Cybersecurity in defence spans nation-state threat intelligence, military network protection and the security of weapons platforms themselves. The work is technically demanding. A vulnerability researcher at Quarkslab in Paris reverse-engineers firmware on embedded military systems. A CTI analyst at Sekoia.io tracks adversary infrastructure across state-sponsored campaigns. A network security engineer at Stormshield, an Airbus subsidiary, builds hardened products certified to NATO and EU classified network standards. Major primes maintain large cybersecurity divisions too, including Thales, BAE Systems Applied Intelligence, Leonardo Cyber and Security Solutions, and Airbus CyberSecurity.
Among the startups and SMEs tracked on DefenceJobs, companies hiring include Stormshield (network and endpoint security, France), Sekoia.io (cyber threat intelligence platform, Paris), Quarkslab (reverse engineering and software protection, Paris), Filigran (open-source CTI tooling, France), Pradeo (mobile security, Montpellier) and Blackwall (bot management, Tallinn). Reverse engineering, malware analysis and threat intelligence are more prevalent here than in commercial cybersecurity, where GRC and cloud security roles tend to dominate. Knowledge of military communication protocols, SCADA/ICS security or classified network architectures is valued for more senior positions, though typically learned on the job.
Security clearance is more commonly required in cybersecurity than in other defence tech domains, given the proximity to classified networks and intelligence material. The process varies by country but the employer typically sponsors the clearance application, and candidates without existing clearance can still apply to most positions. For candidates coming from commercial cybersecurity, the transition is relatively direct. The technical skills transfer well, and the main adjustment is working within stricter information-handling rules and longer procurement timelines.