14 postings · 14 open · 2 expired
Show expiredDevOps Engineer
HybridLeonardo · Roma - Via Laurentina, Italy
midfull time10001+Aerospace & DefenseitalianenglishJob Description: Leonardo SpA è un gruppo industriale internazionale, tra le principali realtà mondiali nell’Aerospazio, Difesa e Sicurezza che realizza capacità tecnologiche multidominio in ambito Elicotteri, Velivoli, Aerostrutture, Elettronica, Cyber Security e Spazio. Con oltre 60.000 dipendenti nel mondo, l’azienda ha una solida presenza industriale in Italia, Regno Unito, Polonia, Stati Uniti, e opera in 150 paesi anche attraverso aziende controllate, joint venture e partecipazioni. Protagonista dei principali programmi strategici a livello globale, è partner tecnologico e industriale di Governi, Amministrazioni della Difesa, Istituzioni e imprese. All’interno dell’ Area Cyber & Security Solutions , stiamo ricercando un/a DevSecOps Engineer per gestione infrastruttura e CI/CD per la nostra sede di Genova / Roma Laurentina. La persona si occuperà delle seguenti attività: la risorsa sarà responsabile della progettazione, implementazione e gestione di pipeline CI/CD sicure e automatizzate su un portfolio multi-prodotto, operando in stretta collaborazione con CTO, Product Manager, PEM e team di sviluppo. Il perimetro di azione copre l’intero ciclo di vita del software: dal branching governance al rilascio controllato in produzione, dall’integrazione dei controlli di sicurezza automatizzati al monitoraggio continuo della postura di sicurezza dei prodotti. In particolare, si occuperà di: Progettare, implementare e mantenere pipeline CI/CD su un portfolio di circa 20+ prodotti, garantendo automazione, ripetibilità e tracciabilità end-to-end dei rilasci, dalla build alla promozione in produzione. Definire e governare le strategie di branching (GitFlow, trunk-based development, release branching) sull’intero portfolio di prodotti, garantendo coerenza nelle policy di merge request, tagging semantico (SemVer) e promozione delle versioni attraverso gli ambienti di integrazione, test e produzione. Mantenere la mappatura aggiornata delle versioni di prodotto e di soluzione, tracciando per ogni release la versione puntuale di tutti i sotto-moduli, librerie, dipendenze e tool di build, in modo che ogni deliverable sia ricostruibile e verificabile a partire da un insieme ben definito e documentato di componenti. Integrare controlli di sicurezza automatizzati nelle pipeline (SAST, DAST, SCA, container scanning, secret detection), assicurando che ogni artefatto sia analizzato e validato prima di ogni promozione ambientale. Pianificare ed eseguire sessioni sistematiche di vulnerability assessment sul software di prodotto: avvalendosi di Dependency-Track o simili, per il monitoraggio continuo delle vulnerabilità nelle dipendenze (CVE tracking, SBOM analysis, policy violation enforcement), coordinando la prioritizzazione dei finding per CVSS score con i team di sviluppo e garantendo la tracciabilità di ogni finding dal rilevamento alla chiusura. Implementare e mantenere dashboard di monitoraggio continuo della postura di sicurezza dei prodotti (vulnerability density, trending CVE, compliance rate, SLA di remediation), definendo soglie di alert e procedure di escalation verso Product Management. Gestire e presidiare la toolchain DevSecOps condivisa (GitLab CI, SonarQube, Dependency-Track, Nexus, Trivy, Greenbone/GVM), garantendone disponibilità, aggiornamento e corretta integrazione con i repository sorgente. Supportare i team di sviluppo nell’adozione strutturata delle pratiche DevSecOps, fornendo linee guida, template di pipeline riusabili, policy di branching e sessioni di formazione tecnica mirata. Implementare e mantenere meccanismi di gestione sicura dei secret e delle credenziali (Vault, OpenBao o equivalenti), garantendo che nessuna credenziale sia esposta in repository o log di pipeline. Gestire e automatizzare la generazione di SBOM (Software Bill of Materials) per ogni rilascio di prodotto, in supporto alla compliance CRA EU 2024/2847 e ai requisiti contrattuali applicabili. Monitorare le metriche di qualità e sicurezza delle pipeline (copertura dei test, vulnerability density, build success rate, DORA metrics), producendo report di sintesi per CTO e Product Management. Collaborare con le funzioni aziendali per l’integrazione di gate di quality assurance nelle pipeline, garantendo che i criteri di accettazione siano verificati automaticamente prima di ogni release. Gestire l’infrastruttura della piattaforma DevSecOps on-premise in ottica Infrastructure as Code (Ansible/AWX, OpenTofu/Terraform), curando configurazioni, RBAC, backup e ciclo di aggiornamento. Contribuire alla definizione e all’evoluzione del framework DevSecOps aziendale, allineando le pratiche agli standard di riferimento (OWASP DSOMM, OWASP SAMM, CRA EU 2024/2847) e promuovendo il miglioramento continuo della maturità del processo. Titolo di studio : Informatica, Ingegneria Informatica o equivalente Seniority : 3–5 anni di esperienza in ambito DevSecOps, Software Engineering o Platform/Infrastructure Engineering Conoscenze e competenze tecniche: Esperienza nella progettazione e gestione di pipeline CI/CD in ambienti multi-prodotto e multi-team, con approccio pipeline-as-code. Conoscenza delle principali strategie di branching (GitFlow, trunk-based development, release branching) e delle relative policy di merge, protezione dei branch e tagging semantico (SemVer). Esperienza nella composizione e gestione di Software Bill of Materials (SBOM) multi-livello, con tracciabilità delle versioni di tutti i sotto-moduli, librerie e dipendenze di prodotto. Conoscenza approfondita degli strumenti di analisi statica e dinamica del codice (SAST, DAST, SCA) e del loro corretto posizionamento nel ciclo di sviluppo. Capacità di condurre vulnerability assessment su dipendenze software, interpretare CVSS score (v3.1/v4.0) e prioritizzare le attività di remediation in collaborazione con funzioni PSIRT e Quality. Esperienza con tecnologie container (Docker, Kubernetes/OpenShift) e gestione di artifact repository (Nexus, Artifactory). Competenza nella gestione sicura di secret e credenziali (HashiCorp Vault, OpenBao o equivalenti). Capacità di implementare Infrastructure as Code (Ansible/AWX, OpenTofu/Terraform o equivalenti) per la gestione reproducibile degli ambienti. Familiarità con i principi di Shift-Left Security e integrazione della sicurezza nel SDLC (approccio DevSecOps maturity model). Esperienza nello sviluppo di script di automazione (Python, Bash, Groovy) per estensione e personalizzazione delle pipeline. Conoscenza di standard e framework: OWASP DevSecOps Guideline (DSOGL) / OWASP DSOMM (DevSecOps Maturity Model) CRA EU 2024/2847 – requisiti essenziali di cybersecurity per prodotti con elementi digitali (mandatorio da settembre 2026) ISO 29147 / ISO 30111 – vulnerability disclosure e handling process; FIRST.org CVSS v3.1/v4.0 OWASP SAMM o BSIMM – valutazione e miglioramento della maturità dei processi di sicurezza software Competenze comportamentali: Capacità di lavorare in team multidisciplinari, interfacciandosi con sviluppatori, quality manager, responsabili di prodotto e funzioni di compliance. Approccio strutturato, orientato all’automazione, alla riduzione del debito tecnico e all’eliminazione delle attività manuali ripetitive. Attitudine alla continuous improvement e alla condivisione proattiva della conoscenza tecnica con i team di prodotto. Capacità di tradurre requisiti di compliance e sicurezza in vincoli tecnici praticabili e integrabili nel flusso di sviluppo. Conoscenze linguistiche : inglese fluente (documentazione tecnica internazionale e standard di riferimento) Competenze informatiche: GitLab / GitLab CI – pipeline authoring, branching strategy enforcement, protected branches, merge request gates, GitLab Runners Dependency-Track – SBOM ingestion, CVE tracking, policy violation enforcement, prioritizzazione remediation per CVSS score SonarQube, Trivy, OWASP ZAP, Fortify o equivalenti – analisi SAST/DAST/container scanning Greenbone GVM / OpenVAS – vulnerability scanning infrastrutturale e monitoraggio continuo Nexus / Artifactory – artifact repository management, versioning e policy enforcement Docker, Kubernetes / OpenShift – containerizzazione e orchestrazione Ansible / AWX, OpenTofu / Terraform – Infrastructure as Code e configuration management HashiCorp Vault / OpenBao – gestione sicura di secret e credenziali Apache DevLake o strumenti equivalenti – raccolta metriche DORA e qualità di pipeline Python, Bash, Groovy – scripting e automazione Altro (es. Disponibilità a trasferte, Certificazioni specifiche…) : Disponibilità a brevi trasferte per attività di supporto on-site ai team di sviluppo, audit di sicurezza o milestone di prodotto. Certificazioni DevSecOps (es. Certified DevSecOps Professional – CDP, GitLab Certified CI/CD Specialist) costituiscono titolo preferenziale. Coinvolgimento, valorizzazione delle competenze , cura del benessere e della sicurezza delle persone sono i cardini della nostra cultura aziendale. Ci impegniamo ogni giorno a favorire un ambiente di lavoro inclusivo e stimolante, promuovendo attivamente i principi di inclusione, equità e valorizzazione delle diversità . Cosa offriamo? Il nostro contratto collettivo del lavoro di riferimento è il CCNL per Industria Metalmeccanica Privata e della Installazione di Impianti; Modalità di lavoro: Ibrida; Categoria contrattuale: Impiegato; Tipologia contrattuale: tempo indeterminato; Tredicesima mensilità; Premialità legata ai risultati di Business; Buoni Welfare dal valore di 250 euro annui; Mensa aziendale; Opportunità di formazione e aggiornamento continuo delle competenze professionali e delle soft skill; Benessere: mettiamo al primo posto il benessere economico, fisico, sociale e psicologico delle nostre persone, offrendo molteplici soluzioni vicine alle loro esigenze. L’azienda si riserva la possibilità di effettuare valutazioni in merito al livello di inquadramento e alla proposta economica, sulla base di criteri oggettivi emersi nel corso del processo di selezione e in coerenza con la seniority del/della candidato/a individuato/a e della posizione, nel rispetto dei principi di equità, trasparenza e pari opportunità previsti dalla normativa vigente. Aspettiamo la tua candidatura : inviaci il tuo CV entro tre settimane dall’apertura dell’annuncio di lavoro. Come funziona il processo di selezione? A seguito della raccolta delle candidature, vengono valutati e identificati i CV maggiormente in linea con i requisiti richiesti. Le/i candidate/i selezionate/i sostengono un colloquio conoscitivo con il team delle Risorse Umane, motivazionale e attitudinale, seguito da un’intervista di approfondimento tecnico con il Business. Al termine del processo, alla persona viene restituito un feedback, sia in caso di esito positivo che negativo. Seniority: Expert Primary Location: IT - Roma - Via Laurentina Additional Locations: IT - Genova - Fiumara Contract Type: Permanent Total Base Pay Range: 36k - 59k Hybrid Working: Hybrid
Posted 1 week agoView detailsSTMicroelectronics · FR
seniorfull time10001+SemiconductorsfrenchChez STMicroelectronics, nous sommes convaincus que la technologie est un moteur d’innovation et a un impact positif pour les entreprises, les personnes et la société. En tant qu’acteur mondial des semiconducteurs, nos technologies de pointe et nos composants électroniques sont invisibles mais au cœur du monde d’aujourd’hui. Rejoindre ST, c’est intégrer une entreprise internationale riche de plus de 115 nationalités, présente dans 40 pays, et rassemblant plus de 50 000 talents passionnés et engagés, tous unis par la volonté de créer et d’inventer la technologie de demain. Innover demande bien plus que des compétences techniques : cela nécessite des personnes inspirantes, qui savent collaborer avec respect et enthousiasme. Des collaborateurs animés par la passion, prêts à remettre en question le statu quo, à faire avancer l’innovation et à révéler leur plein potentiel. Venez vivre cette aventure avec nous et contribuez à construire un futur plus intelligent et plus durable, en alliant responsabilité et innovation. Notre technologie commence avec vous. A propos de vos missions Avec l'arrivée de du Cyber Resilience Act, le sub-goup RFOC renforce son équipe de sécurité afin de garantir la sécurité de tous ses produits. Le/la candidat(e) idéal(e) possédera des connaissances et une expérience avérées en matière d'application et de mise en œuvre de la cryptographie dans les architectures de SoCs. Il/elle maîtrisera les attaques par side-channel et fault injection, ainsi que les vulnérabilités et contre-mesures associées. Il/elle comprendra l'impact de la sécurité sur le processus de conception, la DFT, la fabrication, le provisioning, le développement, le software et le debug. Il/elle aura une connaissance approfondie des normes, requirements, analyses des risques, certifications et audits en matière de cybersécurité. Doté(e) d'excellentes capacités d'analyse et de communication, il/elle travaillera en étroite collaboration avec les équipes marketing, conception, vérification, engineering et développement software. Il/elle contribuera à la migration de ST vers une PQC-resistant cryptography et participera à l'adaptation aux menaces croissantes liées à l'intelligence artificielle. A propos de vous Vous justifiez d’au moins cinq ans d’expérience en architecture de sécurité pour SoC. Vous maîtrisez la cryptographie appliquée, les attaques side-channel et fault injection, ainsi que les principales contre-mesures associées. Vous comprenez l’impact des exigences de sécurité sur l’ensemble du cycle de développement, de la conception au debug, et vous avez une bonne connaissance des normes, analyses de risques, certifications et audits en cybersécurité. Vous savez travailler en transverse avec des équipes variées et souhaitez contribuer à l’évolution vers une cryptographie résistante au post-quantique. ST est fière d’être certifiée parmi les 17 entreprises mondiales « Global Top Employers 2025 » et d’être la première et unique entreprise de semi-conducteurs à recevoir cette distinction. ST a été distinguée dans ce classement grâce à sa démarche d’amélioration continue, se démarquant notamment par son engagement en matière d’éthique et d’intégrité, de sens et de valeurs, d’organisation et de gestion du changement, ainsi que par sa stratégie commerciale et ses performances. En France, ST a également obtenu la labélisation Happy Trainee 2025. Nous cultivons un environnement de travail inclusif et diversifié, où la discrimination n’a pas sa place. Notre ambition est de recruter et de fidéliser des talents reflétant la richesse des sociétés dans lesquelles nous évoluons. Nous nous engageons à l’équité dans le développement des carrières, les opportunités professionnelles et la rémunération. Chez ST, nous encourageons les candidats qui ne remplissent pas forcément tous les critères à postuler, car nous croyons en la richesse des parcours variés et offrons de réelles opportunités d’apprentissage et d’évolution. La diversité, l’équité et l’inclusion sont des valeurs fondamentales qui façonnent notre culture d’entreprise. Pour découvrir toutes nos opportunités, rendez-vous sur st.com/careers.
Posted 2 weeks agoView detailsSTMicroelectronics · Grenoble, FR
managerfull time10001+SemiconductorsfrenchAt STMicroelectronics, we believe in the power of technology to drive innovation and make a positive impact on people, businesses, and society. As a global semiconductor company, our advanced technologies and chips form the hidden foundation of the world we live in today. When you join ST, you will be part of a global business with more than 115 nationalities, present in 40 countries, and comprising over 50,000 diverse and dedicated creators and makers of technology around the world. Developing technologies takes more than talent: it takes amazing people who understand collaboration and respect. People with passion and the desire to disrupt the status quo, drive innovation, and unlock their own potential. Embark on a journey with us, where you can innovate for a future that we want to make smarter and greener, in a responsible and sustainable way. Our technology starts with you. --- ## Contexte du poste La division MDRF recherche un(e) Responsable Programme de Certification en Sécurité des Produits, talentueux(se) et motivé(e), disposant d'une expertise en certification de sécurité afin de piloter la convergence et l'harmonisation des processus de certification sécurité au sein de MDRF, en particulier pour les niveaux de sécurité substantiels définis par le référentiel SESIP de GlobalPlatform. Le/la candidat(e) représentera également ST au sein du comité international SESIP de GlobalPlatform. Il/elle apportera son soutien aux divisions produits de MDRF dans le cadre de la certification SESIP de leurs produits et pourra, selon les besoins, assumer directement le rôle de chef de projet certification. Ce poste à dimension internationale au sein de MDRF est basé sur les sites ST de Grenoble ou Rousset. Vous jouerez un rôle clé dans l'harmonisation de la stratégie SESIP de ST entre les différentes divisions produits, ainsi que dans la définition et le déploiement d'une stratégie convergente garantissant cohérence et efficacité. Vous veillerez également à l'alignement du référentiel SESIP avec les réglementations de cybersécurité et les normes industrielles applicables. ## Principales responsabilités ### Harmonisation des méthodes et outils de certification SESIP Assurer la convergence des méthodologies et des outils de certification SESIP afin de soutenir les chefs de projet certification des différentes divisions, notamment en : * Évaluant et cartographiant les outils, pratiques et processus actuellement utilisés dans les différentes divisions de MDRF. * Définissant et développant des outils permettant la génération automatique de cibles de sécurité (Security Targets) ou d'autres documents à partir des informations fournies par les architectes sécurité et les équipes de développement produits. ### Amélioration continue des processus * Collaborer avec les équipes Qualité pour formaliser les documents nécessaires aux certifications SESIP. * Agir en tant que référent sécurité ("Security Champion") dans l'amélioration continue du processus de développement produit (PDP). ### Définition et déploiement de la stratégie SESIP #### En interne * Définir, mettre à jour et déployer la stratégie SESIP de MDRF. * Aligner cette stratégie avec les responsables certifications produits et les architectes sécurité des différentes divisions. * S'assurer de son déploiement via les experts sécurité participant aux groupes de travail techniques SESIP. #### En externe * Défendre les positions de STMicroelectronics au sein du comité SESIP de GlobalPlatform. * Promouvoir le référentiel SESIP comme cadre de conformité aux réglementations et standards industriels en cybersécurité. ### Accompagnement des divisions * Accompagner les équipes de développement dans leur préparation aux certifications SESIP. * Soutenir les divisions dans leurs relations avec les laboratoires d'évaluation externes. * Assurer, lorsque nécessaire, le rôle de chef de projet certification produit pour les divisions ne disposant pas de cette compétence en interne. ## Compétences requises ### Compétences techniques * Analyse de processus. * Évaluation des risques. * Rédaction de procédures et de documents formels. * Connaissance des processus qualité liés au développement produit. * Compréhension des mécanismes de sécurité des produits. * Connaissance des techniques de tests d'intrusion (Penetration Testing). * Maîtrise des concepts de cybersécurité. * Connaissance des principes d'évaluation et de certification en cybersécurité. * Expérience ou connaissance des groupes de travail techniques internationaux. * Maîtrise professionnelle de l'anglais, à l'écrit comme à l'oral. ### Compétences comportementales * Excellentes capacités de communication et d'influence auprès d'interlocuteurs de tous niveaux, internes comme externes. * Compétences en négociation. * Capacité à traduire des problématiques techniques en risques compréhensibles et à communiquer clairement sur ces risques. JOB REQ / DESCRIPTION MDRF is seeking a talented and motivated Product Security Certification Program Manager with expertise in security certification to drive convergence and harmonization of security certification processes within MDRF, especially pertaining to substantial levels of security as per the SESIP scheme of Global Platform. The candidate will also represent ST in the international SESIP committee (Global Platform) . He/She will also support (or even be responsible on a case-by-case basis) MDRF product divisions in the SESIP certification of the products upon request. This global role in MDRF can be based in Grenoble or Rousset ST sites. You will play a key role in harmonizing ST’s SESIP strategy throughout product divisions and defining and deploying the converged strategy, ensuring coherence and efficiency. He/She will ensure compliance of the SESIP scheme with cybersecurity regulations and industry standards. Main responsibilities: * Ensure convergence of methodologies and tools for SESIP certifications to support divisions’ certifications PM, consisting in * Assessing and mapping the existing tools, practices and processes currently deployed within the various divisions of MDRF. * Defining and developing tools for automatic generation of security targets or other documents based on inputs provided by security architects and product development teams. * Work with Quality teams for the formalization of documents needed from development teams for SESIP certifications, acting as Security champion for PDP continuous improvements * Define, update and deploy MDRF’s strategy regarding SESIP certification by * Internally 1. Aligning overarching strategies with divisions’ product certification PMs and security architects. 2. Ensuring deployment of this strategy thru security experts contributing to SESIP’s technical working groups. * Externally 1. Defending ST’s positions within the SESIP committee of Global Platform 2. Promoting the SESIP scheme for compliance with regulations and industry cybersecurity standards. * Support divisions for their product development teams’ SESIP readiness. * Support divisions with external labs’ certifications when needed in a mission of “Product Certification PM” for divisions not having this capacity. Skills: * Process analysis, Risk assessment and Procedure writing skills. Knowledge of Quality process of product development. * Understanding of product security features concepts. Knowledge of penetration test techniques. * Knowledge of the cybersecurity concepts. * Cybersecurity evaluation and certification process principles. * Knowledge of international technical working groups * Fluency in English within a professional context (written and spoken). Soft Skills: * Excellent communication and influence skills, to interact with people at all levels of the organization, whether internally or externally. * Negotiation skills. * Ability to translate technical aspects into risks and communicate clearly on those risks. ST is proud to be one of the 17 companies certified as a 2025 Global Top Employer and the first and only semiconductor company to achieve this distinction. ST was recognized in this ranking thanks to its continuous improvement approach and stands out particularly in the areas of ethics & integrity, purpose & values, organization & change, business strategy, and performance. At ST, we endeavor to foster a diverse and inclusive workplace, and we do not tolerate discrimination. We aim to recruit and retain a diverse workforce that reflects the societies around us. We strive for equity in career development, career opportunities, and equal remuneration. We encourage candidates who may not meet every single requirement to apply, as we appreciate diverse perspectives and provide opportunities for growth and learning. Diversity, equity, and inclusion (DEI) is woven into our company culture. To discover more, visit st.com/careers.
Posted 3 weeks agoView detailsSoftware Engineer
HybridLeonardo · Luton - Cap. Green 300, United Kingdom
principalfull time10001+Aerospace & DefenseJob Description: Your Impact As a Principal Software Engineer (DevSecOps), you will play a key role in accelerating the delivery of secure, high-quality software across Leonardo's defence and security programmes. You will help shape and evolve our enterprise DevSecOps capability, enabling teams to deliver features and updates rapidly, reliably and securely. Working within our software engineering community, you will champion modern engineering practices, drive automation, and embed security throughout the software development lifecycle. Through your technical leadership and mentoring, you will help build a collaborative DevSecOps culture focused on innovation, continuous improvement and operational excellence. What You'll Do Contribute to the delivery and evolution of Leonardo's enterprise-wide DevSecOps platform. Support and mentor teams adopting DevSecOps practices, tools and ways of working. Contribute to the planning and implementation of DevSecOps capabilities across cloud, on-premises and hybrid environments. Design, deploy and maintain development, test and operational environments. Drive automation across software delivery and infrastructure provisioning to improve quality, consistency and efficiency. Develop and maintain automation frameworks, CI/CD pipelines and deployment processes. Apply effective change, configuration and release management practices. Support deployed services, ensuring high levels of performance, security and availability. Collaborate with engineers, platform teams and stakeholders to improve delivery capability and engineering practices. Champion secure-by-design principles across the software development lifecycle. What You'll Bring You will have a degree in Computer Science, Software Engineering, Systems Engineering, or a related discipline, together with experience delivering software solutions within a complex engineering environment. We are looking for candidates who can demonstrate: Experience designing, building and operating secure-by-design environments. Hands-on experience with Continuous Integration and Continuous Delivery (CI/CD) practices and tooling. Knowledge of cloud, on-premises and hybrid environments, including associated security considerations. Experience with enterprise DevOps and DevSecOps tools supporting modern software delivery. A background in software engineering, platform engineering, IT operations or a related discipline. Experience with requirements management, configuration management and version control tools. Knowledge of infrastructure-as-code, automation and deployment technologies. Experience working within Agile development environments. Strong communication skills with the ability to mentor and influence technical teams. A passion for automation, continuous improvement and engineering excellence. For a full list of our company benefits please visit our website. Security Clearance This role is subject to pre-employment screening in line with the UK Government’s Baseline Personnel Security Standard (BPSS). An additional range of Personnel Security Controls referred to as National Security Vetting (NSV) may apply, this could include meeting the eligibility requirements for The Security Check (SC) or Developed Vetting (DV). For more information and guidance please visit: https://careers.uk.leonardo.com/gb/en/security-and-vetting Leonardo UK operates a grade-based salary framework with broad bands. The salary range shown reflects the approved grade band for this role, or a narrower hiring range published within that band, and is benchmarked against the external market. Exceptions above the standard range are managed through governance controls to protect internal equity. Leonardo is a global leader in Aerospace, Defence, and Security. Headquartered in Italy, we employ over 53,000 people worldwide including 8,500 across 9 sites in the UK. Our employees are not just part of a team—they are key contributors to shaping innovation, advancing technology, and enhancing global safety. At Leonardo we are committed to building an inclusive, accessible, and welcoming workplace. We believe that a diverse workforce sparks creativity, drives innovation, and leads to better outcomes for our people and our customers. If you have any accessibility requirements to support you during the recruitment process, just let us know. Be part of something bigger - apply now! Primary Location: GB - Luton - Cap. Green 300 Additional Locations: GB - Basildon, GB - Edinburgh, GB - Lincoln, GB - Newcastle, GB - Southampton Contract Type: Permanent Hybrid Working: Hybrid
Posted 1 month agoView detailsPlatform Engineer
HybridLeonardo · Yeovil - Lysander Rd, United Kingdom
seniorfull time10001+GBP44k–62k/yAerospace & DefenseenglishJob Description: Salary Range: £44,171 - £61,950 Leonardo UK operates a grade-based salary framework with broad bands. The salary range shown reflects the approved grade band for this role, or a narrower hiring range published within that band, and is benchmarked against the external market. Exceptions above the standard range are managed through governance controls to protect internal equity. Your Impact Are you ready to take on complex technical challenges supporting secure cross-domain services that protect national security? At Leonardo, our Senior Platform Engineers operate , maintain and improve secure gateway platforms that enable controlled information flow between security domains and keep our customers’ missions running. Your work at Leonardo UK will see you take the lead in solving customer problems in an agile, innovative and team-centric manner. The role may involve a blended hybrid working model, with a mixture of working from home and working on site at one of our Leonardo offices to ensure close collaboration with the wider team and with our customers. Leonardo UK is seeking a Senior Platform Engineer to join the Cyber & Security Solutions Division team. This role is focused on operating, maintaining , assuring and improving secure cross-domain gateway services that underpin critical defence, government and public sector operations. What you will do as a Senior Platform Engineer Operate, maintain and support secure cross-domain gateway services across highly controlled environments. Monitor service health, investigate issues and support incident, problem and change activity in line with agreed service processes. Maintain secure configurations, transfer policies, rule sets and supporting documentation. Support patching, upgrades, vulnerability remediation and service continuity activities. Troubleshoot gateway, platform, network and data transfer issues across security boundaries. Produce and maintain operational documentation, including build records, support guides, runbooks and configuration baselines. Work with security, service management, engineering and customer stakeholders to ensure cross-domain services remain compliant, available and fit for purpose. Identify and deliver continuous service improvements to improve reliability, security and operational efficiency. What you’ll bring Strong technical ability with experience operating and supporting secure platforms or gateway services in controlled environments. A disciplined service mindset, with the ability to balance hands-on technical support, assurance, documentation and continuous improvement. Confidence working across technical, security, service management and customer stakeholders to resolve issues and maintain service integrity. Core areas (must have): Cross-domain solutions: operation, support and controlled configuration of data transfer between security domains (e.g. high-to-low, restricted-to-enterprise) Windows and Linux operating systems Virtualisation platforms (VMware, Hyper-V) Secure data handling and policy enforcement (sanitisation, validation, filtering) Implementation of controlled and auditable data transfer mechanisms Networking concepts (TCP/IP, DNS, DHCP, firewalls) Automation and scripting (PowerShell, Bash, Python, Ansible, Terraform) Knowledge of cyber security controls and accreditation requirements Experience across the systems engineering lifecycle Design and assurance of secure data flows across trust boundaries Delivery within highly controlled / secure environments (e.g. cross-domain, air-gapped, defence) I ncident, problem and change management Monitoring, patching, vulnerability remediation and service continuity Desirable: Experience with specific cross-domain or secure transfer products, such as Opswat or similar Data diode or one-way transfer architectures Integration with security tooling, such as SOC, SIEM or monitoring platforms Performance and throughput optimisation for secure data transfer systems Experience supporting service management processes, including incident, problem, change and configuration management Experience with cloud platforms, such as AWS or Azure, and Infrastructure as Code Hands-on use of DevSecOps tools, CI/CD pipelines or automation tooling Containerisation platforms, such as Kubernetes or Docker Security Clearance This role is subject to pre-employment screening in line with the UK Government’s Baseline Personnel Security Standard (BPSS). An additional range of Personnel Security Controls referred to as National Security Vetting (NSV) will apply. This role requires Developed Vetting (DV) clearance prior to starting. For more information and guidance please visit: https://careers.uk.leonardo.com/gb/en/security-and-vetting Location This role is based at our Yeovil site. Why join us At Leonardo, our people are at the heart of everything we do. We offer a comprehensive, company-funded benefits package that supports your wellbeing, career development, and work–life balance. Time to Recharge: Generous leave with the opportunity to accrue up to 12 additional flexi-days each year. Secure your Future: Award-winning pension scheme with up to 15% employer contribution. Your Wellbeing Matters: Free access to mental health support, financial advice, and employee-led networks. Never Stop Learning: Free access to 4,000+ online courses via Coursera and LinkedIn Learning. Tailored Perks: Spend up to £500 annually on flexible benefits such as private healthcare, lifestyle discounts, and gym memberships. Flexible Working: Flexible hours with hybrid working options. For a full list of our company benefits please visit our website. Leonardo is a global leader in Aerospace, Defence, and Security. Headquartered in Italy, we employ over 53,000 people worldwide including 8,500 across 9 sites in the UK. Our employees are not just part of a team—they are key contributors to shaping innovation, advancing technology, and enhancing global safety. At Leonardo we are committed to building an inclusive, accessible, and welcoming workplace. We believe that a diverse workforce sparks creativity, drives innovation, and leads to better outcomes for our people and our customers. If you have any accessibility requirements to support you during the recruitment process, just let us know. Be part of something bigger - apply now! Primary Location: GB - Yeovil - Lysander Rd Contract Type: Permanent Hybrid Working: Onsite
Posted 1 month agoView detailsSolution Architect
HybridLeonardo · Firenze - Campi Bisenzio, Italy
seniorfull time10001+Aerospace & DefenseitalianJob Description: Leonardo SpA è un gruppo industriale internazionale, tra le principali realtà mondiali nell’Aerospazio, Difesa e Sicurezza che realizza capacità tecnologiche multidominio in ambito Elicotteri, Velivoli, Aerostrutture, Elettronica, Cyber Security e Spazio. Con oltre 60.000 dipendenti nel mondo, l’azienda ha una solida presenza industriale in Italia, Regno Unito, Polonia, Stati Uniti, e opera in 150 paesi anche attraverso aziende controllate, joint venture e partecipazioni. Protagonista dei principali programmi strategici a livello globale, è partner tecnologico e industriale di Governi, Amministrazioni della Difesa, Istituzioni e imprese. All’interno dell’Area Cyber & Security Solutions, stiamo ricercando un/a Solution Architect in ambito Networking, per la nostra sede di Firenze - Campi Bisenzio. La persona individuata contribuirà alla progettazione delle Soluzioni di Comunicazione Mission Critical e Global Monitoring , occupandosi degli aspetti architetturali, configurativi e di sicurezza degli apparati di rete . In particolare, si occuperà delle seguenti attività: Progettare architetture di rete IP e di trasporto dat i, definendone topologie, dimensionamento e criteri di resilienza. Definire le configurazioni di apparati di rete quali Switch Layer 2 e Layer 3 , Firewall e apparati di sicurezza, ponti radio e sistemi wireless Redigere la documentazione tecnic a necessaria all'implementazione delle soluzioni progettate, incluse: Configurazioni IP, Piani di indirizzamento, VLAN e segmentazione di rete, Routing statico e dinamico, Policy di sicurezza, Parametri operativi degli apparati, schemi di rete Definire i requisiti di sicurezza e le relative configurazioni per garantire conformità e protezione delle infrastrutture Supportare i team operativi durante le fasi di deployment e attivazione dei servizi. Fornire indicazioni tecniche ai reparti di Customer Service, Operations, Delivery e Validation. Analizzare problematiche tecniche complesse e individuare soluzioni architetturali efficaci e scalabili. Collaborare con fornitori, partner tecnologici e stakeholder interni per garantire la corretta implementazione delle soluzioni. Progettare e sviluppare strumenti di automazione finalizzati alla generazione della documentazione tecnica, alla produzione di configurazioni standardizzate e all'ottimizzazione dei processi di progettazione e delivery. Implementare controlli automatici e procedure di verifica volte a garantire la qualità delle configurazioni, intercettare errori progettuali o configurativi e ridurre il rischio operativo durante le fasi di attivazione e manutenzione dei servizi. REQUISITI Titolo Di Studio: Laurea Triennale o Laurea Magistrale in discipline STEM (preferibile Laurea Magistrale in Ing. delle Telecomunicazioni). Seniority Expert. Sono richiesti tra i 3 e i 5 anni di esperienza, preferibilmente con 1 o 2 anni di esperienza lavorativa pregressa in ruoli analoghi. Conoscenze e competenze Tecniche Esperienza nella progettazione di reti IP enterprise e/o carrier grade. Conoscenza approfondita delle tecnologie di networking: TCP/IP, Routing e Switching, VLAN, VRF e QoS, OSPF, BGP e protocolli di routing dinamico Tecnologie wireless e ponti radio Conoscenza delle tematiche di network security: Firewalling, ACL, VPN IPSec, Segmentazione e protezione delle reti Capacità di produrre documentazione tecnica dettagliata e configurazioni operative. Esperienza nella lettura e realizzazione di schemi architetturali e diagrammi di rete. Competenze Comportamentali: Sviluppata capacità di ascolto e sintesi; Buona propensione al teamworking e cooperation; Buona capacità di relazionarsi ed organizzare le attività con gli stakeholders esterni/interni; Ottima capacità di organizzare le proprie attività nel rispetto delle scadenze; Grande motivazione e disponibilità alla crescita professionale rispetto a nuove tematiche e tecnologie; Attitudine al problem solving; Orientamento al risultato ed alla qualità; Spirito di iniziativa, capacità di innovazione e curiosità tecnologica. Conoscenze Linguistiche Inglese conoscenza livello B2. Competenze Informatiche Buona conoscenza dei principali sistemi operativi ed ottimo utilizzo di Office. Conoscenza di Teams e sistemi di AI (es. Copilot) Conoscenza base di linguaggi di programmazione. Altro: Disponibilità ad effettuare trasferte sul territorio Italiano, UE ed extra-UE Eventuali certificazioni Cisco (CCNP, CCIE), Juniper, Huawei o equivalenti. Eventuali esperienze con soluzioni SD-WAN e architetture cloud networking. Coinvolgimento, valorizzazione delle competenze , cura del benessere e della sicurezza delle persone sono i cardini della nostra cultura aziendale. Ci impegniamo ogni giorno a favorire un ambiente di lavoro inclusivo e stimolante, promuovendo attivamente i principi di inclusione, equità e valorizzazione delle diversità . Cosa offriamo? Il nostro contratto collettivo del lavoro di riferimento è il CCNL per Industria Metalmeccanica Privata e della Installazione di Impianti; Modalità di lavoro: Ibrida; Categoria contrattuale: Impiegato; Tipologia contrattuale: tempo indeterminato; Tredicesima mensilità; Premialità legata ai risultati di Business; Buoni Welfare dal valore di 250 euro annui; Mensa aziendale; Opportunità di formazione e aggiornamento continuo delle competenze professionali e delle soft skill; Benessere: mettiamo al primo posto il benessere economico, fisico, sociale e psicologico delle nostre persone, offrendo molteplici soluzioni vicine alle loro esigenze. L’azienda si riserva la possibilità di effettuare valutazioni in merito al livello di inquadramento e alla proposta economica, sulla base di criteri oggettivi emersi nel corso del processo di selezione e in coerenza con la seniority del/della candidato/a individuato/a e della posizione, nel rispetto dei principi di equità, trasparenza e pari opportunità previsti dalla normativa vigente. Aspettiamo la tua candidatura : inviaci il tuo CV entro tre settimane dall’apertura dell’annuncio di lavoro. Come funziona il processo di selezione? A seguito della raccolta delle candidature, vengono valutati e identificati i CV maggiormente in linea con i requisiti richiesti. Le/i candidate/i selezionate/i sostengono un colloquio conoscitivo con il team delle Risorse Umane, motivazionale e attitudinale, seguito da un’intervista di approfondimento tecnico con il Business. Al termine del processo, alla persona viene restituito un feedback, sia in caso di esito positivo che negativo. Seniority: Senior Primary Location: IT - Firenze - Campi Bisenzio Contract Type: Permanent Total Base Pay Range: 36K - 59K Hybrid Working: Hybrid
Posted 1 month agoView detailsSTMicroelectronics · SG
full time10001+SemiconductorsenglishOUR STORY At STMicroelectronics, we believe in the power of technology to drive innovation and make a positive impact on people, businesses, and society. As a global semiconductor company, our advanced technologies and chips form the hidden foundation of the world we live in today. When you join ST, you will be part of a global business with more than 115 nationalities, present in 40 countries, and comprising over 50,000 diverse and dedicated creators and makers of technology around the world. Developing technologies takes more than talent: it takes amazing people who understand collaboration and respect. People with passion and the desire to disrupt the status quo, drive innovation, and unlock their own potential. Embark on a journey with us, where you can innovate for a future that we want to make smarter and greener, in a responsible and sustainable way. Our technology starts with you. a { text-decoration: none; color: #464feb; } tr th, tr td { border: 1px solid #e6e6e6; } tr th { background-color: #f5f5f5; } Job Purpose * Operate, and secure mission-critical fab network infrastructure supporting 24x7 semiconductor manufacturing operations * Ensure ultra-high availability, low latency, and deterministic performance for production systems (MES, Automation, AMHS, Process Control) * Guarantee network reliability to avoid any production interruption (ITP) and ensure continuous fab operations Key Responsibilities Fab Network Support * Main maintain segmented and highly resilient network architectures (IT / OT segregation, zones, DMZs) * Support industrial network requirements (low latency, high determinism, redundancy) * Define standards for factory network topology across production, engineering, and support environments * Contribute to infrastructure evolution roadmap (digital fab, automation expansion, AI-ready networks) Operations & 24x7 Availability * Ensure continuous operation of fab networks (24/7/365) with strict SLA adherence * Monitor network performance using enterprise tools (e.g., Zabbix, NMS platforms) * Detect, troubleshoot, and resolve incidents impacting MES, equipment connectivity, AMHS, dispatching systems * Act as escalation point during incidents impacting production Incident & Problem Management * Perform rapid root cause analysis (RCA) for network-related incidents affecting fab operations * Lead or contribute to ITP avoidance actions and recovery procedures * Work closely with ProdOps, Automation, MES, and Facilities teams during incident resolution * Document incidents and drive continuous improvement via 8D / problem management processes Security & Compliance (Critical in Fab) * Enforce strict network segmentation between IT and OT environments * Implement and maintain industrial cybersecurity controls (firewalls, NAC, access control, micro-segmentation) * Ensure compliance with: * Corporate cybersecurity policies * TISAX / ISO / SOX / internal audits * Support vulnerability remediation and security incident handling in production environments Capacity, Performance & Reliability * Ensure network capacity supports fab ramp-up, new tool deployment, and automation growth * Optimize network performance for real-time industrial workloads * Anticipate bottlenecks and execute capacity planning aligned with fab expansion * Ensure redundancy (e.g., dual paths, failover mechanisms) to guarantee no single point of failure Project & Deployment Activities * Support deployment of new manufacturing tools, MES systems, and automation platforms * Coordinate network readiness for new production lines, cleanroom expansions, and upgrades * Collaborate with architects and project managers on infrastructure delivery (design → build → run) * Participate in factory-wide programs (e.g., EWS, AMHS, digitalization initiatives) Vendor & Stakeholder Management * Interface with equipment vendors, automation suppliers, and telecom providers * Ensure vendor solutions comply with ST network and security standards * Coordinate with central DTIT teams and local site operations Documentation & Continuous Improvement * Maintain accurate network diagrams for fab environments (critical for operations) * Standardize configurations and operational procedures * Propose improvements in: * Monitoring * Automation * Resilience * Contribute to knowledge sharing across sites (Crolles, Agrate, AMK, etc.) Required Technical Skills * Strong expertise in: * Industrial networking (Layer 2/3, VLANs, QoS, redundancy protocols) * Routing protocols (OSPF, BGP) * Network security (firewalls, VPNs, segmentation) * Experience with industrial / OT environments (factory networks, automation systems) * Knowledge of: * MES / Automation / AMHS ecosystem constraints * High-availability network design * Familiarity with monitoring and troubleshooting tools * Basic understanding of cybersecurity for industrial systems Soft Skills & Behavior * Strong sense of ownership and urgency (production-critical environment) * Ability to operate under high-pressure situations (fab impact) * Excellent cross-team collaboration (Ops, Automation, MES, Facilities) * Structured problem-solving and decision-making * Continuous improvement mindset Key Performance Indicators (Typical for Fab Role) * Zero or minimized ITP due to network issues * High network availability (aligned with fab SLA targets) * Incident response and resolution time * Compliance with security and audit requirements * Successful delivery of network projects supporting fab expansion Specific Constraints of Fab Environment * 24/7 on-call or standby support may be required * Direct impact on production output and revenue * Need for strict change management and validation procedures * Operations in a highly regulated and security-sensitive environment ST is proud to be one of the 17 companies certified as a 2025 Global Top Employer and the first and only semiconductor company to achieve this distinction. ST was recognized in this ranking thanks to its continuous improvement approach and stands out particularly in the areas of ethics & integrity, purpose & values, organization & change, business strategy, and performance. At ST, we endeavor to foster a diverse and inclusive workplace, and we do not tolerate discrimination. We aim to recruit and retain a diverse workforce that reflects the societies around us. We strive for equity in career development, career opportunities, and equal remuneration. We encourage candidates who may not meet every single requirement to apply, as we appreciate diverse perspectives and provide opportunities for growth and learning. Diversity, equity, and inclusion (DEI) is woven into our company culture. To discover more, visit st.com/careers.
Posted 2 months agoView detailsPlatform Engineer
HybridLeonardo · Yeovil - Lysander Rd, United Kingdom
seniorfull time10001+GBP44k–62k/yAerospace & DefenseenglishJob Description: Salary Range: £44,171 - £61,950 Leonardo UK operates a grade-based salary framework with broad bands. The salary range shown reflects the approved grade band for this role, or a narrower hiring range published within that band, and is benchmarked against the external market. Exceptions above the standard range are managed through governance controls to protect internal equity. Your Impact Are you ready to take the next step in your engineering career and lead the delivery of critical platforms that protect national security? At Leonardo, our Senior Platform Engineers combine technical expertise with leadership, driving the design, integration, and support of complex systems that underpin our customers’ missions. Your work at Leonardo UK will see you take the lead in solving customer problems in an agile, innovative and team-centric manner. The role may involve a blended hybrid working model, with a mixture of working from home and working on site at one of our Leonardo offices to ensure close collaboration with the wider team and with our customers. Leonardo UK is seeking a Senior Platform Engineer to join the Cyber & Security Solutions Division team. This role is focused on delivering, maintaining, and improving platform and systems engineering solutions that underpin critical defence, government and public sector services. What you will do as a Senior Platform Engineer Lead the design, build, and support of secure platforms on-premise and hybrid environments. Take ownership of engineering delivery for one or more work packages, including planning, estimation, execution, and reporting. Develop and review system architectures, low-level designs, and technical documentation. Integrate and test platform components, ensuring compliance with security and performance requirements. Provide mentoring, guidance, and technical leadership to Platform Engineers and Technicians. Collaborate with stakeholders, project teams, and customers to ensure solutions meet requirements. Drive continuous improvement initiatives and contribute to internal engineering standards. What you’ll bring Strong technical ability with experience of delivering and supporting complex platforms. Ability to balance hands-on engineering with technical leadership and mentoring responsibilities. Confidence to take ownership of solutions and represent engineering in technical discussions. Core areas (must have): Windows and Linux operating systems administration and support Virtualised infrastructure (VMware / Hyper-V) operation and maintenance Operational support of platform services (e.g. PAM, PKI, cross-domain solutions) in live environments Platform administration including patching, upgrades, configuration, and account management Monitoring, alerting, and incident response for platform services Incident and problem management, including troubleshooting and root cause analysis Networking concepts (TCP/IP, DNS, DHCP, firewalls) Automation and scripting for operational tasks (PowerShell, Bash, Python, or similar) Knowledge of cyber security controls and accreditation requirements Experience supporting systems across the engineering lifecycle (transition into service, run, and improvement) Delivery within secure / enterprise / defence environments Desirable: Experience supporting platforms such as CyberArk (PAM), PKI services, or cross-domain / secure transfer solutions Use of monitoring and alerting tools (e.g. SIEM, infrastructure monitoring platforms) ITIL-aligned service management practices (incident, problem, change) Automation of operational activities (scripts, scheduled jobs, runbooks) Experience working in high-availability or 24/7 service environments Integration with enterprise services (Active Directory, identity, logging, backup) Container platforms (Kubernetes, Docker) This is not an exhaustive list, and we are keen to hear from you even if you might not have experience in all the above. The most important skill is a good attitude and willingness to learn. Security Clearance This role is subject to pre-employment screening in line with the UK Government’s Baseline Personnel Security Standard (BPSS). An additional range of Personnel Security Controls referred to as National Security Vetting (NSV) will apply. This role requires Developed Vetting (DV) clearance prior to starting. For more information and guidance please visit: https://careers.uk.leonardo.com/gb/en/security-and-vetting Location This role will be based at one of our UK sites - Yeovil. Why join us At Leonardo, our people are at the heart of everything we do. We offer a comprehensive, company-funded benefits package that supports your wellbeing, career development, and work–life balance. Time to Recharge: Generous leave with the opportunity to accrue up to 12 additional flexi-days each year. Secure your Future: Award-winning pension scheme with up to 15% employer contribution. Your Wellbeing Matters: Free access to mental health support, financial advice, and employee-led networks. Never Stop Learning: Free access to 4,000+ online courses via Coursera and LinkedIn Learning. Tailored Perks: Spend up to £500 annually on flexible benefits such as private healthcare, lifestyle discounts, and gym memberships. Flexible Working: Flexible hours with hybrid working options. For a full list of our company benefits please visit our website. Leonardo is a global leader in Aerospace, Defence, and Security. Headquartered in Italy, we employ over 53,000 people worldwide including 8,500 across 9 sites in the UK. Our employees are not just part of a team—they are key contributors to shaping innovation, advancing technology, and enhancing global safety. At Leonardo we are committed to building an inclusive, accessible, and welcoming workplace. We believe that a diverse workforce sparks creativity, drives innovation, and leads to better outcomes for our people and our customers. If you have any accessibility requirements to support you during the recruitment process, just let us know. Be part of something bigger - apply now! #LI-CYBER Primary Location: GB - Yeovil - Lysander Rd Contract Type: Permanent Hybrid Working: Onsite
Posted 2 months agoView detailsLeonardo · Roma - Via Laurentina, Italy
midfull time10001+Aerospace & DefenseitalianJob Description: Leonardo è un gruppo industriale internazionale, tra le principali realtà mondiali nell’Aerospazio, Difesa e Sicurezza che realizza capacità tecnologiche multidominio in ambito Elicotteri, Velivoli, Aerostrutture, Elettronica, Cyber Security e Spazio. Con oltre 60.000 dipendenti nel mondo, l’azienda ha una solida presenza industriale in Italia, Regno Unito, Polonia, Stati Uniti, e opera in 150 paesi anche attraverso aziende controllate, joint venture e partecipazioni. Protagonista dei principali programmi strategici a livello globale, è partner tecnologico e industriale di Governi, Amministrazioni della Difesa, Istituzioni e imprese. All’interno dell’Area di Business Cyber & Security Solutions , stiamo ricercando un/a Cyber Technical Account Manager per la nostra sede di Roma Laurentina, con possibilità di assunzione sulla sede di Chieti Scalo . La persona che individueremo si occuperà delle seguenti attività: Supportare il Cliente nelle attività di gestione operativa dei sistemi di sicurezza; Partecipare alle riunioni di revisione ed avanzamento lavori, per la valutazione dello stato delle attività del progetto, la valutazione dei potenziali rischi, la formulazione di proposte di soluzioni e l'esame dei risultati; Supportare la progettazione e l’implementazione di infrastrutture di sicurezza; Supportare il Cliente nello scouting tecnologico; Supportare il Cliente nella progettazione ed implementazione di piattaforme di sicurezza in ambienti complessi; Predisporre la documentazione tecnica di progetto/servizio; Coordinare tutte le attività inerenti l’erogazione dei servizi in ambito MSSP (SOC, CSIRT, RED TEAM, CTI) rappresentando l’interfaccia tecnica tra i team del Cyber Security Center ed il Cliente. Titolo di studio: Laurea magistrale in discipline STEM o cultura equivalente. Seniority: Expert. Richiesta almeno 5 anni di esperienza lavorativa in ambito Security Operation, nella realizzazione di progetti complessi e gestione di piattaforme di security. Conoscenze e competenze tecniche/informatiche: Conoscenze avanzate in amministrazione/configurazione delle principali piattaforme di security; Conoscenza delle principali architetture Infrastrutturali ed applicative tipiche di una Large Enterprise; Esperienza nella gestione e monitoraggio dei piani di rientro; Gestione delle relazioni con i clienti; Gestione dei progetti; Analisi e redazione della documentazione tecnica; Capacità di erogare corsi di formazione; Conoscenza del Pacchetto Office. Competenze comportamentali: Ottime capacità relazionali; Attitudine al lavoro in team; Flessibilità. Competenze linguistiche: Buona conoscenza della lingua inglese (almeno B2). Altro: Disponibilità a frequenti trasferte nazionali e internazionali di breve-medio periodo. Coinvolgimento, valorizzazione delle competenze , cura del benessere e della sicurezza delle persone sono i cardini della nostra cultura aziendale. Ci impegniamo ogni giorno a favorire un ambiente di lavoro inclusivo e stimolante, promuovendo attivamente i principi di inclusione, equità e valorizzazione delle diversità . Cosa offriamo? Il nostro contratto collettivo del lavoro di riferimento è il CCNL per Industria Metalmeccanica Privata e della Installazione di Impianti; Modalità di lavoro: Ibrida; Categoria contrattuale: Impiegato; Tipologia contrattuale: tempo indeterminato; Tredicesima mensilità; Premialità legata ai risultati di Business; Buoni Welfare dal valore di 250 euro annui; Mensa aziendale; Opportunità di formazione e aggiornamento continuo delle competenze professionali e delle soft skill; Benessere: mettiamo al primo posto il benessere economico, fisico, sociale e psicologico delle nostre persone, offrendo molteplici soluzioni vicine alle loro esigenze. L’azienda si riserva la possibilità di effettuare valutazioni in merito al livello di inquadramento e alla proposta economica, sulla base di criteri oggettivi emersi nel corso del processo di selezione e in coerenza con la seniority del/della candidato/a individuato/a e della posizione, nel rispetto dei principi di equità, trasparenza e pari opportunità previsti dalla normativa vigente. Aspettiamo la tua candidatura : inviaci il tuo CV entro tre settimane dall’apertura dell’annuncio di lavoro. Come funziona il processo di selezione? A seguito della raccolta delle candidature, vengono valutati e identificati i CV maggiormente in linea con i requisiti richiesti. Le/i candidate/i selezionate/i sostengono un colloquio conoscitivo con il team delle Risorse Umane, motivazionale e attitudinale, seguito da un’intervista di approfondimento tecnico con il Business. Al termine del processo, alla persona viene restituito un feedback, sia in caso di esito positivo che negativo. Seniority: Expert Primary Location: IT - Roma - Via Laurentina Contract Type: Permanent Total Base Pay Range: 36K - 59K Hybrid Working: Hybrid
Posted 2 months agoView detailsPlatform Engineer
HybridLeonardo · Yeovil - Lysander Rd, United Kingdom
principalfull time10001+GBP53k–71k/yAerospace & DefenseenglishJob Description: Salary Range: £53,269 - £71,400 Leonardo UK operates a grade-based salary framework with broad bands. The salary range shown reflects the approved grade band for this role, or a narrower hiring range published within that band, and is benchmarked against the external market. Exceptions above the standard range are managed through governance controls to protect internal equity. Your Impact Are you ready to take on complex technical challenges at the forefront of cyber and platform engineering? At Leonardo, our Principal Platform Engineers (Technical Specialist Path) are hands-on experts who shape the design, integration, and delivery of secure platforms that keep our customers’ missions running. Your work at Leonardo UK will see you take the lead in solving customer problems in an agile, innovative and team-centric manner. The role may involve a blended hybrid working model, with a mixture of working from home and working on site at one of our Leonardo offices to ensure close collaboration with the wider team and with our customers. Leonardo UK is seeking a Principal Platform Engineer to join the Cyber & Security Solutions Division team. This role is focused on delivering, maintaining, and improving platform and systems engineering solutions that underpin critical defence, government and public sector services. What you will do as a Principal Platform Engineer Act as the technical authority on one of our platform engineering domains (e.g. virtualisation) providing specialist domain expertise to projects and programmes. Lead the design and implementation of secure platforms across on-premise, hybrid, and cloud environments. Capture, analyse, and interpret complex customer requirements to drive system design and architecture. Develop high- and low-level designs, ensuring alignment with secure-by-design principles. Take ownership of technical delivery within work packages, including planning, estimation, and progress reporting. Mentor, coach, and develop junior and senior engineers, raising technical capability across the community. Provide input to technology strategies, feasibility studies, and innovation projects. Engage with internal and external stakeholders, presenting technical solutions and justifying design decisions. What you’ll bring Extensive technical expertise across multiple platform domains, with a track record of delivering secure solutions. The ability to balance hands-on engineering with technical leadership and mentorship. A problem-solving mindset, able to innovate and recommend the best approach for complex challenges. Core areas (must have): Windows and Linux operating systems Virtualisation platforms (VMware, Hyper-V) Privileged Access Management concepts and implementation (CyberArk or similar) Secure credential storage, rotation, and access control models Integration of PAM into enterprise platforms and services Networking concepts (TCP/IP, DNS, DHCP, firewalls) Automation and scripting (PowerShell, Bash, Python, Ansible, Terraform) Knowledge of cyber security controls and accreditation requirements Experience across the systems engineering lifecycle Design and implementation of privileged access models across complex systems Delivery within highly controlled / secure environments (e.g. air-gapped, defence) Desirable: Expertise with cloud platforms (AWS, Azure) and Infrastructure as Code Experience integrating enterprise services (Active Directory, PKI, monitoring, SIEM) Hands-on use of DevSecOps tools and CI/CD pipelines Automation of account onboarding/offboarding (API-driven) Integration with SIEM / SOC tooling for audit and monitoring Containerisation platforms (Kubernetes, Docker) Experience working with enterprise identity and access management solutions Security Clearance This role is subject to pre-employment screening in line with the UK Government’s Baseline Personnel Security Standard (BPSS). An additional range of Personnel Security Controls referred to as National Security Vetting (NSV) will apply. This role requires Developed Vetting (DV) clearance prior to starting. For more information and guidance please visit: https://careers.uk.leonardo.com/gb/en/security-and-vetting Location This role can be based at one of our UK sites Yeovil. Why join us At Leonardo, our people are at the heart of everything we do. We offer a comprehensive, company-funded benefits package that supports your wellbeing, career development, and work–life balance. Time to Recharge: Generous leave with the opportunity to accrue up to 12 additional flexi-days each year. Secure your Future: Award-winning pension scheme with up to 15% employer contribution. Your Wellbeing Matters: Free access to mental health support, financial advice, and employee-led networks. Never Stop Learning: Free access to 4,000+ online courses via Coursera and LinkedIn Learning. Tailored Perks: Spend up to £500 annually on flexible benefits such as private healthcare, lifestyle discounts, and gym memberships. Flexible Working: Flexible hours with hybrid working options. For a full list of our company benefits please visit our website. Leonardo is a global leader in Aerospace, Defence, and Security. Headquartered in Italy, we employ over 53,000 people worldwide including 8,500 across 9 sites in the UK. Our employees are not just part of a team—they are key contributors to shaping innovation, advancing technology, and enhancing global safety. At Leonardo we are committed to building an inclusive, accessible, and welcoming workplace. We believe that a diverse workforce sparks creativity, drives innovation, and leads to better outcomes for our people and our customers. If you have any accessibility requirements to support you during the recruitment process, just let us know. Be part of something bigger - apply now! #LI-CYBER Primary Location: GB - Yeovil - Lysander Rd Contract Type: Permanent Hybrid Working: Onsite
Posted 2 months agoView detailsPlatform Engineer
HybridLeonardo · Yeovil - Lysander Rd, United Kingdom
principalfull time10001+GBP53k–71k/yAerospace & DefenseenglishJob Description: Salary Range: £53,269 - £71,400 Leonardo UK operates a grade-based salary framework with broad bands. The salary range shown reflects the approved grade band for this role, or a narrower hiring range published within that band, and is benchmarked against the external market. Exceptions above the standard range are managed through governance controls to protect internal equity. Your Impact Are you ready to take on complex technical challenges at the forefront of cyber and platform engineering? At Leonardo, our Principal Platform Engineers are hands-on experts who shape the design, integration, and delivery of secure platforms that keep our customers’ missions running. Your work at Leonardo UK will see you take the lead in solving customer problems in an agile, innovative and team-centric manner. The role may involve a blended hybrid working model, with a mixture of working from home and working on site at one of our Leonardo offices to ensure close collaboration with the wider team and with our customers. Leonardo UK is seeking a Principal Platform Engineer to join the Cyber & Security Solutions Division team. This role is focused on delivering, maintaining, and improving platform and systems engineering solutions that underpin critical defence, government and public sector services. What you will do as a Principal Platform Engineer Act as the technical authority on one of our platform engineering domains (e.g. virtualisation) providing specialist domain expertise to projects and programmes. Lead the design and implementation of secure platforms across on-premise environments. Capture, analyse, and interpret complex customer requirements to drive system design and architecture. Develop high- and low-level designs, ensuring alignment with secure-by-design principles. Take ownership of technical delivery within work packages, including planning, estimation, and progress reporting. Mentor, coach, and develop junior and senior engineers, raising technical capability across the community. Provide input to technology strategies, feasibility studies, and innovation projects. Engage with internal and external stakeholders, presenting technical solutions and justifying design decisions. What you’ll bring Extensive technical expertise across multiple platform domains, with a track record of delivering secure solutions. The ability to balance hands-on engineering with technical leadership and mentorship. A problem-solving mindset, able to innovate and recommend the best approach for complex challenges. Core areas (must have): Windows and Linux operating systems Virtualisation platforms (VMware, Hyper-V) VMware Cloud Foundation (VCF) stack (vSphere, vSAN, NSX-T, Aria Suite) Design, build and operation of software-defined datacentre platforms Network virtualisation and micro-segmentation concepts (NSX, platform-integrated) Networking concepts (TCP/IP, DNS, DHCP, firewalls) Automation and scripting (PowerShell, Bash, Python, Ansible, Terraform) Knowledge of cyber security controls and accreditation requirements Experience across the systems engineering lifecycle Integration of compute, storage, and network layers into a unified platform Delivery within secure / enterprise / defence environments Desirable: VCAP certifcation Expertise with cloud platforms (AWS) and Infrastructure as Code Experience integrating enterprise services (Active Directory, PKI, monitoring, SIEM) Hands-on use of DevSecOps tools and CI/CD pipelines VxRail and hyper-converged infrastructure Automation of VCF lifecycle (patching, upgrades, deployment) Integration with enterprise identity and security services (AD, PKI, PAM) Containerisation platforms (Kubernetes, Docker) This is not an exhaustive list, and we are keen to hear from you even if you might not have experience in all the above. The most important skill is a good attitude and willingness to learn. Security Clearance This role is subject to pre-employment screening in line with the UK Government’s Baseline Personnel Security Standard (BPSS). An additional range of Personnel Security Controls referred to as National Security Vetting (NSV) will apply. This role requires Developed Vetting (DV) clearance prior to starting. For more information and guidance please visit: https://careers.uk.leonardo.com/gb/en/security-and-vetting Location This role will be based at one of our UK sites - Yeovil. Why join us At Leonardo, our people are at the heart of everything we do. We offer a comprehensive, company-funded benefits package that supports your wellbeing, career development, and work–life balance. Time to Recharge: Generous leave with the opportunity to accrue up to 12 additional flexi-days each year. Secure your Future: Award-winning pension scheme with up to 15% employer contribution. Your Wellbeing Matters: Free access to mental health support, financial advice, and employee-led networks. Never Stop Learning: Free access to 4,000+ online courses via Coursera and LinkedIn Learning. Tailored Perks: Spend up to £500 annually on flexible benefits such as private healthcare, lifestyle discounts, and gym memberships. Flexible Working: Flexible hours with hybrid working options. For a full list of our company benefits please visit our website. Leonardo is a global leader in Aerospace, Defence, and Security. Headquartered in Italy, we employ over 53,000 people worldwide including 8,500 across 9 sites in the UK. Our employees are not just part of a team—they are key contributors to shaping innovation, advancing technology, and enhancing global safety. At Leonardo we are committed to building an inclusive, accessible, and welcoming workplace. We believe that a diverse workforce sparks creativity, drives innovation, and leads to better outcomes for our people and our customers. If you have any accessibility requirements to support you during the recruitment process, just let us know. Be part of something bigger - apply now! #LI-CYBER Primary Location: GB - Yeovil - Lysander Rd Contract Type: Permanent Hybrid Working: Onsite
Posted 2 months agoView detailsPlatform Engineer
HybridLeonardo · London - Whitehall, United Kingdom
principalfull time10001+GBP60k–71k/yAerospace & DefenseenglishJob Description: Salary Range: £60,000 - £71,400 Leonardo UK operates a grade-based salary framework with broad bands. The salary range shown reflects the approved grade band for this role, or a narrower hiring range published within that band, and is benchmarked against the external market. Exceptions above the standard range are managed through governance controls to protect internal equity. Your Impact Leonardo is looking for a 3rd Line Platform Engineer to join our collaborative and skilled team supporting a critical MOD site. This is an exciting opportunity to serve as a Subject Matter Expert (SME) in Windows-based enterprise infrastructures. You'll play a central role in the design, deployment, and support of high-security systems that underpin key defence and aerospace operations. This role is based full-time on site in London and requires DV clearance. What you will do as a Principal Platform Engineer: Take ownership of complex technical issues through to resolution, collaborating with users and other IT teams. Provide expert-level troubleshooting for incidents escalated from 1st and 2nd line support, ensuring consistent and minimal disruption to services. Deploy and integrate secure Windows Server environments (Active Directory, Group Policy, DNS, DHCP) using industry best practices. Implement and maintain infrastructure security measures such as patching, access controls, and hardening to align with compliance and internal governance. Use monitoring tools to proactively optimize system performance and ensure high availability. Create and maintain detailed technical documentation and contribute to internal knowledge sharing and mentoring. Participate in IT projects, ensuring infrastructure design meets both technical and business objectives. Collaborate closely with network, security, and application teams to deliver reliable, secure IT services. What you’ll bring: Proficiency in Ivanti Application & Device Control or similar lockdown tools. Experience working with high-security MOD systems and secure design principles. Familiarity with security and compliance documentation (e.g. RMADS, SyOPs, NIST frameworks). Core Technologies Microsoft: Windows Server 2019/2022/2025 Active Directory, Group Policy, DNS, DHCP Exchange Server 2019, SQL Server, SharePoint 2019 VMware: VMware Cloud Foundation vSphere, ESXi, NSXT, and vSAN Endpoint & Configuration: Windows 10 & 11 Microsoft Endpoint Configuration Manager (MECM) Monitoring & Observability: Microsoft System Centre Operations Manager (SCOM) PKI Technologies: Microsoft Certificate Services, Hardware Security Modules (HSMs), and lifecycle key management Security Clearance This role is subject to pre-employment screening in line with the UK Government’s Baseline Personnel Security Standard (BPSS). An additional range of Personnel Security Controls referred to as National Security Vetting (NSV) may apply, this could include meeting the eligibility requirements for The Security Check (SC) or Developed Vetting (DV). For more information and guidance please visit: https://careers.uk.leonardo.com/gb/en/security-and-vetting . Why join us At Leonardo, our people are at the heart of everything we do. We offer a comprehensive, company-funded benefits package that supports your wellbeing, career development, and work–life balance. Whether you're looking to grow professionally, care for your health, or plan for the future, we’re here to help you thrive. Time to Recharge: Enjoy generous leave with the opportunity to accrue up to 12 additional flexi-days each year. Secure your Future: Benefit from our award-winning pension scheme with up to 15% employer contribution. Your Wellbeing Matters: Free access to mental health support, financial advice, and employee-led networks championing inclusion and diversity (Enable, Pride, Equalise, Armed Forces, Carers, Wellbeing and Ethnicity). Rewarding Performance : All employees at management level and below are eligible for our bonus scheme. Never Stop Learning : Free access to 4,000+ online courses via Coursera and LinkedIn Learning. Refer a friend: Receive a financial reward through our referral programme. Tailored Perks : Spend up to £500 annually on flexible benefits including private healthcare, dental, family cover, tech & lifestyle discounts, gym memberships and more. Flexible working: Flexible hours with hybrid working options. For part time opportunities, please talk to us about what might be possible for this role. For a full list of our company benefits please visit our website. Leonardo is a global leader in Aerospace, Defence, and Security. Headquartered in Italy, we employ over 53,000 people worldwide including 8,500 across 9 sites in the UK. Our employees are not just part of a team—they are key contributors to shaping innovation, advancing technology, and enhancing global safety. At Leonardo we are committed to building an inclusive, accessible, and welcoming workplace. We believe that a diverse workforce sparks creativity, drives innovation, and leads to better outcomes for our people and our customers. If you have any accessibility requirements to support you during the recruitment process, just let us know. Be part of something bigger - apply now! #LI-CYBER Primary Location: GB - London - Whitehall Contract Type: Permanent Hybrid Working: Onsite
Posted 3 months agoView details