Thales

CYBERSECURITY ARCHITECT

Thales
Aerospace & DefenseSingaporeFull-time1 weeks ago

About the role

AI summarised

Thales is seeking a Cybersecurity Architect for its Airspace Mobility Solutions business in Singapore. The role involves managing cybersecurity risks, developing security architectures, and leading security activities on bids and projects for air traffic management systems. The ideal candidate has 7+ years of cybersecurity experience, relevant certifications (e.g., CISSP), and strong knowledge of security standards and solutions.

Aerospace & DefenseFull-timeGeneral

Key Responsibilities

  • Understanding customer context, core information assets, and business impact from loss of key attributes
  • Capturing explicit system security requirements and constraints from the customer, regulators, risk assessments and the Thales organisation
  • Assessing and evaluating cyber risks, developing a detailed security management plan, and maintaining the cybersecurity risk register
  • Developing system-level security requirements and a security architecture, and leading the development of detailed design artefacts
  • Developing work breakdown structures, specifying deliverables, and creating detailed technical estimates that include assumptions, risks, and opportunities that support commercial and financial outcomes
  • Liaising with external certification bodies, including attending or facilitating regular security working groups, and supporting external security assessments
  • Leading the production of detailed documentation that supports cybersecurity accreditation and certification of systems
  • Tasking and/or supervising security engineers and solution architects on security activities
  • Providing advice to Thales and its customers on general security related issues as required
  • Contributing to security assurance planning and reporting, and reviewing test cases and test results
  • Supporting audits and investigations of cyber-related incidents and accidents
  • Attending and participating in regular team, bid, and project meetings

Requirements

  • Degree in Engineering, Computer Science or related discipline majoring in Cybersecurity
  • 7+ years of proven experience in the Cybersecurity field
  • Cyber Industry qualifications (e.g. CISSP, CompTIA Security+, CCNA Security, GIAC, SABSA or similar)
  • Strong knowledge in Cybersecurity solutions (e.g. IAM, PAM, SIEM, EDR, Keys, Firewall)
  • Strong knowledge in Cybersecurity engineering activities
  • Strong Knowledge of Security standards such as ISO 27001 and security local regulations (e.g. CCOP and IM(ICT&SS) for Singapore)
  • Strong knowledge in Vulnerability and risk management
  • Experience with authoring/reviewing Security plans (e.g. System Security Plan, Security incident Response Plan, Security Management Plan)
  • Experience with authoring/reviewing Technical Documentation
  • Technical experience with the security-based aspects and secure implementation of Linux and Windows based systems, network devices and firewalls
  • Demonstrated ability to achieve effective outcomes in a multidiscipline, multi-culture environment
  • A positive attitude combined with excellent interpersonal and motivational skills
  • Postgraduate studies in Cybersecurity (Desirable)
  • Knowledge of Systems Engineering Lifecycle and relevant standards (e.g. ISO/IEC15288) (Desirable)
  • Experience in System certification and accreditation (Desirable)
  • Experience in system hardening based on CIS Benchmarks or DISA STIG frameworks (Desirable)
  • Experience with System Engineering Tools (e.g. DOORS / Polarion / Jira / MBSE) (Desirable)
  • Experience in ATM Domain and related standards (e.g. ICAO, Eurocontrol, or safety critical systems) (Desirable)