Information Assurance Security Engineer

00139 LEIDOS INNOVATIONS UK LTD.
6369 UK Mobile Worker
Full-time

Information Assurance Security Engineer

Are you ready for your next career challenge?

The Role :

Leidos have an exciting and challenging opportunity for an Information Assurance Security Engineer to join our expanding Engineering Team.

You will be immersed in one of our key programmes, on behalf of one of our high-profile national security clients.

What will I be doing?

Within this role the successful candidate will be required to provide subject matter expertise in design of Security and Assurance within the Information Security Management (ISM) function, helping to set security strategy, policy and standard operating procedures to ensure stakeholder confidence that risk to the confidentiality, integrity and availability of data in storage and in transit is managed pragmatically, appropriately and in a cost-effective manner.

  • Be responsible for the assurance of system designs and infrastructure changes to always maintain adequate levels of information security.
  • Perform Information Assurance (IA) Policy & Procedure development, Information Security Audits, advise on cryptographic security including certificate management.
  • Co-ordinate Information Security activities within the Account. Maintain the Information Security Policy, Standards, and ISMS documentation in line with legislative compliance requirements and advice from Accreditors.
  • Support the maintenance of Risk Management Accreditation Document Sets (RMADS) for the infrastructure.
  • Support delivering the service to the contracted level and ensuring Service Level Agreements conformance.
  • Support the development and operation of the Information Security Management System (ISMS) for the infrastructure and service.
  • Be responsible for the analysis of system security weaknesses and articulate issues to other programme members and department leads.
  • Liaise with teams and organisations to ensure the required level of information security is supported by site security and other third-party providers.
  • Carry out Information Security risk assessments and maintain the Information Security Risk Register.
  • Managing the monthly vulnerability process for the IABS environment, taking appropriate action to ensure that all possible remediation or mitigation measures are implemented and recorded.
  • Making sure all planned security activities are recorded on the Security PoaP which is sent to service before the beginning of each month.

This is combined with information regarding all vulnerabilities and patching plans for the month.

  • Attend the weekly Security Working Group (SWG) and address any actions / issues which are related.
  • Scope, coordinate and deliver the annual ITHC (IT Health Check) and all subsequent remediation plans and ensure that remediation efforts are tracked and recorded and reported within the SWG.

You will work in conjunction with the Information Security lead, other members of the ISM team, the client and other programme suppliers.

A key element of the role is to act as the initial point of contact for the Client’s Security team to engage with for any security led assurance-based processes which need to be addressed.

What does Leidos need from me?

  • Experience of the IT systems engineering lifecycle.
  • Understanding of the controlling processes for the systems engineering lifecycle (e.g. requirements management, configuration management, testing and assurance) and where cyber assurance fits into these.
  • Understanding of different lifecycles / methodologies (agile, waterfall, incremental, SAFE, DevOps).
  • Managing ITHC activities through the lifecycle from scoping, coordination and remediation management.
  • Solid understanding of Confidentiality, Integrity, Availability and practical experience in applying that understanding in management of risk and response to events and changes.
  • Experience of process involved in gaining and maintaining accreditation for secure / sensitive systems using structured Risk analysis and treatment approaches.
  • Experience of process involved in continuous assurance for information security management systems, e.g. NIST, ISO etc.
  • Experience of Cyber Incident Response capabilities.
  • Experience in tracing through and evaluating responses to security requirements for a system.
  • Experience in maintaining elements of security documentation sets (SyOPS, RMADs, Security Management Plans, ISMS elements, CARBN).

Required Technical Expertise :

  • Understanding of principles of network and boundary protection technologies (firewalls, mail gateways, load balancers, antivirus, IPS, IDS, Diodes)
  • Understanding of Protective Monitoring systems (SIEM / SOC) and the principles of their deployment.
  • Understanding of authentication and authorisation technologies (SAML, LDAP, PKI, etc)
  • Understanding of encryption and protocols and structures in support of deployment, e.g. custodian
  • Understanding of purpose and effectiveness of penetration tests or IT Health Checks

Communication and Soft Skills :

  • Excellent verbal and written communication skills and works well in a team environment
  • Capable of developing and communicating reports to meet defined objectives for intended audience
  • A good level of commercial awareness and project disciplines

Clearance Requirements :

This role requires SC clearance to start which we can obtain.

Discover yourself at Leidos UK! Join our team and we’ll unleash your talents to solve the most challenging technical problems.

What we do for you :

At Leidos we are PASSIONATE about customer success, UNITED as a team and INSPIRED to make a difference. We offer meaningful and engaging careers, a collaborative culture, and support for your career goals, all while nurturing a healthy work-life balance.

We provide an employment package that attracts, develops and retains only the best in talent. Our reward scheme includes :

  • Contributory Pension Scheme
  • Private Medical Insurance
  • 33 days Annual Leave (including public and privilege holidays)
  • Access to Flexible benefits (including life assurance, health schemes, gym memberships, annual buy and sell holidays and a cycle to work scheme)

Commitment to Diversity :

We welcome applications from every part of the community and are committed to a truly diverse and inclusive culture. We foster a sense of belonging, welcoming all perspectives and contributions, and providing equal access to opportunities and resources for everyone.

If you have a disability or need any reasonable adjustments during the application and selection stages please let us know, and we will respond in a way that best fits your needs.

Who We Are :

we work to make the world safer, healthier, and more efficient through technology, engineering and science.

Leidos is a growing company delivering innovative technology and solutions focused on safeguarding critical capabilities and transformation in frontline services, our work in the United Kingdom includes addressing some of the most complex problems in defence, healthcare, government, safety and security, and transportation.

What Makes Us Different :

Purpose : you can use your passion and abilities at Leidos to keep the people you care about safe. We are at the forefront of machine learning, AI, cyber security and solutions.

Using your skills in the technology frontline by helping to build a safer world. You can change.

Collaboration : having to do your job is one of our core benefits, enabling you to become part of our extraordinary team.

We have been empowering our people to work flexibly for years. Whether you work from home, the office or on customer sites, we will give you the digital tools and the flexibility to work smarter and align your needs and ours.

People : Leidos people from every background to be themselves and gives you the tools to learn new skills by . We believe that extraordinary people need opportunities to grow, to and to inspire others.

At Leidos, we invest in technical academies, career rotations and a career development plans that enhance your future.

Original Posting Date :

2024-08-13

While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range :

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

10 hours ago
Related jobs
Promoted
Capital One
IL, United States

Senior Manager, Information Security Office (ISO) Assurance Team Lead. At Capital One, you will help consult on initiatives, programs, and projects to raise their game in Information Security. Serve as an expert in Capital One’s Information Security capabilities, solutions, policies, procedures and ...

00139 LEIDOS INNOVATIONS UK LTD.
Willowbrook, Illinois

Leidos have an exciting and challenging opportunity for an Information Assurance Security Engineer to join our expanding Engineering Team. Within this role the successful candidate will be required to provide subject matter expertise in design of Security and Assurance within the Information Securit...

Promoted
SAIC
Chicago, Illinois

Systems Administrator in Nashville, Chicago, and Buffalo. Responsible for coordination and management of district support personnel including PC Support Technicians and System Administrators. Oversee and ensure the day-to-day operational maintenance and support of systems and direct team. Manage and...

Promoted
Loyola University Chicago
Maywood, Illinois

The ideal candidate will support our Postdoctoral Research Associates and Principal Investigator in data quality assessment, data cleaning and analysis. Develops systems for improved data management and extraction of geospatial data. HEALTH INFORMATICS & DATA SCI. Collates, cleans, and analyzes data...

Promoted
Capital One
IL, United States

Senior Software Engineer, Golang. As a Capital One Software Engineer, you’ll have the opportunity to be on the forefront of driving a major transformation within Capital One. At least 4 years of experience in software engineering (Internship experience does not apply). Share your passion for staying...

Promoted
Aldi
Naperville, Illinois

First and foremost, our Security team is focused on protecting our employees, customers, and preserving our companys profits. If youre an analytical thinker and have a passion for security solutions, apply to join our dynamic team today!. Serves as physical security resource for all U. Supports secu...

Promoted
CNH Industrial
Oak Brook, Illinois

As a Systems Engineer II, you will be responsible for ensuring overall form, fit, and function of new vehicle systems into a single complete system. Responsible for executing system engineering best practices. Work across multiple engineering disciplines and development teams to coordinate system de...

Promoted
Advocate Health
Oak Brook, Illinois

Develop training modules and materials to increase data literacy and data driven operational decisions. Lead the development of an operational data analytics model that enables data driven business decisions across the organization. Strong skillset in data analysis, validation, and data storytelling...

C​NH Industrial
Oak Brook, Illinois

As a Staff Embedded Firmware Engineer, you will architect and develop new generation software core software solution for automotive grade real-time ECUs. Lead software development tasks with Software suppliers, integrate and accept supplier provided software modules. We are currently seeking a Staff...

Navistar
Lisle, Illinois

Responsibilities Include but are not limited to: Developing solutions to complex problems while maintaining the integrity of the product Identify, troubleshoot, contain, and correct engineering issues on test benches, manufacturing facilities, or customer centers Provide engineering information by a...