Skip to content
← Back to job listings

CyberSecurity Management (CSM) - IRIS2

Iahtgs · Spain

CybersecurityExternal listingfull-time36 minutes ago

About The Role

Hispasat, as part of the SpaceRISE consortium, is responsible for the technical implementation and ensuring the success of the IRIS² project, leveraging its extensive experience in satellite communications. This collaboration is essential to provide secure and reliable high-performance communication solutions to the European Union and its member states.

To be part of this project, we are looking for Cyber Security Management (CSM) . The responsibilities of the position are as follows:

Responsibilities

  • Ensure compliance with the security requirements established within the USC Policy framework for activities under Hispasat's responsibility within the IRIS² programme.
  • Manage the implementation of cybersecurity requirements for systems operated or developed under Hispasat's responsibility.
  • Establish implementation plans for security policies and security requirements and supervise the execution of planned activities.
  • Report on progress, activity planning, identified discrepancies and the effectiveness of implemented security measures.
  • Support the implementation of necessary security measures and security-risk mitigations and prepare documentation for the relevant reviews.
  • Promote information security throughout the organisation and report on assigned activities within the defined areas.
  • Establish and maintain configuration-controlled network maps for each system, covering network and virtual architectures, segregation, operational entities, technical facilities and their interfaces.
  • Maintain subsystem-level records covering functions, IP addresses and ports, hardware, hypervisors, software and platforms, filtering rules, log-file paths, human and non-human accounts, and asset-configuration ownership.
  • Submit system maps for approval by the programme governance structure when required.
  • Ensure that systems entering operation have a complete network map provided by the system developer's CSM and reviewed by the EUSPA CSM and the CSM of the operating entity.
  • Establish and maintain under configuration control a list of cyber vulnerabilities affecting the systems within scope, including the affected system, publication date, criticality, applicability, recommended corrective measures and potential obsolescence.
  • Provide the relevant customer CSM with periodic vulnerability reporting and ensure that systems do not enter operation until their vulnerability lists have been reviewed and confirmed as complete.
  • Manage waivers and exemptions related to system and operational cybersecurity requirements within Hispasat's area of responsibility.

Minimum requirements

  • Bachelor's or Master's Degree in Computer Science, Telecommunications Engineering, Information Systems, Industrial Engineering or an equivalent technical discipline, preferably with a networks or systems-architecture orientation.
  • 4 to 6 years of experience in the implementation and maintenance of security-management systems, preferably in space programmes, governmental satellite communications or critical telecommunications infrastructure.
  • Demonstrable hands-on experience maintaining network maps and configuration-controlled asset inventories, including network architectures, IP and port lists, hardware, hypervisors and software.
  • Experience working within multi-stakeholder governance structures involving organisations such as EUSPA, ESA, the European Commission or national security authorities, including cross-entity CSM approval processes.
  • Experience in programme-level cyber-vulnerability management, including criticality assessment, obsolescence tracking and periodic reporting to customers or programme authorities.
  • Ability to plan and execute security-management activities and maintain technical configuration documentation under configuration control.
  • Experience collaborating on secure-by-design architectures for space or satellite-communications systems.
  • Ability to triage cyber vulnerabilities and coordinate remediation across multi-CSM environments.
  • Ability to perform risk-based evaluation and coordinate security waivers and exemptions.
  • Strong technical-writing skills and experience preparing documentation for governance and regulatory reviews.
  • Effective communication with technical and non-technical stakeholders, including systems engineers, cybersecurity teams, the European Commission, EUSPA and management boards.
  • Nationality of an EU Member State and willingness to undergo an EU Secret clearance process.
  • Fluency in English, both written and spoken; any other European language is considered an asset.

Location

  • Arganda del Rey, Madrid, Spain.

At Hispasat we promote equal opportunities and an inclusive environment. All our selection processes are based on objective criteria, without distinction of gender, age, origin, sexual orientation, disability or other personal or social conditions. We value diversity as a driver of innovation and growth.

This is an external listing. JobSpring does not represent or verify the employer. Report this listing