Security Architect for ISMS
hace 8 días
Getafe
ph3Job Summary /h3 pWe are seeking a highly skilled and experienced Security Architect to contribute to the design, implementation, and maintenance of the Information Security Management System (ISMS) within Airbus Defence and Space, ensuring compliance with new Part IS regulation. /p h3Job Responsibilities /h3 ul liContribute to the ISMS implementation and maintenance; documenting and maintaining all the approved organisation key processes, procedures, roles and responsibilities; /li liContribute to the ISMS inventory through the analysis of their process / procedure and assets identification; /li liPerform, review/update and technically approve security risk assessment on the assets of the Approved Organisation (IT/OT) using methods and tools like MAGERIT/PILAR, EBIOS/FENCE; /li liDefine, propose, ensure decision and perform follow up on the security risk treatment plans; /li liCommunicate the outcome of the risk assessment and treatment plan to the ISMS manager, other personnel (as the Business Asset Owner), and other organisations sharing an interface (Security Incident Response Leader, Vulnerability Management Team, NISO); /li liAnalyse, perform, review/update and technically approve security incident report on the assets of the Approved Organisation; /li liDefine, propose, ensure decision and perform follow up on information security incident response plan; /li liCooperate on investigations with other organisations that contribute to the information security of its own activities. /li /ul h3Job Qualifications /h3 ul liBachelor's degree in Computer Science, Information Security, or a related field. Master's degree preferred. /li liMinimum of 5 years of experience in information security, with at least 3 years in a Security Architect role specifically focused on ISMS. /li liStrong expertise in ISO 27001, ENS (Esquema Nacional de Seguridad) implementation and auditing. /li liIn-depth knowledge of information security principles, frameworks, and best practices (e.g., NIST, COBIT, NIS2, ENS). /li liProven experience in security risk assessment methodologies and tools (MAGERIT/PILAR, EBIOS/FENCE) applied to IT/OT environments. /li liFamiliarity with various security technologies such as firewalls, IDS/IPS, SIEM, IAM, and data encryption. /li liKnowledge of EASA part 21 and Approved organisations in an aeronautical environment. /li liExcellent analytical, problem‑solving, and communication skills, with the ability to articulate complex security concepts to technical and non‑technical audiences. /li liFluency in English is required; Spanish proficiency is a plus. /li /ul h3Benefits /h3 ul liFlexible workshift. /li liOption of continuous schedule from May to September. /li liVacation days plus additional days‑off along the year (+35 working days off in total). /li liAttractive competitive salary and additional bonus. /li liHybrid model of working when possible, promoting the work‑life balance. /li liCollective transport service in some sites. /li liBenefits such as health insurance, employee stock options, retirement plan, or study grants. /li liOn‑site facilities (among others): free canteen, kindergarten, medical office. /li liPossibility to collaborate in different social and corporate social responsibility initiatives. /li liExcellent upskilling opportunities and great development prospects in a multicultural environment. /li liSpecial rates in a wide range of products other benefits. /li /ul pThe successful candidate will be subjected to a NATO/National security clearance in order to undertake related work in accordance with the business needs. /p pThis role will involve occasional travel for business. /p pThis job requires an awareness of any potential compliance risks and a commitment to act with integrity, as the foundation for the Company’s success, reputation and sustainable growth. /p pCompany: Airbus Defence and Space SAU /p pEmployment Type: Permanent /p pExperience Level: Professional /p pJob Family: Cyber Security /p pAirbus is committed to achieving workforce diversity and creating an inclusive working environment. We welcome all applications irrespective of social and cultural background, age, gender, disability, sexual orientation or religious belief. /p pAirbus is, and always has been, committed to equal opportunities for all. As such, we will never ask for any type of monetary exchange in the frame of a recruitment process. Any impersonation of Airbus to do so should be reported to /p pAt Airbus, we support you to work, connect and collaborate more easily and flexibly. Wherever possible, we foster flexible working arrangements to stimulate innovative thinking. /p /p #J-18808-Ljbffr