Skip to main content

About Us

AirNav Ireland provides air traffic management services including: Air Traffic Control Flight information Alerting and search and rescue services Aeronautical information North Atlantic Communications

Learn More

Air Traffic Management

AirNav Ireland provides air traffic management services in the 451,000 km2 of airspace controlled by Ireland. This airspace forms a crucial gateway for air traffic between Europe and North America.

Learn More

Flight Planning

Welcome to the AirNav Ireland Flight Planning area. This section contains allow pilots to file, change, delay or cancel flight plans.

Learn More

Sustainability

Aviation delivers strong economic and social benefits, but it can also have detrimental impacts on the environment. We have a critical part to play in driving down emissions and delivering a sustainable future for the industry.

Learn More

CyberSecurity Engineer

  • Dublin ATCC or Shannon, Co Clare

    Closing date: 3/01/2025

JOB DESCRIPTION:

Job Purpose

The Cybersecurity Engineer will work in a team within the Technology Services Directorate which is responsible for the management of AirNav Ireland’s Operational Security Policy. They will be responsible for designing, implementing, and maintaining robust security measures that protect computer networks and data used in ATM systems. This involves conducting thorough risk assessments, identifying potential vulnerabilities, and implementing effective security controls.

Main Duties and Responsibilities

  • Implement security requirements, enhancements or replacement, of systems and equipment to meet the security specifications and requirements of safety and business cases.
  • Implement the security strategy through to solution design with hands-on configuration and troubleshooting.
  • Provide guidance and support, in the management and provision of technical services and the secure design of ATM Networks & Systems, in line with industry best practice.
  • Conduct risk assessments to ensure adherence to standards, guidelines, statutory and regulatory requirements.
  • Investigate occurrences and provide recommendations for prevention in future to inform the incident response strategy.
  • Develop and maintain good working relationships with all key stakeholders, regulatory and oversight bodies.
  • Ensure the Operational Security Policy meets ATM/ANS operational requirements and is in accordance with industry best practices and in compliance with Regulatory requirements.
  • Develop and manage the programme of work in adherence to the requirements of the NIS/NIS-2 Security directive. Identify any associated gaps and implement corrective action plans to comply with the requirements of Competent Authority and/or National Cyber Security Centre and implement associated policy, procedural and technical developments as required.
  • Work closely with, and provide oversight of, ATSEP Security training provided by third party (Training Consultants, third party equipment suppliers).
  • Identify areas for improvement and pro-actively manage such initiatives to closure.
  • Develop in-house capability to identify system restore and repair procedures for critical systems failure scenarios.
  • Develop security lab areas in conjunction with engineering management.
  • Develop and enhance Incident Response and recovery process and associated procedures.
  • Develop strong governance processes to drive security designed solutions in consultation with the relevant engineering subject matter experts and management.
  • Provide assistance and support to the Director and Domain Managers as required.
  • Attend relevant fora as required.
  • Other duties as may be assigned, where appropriate.

Reports To:            Networks & Security Domain Manager, Technical Services.

Direct Reports:      Not Applicable

Relationships

Internal: 

Technical Services Engineering Management and Domain ATM Specialists, Safety Management Unit, SeMS and ICT Security and ATM CERT.

External:

IAA, National Cyber Security Centre, Eurocontrol ATM Cert, CANSO, IANS, External Security Supplier Ecosystem including ATM Security System Suppliers, Security Consulting and Security Standards bodies.                             

PERSON SPECIFICATON

Education, Knowledge, Experience & Skills

          Essential:   

  • A third level degree (Computer Science, System engineering or related discipline)
  • Minimum of three years’ relevant experience as an Engineer with cyber security responsibilities
  • Demonstrable experience and knowledge of cybersecurity best practices, security controls (firewalls, IDS and data encryption algorithms), IP networks infrastructure (routers, switches)
  • Strong analytical and problem-solving skills
  • Ability to think critically and identify risks
  • Excellent interpersonal and communication skills
  • Proven ability to work independently and as part of a team
  • Excellent customer focus

          Desirable:

  • Demonstrable experience/knowledge of:
    • Risk assessment process
    • Working with regulatory authorities
    • Drafting procedures to be used in a regulated environment.
    • National and EU/ICAO regulatory framework and its applicability to ATM/ANS
    • Audit process and audit compliance tools
    • ISO 27001 and its application
    • Knowledge/experience of NIST CSF, CIS benchmark, and other cybersecurity standards
    • Use and development of tools/databases (e.g. DISA/STIG, MS Access)
    • Delivery of training on procedures/process

Applications (Cover letter & CV), giving full details of experience and suitability for the position, should be emailed to Siobhán Moran, Human Resources Directorate at [email protected] no later than 16:00hrs on Friday, 03rd January 2025.   Late applications will not be accepted.

AirNav Ireland is an Equal Opportunity Employer

ATM: Air Traffic Management, ANS: Air Navigation Services, 

ATSEP: Air Traffic Service Electronics Personnel

CANSO: Civil Air Navigation Services Organisation, CERT: Computer Emergency Response Team

CTBU: Cork Terminal Business Unit, EU: European Union, IAA: Irish Aviation Authority

IANS: Institute of Air Navigation Services, ICAO: International Civil Aviation Organisation

ICT: Information and Communications Technology, IP: Internet Protocol

ISO: International Standards Organisation, MPD: Managing Performance & Development

MS: Microsoft, NCR: Non-Compliance Recommendation

NIS: Network & Information Systems, NPA: Notice of Proposed Amendments

SeMS: Security Management System, STBU: Shannon Terminal Business Unit

TBD: To be determined