Project/System Security Officer responsible for all security measures designed as part of the overall system(s) assigned to, ensuring compliance with the ESA Security Framework, and coordinating vulnerability assessment/penetration testing. Must have a master's degree in an engineering discipline, preferably computer science or cyber security, and at least five years of experience in IT security, risk management or compliance.
Requirements
- Creating and implementing comprehensive security policies, procedures and access control protocols
- Ensuring that the corporate information system and all assets are secured, managed and accounted for
- Specifying security standards to be met and practices to be applied by the supplier of the system
- Proactively identifying, analysing and mitigating security threats to infrastructure
- Conducting security risk assessments and supporting security risk management
- Producing or updating Security Operating Procedures (SECOPS)
- Coordinating vulnerability assessment/penetration testing
- Contributing to the authoring of the Information Security Management Plan
- Providing support to (cyber) security activities
- Monitoring network activity for threats and managing the response, investigation and reporting of security breaches
- Ensuring compliance with data protection laws and industry regulations
- Educating staff on security awareness
- Collaborating with IT and management to design, implement and maintain required security tools and disaster recovery plans
- Collaborating with technical support, IT and management to scope, design, implement and support the certification/accreditation process
- Maintaining security-related tools and systems, as well as their disaster and recovery plans
- Reporting to executives on the security posture and risk levels
Benefits
- Access to information, technology, and hardware subject to European or US export control and sanctions regulations
- Security clearance by national security administrations
- Basic screening before appointment, conducted by an external background screening service