Job Description
Product Security Engineer
Full-time
Derby/Bristol/Solihull/Hybrid
An exciting opportunity for a Product Security Engineer to join the team working in either Derby, Bristol or Solihull
As a Product Security Engineer, you will be responsible to secure a range of Roll-Royce products against an ever-evolving range of security threats (ie - cyber, supply chain, etc). You may be involved at any stage of a project life cycle from concept development, design and integration, integrated/component testing through final production release. You'll usually work in cross-functional project teams with colleagues in other branches of engineering.
Why Rolls-Royce?
Rolls-Royce is one of the most enduring and iconic brands in the world and has been at the forefront of innovation for over a century. We design, build and service systems that provide critical power to customers where safety and reliability are paramount.
We are proud to be a force for progress, powering, protecting and connecting people everywhere and we want to ensure that the excellence and ingenuity that has shaped our history continues into our future, and we need people like you to come and join us on this journey.
What we offer
We offer excellent development opportunities, a competitive salary, and exceptional benefits. These include bonus, employee support assistance and employee discounts.
Your needs are as unique as you are. We encourage flexible working arrangements and support hybrid working wherever possible, so you can always be at your best - wherever and whenever you work.
What you will be doing:
- Contributing to the Secure Cyber Resilient Engineering (SCRE) of our products, applying technical knowledge and providing technical direction as required throughout the product lifecycle: architecture, requirements, design, build, test, production, operations, and support. Frequently, these activities will be done in a digital environment using Model Based Engineering tools.
- Contribute to the development, implementation, documentation, and maintenance of policies, procedures, associated guidelines, tools and training.
- Contribute to the security life cycle activities (concept through release) including regulatory certification/qualification (ie - The Risk Management Framework, ED-202A / DO-326A, Secure By Design, IEC 62443, etc)
- Collaborate with government, customers, suppliers, and industry experts to meet system and program requirements.
- Maybe required to provide feedback on systems security and resilience good practice and help disseminate the techniques, policies, procedures, and knowledge across the business.
- Able to work across and communicate with multiple business functions (ie - Software, hardware, maintenance, manufacturing, corporate)
- May be required to communicate risk to business stakeholders
Who we’re looking for:
At Rolls-Royce we put safety first, do the right thing, keep it simple and make a difference. These principles form the behaviours that guide us and are an essential component of our assessment process.
They are the fundamental qualities that we seek for all roles and for this role we are looking for someone with:
- Good time management skills able to prioritize and execute tasks in a high-pressure environment.
- Dynamically respond to evolving objectives and emerging opportunities while working in coordination with a multidisciplinary, energetic team of engineers and scientists.
- Ability or an awareness of the following would be advantageous:
- The secure development lifecycle
- Use of encryption
- Security measures (firewalls, HIDS, NIDS)
- Security risk assessment techniques (e.g. ED202A, ED203A, NIST SP800-30) -Systems Security policies and standards to the engineering of cyber-physical systems such as NIST SP 800-160, DO-326, UK Secure By Design, IEC 62443 - Experience or interest in cybersecurity and cyber threats
- Highly self-motivated and directed, with keen attention to detail.
- Strong problem solving skills, and an ability to understand the level of analysis required
- Good written, oral, and interpersonal communication skills, able to communicate ideas in both technical and user-friendly language.
- Able to work within a team-oriented, collaborative environment
- Keen to develop capability through appropriate training courses and workshops.
- A working appreciation of associated engineering disciplines.
We are an equal opportunities employer. We’re committed to developing a diverse workforce and an inclusive working environment. We believe that people from different backgrounds and cultures give us different perspectives which are crucial to innovation and problem solving. We believe the more diverse perspectives we have, the more successful we’ll be. By building a culture of caring and belonging, we give everyone who works here the opportunity to realise their full potential.
We welcome applications from people with a refugee background.
You can learn more about our global Inclusion strategy at Our people | Rolls-Royce
Closing Date: 13th January 2025
Job Category
Software Systems
Posting Date
20 Dec 2024; 00:12
Posting End Date
13 Jan 2025