Aerospace Cybersecurity Technical Lead
5 days ago
Expleo is a trusted partner for end-to-end, integrated engineering, quality services, and management consulting for digital transformation. We help businesses harness unrelenting technological change to deliver innovations that provide a competitive advantage and improve everyday life worldwide.
As part of the Expleo Digital and Emerging Technology (DET) team, you will report to the Head of Cybersecurity and join our established Cybersecurity Practice. We seek a highly experienced Aerospace Cybersecurity Technical Lead to support our strategic aerospace engagements and deliver cybersecurity engineering and assurance support to our client base.
This role will lead the technical delivery of cybersecurity artefacts aligned to EASA, UK CAA and associated airworthiness regulations. You will support developing and refining our client's Airworthiness Security Process (AWSP) and oversee the creation of core artefacts to support certification.
This client-facing role ideally suits someone with deep experience in aerospace system security, airworthiness security assurance, and regulatory alignment. You will be a trusted advisor to engineering teams and Expleo cybersecurity consultants, ensuring best-practice alignment, efficient delivery, and high-quality outputs across the certification lifecycle.
Responsibilities
- Act as the technical lead for cybersecurity delivery to aerospace clients, ensuring alignment with the development roadmap and certification programme.
- Provide subject matter expertise on airworthiness security, system security engineering, and certification artefact production aligned to EASA and UK CAA expectations.
- Lead the development and review of cybersecurity documentation, including the PSecAC (Airworthiness Security Process Plan), PASRA (Preliminary Aircraft Security Risk Assessment), ASAM (Aircraft Security Architecture Model), and Security Verification Methods.
- Provide input into the AWSP frameworks, including the tailoring of compliance checklists, activity outcomes, and document templates.
- Ensure traceability between security risk assessments, controls, and compliance objectives across the aircraft systems and software architecture.
- Coordinate the development of cybersecurity methods and processes, contributing to their alignment with recognised standards.
- Engage with DAG's internal stakeholders, including engineering, safety, and systems integration teams, to embed cybersecurity into the design and certification lifecycle.
- Act as the primary technical interface for cybersecurity between Expleo and clients, supporting queries, reviews, and audits.
- Support internal QA and delivery governance for all security engineering artefacts, ensuring consistency, rigour, and traceability to certification requirements.
- Provide mentoring and support to Expleo consultants embedded in the client workstreams, sharing knowledge and building internal aerospace security capability.
Qualifications
- A degree (or equivalent experience) in Aerospace Engineering, Systems Engineering, Cybersecurity, or a related technical discipline.
- Recognised cybersecurity certifications (e.g., CISSP, CISM, GICSP, CCSK) and/or relevant systems engineering accreditations (INCOSE ASEP/CSEP).
- Formal training or applied experience with aviation cybersecurity standards such as ED-202A/DO-326A, DO-355A, ED-203A, DO-356A.
- Understanding of EASA and UK CAA certification frameworks.
- Familiarity with MBSE tools and model-based security approaches, ideally including experience with Capella, MagicDraw, or SysML.
- Experience working within Design Organisations (DOA) or with organisations under delegated regulatory oversight.
Essential Skills
- In-depth knowledge of aircraft systems, avionics networks, data buses (ARINC 429, AFDX), and embedded platform architectures.
- Strong grasp of cybersecurity engineering principles in the context of safety-critical systems and regulated environments.
- Demonstrated experience leading the development of cybersecurity assurance artefacts for certification programmes.
- Practical understanding of airworthiness risk modelling, threat identification, attack surface reduction, and aircraft-level threat scenarios.
- Ability to produce certification-ready documentation aligned to EASA/UK CAA guidance, including traceability to compliance objectives.
- Strong communication and interpersonal skills, with the ability to translate complex cybersecurity concepts for engineering, safety, and programme stakeholders.
- Knowledge of aerospace cybersecurity policy, risk management, and threat intelligence as applied to aircraft development environments.
- Collaborative and detail-oriented, able to work across international teams and regulatory boundaries.
Experience
- Experience in cybersecurity, with at least 5 years focused on aerospace, defence, or regulated engineering environments.
- Proven track record of delivering security artefacts in support of product certification or aircraft programme development.
- Previous experience supporting or working within a DOA or similar regulated environment.
- Hands-on involvement with aircraft-level cybersecurity engineering, including network segmentation, security zones, access control, and data integrity assurance.
- Experience working across multi-disciplinary teams involving engineering, avionics, software, safety, and regulatory specialists.
- Familiarity with regulatory alignment processes and compliance checklists for EASA and/or UK CAA cybersecurity requirements
- Experience supporting cybersecurity assurance within other EASA/UK CAA-regulated aerospace programmes.
- Familiarity with Capella, Polarion, or other MBSE platforms in the context of security architecture and systems modelling.
- Practical understanding of Secure Software Development Assurance (SSDA) and interaction between security and safety lifecycles.
- Experience responding to regulatory audits, design reviews, and certification authority engagements.
- Understanding aircraft production and supply chain security, including configuration management, supplier assurance, and design data integrity.
- Exposure to digital threat modelling techniques tailored to aerospace domains (MITRE ATT&CK for ICS/Aerospace, STRIDE-LM).
- Ability to contribute to internal capability development, methodology refinement, and knowledge transfer across delivery teams.
What Do I Need Before I Apply
- You must have the right to work in the UK.
- A strong background in aerospace cybersecurity, systems assurance, and security engineering within regulated environments.
- Demonstrable experience producing cybersecurity artefacts for regulated clients and/or aviation platforms.
- The ability to lead technical delivery workstreams, mentor others, and engage with senior stakeholders in complex aerospace programmes.
Benefits
- Collaborative working environment – we stand shoulder to shoulder with our clients and our peers through good times and challenges
- We empower all passionate technology loving professionals by allowing them to expand their skills and take part in inspiring projects
- Expleo Academy - enables you to acquire and develop the right skills by delivering a suite of accredited training courses
- Competitive company benefits
- Always working as one team, our people are not afraid to think big and challenge the status quo
As a Disability Confident Committed Employer we have committed to:
Ensure our recruitment process is inclusive and accessible
- Communicating and promoting vacancies
- Offering an interview to disabled people who meet the minimum criteria for the job
- Anticipating and providing reasonable adjustments as required
- Supporting any existing employee who acquires a disability or long term health condition, enabling them to stay in work at least one activity that will make a difference for disabled people
"We are an equal opportunities employer and welcome applications from all suitably qualified persons regardless of their race, sex, disability, religion/belief, sexual orientation or age".
We treat everyone fairly and equitably across the organisation, including providing any additional support and adjustments needed for everyone to thrive
-
Cybersecurity Assurance Consultant
3 days ago
London, Greater London, United Kingdom Expleo Group Full time £120,000 - £130,000 per yearExpleo is a trusted partner for end-to-end, integrated engineering, quality services, and management consulting for digital transformation. We help businesses harness unrelenting technological change to deliver innovations that provide a competitive advantage and improve everyday life worldwide.As part of the Expleo Digital and Technology (DigiTech) team,...
-
Cybersecurity - Tech Risk Lead
2 weeks ago
London, Greater London, United Kingdom JPMorganChase Full time £60,000 - £120,000 per yearDescriptionWe are seeking a highly skilled candidate with a strong background in cybersecurity and a keen ability to gather and review findings and telemetry data, conduct root cause analysis, and articulate risk effectively.As a Cybersecurity - Tech Risk Lead at JPMorgan Chase within Cybersecurity Technology & Controls, you will play a pivotal role in...
-
Aerospace Engineer
2 weeks ago
London, Greater London, United Kingdom DKS DYNASTY Full time $350,000 - $450,000 per yearJob Title:Aerospace Technical Documentation Director – DKS Spaceforce TARDIS-Class ProgramDepartment:DKS Spaceforce – Advanced Vehicle Design DivisionReports To:Chief Systems Architect / Head of Engineering IntegrationRole Overview:TheAerospace Technical Documentation Directoris responsible for the end-to-end authorship, design, and publication of...
-
Lead Finance Specialist
1 week ago
London, Greater London, United Kingdom GE Aerospace Full time £50,000 - £100,000 per yearJob Description SummaryAn exciting new opportunity for a Lead Finance Specialist to join our On Wing Support business on a permanent basis, attached to our Feltham site near London Heathrow. You'll be able to drive optimal performance (cost, fulfillment, quality, cash) and profitability through the Supply Chain and Project execution. You'll have knowledge of...
-
Technical Lead
5 days ago
London, Greater London, United Kingdom Census Sa Full time £80,000 - £120,000 per yearAbout CENSUSCENSUS is an internationally acclaimed Cybersecurity services provider. We support the needs of multiple industries, providing IT and OT security services to public and private organizations around the world, ranging from financial institutions and critical infrastructure to automotive and secure communications, including Fortune 500 companies....
-
Senior Cybersecurity Governance Analyst
3 days ago
London, Greater London, United Kingdom Entain Full timeCompany DescriptionSports betting, gaming and interactive entertainment is changing, and we're leading that change. By putting people first. By placing exciting, engaging and entertaining experiences at more fingertips than ever before. We're pulling into pole position by pushing boundaries further. With innovation. With technology. But most importantly,...
-
Technical Lead
3 days ago
London, Greater London, United Kingdom Vodafone Full time £80,000 - £120,000 per yearLead cross functional technical delivery within a scrum team Lead cloud based applications through all phases of development lifecycle, including integration with partner systems Collaborate with stakeholders to define technical requirements and impact assessment Application design in line with industry best practices (Cloud Native, Serverless, Micro...
-
Cybersecurity Engineer
5 days ago
London, Greater London, United Kingdom Jane Street Full time £60,000 - £100,000 per yearAbout the PositionWe're looking for a hands-on Cybersecurity Engineer to join our Cybersecurity team to strengthen the security posture of our applications, data, infrastructure, and processes.The role combines both hands-on technical expertise to uncover and remediate vulnerabilities and people skills to partner with various teams across the firm, guide...
-
Senior Cybersecurity Consultant
3 days ago
London, Greater London, United Kingdom Exponential-e Full timeExponential-eFounded in 2002, Exponential-e swiftly established itself as a UK Cloud, Connectivity and Communications pioneer. Throughout our history, a focus upon leveraging leading-edge technology to deliver profitable and innovative services to our clients and prospects has resulted in industry and peer recognition for our ground-breaking approach, a...
-
Cybersecurity Engineer
2 weeks ago
London, Greater London, United Kingdom Visa Full time £80,000 - £120,000 per yearCompany DescriptionVisa is a world leader in payments and technology, with over 259 billion payments transactions flowing safely between consumers, merchants, financial institutions, and government entities in more than 200 countries and territories each year. Our mission is to connect the world through the most innovative, convenient, reliable, and secure...