Senior Systems Security Engineer – Training Services Delivery
Location(s): High Wycombe / Northolt / Shrivenham
Summary of Role
The Future Joint Command and Staff Trainer (FJCAST) programme will transform the delivery of senior staff training, enabling Joint Headquarters, operational commands, coalition partners and allied nations to train together across Land, Maritime, Air, Space and Cyberspace domains. Through the integration of simulation, synthetic environments, exercise design, data exploitation, operational networks and coalition interoperability, FJCAST will support the training, preparation, experimentation and evaluation of UK and allied operational headquarters. To assist with this, we have an exciting opportunity for a Senior Systems Security Engineer to provide the functional security governance, management and support to the Delivery Team across our FJCAST programme. This is a key role in collaboratively working with the Engineering functional delivery teams in delivering optimal training solutions and services to the Customer, to schedule at the right cost, meeting quality, safety and security standards as necessary.
Job Summary
The Senior Systems Security Engineer is a role that requires strong systems engineering skills that will be used to develop innovative products and solutions to complex systems, including top level requirements development, requirements analysis and allocation, design, verification, integration, and production/field support. This role sits within our Training Transformation Services (TTS) Business area and reports to the TTS Delivery Lead. We value diverse skills and experience, so don't hold back. Your qualifications and knowledge could add tremendous value to our team. Our customers come from all different backgrounds, and so do our employees. If you're passionate about what you could accomplish here, we'd love to hear from you.
Main Duties
- Performing Task Lead duties (e.g., task planning, product owner, scrum master)
- Supporting the development of a Security Risk Management Framework (RMF) following the STRIDE model
- Create suitable Secure by Design (SbD) planning and implementation policies and procedures to ensure all delivered systems are designed, implemented and operated using a SbD approach
- Developing top-level system security requirements, and flowing down requirements and implementation concepts (SbD)
- Be part of the team who interacts with customers to define / refine requirements, solutions, trades, costs, implementation, system impacts, and effectiveness within an agreed schedule
- Support developing plans and estimates, task execution, project tracking, reporting, and risk identification and mitigation plans
- Identify / produce evidence to enable the successful assessment of systems in order to achieve the Authority to Operate (ATO) and allow for through life and end of life security management
- Involvement in security testing with a view to obtaining ATO
- Define, implement and or assess security solutions that meet the customer’s requirements and security posture
- Consult and assist program line management with security architectures, SbD and security risk / problem / issue management
- Show an understanding of Attack Threat Modelling / Critical Program Information Assessments
- Understanding of Security Impact Assessment with reference to Change Management
- Understanding, and compliance with, MoD technology release and export licensing policies
- Supporting the development of bids and proposals
- and, An understanding of the Earned Value Management (EVM) project methodology
Qualifications and Experience Required
- Candidate must exhibit an exceptional degree of ingenuity, creativity and resourcefulness.
- Typically a Bachelor of Science degree (BSc) in Science, Technology, Engineering, or Mathematics (STEM) and 10 years of prior relevant experience, or a Masters Degree (MSc) in a related field and 7 years of prior relevant experience.
- In absence of a degree, 14 years of relevant experience is required.
- Evidence of experience in the fields of computer technology reverse engineering, or other systems security engineering fields.
- Experience generating Security and/or Cyber Security requirements, design and architecture artifacts, plans, and policies.
- Experience of Information Assurance.
- Technical leadership experience.
- Experience in Systems Engineering, including any of the following: System Requirements definition and analysis; System Test and Analysis; Systems Engineering Studies; and NIST Risk Management Framework (RMF) or STRIDE.
- Experience in systems security including but not limited to various computer hardware and software S/W operating system and application solutions in both a stand‑alone and in LAN/WAN configurations and / or Security features and / or vulnerability analysis of various operating systems; and, Suitable active and transferable security clearance.
Qualifications We Value
- Experience in design, development and implementation of secure systems
- Accreditation / system assessment acceptance following Information Assurance Standards (IAS 1 & 2) and / or SbD
- Understanding of obsolescence, patch & vulnerability management and change management with reference to Software, firmware, cryptography and hardware
- Leading System Security Engineering Teams (Cyber)
- Experience in the implementation and business growth of secure systems throughout the entire life cycle of the system
- Experience in solutions meeting robust systems security requirements
- Program management experience with systems and security engineering
- Broad understanding of technology
- Royal Navy Training experience
- Strategic planning and proposal writing skills
- Strong interpersonal skills with the ability to interact positively with coworkers, suppliers, management, and customers in a team environment
- Experience contributing in a team environment for the purpose of developing creative solutions to technical problems
- A working knowledge of government IT security environments and requirements including MoD Joint Service Publications, Defence Standards and Conditions
- Government Standard 7 (GovS 007: Security), safety and Integrated Logistoics Support (ILS) practices and policies
- Recognised professional security qualifications such as CISSP, ISSAP, CISM, BCS CITP
- Member of one or more professional bodies that are relevant to the role, such as, ISACA, ISSA UK, ISC2, CIISec
- Grounding or qualification in systems architecture, such as MoDAF or Togaf
- and, Experience of Linux Bash scripting, Python scripting, PowerShell scripting and/or Ansible Playbooks
RTX adheres to the principles of equal employment. All qualified applications will be given careful consideration without regard to ethnicity, color, religion, gender, sexual orientation or identity, national origin, age, disability, protected veteran status or any other characteristic protected by law.
Privacy Policy and Terms: RTX is an aerospace and defense company that provides advanced systems and services for commercial, military and government customers worldwide. It comprises three industry-leading businesses – Collins Aerospace, Pratt & Whitney, and Raytheon. Its 195,000 employees enable the company to operate at the edge of known science as they imagine and deliver solutions that push the boundaries in quantum physics, electric propulsion, directed energy, hypersonics, avionics and cybersecurity. The company, formed in 2020 through the combination of Raytheon Company and the United Technologies Corporation aerospace businesses, is headquartered in Arlington, Virginia.
#J-18808-Ljbffr
Senior Systems Security Engineer in High Wycombe employer: Prattwhitney
At Pratt & Whitney Canada, part of RTX, we pride ourselves on being an exceptional employer that fosters a collaborative and innovative work culture. With competitive benefits including private medical insurance, a fantastic pension scheme, and opportunities for professional growth, we empower our employees to excel in their roles while contributing to the future of aerospace and defense. Located in the UK, our team is dedicated to pushing the boundaries of technology and ensuring compliance in logistics and customs, making this a rewarding environment for those looking to make a meaningful impact.