Aviation Security Specialist
Listed on 2026-09-02
-
IT/Tech
Cybersecurity, Information Security & Data Protection, Security Management & Operations, IT Specialist
The Aviation Security Specialist at the Air Line Pilots Association (ALPA) safeguards mission-critical aviation and union information systems supporting over 77,000 pilots. Working within the Information Technology & Cybersecurity department, this role analyzes aviation security risks, secures networks and applications, and supports cyber incident detection and response. The Specialist develops and enforces security policies aligned with TSA, ICAO, and NIST standards, evaluates third-party and airline interfaces, and advises leaders on emerging threats.
In ALPA's mission-driven, collaborative culture, you will partner with pilots, safety experts, and union leaders to strengthen cyber and operational security, advance aviation safety, and help protect the future of the piloting profession.
Responsibilities
- Assess aviation and IT/cybersecurity risks across ALPA systems, data, and integrations with airline and industry partners.
- Implement and manage security controls for networks, endpoints, cloud, and applications supporting pilots and union operations.
- Monitor security events and respond to cyber incidents, including triage, containment, investigation, and remediation.
- Develop, maintain, and enforce security policies and standards aligned with TSA, ICAO, NIST, and related frameworks.
- Conduct vulnerability assessments and coordinate remediation with IT and vendor teams.
- Advise leadership on emerging cyber and aviation security threats, trends, and mitigation strategies.
- Support security awareness training for staff, pilot leaders, and stakeholders.
- Contribute to security aspects of new technology initiatives, projects, and vendor evaluations.
Required Skills
- Aviation security standards (TSA, ICAO)
- Cybersecurity frameworks (NIST, ISO 27001)
- Risk assessment & threat modeling
- Vulnerability management
- Network & endpoint security
- Incident response and digital forensics
- Security monitoring/SIEM tools
- Secure systems architecture
- Regulatory compliance & policy writing
- Technical reporting & stakeholder communication
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).