Date Posted:
2025-11-18Country:
IndiaLocation:
1st Flr, Wing B, North Gate Phase-II, Modern Asset, Sy.No.2/2, Venkatala Village, Yelahanka Hobli, Bangalore – 560064, KarnatakaPosition Role Type:
UnspecifiedWe are seeking a highly experienced and strategic Information System Security Officer to lead our cyber and regulatory compliance programs across RTX business units for sites located in [India/Singapore/Poland]. This role is critical for ensuring the cyber posture of the sites and for establishing the guidelines and actions needed to protect the companys Information Systems against cyber threats, responds to digital compliance risks, and fosters a company-wide culture of cybersecurity.
The successful candidate will provide technical leadership, oversee multi-site governance and risk management, and ensure alignment between RTX ES Cybersecurity services (including IT and OT) with Business functions to safeguard critical assets, applications, systems, and data.
The candidature is expected to follow a hybrid work model, balancing remote and on-site presence based on business needs, key meetings, critical milestones, team collaboration needs, audits or incident response requirements.
Define, implement, coordinate, manage and monitor activities related to the Aviation Safety ISMS (Part-IS regulation).
Manage cyber risks (identification, evaluation and treatment) according to applicable enterprise-wide cyber risk program and regulations including but not limited to Part-IS. As part of the risk management, the ISSO will perform/lead risk assessment for the sites and associated risk treatment plans with the support of DT Int’l Operations and RTX Global GRC teams.
Oversee implementation of security controls (technical, administrative, physical) for applications, infrastructure, Cloud, and OT systems under ISSO scope.
Security event and incident management:
Provide expert security guidance to DT Int’l Operations (e.g., vulnerability management, remediation plan execution, support on new cyber programs).
Act as the point of contact for various compliance programs (e.g., EASA Part-IS, NIS2, DFARS etc.) where applicable.
Provide expert security guidance to Engineering, Operations, and Value-Stream Leaders teams. Especially, the ISSO will provide support to business programs and pursuits.
Collaborate with local stakeholders (e.g., Engineering, Operations, Safety, Quality) to ensure seamless integration of information security requirements.
Qualifications you must have
Bachelor’s degree in Computer Science, Information Security, Engineering, or related field with 12+ years of experience in cybersecurity or Master’s degree in Computer Science, Information Security, Engineering, or related field with 10+ years of experience in cybersecurity.
Knowledge or experience in the following domains (at least 5): Risk Management, Security Architecture & Engineering, Asset Security, Communication & Network security, Security Assessment and Testing, IAM, Security Operations.
Strong working knowledge of security frameworks: ISO 27001, 27005, NIST (CSF, SP800-171, SP800-82) etc.
Relevant certifications (one or more): CISSP, CISM, CRISC, ISO 27001 Lead Implementer/Auditor, ISO 27005 Risk Manager, OSCP, CEH, GIAC etc.
Experience in regulated industries (e.g., aerospace, defence, manufacturing, or critical infrastructure).
Experience and expertise in the following security fields: threat monitoring & detection, security incidents mgt, penetration testing and/or technical audit, software development security (threat modeling, secure coding).
We believe a multitude of approaches and ideas enable us to deliver the best results for our workforce, workplace, and customers. We are committed to fostering a culture where all employees can share their passions and ideas so we can tackle the toughest challenges in our industry and pave new paths to limitless possibilities.
RTX adheres to the principles of equal employment. All qualified applications will be given careful consideration without regard to ethnicity, color, religion, gender, sexual orientation or identity, national origin, age, disability, protected veteran status or any other characteristic protected by law.
Privacy Policy and Terms:
Click on this link to read the Policy and Terms