IT Security Spec Prin jobs in United States
cer-icon
Apply on Employer Site
company-logo

BAE Systems · 1 day ago

IT Security Spec Prin

BAE Systems is an international defense, aerospace and security company dedicated to delivering life-saving products to the military. They are hiring an IT Security Specialist to serve as the Information Systems Security Officer, responsible for ensuring the security and integrity of the organization's information systems and data.

AerospaceManufacturingMilitaryNational SecurityNavigation
badNo H1BnoteSecurity Clearance RequirednoteU.S. Citizen Onlynote

Responsibilities

System Security Oversight: Ensure systems are operated, maintained, and disposed of in accordance with security policies and procedures outlined in the security plan
Program Implementation: Verify the implementation of delegated aspects of the system security program
Account Management: Ensure proper account management documentation is completed prior to adding and deleting system accounts
Documentation Management: Verify all system security documentation is current and accessible to properly authorized individuals
Risk Assessment and Mitigation: Conduct periodic assessments of authorized systems, identify vulnerabilities, and provide corrective actions to the Information System Security Manager - ISSM
Audit and Compliance: Ensure audit records are collected and analyzed in accordance with the security plan
Incident Response: Report all security-related incidents to the ISSM
System Recovery: Monitor system recovery processes to ensure security features and procedures are properly restored and functioning correctly
Change Management: Formally notify the ISSM of any changes to a system that could affect authorization
Configuration Control: Serve as a member of the Configuration Control Board (CCB), if designated by the ISSM
Security Policy and Compliance: Conduct regular reviews and updates of security policies to ensure they remain relevant and effective
Risk Management: Identify, assess, and mitigate potential security risks to the organization's information systems and data
System Security: Ensure the security and integrity of information systems, including networks, servers, workstations, and applications
Incident Response: Develop and implement incident response plans to respond to security incidents, including data breaches and system compromises
Vulnerability Management: Execute the continuous monitoring strategy
Security Awareness and Training: Develop and implement security awareness and training programs for employees and contractors
Audit and Compliance: Ensure user activity monitoring data is analyzed, stored, and protected in accordance with policies and procedures
Technical Security: Provide technical security expertise, including threat analysis, vulnerability assessment, and penetration testing
Communication and Collaboration: Communicate security risks and vulnerabilities to stakeholders, including senior management and employees
Continuous Improvement: Complete required training identified in the ISSM Required Training Table within 6 months of appointment

Qualification

Information SecurityVulnerability AnalysisSecurity Policy ManagementRisk ManagementSIEM SystemsOperating SystemsNetwork ProtocolsPythonPowerShellCISSP CertificationCISM CertificationCompTIA Security+Analytical SkillsCommunication SkillsProblem-Solving Skills

Required

Bachelor's Degree and 6 years work experience or equivalent experience
Experience in Information Security
Experience in vulnerability/risk analysis
Experience in security policy, risk management, and system security
Experience in reports such as System Security Plans (SSPs), Risk Assessments Reports, Certification and Accreditation (C&A) packages, and/or System Requirements Traceability Matrix (SR TM)
Experience in security information and event management (SIEM) systems
Strong understanding of operating systems (Windows, Linux, etc.)
Familiarity with network protocols and architectures
Ability to work in a fast-paced environment and prioritize multiple tasks
Excellent communication and interpersonal skills
Strong analytical and problem-solving skills
Ability to obtain and retain a security clearance
U.S. Citizen

Preferred

Degree in Computer Science, Information Assurance, or a related field
Certifications: CompTIA Security+ or CISSP or CISM
Experience with Department of War classified systems such as SIPRNet
Experience with NIST Cybersecurity Framework and other security frameworks
Proficient in Python, PowerShell, or other scripting languages

Company

BAE Systems

company-logo
BAE Systems is an aerospace, defence, and information security company that provides advanced and technology-led solutions.

Funding

Current Stage
Public Company
Total Funding
$142.2M
Key Investors
Scottish EnterpriseU.S. Department of DefenseU.S. Department of Commerce
2025-06-19Grant· $12.36M
2024-09-18Grant· $9.6M
2023-12-11Grant· $35M

Leadership Team

leader-logo
Francesca Scire-Scappuzzo
Sr. Director Advanced Technology and Innovation. External Innovation Division Lead.
leader-logo
Mary Haigh
Director of Digital Delivery and Deputy Global CIO
linkedin
Company data provided by crunchbase