Exercise Lead Specialist - Programma Gcap in Reading

Exercise Lead Specialist - Programma Gcap in Reading

Reading Full-Time 60000 - 75000 £ / year (est.) Home office (partial)
Leonardo

At a Glance

  • Tasks: Lead advanced security exercises and collaborate with diverse teams to enhance cyber defence.
  • Company: Join a global leader in Aerospace, Defence, and Security with innovative technology.
  • Benefits: Permanent contract, hybrid work, and opportunities for international career growth.
  • Other info: Dynamic environment with a focus on professional development and technological advancement.
  • Why this job: Make a real impact in cybersecurity while working on cutting-edge projects.
  • Qualifications: Experience in cybersecurity, threat emulation, and strong communication skills required.

The predicted salary is between 60000 - 75000 £ per year.

Leonardo is seeking an Exercise Lead Specialist for the GCAP Headquarters located in Reading (UK), with experience and certifications in cybersecurity, threat emulation, and red team operations. The role involves planning and executing advanced security exercises, with responsibilities for reporting and collaboration with multidisciplinary teams. This opportunity offers a pathway for international growth in a technologically advanced context, with a permanent contract and hybrid working arrangements.

OBJECTIVE OF THE ASSIGNMENT: The Exercise Lead Specialist supports the planning, execution, and continuous improvement of adverse security assessment activities within the organization. The role assists the Exercise Manager in designing realistic threat emulation scenarios and ensures that red team operations produce significant evidence and insights to strengthen the company's defensive posture.

RESPONSIBILITIES: The resource will be part of the Operations function for the JV and will report directly to the Exercise Manager.

  • Support end-to-end red team operations, including reconnaissance, threat modeling, scenario design, and post-exercise analysis.
  • Collaborate with blue teams, purple teams, and relevant stakeholders (e.g., Thames Valley Police) to ensure safe, controlled, and effective execution.
  • Support operational security, risk management, and deconfliction processes during exercises.

Reporting and Communication:

  • Draft clear and operational reports, translating technical results into business-relevant insights.
  • Present results to senior management, including risk assessments and recommended remediation strategies, including strengthening system security where appropriate.
  • Collaborate with defensive teams to validate any gaps in detection mechanisms and support purple team improvement cycles.

Governance and Compliance:

  • Ensure that all red team activities comply with legal, ethical, and organizational guidelines.
  • Maintain documentation, authorizations, and traceability (audit trail) for all exercises.
  • Contribute, when necessary, to incident response preparedness and tabletop exercises.

Success Indicators:

  • Red team exercises capable of truly challenging the organization and identifying concrete and realistic vulnerabilities.
  • Strong collaborations with defensive teams that result in measurable improvements in detection and response capabilities.

REQUIREMENTS:

  • Educational Qualification in line with the activities foreseen by the role.
  • Certifications such as Global Information Assurance Certification (GIAC) Red Teaming (GRT) or equivalent.
  • Experience in threat intelligence, incident response, or purple teaming activities.
  • Familiarity with enterprise security controls, SIEM systems, EDR tools, and detection engineering.
  • Experience in regulated sectors or large enterprise environments.

Technical and Soft Skills and Competencies:

Essential Requirements:

  • Strong stakeholder management skills, with proven experience in communicating with senior management across different functions, both internal and external.
  • Ability to make pragmatic decisions and to operate in close collaboration with the business.
  • Proven problem-solving skills (forward and lateral thinking) applied to complex issues.
  • Ability to independently manage one's areas of responsibility within a project, with full awareness of individual responsibilities.

Preferential Requirements:

  • Analytical, structured, and detail-oriented approach.
  • Discretion and reliability, with strong judgment in managing sensitive information.
  • Confident communicator, capable of simplifying complex concepts for diverse audiences.
  • Proactivity, curiosity, and commitment to continuous improvement.
  • Ability to combine strategic vision and operational execution.

Language skills: English C1

Exercise Lead Specialist - Programma Gcap in Reading employer: Leonardo

Leonardo is an exceptional employer that prioritises employee experience and inclusion, offering a dynamic work culture in the heart of Edinburgh. With flexible hybrid working arrangements, generous leave policies, and comprehensive mental health support, employees are empowered to thrive both personally and professionally. The company fosters growth opportunities, ensuring that every team member can develop their skills and advance their careers in a supportive environment.

Leonardo

Contact Details:

Leonardo Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Exercise Lead Specialist - Programma Gcap in Reading

Get Involved in the Cybersecurity Community

Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!

Show Off Your Skills with Capture the Flag Competitions

Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Leonardo, love seeing candidates who actively engage in these challenges.

Tailor Your Online Presence

Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!

Apply Directly Through Leonardo

Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Leonardo. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.

We think you need these skills to ace Exercise Lead Specialist - Programma Gcap in Reading

Threat Emulation
Red Team Operations
Security Assessment
Threat Modelling
Post-Exercise Analysis
Operational Security
Risk Management

Some tips for your application 🫡

Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!

Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!

Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Leonardo insight into your practical problem-solving abilities and makes your application memorable.

Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Leonardo that you’re committed to staying ahead in the game.

How to prepare for a job interview at Leonardo

Sharpen Your Technical Skills

For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.

Prepare for Scenario-Based Questions

Expect the interviewers at Leonardo to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.

Highlight Your Certifications

Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Leonardo.

Show Your Passion for Cybersecurity

Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.