
Cyber Security Architect (d/f/m)
Airbus · 2 Locations
Job description
Job Description: A vacancy for Cyber Security Architect (d/f/m) has arisen within the Defence and Strategic Programmes team of Airbus Cybersecurity in Spain. We provide products, development, concepts, and cybersecurity engineering to internal and external customers in Airbus. As a European specialist, Airbus shields customers, agencies, and critical infrastructures from cyber threats. We are looking for experienced Cyber Security Architect with proven experience in the defence and aerospace domains. In the role of Cyber Security Architect the main responsibilities are: 1. Product security governance throughout its entire lifecycle. Support in defining secure architectures for both segments (Air/Ground Segments). Security requirements management at different levels (L1, L2, L3) using DOORS. Security architecture modeling using Cameo. Definition of technical security documents (Architecture, Cryptographic documents, Review Items, Ad-Hoc SRAs, etc.). Technical support to DOs (Design Organizations) in discussions with suppliers regarding cyber requirements. Technical support in various panels with the Authority and Customer (CISSWG, COMSEC panels, etc.). Definition of cybersecurity processes:Support in defining the key management process throughout its entire lifecycle (Generation, transport, storage, erasure). Support in defining certificate management processes. 2. Security Risk Assessment (SRA) execution, including threat and vulnerability evaluations. 3. Proposal of security solutions (architectures and designs) to ensure compliance with requirements. 4. Evaluation of security requirements implemented in solutions proposed by system designers. 5. Management of formal compliance processes (assessment, certification, and accreditation) under national and international regulations (CC/CEM, ITSEC, etc.). 6. Expert support to systems designers and contribution to R&D+I projects. 7.Monitoring of cyber vulnerabilities and impact analysis to identify mitigation measures. 8. As an integral part of their duties, the employee must fulfill responsibilities regarding occupational risk prevention (ORP), quality, and the environment. This includes strict compliance with all health and safety regulations and procedures established by the company and current legislation; participating in ORP training; correctly using personal protective equipment (PPE) and reporting any unsafe conditions; ensuring all activities are performed according to quality standards; contributing to the continuous improvement of the quality system; maintaining accurate records and participating in quality audits; and participating in sustainability initiatives, promoting the efficient use of resources and waste reduction, and reporting environmental incidents to guarantee a safe, sustainable, and high-quality work environment. 10. As an Airbus SLC employee, you are required to know and comply with established internal policies and procedures, both at the Airbus Group level and those specific to Airbus SLC, and you commit to: a) Complying with Airbus SLC policies, codes, and standards. b) Understanding and fulfilling the assigned roles and responsibilities regarding information security, privacy, and confidentiality. c) Receiving training, awareness, and periodic updates on the entity’s policies and procedures relevant to your position. Acting with due diligence to prevent security incidents. In this regard, an investigation and disciplinary process may be initiated against those who may have caused such incidents. No such process shall commence without prior verification that an incident has occurred. Education and Training Requirements Academic Background: Bachelor’s or Master’s Degree in Telecommunications Engineering, Aerospace Engineering, or Computer Science. Certifications and Compliance:Security Clearance: Demonstrated ability to obtain and maintain National / NATO Security Clearance. Advanced Knowledge of Certification Standards: Common Criteria (ISO/IEC 15408), ITSEC, or airworthiness regulations (DO-326A/ED-202A). Languages: English C1 Level (Advanced) for technical and business communication. Knowledge of TRANSEC/COMSEC is an asset / a plus. Knowledge of the CIS Accreditation process is an asset / a plus. Knowledge of NATO standards is an asset / a plus. Specific Technical Skills: Hands-on experience in Security Risk Assessment (SRA) methodologies. Ability to execute hardening on network devices and operating systems. Proficiency with vulnerability monitoring tools. Ability to draft clear and consumable technical documentation. Required Experience Minimum of 2-4 years of experience in information security or aircraft systems Required Competencies Architectural Vision: Ability to design security solutions that do not compromise the operational efficiency of aeronautical systems. Methodological Rigor: Extreme precision in technical documentation and security accreditation processes. Analytical Thinking: Ability to dissect complex threats and identify attack vectors in non-conventional environments. Specialized Communication: Ability to act as an expert consultant for systems designers, balancing security with functionality. Anticipation and Vigilance: Proactivity in monitoring the global threat landscape (Cyber Threat Intelligence) as applied to the sector. Integrity and Discretion: Given the access to sensitive and classified information. Resilience: Ability to work under pressure in critical certification processes with strict deadlines. Collaborative Teamwork: Ability to integrate into multidisciplinary teams (Systems Engineering, R&D, Test Flights). Attention to Detail: Capacity to detect minor vulnerabilities or configuration flaws that could escalate into critical risks. This job requires an awareness of any potential compliance risks and a commitment to act with integrity, as the foundation for the Company’s success, reputation and sustainable growth. Company: Airbus Secure Land Communications, S.A. Contract Type: Permanent----- Experience Level: Professional Job Family: Cyber Security By submitting your CV or application you are consenting to Airbus using and storing information about you for monitoring purposes relating to your application or future employment. This information will only be used by Airbus. Airbus is committed to achieving workforce diversity and creating an inclusive working environment. We welcome all applications irrespective of social and cultural background, age, gender, disability, sexual orientation or religious belief. Airbus is, and always has been, committed to equal opportunities for all. As such, we will never ask for any type of monetary exchange in the frame of a recruitment process. Any impersonation of Airbus to do so should be reported to emsom@airbus.com. At Airbus, we support you to work, connect and collaborate more easily and flexibly. Wherever possible, we foster flexible working arrangements to stimulate innovative thinking.
Verified and listed by ActiveJobs. Applications are made directly on Airbus's own career page — we never sit in the middle.