Security Engineer (Contractor)
// Role Summary
General Dynamics Mission Systems seeks a Security Engineer Contractor to provide expert security guidance on CIS and Cyber domain projects. This role requires implementation and compliance with various security architectural frameworks and a strong understanding of defence standards.
// Key Responsibilities
- Provide security expertise for CIS and Cyber domain projects.
- Implement and ensure compliance with Security Architectural Frameworks like IS1&2, ISO27001.
- Offer guidance on PKI implementation and security aspects of solution design.
- Develop and maintain project-level security documentation and assurance.
- Support secure configuration, integration, and testing activities.
- Requires a contractor to obtain appropriate UK Security clearance.
// Role Specification
Security Engineer (Contractor)
General Dynamics Mission Systems is seeking a Security Engineer Contractor to contribute to projects within the CIS and Cyber domains. This role is crucial for providing essential security domain expertise, ensuring that security is embedded in all engineering decisions and project lifecycles.
Key Responsibilities:
- Collaborate with Technical Project Managers and the Solution Design Team to produce necessary security deliverables.
- Act as a security authority, guiding the project and ensuring security considerations are integral to all engineering decisions.
- Provide specialized expertise in Public Key Infrastructure (PKI) and its development within solutions.
- Assist in the creation and ongoing maintenance of project-specific security documentation.
- Support the development and assurance processes for all project security outputs.
- Contribute to the development and implementation of open architectures.
- Deliver a cohesive, integrated, and layered security architecture.
- Ensure risks and issues are managed within the Accreditors' risk appetite by identifying appropriate mitigation strategies.
- Liaise with customer security representatives and prepare supporting artifacts for SyTLMs.
- Maintain traceability of security designs to project requirements.
- Assist with secure configuration and integration activities.
- Work with the wider design team to ensure implementations align with the security design.
- Collaborate with the test team to provide evidence from security functional tests.
Required Experience:
Candidates should possess experience in large, complex systems across all project lifecycle phases in a security context. This includes a proven track record of producing security designs that have successfully passed accreditation and moved into support phases. Experience with PKI and its implementation within complex systems is essential.
Security Architectural Frameworks Experience:
Previous experience with implementation and compliance with any of the following frameworks is highly desirable:
- System Administration and Networking and Security (SANS) Institute Framework
- National Institute of Standards Technology Framework SP 800-53
- National Institute of Standards Technology Cyber Security Framework
- NATO Communications Information Agency (NCIA) Standards
- ISO 27001 (2013); BS ISO/IEC 27001:2013
- Infosec Standard 1&2 (IS1&2)
- European Directive on security of Networks and Information Systems Directive (NIS Directive)
- Any other demonstrably relevant standard or framework (SABSA, COBIT etc.)
The role is evaluated as Outside IR35. Successful applicants must be able to obtain the appropriate level of UK Security Clearance and undergo suitable Right to Work checks. The desired start date for this contract is November/December 2026.