Full-Time

Cybersecurity Systems Engineer

Sonar Systems, Air & Naval Division

Posted on 9/4/2025

General Dynamics UK

General Dynamics UK

201-500 employees

UK defense contractor delivering C4I, AFV

No salary listed

Ottawa, ON, Canada

In Person

Must be eligible to work in Canada; Canadian security clearance required.

Category
IT & Security (4)
, , ,
Requirements
  • Bachelor’s Degree in Engineering or equivalent with a minimum of 5 years of experience
  • Experience supporting the engineering development of secure systems, ideally in airborne or naval military environments
  • Strong understanding of container security (Docker/Podman), vulnerability scanning, and artifact management
  • Familiarity with DISA STIGs, SCAP tools (OpenSCAP, oscap), and frameworks like ITSG‑33 or NIST RMF
  • Experience supporting vulnerability management workflows, including CVE/CWE tracking and remediation
  • Familiarity generating and maintaining SBOMs (SPDX or CycloneDX format) with CVE mapping
  • Effective communicator, strong interpersonal skills, positive attitude, and ability to motivate others through collaborative leadership
  • Excellent time management skills, whether working as a self-motivated individual or part of a team
  • Up-to-date with cybersecurity trends, emerging threats, and advanced technologies
  • Must be registered with the Canadian Controlled Goods program and be able to obtain and maintain a Canadian government security clearance; eligible to work in Canada
  • Applicants may be required to meet additional security requirements to gain access to technical data, classified areas or information subject to international regulations
Responsibilities
  • Support stakeholder engagement by identifying regulatory requirements, the Security Assessment and Accreditation (SA&A) process to be applied, and obtains concurrence from SA&A authorities on the identified information protection needs
  • Evaluate, select, and establish the system security architecture and develop cybersecurity controls
  • Conduct threat modeling and vulnerability assessments, applying threat intelligence to refine system defenses and enhance resilience
  • Ensure cybersecurity frameworks adhere to military and industry standards such as NIST, RMF (Risk Management Framework), ITSG-33, and ISO 27001
  • Establish security policies, procedures, and protocols to comply with Defense Information Systems Agency (DISA) Security Technical Implementation Guides (STIGs) and Federal Information Processing Standards (FIPS)
  • Conducting Threat Risk Analysis, impact analysis, and vulnerability testing
  • Supporting the implementation of software development environments by ensuring appropriate security controls have been identified and are implemented based on desired assurance level
  • Ensuring the system tests verify and validate System Security Requirements and support the proof of assurance; author and run Security Test Procedures
  • Support internal and external audits by authoring and maintaining reproducible security artifacts and SA&A documentation (e.g., System Security Plans, Risk Assessments, Security Artifacts in System Design Document, Security Test Reports)
Desired Qualifications
  • Certifications such as CISSP, GICSP, GIAC DevSecOps, or Kubernetes Security Specialist
  • Proficiency with GitLab CI/CD, SonarQube, Parasoft, and scripting languages (Python, Bash); proficiency with C++

General Dynamics UK delivers defence technology and services to the UK MoD, including C4I communications, Armoured Fighting Vehicle capability, and avionics systems. Its products work by designing and integrating end-to-end defence systems that plan, deploy, manage and monitor battlefield information, with systems like Bowman, EvO, AJAX, and aircraft avionics. The company differentiates itself through long-standing MoD collaboration combined with in-house design and manufacturing to deliver large, end-to-end programs from a UK base in South Wales. Its goal is to equip the UK Armed Forces with reliable, integrated communications, combat-vehicle, and avionics systems for current operations and future capability programs.

Company Size

201-500

Company Stage

N/A

Total Funding

N/A

Headquarters

Blackwood, United Kingdom

Founded

1962

Simplify Jobs

Simplify's Take

What believers are saying

  • AJAX production continues at Merthyr Tydfil despite investigations.
  • Full operating capability planned by end of 2029 per Minister Pollard.
  • 185 of 589 AJAX vehicles delivered, meeting contractual requirements.

What critics are saying

  • Ajax delays from noise, vibration issues erode MoD trust in 3-6 months.
  • BAE Systems undercuts on land contracts post-Ajax in 12-24 months.
  • MoD cancels Ajax tranche 1 over £1.2B overruns in 18-24 months.

What makes General Dynamics UK unique

  • General Dynamics UK delivers AJAX vehicles replacing British Army reconnaissance fleet.
  • Supplies Bowman tactical communications as key MoD land partner.
  • Leads MoD R&D in software electronics, avionics, command systems.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Hybrid Work Options

INACTIVE