring compliance with internal and external cyber security standards, be ready to talk about your understanding of UK/NATO Information Assurance standards and any relevant certifications you hold. This will show your commitment to maintaining high security standards.
✨Prepare for Scenario-Based Questions
Expect questions that assess your problem-solving skills and ability to handle real-world security challenges. Prepare examples of how you've approached incident investigations or audits in the past, and be ready to discuss the outcomes and lessons learned.