About the role
Task Responsibilities
Act as subject matter expert (SME) for cybersecurity controls protecting critical aviation information and communication systems
Manage information security risks, vulnerabilities, and mitigations by performing and supporting risk assessments, threat modeling, and security impact analyses
Perform information and cybersecurity risk assessments, threat modeling, vulnerability management, and define mitigation measures to ensure continuous protection of critical systems.
Handle cybersecurity incidents and operational events affecting critical information and communication technology (ICT) systems related to aircraft operation.
Handle PKI infrastructure and associated cryptographic and identity‑based trust services, including lifecycle management, documentation, and procedures.
Support the implementation, operation, and continuous improvement of aircraft log analysis, including security monitoring, event correlation, anomaly detection, and training of relevant personnel.
Provide cybersecurity expertise, guidance, and training to internal stakeholders.
Act as an IT representative within the Aircraft Information Security Center.
Manage internal and external information security reporting.
Review and support secure architectures, configurations, and design proposals related to aircraft and avionics systems.
Essential Requirements For The Position
Master’s Degree or equivalent in Computer Science, Information Security, Aeronautical Engineering or a related technical discipline.
5+ years of professional experience in IT, cybersecurity, or the airline/aviation domain, preferably within aviation, OT/ICS environments, or other safety‑critical industries.
Solid understanding of IT/OT network architectures, segmented networks, and secure communication protocols for avionics and aircraft data systems; knowledge of airline and aircraft systems is an asset.
Strong expertise in network security, PKI/cryptography, secure configuration, identity‑based trust models, and cloud/virtualized environments with secure deployment practices.
Experience performing vulnerability assessments, risk analysis, and implementing security controls for embedded s…