OCIO-0033 Enterprise Cybersecurity Incident Manager

il y a 1 semaine


Mons, Wallonie, Belgique EMW Temps plein

NOTE: Previously proposed candidates were non-compliant for the following reasons:

Based on the information provided in the CVs we could not identify specific cyber incident management expertise for Enterprise level management responsibilities and tasks provided in the job description:

Knowledge and experience in coordinating with multiple stakeholders during the response activities to cybersecurity related incidents in large, geographically sparse organizations; nor

An excellent knowledge and experience with cybersecurity incident response best practices.

During the interview the candidate did not demonstrate sufficient experience in leading an Enterprise incident management process from beginning to end, nor demonstrated sufficient knowledge in contributing to a multi-year cybersecurity enhancement project and his answers were not well structured.

In the written test, answers provided demonstrated conceptual technical knowledge but did not project this knowledge into the Enterprise view.

Deadline Date: Monday 24 June 2024

Requirement: Enterprise Cybersecurity Incident Manager

Location: Mons, BE

Full time on-site: Yes

Time On-Site: 100%

Total Scope of the request (hours): 800

Required Start Date: 5 August 2024

End Contract Date: 31 December 2024

Required Security Clearance: NATO SECRET

Note: For all Level-of-Effort and Completion-Type requests processed outside of the IWC Value Stream, and for which the contractor will not be reimbursed directly by OCIO for travel expenses, additional travel funding shall be allocated on a Not-to-exceed basis when the yearly Option is exercised

Annex A – Special Terms and Conditions

The contractor will be responsible for complying with the respective national requirements for working permits, visas, taxes, social security etc. whilst working on site at NATO HQ Brussels, Belgium.

No special status is either conferred or implied by the host organisation, NATO HQ Brussels, Belgium to the contractor whilst working on site.

The contractor will be responsible for complying with all the respective National Health COVID-19 regulations in Belgium before taking up the position.

1. INTRODUCTION

The incumbent will work on the coordination of response to cybersecurity incidents involving Enterprise CIS and services, performed by the Office of the Chief Information Officer (OCIO). The incumbent will execute the follow-on activities through engagement with several NATO stakeholders, such as the NATO technical authorities, risk management authorities, and other relevant NATO entities across the Enterprise, including NATO risk managers, CIS Providers (CISPs), the NATO Cyber Threat Assessment Branch (CTAB) and the NATO Cyberspace Operations Centre (CyOC). The incumbent will also be responsible for further development, maintenance and update of the Enterprise Cyber Incident Management framework and supporting processes.

2. TASKS

The contracted individual must be able to perform effectively and efficiently with minimal supervision the following tasks:

Support Enterprise cyber incident management and response efforts, in particular ensuring appropriate coordination across Enterprise stakeholders; Support, oversight and lead Cyber Incident Task Force (CITF) lines of effort; Support the preparation and conduct of cyber Incident Coordination and Decision Making Group (ICDMG) discussions and meetings; Prepare weekly SITREPs for OCIO leadership awareness on relevant activities, also for informing the Allies as necessary; Perform and supervise secretarial duties for cyber incident response related meetings; Identify, develop and coordinate mitigation and remediation actions, in order to ensure a coherent response, Enterprise-wide, to identified cyber events and incidents; Develop, maintain and update an Enterprise-wide incident management framework to support the role of the CIO as Single Point of Authority for cybersecurity, in coordination with relevant NATO stakeholders, such as NATO Communications and Information Agency (NCIA) and CyOC; Support the annual update of the Cyber Incident Response Plan (CIRP) and its supporting annexes; Support the preparation, conduct and evaluation of the annual OCIO-led Exercise Enterprise Pathfinder (ENPAF), a key exercise for the Enterprise to ensure readiness to handle cyber security incidents; Support that the lessons identified of previous ENPAF iterations and CITFs become learned in the Enterprise cyber incident management process; Liaise with NCIA for monitoring and coordination of technical activities in relation to cybersecurity incidents; Liaise with the NATO Cyber Threat Assessment Branch for monitoring and assessment of cyber threats.

3. PROFILE

[See Requirements]

4. DESIRABLE

[See Requirements]

5. LOCATION OF DUTY

The work will be executed primarily on site at the NATO HQ offices in Brussels, Belgium.

Frequent travels or short deployments to NATO Command Structure bodies would be required.

Due to the nature of the work, minimal teleworking can be foreseen.

6. TIMELINES

The services of the contractor are required for the period starting not later than 5 August 2024 until 31st December 2024.

A contract extension is possible for the calendar year 2025. Future contract extensions are subject to performance of the contractor and related NATO regulations.

7. SPECIFIC WORKING CONDITIONS

Secure environment with standard working hours. Occasional non-standard hours may be required in support of the NATO Chief Information Officer urgent tasks.

8. TRAVEL

Occasional business travel may be required. Travel expenses will be reimbursed to the individual directly (in addition to the hourly rate) under NATO rules.

9. SECURITY AND NON-DISCLOSURE AGREEMENT

The contractor must be in possession or capable of possessing a security clearance of NATO SECRET.

A signed Non-Disclosure Agreement will be required.

Requirements

The contractor must be in possession or capable of possessing a security clearance of NATO SECRET.

3. PROFILE

The candidate must possess:

A degree from a university or establishment of similar standing; At least 3 years of experience in cybersecurity incident management, preferably in a large organization; Experience in the planning of multi-year programs related to cyber security incident management; Experience in cyber incident management exercise planning processes and scenarios; Experience in the development of processes and cybersecurity incident response plans, preferably in a large organization; Experience in the provision of cybersecurity advice and guidance following incidents happening in and through cyberspace; Knowledge and experience coordinating with multiple stakeholders during the response activities to cybersecurity related incidents in large, geographically sparse organizations; An excellent knowledge and experience with cybersecurity incident response best practices; A good knowledge of the principles, policy and procedures governing cybersecurity, preferably in military and/or defence organizations; The ability to draft clear and concise reports, produce and maintain cybersecurity incident reports, security and risks logs and systems in support of cybersecurity incident response activities;

4. DESIRABLE

The following would be considered an advantage:

Cyber security certifications such as CISSP, CISM or equivalent post-graduate degree in cybersecurity; Experience within NATO in leading cyber incident response activities; Experience in leading staff work on large and complex projects and to coordinate multiple stakeholders in different and separate locations; Experience in incident management tools; Knowledge of the NATO organization, its security policy and supporting directives.

  • Mons, Wallonie, Belgique Enterpryze Consulting Ltd. Temps plein

    **Enterprise Risk Management Supporting Officer- Working Location:Brussels, Belgium**- Security Clearance: NATO Secret**- Language:High proficiency level in English language**EXPERIENCE AND EDUCATION: **Essential Qualifications/Experience: - Previous experience within NATO and/or Industry Enterprise Risk Assessment and Management methodologies and tools...


  • Mons, Wallonie, Belgique Enterpryze Consulting Ltd. Temps plein

    **Cyber Security Incident Detection Analyst- Working Location:Mons, Belgium**- Security Clearance:NATO Secret / SC**- Language:High proficiency level in English language**EXPERIENCE AND EDUCATION: **Essential Qualifications/Experience: - **Expert level in 3+ of the following areas and a high level of experience in several of the other areas: ü **Security...


  • Mons, Wallonie, Belgique Spektrum Temps plein

    Spektrum have a wide range of exciting opportunities in several global locations.We are always looking to add great new talent to our team and look forward to hearing from you.Who we are supportingThe NATO Communication and Information Agency (NCIA) is responsible for providing secure and effective communications and information technology (IT) services to...

  • Incident Manager

    il y a 1 semaine


    Mons, Wallonie, Belgique Mielabelo Temps plein

    **Région | **Bruxelles ou Wallonie (en fonction de la mission)**Challenge | **Nous vous offrons la responsabilité de la bonne gestion du helpdesk de notre client**Talent |**- Être garant du processus de gestion des incidents conformément aux politiques, directives et procédures du client- Faciliter les communications entre acteurs du processus et les...


  • Mons, Wallonie, Belgique Enterpryze Consulting Ltd. Temps plein

    Working Location:Mons, Belgium**- Security Clearance: NATO Secret**- Language:High proficiency level in English language**EXPERIENCE AND EDUCATION: **Essential Qualifications/Experience: - Recent practical, hands-on experience of Intrusion Detection and Incident Response (TRIAGE, Contain, Eradicate, Recover) in an enterprise-level Computer Emergency Response...


  • Mons, Wallonie, Belgique Enterpryze Consulting Ltd. Temps plein

    **Senior Incident Detection Analyst - Cloud Security- Working Location:Mons, Belgium**- Security Clearance: NATO Secret**- Language:High proficiency level in English language**EXPERIENCE AND EDUCATION: **Essential Qualifications/Experience: - 2+ years of demonstrable experience in security monitoring and analysis of enterprise level cloud environments (AWS...


  • Mons, Wallonie, Belgique Spektrum Group Temps plein

    Spektrum have a wide range of exciting opportunities in several global locations.We are always looking to add great new talent to our team and look forward to hearing from you.Whom we are supportingThe NATO Communication and Information Agency (NCIA) is responsible for providing secure and effective communications and information technology (IT) services to...

  • Cybersecurity Tools Engineer

    il y a 1 semaine


    Mons, Wallonie, Belgique Uni Systems Temps plein

    At Uni Systems, we are working towards turning digital visions into reality. We are continuously growing and we are looking for a Cybersecurity Tools Engineer to join our UniQue team in Mons, BelgiumWhat will you be bringing to the team?Act as the engineer delivering Online Vulnerability Assessment (OVA) service for the InstitutionManage cyber tools used by...

  • Enterprise Architect

    il y a 1 semaine


    Mons, Wallonie, Belgique Mielabelo Temps plein

    MIELABELOInnovating actor in Business Services sector, Mielabelo is an expanding consulting firm that aims to optimize its clients' performance. In order to support its team and enhance its development, Mielabelo is urgently looking for a new colleague.> Enterprise ArchitectLocation|**BrusselsChallenge |The mission is to act as Enterprise Architect in the...

  • Cybersecurity Tools Engineer

    il y a 1 semaine


    Mons, Wallonie, Belgique Uni Systems Temps plein

    At Uni Systems, we are working towards turning digital visions into reality. We are continuously growing and we are looking for a Cybersecurity Tools Engineer to join our UniQue team in Mons, BelgiumWhat will you be bringing to the team?Act as the engineer delivering Online Vulnerability Assessment (OVA) service for the Institution Manage cyber tools used...


  • Mons, Wallonie, Belgique Enterpryze Consulting Ltd. Temps plein

    **Second Line Security Event Analyst (SLSEA)- Working Location:Mons, Belgium**- Security Clearance: NATO Secret**- Language:High proficiency level in English language**EXPERIENCE AND EDUCATION: **Essential Qualifications/Experience: - Expert level in at least three of the following areas and a high level of experience in several of the other areas:ü...


  • Mons, Wallonie, Belgique Vector Synergy Temps plein

    Location:Mons, BelgiumSecurity Clearance:NATO SecretReference No:C002337 / MonsSkills, knowledge, experience required: OR experience that is/are of interest to NCIA; that is, at least 7 years extensive and progressive expertise in the duties related to the function of the post; Expert level in at least three of the following areas and a high level of...


  • Mons, Wallonie, Belgique Business Integra Inc Temps plein

    Required Security Clearance: NATO SECRETSpecific Working Conditions:Normal Office Conditions. Secure environment with standard working hours, with the exception of working in non-standard working hours up to 360 hours annually. In addition it may exceptionally be required to work non-standard hours in support of a major Cyber Incident, or on a shift system...

  • Siemloga Tool Manager 2

    il y a 1 semaine


    Mons, Wallonie, Belgique Vector Synergy Temps plein

    C002610 SIEMLogA Tool Manager 2Location:Mons, BelgiumSecurity Clearance:NATO SecretReference No:C002610 / MonsIntroduction:As Security Incident and Event Manager (SIEM) / Log Aggregation (LogA) Tool Manager, the incumbent will be responsible for supporting Cyber Defence operations, maintaining and updating the tool's configurations to match the threat...

  • Siemloga Tool Manager 2

    il y a 1 semaine


    Mons, Wallonie, Belgique Enterpryze Consulting Ltd. Temps plein

    **SIEMLogA Tool Manager 2- Working Location:Mons, Belgium**- Security Clearance: NATO Secret**- Language:High proficiency level in English language**EXPERIENCE AND EDUCATION: **Essential Qualifications/Experience: - A Bachelor's Degree in Computer Science combined with a minimum of 2 years' experience in as Security Tool Analyst (STA), Tool Manager or...

  • Fpc/nips Tool Manager

    il y a 1 semaine


    Mons, Wallonie, Belgique Vector Synergy Temps plein

    Location:Mons, BelgiumSecurity Clearance:NATO SecretReference No:C002599 / MonsSkills, knowledge, experience required: A Bachelor's Degree in Computer Science combined with a minimum of 2 years of experience in Security Tools Management or a similar position involving Technical ICT Engineering knowledge; OR a Secondary education and completed advanced...

  • Cyber Analyst 3

    il y a 1 semaine


    Mons, Wallonie, Belgique Enterpryze Consulting Ltd. Temps plein

    **Cyber Analyst 3- Working Location:Mons, Belgium**- Security Clearance: NATO Secret**- Language:High proficiency level in English language**EXPERIENCE AND EDUCATION: **Essential Qualifications/Experience: - Knowledge and multiyear experience in organization, management and support of various (international) operations, activities, units and projects...


  • Mons, Wallonie, Belgique Spektrum Group Temps plein

    Spektrum have a wide range of exciting opportunities in several global locations.We are always looking to add great new talent to our team and look forward to hearing from you.Whom we are supportingThe NATO Communication and Information Agency (NCIA) is responsible for providing secure and effective communications and information technology (IT) services to...


  • Mons, Wallonie, Belgique Spektrum Group Temps plein

    Spektrum have a wide range of exciting opportunities in several global locations.We are always looking to add great new talent to our team and look forward to hearing from you.Whom we are supportingThe NATO Communication and Information Agency (NCIA) is responsible for providing secure and effective communications and information technology (IT) services to...


  • Mons, Wallonie, Belgique Spektrum Group Temps plein

    Spektrum have a wide range of exciting opportunities in several global locations.We are always looking to add great new talent to our team and look forward to hearing from you.Spektrum have a wide range of exciting opportunities in several global locations.We are always looking to add great new talent to our team and look forward to hearing from you.Specific...