architectures to mitigate risks posed by emerging technologies and business practices. Advising clients on information assurance, architectural issues, and risks. Supporting the development of RiskManagementAccreditation Document Sets (RMADS). Scoping security testing activities, explaining findings, and recommending remedial actions to stakeholders. Investigating security incidents. Promoting security awareness within project teams and the organization. Candidate requirements: HMG Security Policy More ❯
Bristol, Gloucestershire, United Kingdom Hybrid / WFH Options
Babcock Mission Critical Services España SA
/physical security controls within the risk/cost/benefit space. Security Documentationmanagement to include - but not limited to - review and update of related IA documents including RMADS, Security Cases, SyOPs, Business Impact Assessments, Data Protection Impact Assessments, Risk Registers, DART/Oculus entries, Risk Balance Cases, Information Asset Owner forms, Supplier Assurance Questionnaires. Experienced in relevant Security More ❯
Warrington, Cheshire, United Kingdom Hybrid / WFH Options
Babcock Mission Critical Services España SA
/physical security controls within the risk/cost/benefit space. Security Documentationmanagement to include - but not limited to - review and update of related IA documents including RMADS, Security Cases, SyOPs, Business Impact Assessments, Data Protection Impact Assessments, Risk Registers, DART/Oculus entries, Risk Balance Cases, Information Asset Owner forms, Supplier Assurance Questionnaires. Experienced in relevant Security More ❯
aligned with business and regulatory requirements. Lead the integration of secure-by-design principles into systems, platforms, and product development lifecycles. Conduct risk assessments and produce security documentation including RMADS, SyOPs, Security Cases, and Security Aspects Letters. Ensure compliance with relevant standards and frameworks including ISO 27001, NIST SP800, MOD JSPs, DEFSTANs, and airworthiness directives (e.g., DO-326A, DO-178C More ❯
of JSP processes Supporting the Development and maintenance of our Information Security Management System (ISMS) to best support the Company’s activities, including RiskManagementandAccreditation Document Sets (RMADS) and Company Security Policies. You will be a strong communicator working with all levels of the business from Junior Security Analysts to Senior Information Security Manager to put policies andMore ❯
corrective actions. Assist in compliance efforts with standards such as ISO 27001, NIST, and MOD-specific frameworks (e.g., JSPs, DEFSTANs). Contribute to risk assessments and the development of RMADSand other assurance documentation. Stay current with emerging threats, technologies, and regulatory changes. Required Skills & Experience Proven experience in cybersecurity operations, ideally within Defence, Aerospace, or other regulated sectors. Strong More ❯
of IT/security experience in the Defence Sector Demonstrable experience of one or more of the following areas: MoD Security GRC/Assurance Processes: Secure by Design andRMADs/Risk Assessment Cloud security architecture documentation, s ecurity controls mapping and c ompliance checking automation MoD Cyber Operations: SOC tool evaluation support, SIEM use case development, Metrics and reporting More ❯
bring: Proficiency in Ivanti Application & Device Control or similar lockdown tools. Experience working with high-security MOD systems and secure design principles. Familiarity with security and compliance documentation (e.g. RMADS, SyOPs, NIST frameworks). Core Technologies Microsoft: Windows Server 2019/2022/2025 Active Directory, Group Policy, DNS, DHCP Exchange Server 2019, SQL Server, SharePoint 2019 VMware: VMware Cloud More ❯
In-depth understanding of the current security landscape and cyber security consulting principles. Strong experience managing cyber security strategy, riskmanagement, and compliance in alignment with security policies (e.g. RMADS, JSP604, JSP440, SbD). Expertise in Public Key Infrastructure (PKI), identity managementand federation, firewalls, SIEM, vulnerability scanning, and cryptography. Experience overseeing incident response, vulnerability management, and security service delivery More ❯