The role works closely with Operations, Programmes, Commercial, HR, IT/Cyber Security, Quality, Export Control, Facilities, Supply Chain, Engineering and relevant project teams.
To provide ownership, coordination and assurance of the Company’s security governance for defence project delivery, ensuring that UK MOD, UK Government, international, customer-specific and corporate security obligations are understood, implemented, evidenced and continuously improved.
The Facility Security Controller acts as the central point of control for Facility Security Clearance, classified information handling, Security Aspects Letters, secure room / SECRET working readiness, personnel security, supplier security flow-down, customer-specific project security obligations and security culture across the Company.
The role is an assurance and enabling function. It protects the Company, its customers, personnel, assets, information and reputation while supporting practical delivery of UK and wider defence sector projects.
Key Responsibilities:
Security Governance & Compliance
- Lead the security governance framework for defence projects, ensuring compliance with UK MOD, international, customer and corporate security requirements.
- Manage security committees, risk/action logs and provide reporting to senior leadership.
- Maintain awareness of relevant government and industry security standards, including GovS 007.
MOD & Classified Information
- Coordinate Facility Security Clearance (FSC), IPSA and customer audit readiness.
- Manage Security Aspects Letters and project security instructions.
- Ensure classified information, assets and technical data are handled, stored, transferred and destroyed in line with authorised procedures.
Secure Facilities
- Act as the focal point for secure rooms, controlled areas and SECRET working.
- Oversee secure access controls, visitor management, approved storage, registry records and secure destruction processes.
Project Security
- Integrate security requirements into bids, contracts, project delivery and supplier engagement.
- Advise Commercial, Engineering, Programmes, Supply Chain, IT/Cyber Security, Quality and Facilities on security obligations.
- Ensure project teams understand security requirements before sensitive work or information sharing takes place.
International & Export Controls
- Coordinate international and customer-specific security requirements.
- Support compliance with NATO, foreign government, US CUI, ITAR and export-controlled information where applicable.
Personnel Security
- Coordinate security vetting, clearance tracking and access authorisations.
- Ensure access to sensitive information is based on appropriate clearance and need-to-know.
- Support insider risk management alongside HR, IT and line managers.
Security Culture & Incident Management
- Flow security requirements to suppliers and subcontractors.
- Manage visitor controls for sensitive areas.
- Lead the reporting and investigation of security incidents and security breaches.