At a Glance
- Tasks: Lead security assurance for product development, ensuring compliance with Secure by Design principles.
- Company: Leonardo is a global leader in Aerospace, Defence, and Security, employing over 53,000 worldwide.
- Benefits: Enjoy flexible working, generous leave, mental health support, and access to 4,000+ online courses.
- Other info: This role requires security clearance and offers hybrid working options.
- Why this job: Join a diverse team shaping innovation and enhancing global safety while developing your skills.
- Qualifications: Engineering degree with 5 years' experience in product security; CISSP or CISM preferred.
The predicted salary is between 42000 - 84000 £ per year.
Our Cyber and Electromagnetic Activities (CEMA) department is championing interoperability with partners, allies and NATO to get the right information to the right place at the speed of relevance.
CEMA are currently recruiting for a highly motivated Product Cyber Resilience Manager to join their team. The nature of the role requires you to be based on site at anyone of our following locations; Basildon, Southampton, Luton, or Bristol. There will also be occasional travel to our customers, suppliers and other Leonardo sites in the UK and overseas.
As a Product Cyber Resilience Manager, you will be responsible for providing Security Assurance to support the development and delivery of the products with the ambition to meet the Secure by Design principles. You will oversee the development, implementation, and management of security protocols, tools, and practices on maturing products meets the appropriate standards and legislation. Working closely with the Integrated Product Team (IPT) frameworks with specialists from other disciplines (Software, Systems, and Electronics engineers), you will provide specialist knowledge and advice throughout the product lifecycle.
- Provide independent Information Assurance (IA) on products outside of your immediate responsibility, including independent assessments at Design Reviews, and on deliverable artefacts.
- Form part of a wider Product IA and Security community across Leonardo Electronics UK, influencing corporate policies, processes and guidance.
- Generation of Security Management Plans, Security Risk Assessments, Security Design and Management Documentation, and risk Remediation Action Plans.
- Create artefacts, support Product Design Reviews and Product Security deliverable information (Product Integrity certificates, product security cases).
What You’ll Bring
- You will have experience of owning a security risk management system for highly regulated products based on recognised frameworks. As well as this, you will have a good understanding of engineering development lifecycles and how product security specialism is aligned.
- Engineering degree with minimum 5 years’ experience in product security and CISSP, CISM or equivalent qualification.
- Practical experience of risk management frameworks (NIST SP800-37, ISO27001).
- Practical experience of risk assessment processes (NIST SP800-30 and ISO 27005).
- Practical experience of applying security controls (NIST SP800-53 and ISO27002).
- Practical experience of Secure by Design requirements (ISN 2023/09).
- Demonstrable experience of writing IA Technical Risk Assessments and the management of these Assessments.
- Ability to interpret Penetration Test Reports and write Remediation Action Plans.
- An appreciation of the wider UK Government Assurance Processes (such as JSP 440, DEF STAN 05-139 or the CAF GovAssure processes).
This is not an exhaustive list, and we are keen to hear from you even if you might not have experience in all the above. The most important skill is a good attitude and willingness to learn.
Security Clearance
This role is subject to pre-employment screening in line with the UK Government’s Baseline Personnel Security Standard (BPSS). An additional range of Personnel Security Controls referred to as National Security Vetting (NSV) may apply, this could include meeting the eligibility requirements for The Security Check (SC) or Developed Vetting (DV).
Why join us
At Leonardo, our people are at the heart of everything we do. We offer a comprehensive, company-funded benefits package that supports your wellbeing, career development, and work–life balance. Whether you’re looking to grow professionally, care for your health, or plan for the future, we’re here to help you thrive.
- Time to Recharge: Enjoy generous leave with the opportunity to accrue up to 12 additional flexi-days each year.
- Secure your Future: Benefit from our award-winning pension scheme with up to 15% employer contribution.
- Your Wellbeing Matters: Free access to mental health support, financial advice, and employee-led networks championing inclusion and diversity.
- Rewarding Performance: All employees at management level and below are eligible for our bonus scheme.
- Never Stop Learning: Free access to 4,000+ online courses via Coursera and LinkedIn Learning.
- Refer a friend: Receive a financial reward through our referral programme.
- Tailored Perks: Spend up to £500 annually on flexible benefits including private healthcare, dental, family cover, tech & lifestyle discounts, gym memberships and more.
- Flexible working: Flexible hours with hybrid working options. For part time opportunities, please talk to us about what might be possible for this role.
For a full list of our company benefits please visit our website. Leonardo is a global leader in Aerospace, Defence, and Security. Headquartered in Italy, we employ over 53,000 people worldwide including 8,500 across 9 sites in the UK. Our employees are not just part of a team—they are key contributors to shaping innovation, advancing technology, and enhancing global safety.
At Leonardo, we are committed to building an inclusive, accessible, and welcoming workplace. We believe that a diverse workforce sparks creativity, drives innovation, and leads to better outcomes for our people and our customers. If you have any accessibility requirements to support you during the recruitment process, just let us know.
Be part of something bigger - apply now!
Product Cyber Resilience Manager in Southampton employer: Leonardo
At Leonardo, we prioritise our employees' wellbeing and professional growth, offering a comprehensive benefits package that includes generous leave, an award-winning pension scheme, and access to over 4,000 online courses for continuous learning. Our inclusive work culture fosters collaboration and innovation, making it an ideal environment for those looking to make a meaningful impact in the defence and aerospace sectors. With flexible working options and a commitment to diversity, Leonardo is not just a workplace; it's a community where you can thrive.
StudySmarter Expert Advice🤫
We think this is how you could land Product Cyber Resilience Manager in Southampton
✨Tip Number 1
Familiarise yourself with the specific security frameworks mentioned in the job description, such as NIST SP800-37 and ISO27001. Understanding these frameworks will not only help you in interviews but also demonstrate your commitment to the role.
✨Tip Number 2
Network with professionals in the cybersecurity field, especially those who have experience in product security. Engaging with industry experts can provide valuable insights and potentially lead to referrals for the position.
✨Tip Number 3
Stay updated on the latest trends and challenges in cybersecurity, particularly in the defence sector. Being knowledgeable about current events and advancements will allow you to speak confidently about relevant topics during interviews.
✨Tip Number 4
Prepare to discuss your experience with risk management systems and how you've applied security controls in past roles. Be ready to provide examples that showcase your problem-solving skills and ability to work collaboratively with cross-functional teams.
We think you need these skills to ace Product Cyber Resilience Manager in Southampton
Some tips for your application 🫡
Tailor Your CV:Make sure your CV highlights relevant experience in product security and risk management. Emphasise your qualifications like CISSP or CISM, and any practical experience with frameworks such as NIST or ISO.
Craft a Strong Cover Letter:In your cover letter, express your enthusiasm for the role and how your background aligns with Leonardo's mission. Mention specific projects or experiences that demonstrate your ability to manage security protocols and work within engineering teams.
Highlight Relevant Skills:Clearly outline your skills related to security assurance, risk assessments, and secure design principles. Use examples from your past roles to illustrate your expertise in these areas.
Proofread Your Application:Before submitting, carefully proofread your application materials. Look for any spelling or grammatical errors, and ensure that all information is accurate and clearly presented.
How to prepare for a job interview at Leonardo
✨Understand the Role
Make sure you have a solid grasp of what a Product Cyber Resilience Manager does. Familiarise yourself with the key responsibilities mentioned in the job description, such as security assurance and risk management frameworks. This will help you articulate how your experience aligns with their needs.
✨Showcase Relevant Experience
Prepare to discuss your past experiences that relate directly to the requirements of the role. Highlight your familiarity with security protocols, risk assessments, and any relevant qualifications like CISSP or CISM. Use specific examples to demonstrate your expertise.
✨Demonstrate Team Collaboration Skills
Since the role involves working closely with Integrated Product Teams, be ready to talk about your experience collaborating with cross-functional teams. Share examples of how you've successfully worked with engineers from different disciplines to achieve common goals.
✨Prepare Questions
Have thoughtful questions ready to ask at the end of the interview. This shows your genuine interest in the role and the company. You might ask about their current projects in cyber resilience or how they measure success in this position.