Enable job alerts via email!

STARA(R) – Enterprise Security Threat and Risk Consultant

BAE Systems (New)

Gloucester, Manchester

Hybrid

GBP 45,000 - 75,000

Full time

17 days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Join a forward-thinking company as an Enterprise Security Threat and Risk Consultant, where your expertise will lead advanced threat assessments across various domains. This role is crucial in shaping how organizations manage risks in a hybrid threat environment. You will work collaboratively with diverse stakeholders, providing strategic advice and ensuring impactful security engagements. The company fosters an inclusive culture that values diversity and empowers employees to reach their full potential. If you are passionate about cybersecurity and want to make a significant difference, this opportunity is perfect for you.

Benefits

Competitive Pension Scheme
Employee Share Plan
Flexible Health Benefits
Private Health Plans
Shopping Discounts
Annual Incentive Eligibility

Qualifications

  • 5+ years of experience in security, defense, or intelligence roles.
  • Strong knowledge of cyber risk frameworks and threat landscapes.
  • Ability to communicate effectively with senior stakeholders.

Responsibilities

  • Lead Security Threat and Risk Assessments across multiple domains.
  • Develop comprehensive risk assessment reports with recommendations.
  • Collaborate with teams to integrate threat-informed risk management.

Skills

Risk Analysis
Threat Assessment
Cybersecurity Frameworks
Critical Thinking
Communication Skills
Counterintelligence
Human Intelligence
Physical Security Assessments
Operational Technology Security
Penetration Testing

Education

Bachelor's Degree in Security or Related Field
High-Level Security Clearance

Tools

NIST 800-53
ISO/IEC 27001
NCSC CAF

Job description

Location(s): UK, Europe & Africa : UK : Gloucester || UK, Europe & Africa : UK : Guildford || UK, Europe & Africa : UK : Leeds || UK, Europe & Africa : UK : London || UK, Europe & Africa : UK : Manchester

BAE Systems Digital Intelligence is home to 4,500 digital, cyber and intelligence experts. We work collaboratively across 10 countries to collect, connect and understand complex data, so that governments, nation states, armed forces and commercial businesses can unlock digital advantage in the most demanding environments.

Job Title: STARA(R) – Enterprise Security Threat and Risk Consultant

Location: London – Guildford, Gloucester, London, Manchester, Leeds (Hybrid working)

Grade: GG10-GG13

Referral Bonus: 5000

What You’ll Be Doing

As an Enterprise Security Threat and Risk Consultant, you will lead and deliver advanced threat and risk assessments across physical, personnel, cyber, and governance domains. Working on mission-critical programmes in government, financial, CNI, and defence, your role will shape how organisations understand and manage threats in the context of a hybrid threat environment and evolving adversary tactics. You’ll collaborate with internal and external stakeholders, advise on strategic risk posture, and ensure delivery of high-impact STARA engagements.

Responsibilities

  1. Lead, deliver and support Security Threat and Risk Assessments (STARA) across ICT, Operational Technology, physical, and personnel security.
  2. Analyse threats including cyber, insider, physical and hybrid actors, using counterintelligence and HUMINT principles where relevant.
  3. Evaluate security risk across full-spectrum domains, integrating inputs from technical testing, behavioural analysis, and environmental factors.
  4. Develop and present comprehensive risk assessment reports, including clear recommendations for mitigation and investment.
  5. Apply frameworks such as NIST 800-53, ISO/IEC 27001, and NCSC CAF to assess current controls and identify improvement opportunities.
  6. Contribute to the development of organisational threat models and security postures aligned to national security objectives.
  7. Provide guidance on the implementation of physical and technical security controls based on STARA findings.
  8. Collaborate with cyber, intelligence, and engineering teams to integrate threat-informed risk management.
  9. Lead and mentor high-performing teams, and support the professional growth of junior consultants.

Skills & Experience:

  1. You have at least 5 years’ experience in a security, defence, government, or intelligence role involving risk, threat, or vulnerability analysis.
  2. You understand modern threat landscapes, including hybrid attack vectors and blended threat actors.
  3. You can apply critical thinking to complex and ambiguous environments, making informed decisions under pressure.
  4. You have strong knowledge of cyber risk frameworks (e.g. NIST, ISO27001, NCSC CAF) and experience in applying them.
  5. You’re experienced in one or more of: counterintelligence, human intelligence and security, physical security assessments, operational technology, supply chain security, military platforms assessments, or penetration testing, OSINT, Insider Risk, Security Culture and Behaviour Change.
  6. You’re a confident communicator, able to build trusted relationships and influence senior stakeholders.
  7. You thrive when solving difficult problems and bring structure and clarity to risk management challenges.
  8. You hold or are eligible for high-level security clearance.

The team

We work hard and often go the extra mile, but we recognise people’s efforts and that everyone has a life outside of work. We encourage people to speak up if they want to rotate to a new project.

Benefits

As well as a competitive pension scheme, BAE Systems also offer employee share plan, an extensive range of flexible discounted health, wellbeing and lifestyle benefits including a green care scheme, private health plans and shopping discounts – you may also be eligible for an annual incentive.

Why BAE Systems?

This is a place where you’ll be able to make a real difference. You’ll be part of an inclusive culture which values diversity, rewards integrity and merit, and where you’ll be empowered to fulfil your potential. We welcome candidates from all backgrounds and particularly from sections of the community who are currently under-represented within our industry including women, ethnic minorities, people with disabilities and LGBTQ+ individuals.

We also want to make sure that our recruitment processes are as inclusive as possible. If you have a disability or health condition (for example dyslexia, autism, an anxiety disorder etc.) that may affect your performance in certain assessment types, please speak to your recruiter about potential reasonable adjustments.

Please be aware that many roles at BAE Systems are subject to both security and export control restrictions. These restrictions such as your nationality, any nationalities which you previously may have held and your place of birth can restrict the roles you are able to perform within the organisation.

All applicants must as a minimum achieve Baseline Personnel Security Standard. Many roles also require higher levels of National Security Vetting where applicants must typically have 5 to 10 years of continuous residency in the UK depending on the vetting level required for the role, to allow for meaningful security vetting checks.

Life at BAE Systems Digital Intelligence

We are embracing Hybrid Working. This means you and your colleagues may be working in different locations, such as from home, another BAE Systems office or client site, some or all of the time, and work might be going on at different times of the day.

By embracing technology, we can interact, collaborate and create together, even when we’re working remotely from one another. Hybrid Working allows for increased flexibility in when and where we work, helping us to balance our work and personal life more effectively, and enhance well-being.

Diversity and inclusion are integral to the success of BAE Systems Digital Intelligence. We are proud to have an organisational culture where employees with varying perspectives, skills, life experiences and backgrounds – the best and brightest minds – can work together to achieve excellence and realise individual and organisational potential.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

STARA(R) - Enterprise Security Threat and Risk Consultant

TN United Kingdom

Gloucester

Hybrid

GBP 60,000 - 100,000

12 days ago

STARA(R) - Enterprise Security Threat and Risk Consultant

BAE Systems.

Gloucester

On-site

GBP 50,000 - 90,000

17 days ago

STARA(R) - Enterprise Security Threat and Risk Consultant

BAE Systems Applied Intelligence

Gloucester

Hybrid

GBP 45,000 - 80,000

17 days ago

Senior Risk Consultant (PMCM)

WSP

Birmingham

On-site

GBP 40,000 - 80,000

5 days ago
Be an early applicant

Senior Risk Consultant

AECOM

Bristol

On-site

GBP 45,000 - 85,000

30+ days ago

Senior Risk Consultant

AECOM

Birmingham

On-site

GBP 50,000 - 90,000

30+ days ago