Cyber Security Accreditation Support

Location: 50% On-site at NCI Agency Braine-l’Alleud, Belgium / 50% Off-site (with scheduled travel consisting of up to 10 visits to Mons, Brussels, and The Hague)

Duties & Roles:

  • Security Accreditation Advisory: Provide guidance and advisory support to Project and System Managers across the entire lifecycle of NATO CIS. Act as the primary liaison and focal point between the NCI Agency and NATO Security Accreditation Authorities (SAAs). Maintain active communication with Security Accreditation Boards and relevant organizational units.
  • Security Risk Assessment (SRA): Conduct risk assessments for NATO CIS systems, identifying specific threat levels and technical vulnerabilities for all associated assets. Derive residual risks and formulate pragmatic risk treatment and mitigation recommendations.
  • Accreditation Documentation Lifecycle: Plan, draft, update, and manage all core security accreditation artifacts, including the CIS Description, Security Accreditation Plan (SAP), Security Risk Assessment Report (SRAR), Security Requirement Statements (SRS), Security Operating Procedures (SecOPs), and Security Test and Verification Plans (STVP).
  • Cross-Functional Coordination & Subject Matter Support: Monitor developments in cybersecurity, network security, and cloud security. Prepare technical briefings and presentations for leadership, coordinate across NCI Agency Business Areas, and contribute to the ITM Recovery Increment 1 (ITM RC1) Cyber Security work package.

Skill, Knowledge & Experience:

  • Education & Certifications: University degree in Information Security, Telecommunications, Electronics, or Avionics. Alternatively, absence of a formal degree can be compensated by relevant professional experience combined with at least one active certification: CISSP, CISA, or CISM.
  • Core Experience: Minimum of 2 years of experience in Security Accreditation of major CIS within acquisition or development programs for a large organization. At least 2 years of experience applying security risk assessment methodologies and tools. At least 2 years of experience in planning, designing, and implementing security controls/components for major CIS.
  • Communication & Briefing: Proven ability to communicate effectively orally and in writing, with demonstrated briefing and presentation capabilities targeted at senior stakeholders.
  • Desirable Experience & Knowledge: Demonstrated expertise in network and cloud security. Knowledge of NATO Security Policy, supporting directives, and international standards such as ISO/IEC 27001. Prior experience working within or alongside NATO or other international defense entities.
  • Clearance: A valid NATO SECRET personal security clearance is strictly required prior to contract start.

    By sending this form, you agree with our Privacy Policy and Terms and Conditions.

     

    If you’re interested in this opportunity and would like to learn more, please fill out the form below, and a member of our team will get in touch with you shortly.