BAE Systems · 1 day ago
IT Security Spec Prin
BAE Systems is an international defense, aerospace and security company dedicated to delivering life-saving products to the military. They are hiring an IT Security Specialist to serve as the Information Systems Security Officer, responsible for ensuring the security and integrity of the organization's information systems and data.
AerospaceManufacturingMilitaryNational SecurityNavigation
Responsibilities
System Security Oversight: Ensure systems are operated, maintained, and disposed of in accordance with security policies and procedures outlined in the security plan
Program Implementation: Verify the implementation of delegated aspects of the system security program
Account Management: Ensure proper account management documentation is completed prior to adding and deleting system accounts
Documentation Management: Verify all system security documentation is current and accessible to properly authorized individuals
Risk Assessment and Mitigation: Conduct periodic assessments of authorized systems, identify vulnerabilities, and provide corrective actions to the Information System Security Manager - ISSM
Audit and Compliance: Ensure audit records are collected and analyzed in accordance with the security plan
Incident Response: Report all security-related incidents to the ISSM
System Recovery: Monitor system recovery processes to ensure security features and procedures are properly restored and functioning correctly
Change Management: Formally notify the ISSM of any changes to a system that could affect authorization
Configuration Control: Serve as a member of the Configuration Control Board (CCB), if designated by the ISSM
Security Policy and Compliance: Conduct regular reviews and updates of security policies to ensure they remain relevant and effective
Risk Management: Identify, assess, and mitigate potential security risks to the organization's information systems and data
System Security: Ensure the security and integrity of information systems, including networks, servers, workstations, and applications
Incident Response: Develop and implement incident response plans to respond to security incidents, including data breaches and system compromises
Vulnerability Management: Execute the continuous monitoring strategy
Security Awareness and Training: Develop and implement security awareness and training programs for employees and contractors
Audit and Compliance: Ensure user activity monitoring data is analyzed, stored, and protected in accordance with policies and procedures
Technical Security: Provide technical security expertise, including threat analysis, vulnerability assessment, and penetration testing
Communication and Collaboration: Communicate security risks and vulnerabilities to stakeholders, including senior management and employees
Continuous Improvement: Complete required training identified in the ISSM Required Training Table within 6 months of appointment
Qualification
Required
Bachelor's Degree and 6 years work experience or equivalent experience
Experience in Information Security
Experience in vulnerability/risk analysis
Experience in security policy, risk management, and system security
Experience in reports such as System Security Plans (SSPs), Risk Assessments Reports, Certification and Accreditation (C&A) packages, and/or System Requirements Traceability Matrix (SR TM)
Experience in security information and event management (SIEM) systems
Strong understanding of operating systems (Windows, Linux, etc.)
Familiarity with network protocols and architectures
Ability to work in a fast-paced environment and prioritize multiple tasks
Excellent communication and interpersonal skills
Strong analytical and problem-solving skills
Ability to obtain and retain a security clearance
U.S. Citizen
Preferred
Degree in Computer Science, Information Assurance, or a related field
Certifications: CompTIA Security+ or CISSP or CISM
Experience with Department of War classified systems such as SIPRNet
Experience with NIST Cybersecurity Framework and other security frameworks
Proficient in Python, PowerShell, or other scripting languages
Company
BAE Systems
BAE Systems is an aerospace, defence, and information security company that provides advanced and technology-led solutions.
Funding
Current Stage
Public CompanyTotal Funding
$142.2MKey Investors
Scottish EnterpriseU.S. Department of DefenseU.S. Department of Commerce
2025-06-19Grant· $12.36M
2024-09-18Grant· $9.6M
2023-12-11Grant· $35M
Leadership Team
Recent News
2026-01-06
2026-01-06
2026-01-06
Company data provided by crunchbase