Information Security Classified Networks Technical Lead at BAE Systems
Guildford, England, United Kingdom -
Full Time


Start Date

Immediate

Expiry Date

21 May, 25

Salary

0.0

Posted On

21 Feb, 25

Experience

5 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Interpersonal Skills, Risk Metrics, Office Automation Software, Design, Information Security, Time Management, Dashboard

Industry

Information Technology/IT

Description

LOCATION(S): UK, EUROPE & AFRICA : UK : GUILDFORD

Job Title: Information Security Classified Networks Technical Assurance Lead
Location: Guildford, with some option for hybrid working.
We offer a range of hybrid and flexible working arrangements - please speak to your recruiter about the options for this particular role

YOUR SKILLS AND EXPERIENCES

  • Expert understanding of security concepts and principles (CIA triad, risk management, compliance frameworks applicable to classified networks and systems, etc.);
  • Expert understanding and application of both UK government and defence Accreditation standards, including Secure by Design, NSCS/NPSA Risk Management, NIST800-53, and STRAP, DEF STAN 05-138, ISO27001;
  • Robust knowledge and experience in developing and reporting performance and risk metrics (e.g., KPIs/KRIs – Status Reporting and Dashboard for senior management);
  • Possess strong organisational, time management and diplomacy skills;
  • Independent tasking and project completion with little supervision is a must;
  • Excellent analytical and problem-solving skills as well as interpersonal skills to interact with users, team members and senior management;
  • Excellent written and verbal communications;
  • Expert application of the MS Office, and other widely used office automation software;
  • Experience in Government/List X/Facilities Security Clearance and Commercial security;
  • Ability to obtain a high level of Government Security Clearance;
  • Assist with any security tasks as deemed appropriate by the Head of Information Security or Chief Security Officer;
  • Assisting with the promotion of knowledge of industry security regulations and standards.
  • Promote and ensure BAE Systems Behaviours;
  • Must already hold UKSV with the ability to obtain Developed Vetting National Security Clearance;
  • Must be a UK National.
Responsibilities
  • Technical Risk Management – You will be conducting in-depth technical risk assessments of IT systems, networks, and applications in your area of responsibility. Identify potential vulnerabilities and recommend mitigation strategies;
  • Accreditation and Compliance - Lead Accreditation and the continuation of accreditation work, with interface into the IT team, Accreditor and affected business units. Maintain accreditation and compliance with frameworks such as Secure by Design, NIST-800-53, STRAP;
  • Security Testing - Scope and oversee penetration testing, vulnerability scanning, and other security validation activities, to ensure effectiveness of security controls;
  • Design and Architecture Review - Assess the Information Security of IT architecture and system designs during project lifecycles, and provide recommendations to ensure secure design principles are applied and within standards and compliance;
  • Policy and Standards - Develop and enforce technical security policy, procedures, standards and guidance, to ensure policies are implemented effectively across projects and teams;
  • Continuous Improvement - Identify gaps and areas for improvement in security controls and processes. Drive initiatives to enhance security assurance capabilities;
  • Stakeholder Communication and Reporting - Provide detailed assurance reports to stakeholders, including Accreditors, Leadership and Technical teams. Communicate technical risks and mitigation strategies effectively to technical and non-technical audiences;
  • Collaboration with Teams - Work closely with engineering, development, and operations teams to embed Information Security into workflows. Foster collaboration between IT support, assurance, governance, and risk management functions;
  • Security Assurance Framework Development – Review and revise Information Security frameworks for assessing the security posture of systems, applications, and infrastructure. Ensure alignment with organisational objectives, industry standards, and compliance requirements;
  • Promoting high security standards and integrity
Loading...