Description
Location:
Brussels, Belgium
Security Clearance:
NATO Secret
Reference No:
OCIO-0033 / Brussels
Introduction:
Skills, knowledge, experience required:
- A degree from a university or establishment of similar standing;
- At least 3 years’ experience in cybersecurity incident management, preferably in a large organization;
Experience in:
Planning of multi-year programs related to cybersecurity incident management;
- Cyber incident management exercise planning processes and scenarios;
- Development of processes and cybersecurity incident response plans, preferably in a large organization;
- Provision of cybersecurity advice and guidance following incidents happening in and through cyberspace;
- Knowledge of and experience in coordinating with multiple stakeholders during the response activities to cybersecurity-related incidents in large, geographically sparse organizations;
- Excellent knowledge of and experience with cybersecurity incident response best practices;
- Good knowledge of the principles, policy, and procedures governing cybersecurity, preferably in military and/or defence organizations;
- The ability to draft clear and concise reports, produce and maintain cybersecurity incident reports, security and risks logs and systems in support of cybersecurity incident response activities.
Desirable:
- Cybersecurity certifications such as CISSP, CISM or equivalent post-graduate degree in cybersecurity;
- Experience within NATO in leading cyber incident response activities;
- Experience in leading staff work on large and complex projects and coordinating multiple stakeholders in different and separate locations;
- Experience with incident management tools;
- Knowledge of the NATO organization, its security policy and supporting directives.
Duties/role:
- Supporting Enterprise cyber incident management and response efforts, in particular ensuring appropriate coordination across Enterprise stakeholders;
- Supporting, overseeing, and leading Cyber Incident Task Force (CITF) lines of effort;
- Supporting the preparation and conduct of cyber Incident Coordination and Decision Making Group (ICDMG) discussions and meetings;
- Preparing weekly Situation Reports (SITREPs) for OCIO leadership awareness on relevant activities, also informing the Allies as necessary;
- Performing and supervising secretarial duties for cyber incident response-related meetings;
- Identifying, developing, and coordinating mitigation and remediation actions in order to ensure a coherent response, Enterprise-wide, to identified cyber events and incidents;
- Developing, maintaining, and updating an Enterprise-wide incident management framework to support the role of the CIO as Single Point of Authority for cybersecurity, in coordination with relevant NATO stakeholders, such as NATO Communications and Information Agency (NCIA) and CyOC;
- Supporting the annual update of the Cyber Incident Response Plan (CIRP) and its supporting annexes;
- Supporting the preparation, conduct, and evaluation of the annual OCIO-led Exercise Enterprise Pathfinder (ENPAF), a key exercise for the Enterprise to ensure readiness to handle cyber security incidents;
- Ensuring that the lessons identified of previous ENPAF iterations and CITFs become learned in the Enterprise cyber incident management process;
- Liaising with NCIA for monitoring and coordination of technical activities in relation to cybersecurity incidents;
- Liaising with the NATO Cyber Threat Assessment Branch for monitoring and assessment of cyber threats.
VECTOR SYNERGY sp. z o.o., ul. Marcelińska 90, 60-324 Poznań, NIP PL7811857270, REGON 301575740, KRS: 0000369575
Rejestr Przedsiębiorców KRS prowadzony przez Sąd Rejonowy Poznań - Nowe Miasto i Wilda w Poznaniu, VIII Wydział Gospodarczy KRS,