Information System Security Officer - Isso

RTX RTX · Aerospace · wolverhampton, Wolverhampton, United Kingdom · Digital Technology

Seeking an experienced Information System Security Officer to lead cyber and regulatory compliance programs for RTX business units in the UK. This role ensures the cyber posture of sites, protects information systems against threats, manages digital compliance risks, and fosters a cybersecurity culture. Responsibilities include governance, cyber risk management, compliance with regulations (ISO 27001, NIST SP800-171, CMMC, Part-IS, NIS2), security event management, and providing technical leadership and guidance to various teams and external stakeholders.

What you'd actually do

  1. Ensure the management and local cyber governance of the Information Systems within the sites under ISSO scope.
  2. Ensure adherence to global and regional/local regulatory requirements and applicable frameworks (ISO 27001, ISO27005, NIST SP800-171, Cyber Essentials, CMMC Global etc.).
  3. Maintain the Information Security Management System (ISMS) or equivalent governance model.
  4. Define, implement, coordinate, manage and monitor activities related to the Part-IS regulation (acting as Aviation Safety ISMS Manager).
  5. Drive internal and external audits, certifications, and compliance readiness across multiple sites.

Skills

Required

  • Cybersecurity
  • Risk Management
  • Security Architecture & Engineering
  • Asset Security
  • Information Security Management System (ISMS)
  • ISO 27001
  • NIST SP800-171
  • Cyber Essentials
  • CMMC Global
  • Part-IS regulation
  • NIS2

Nice to have

  • IT and OT security
  • Cloud security
  • Supplier cyber risk management
  • Vulnerability management
  • Business continuity and disaster recovery

What the JD emphasized

  • regulatory compliance
  • cyber posture
  • cyber threats
  • digital compliance risks
  • cybersecurity culture
  • Information Systems
  • cyber risk management
  • security controls
  • security requirements
  • cybersecurity
  • Part-IS regulation
  • NIS2
  • CMMC Global