Enterprise Security Accreditation and Ecisoa

Il y a 2 mois


Brussels, Belgique Vector Synergy Temps plein

**Location**:
Brussels, Belgium

**Security Clearance**:
NATO Secret

**Reference No**:
OCIO-0015 / Brussels

**Introduction**:
NATO is undergoing a major adaptation of its overall approach to cybersecurity. As part of its mandate, the NATO Chief Information Officer (CIO) is overseeing the coherence of the NATO Enterprise ICT1 capabilities and services and is the single point of authority for cybersecurity. The NATO CIO is responsible for developing and implementing a cybersecurity strategy through a comprehensive cyber adaptation effort. This includes significant interaction with executive stakeholders, both military and civilian, required to oversee the NATO Enterprise coherence and cybersecurity efforts.

As part of its mandate, the NATO Office of the CIO (OCIO) needs to execute and enforce the role of NATO Enterprise CIS Operational Authority (ECISOA) allowing the NATO CIO to perform its role of Enterprise Risk owner. The main goal is to ensure risks identified as part of supporting existing processes (e.g. security accreditation, incident management, etc.) are properly evaluated, operationally validated and formally accepted, keeping and maintaining an overall view on the global Enterprise security posture.

To support this effort, OCIO requires services that will leverage in-depth knowledge of Risk Management (Risk Assessment methodology, Processes and Best practices), to support the roles of ECISOA and the related risk management-supporting activities, enabling an informed and on-point decision making regarding Enterprise cybersecurity risks.

The project will provide support and expertise to the execution of those activities related to ECISOA and Enterprise Risk Owner roles.

**Skills, knowledge, experience required**:

- Previous experience within NATO CIS Operational Authority dealing with accreditation procedures, Risk Assessment and Crypto implementation and standards;
- Previous experience in developing contingency plans, mitigation measures and Authorization To Operate (ATO) and interim Authorizations to Operate (iATO,) risk acceptance in support of the enforcement of CIS Security Frameworks;
- Experience in:

- Supporting or driving Policy changes related to CIS security and its management;
- Leading staff work on large and complex projects and to coordinate multiple stakeholders in different and separate locations;
- Experience with Risks assessment and Risk Management as applied to CIS Security and Cyber Security;
- Knowledge of:

- NATO Security Accreditation Processes, CIS Security and operational evaluation of CIS;
- Development of Cybersecurity Risk Management Processes and Frameworks;
- Excellent English writing skills and the ability to brief their work in English.

**Duties/role**:

- Supporting CIO in his role of Enterprise CISOA in the issuance of different decision making-related documentation such as Authorizations to Operate (ATOs) and interim ATOs (iATO) for systems and Networks, as required;
- Assessing, verifying risks and eventually developing suggestions in support of the Enterprise Risk acceptance function of the CIO;
- Supporting the development of Cybersecurity Risk Management Processes and Frameworks;
- Maintaining a Board of CISOA as a stable coordination framework between the various local CISOA among various HQs and Subordinate commands, as well as reviewing and implementing the Board of CISOAs ToRs, where required by the Board itself;
- Supporting the activity of the Cyber Risk Management Group (CRMG), especially in its cybersecurity risk management function;
- Supporting the Enterprise CISOA in the development and execution of the accreditation process, for NATO CIS at Enterprise level;
- Receiving updates and analyses data related to the list of sites and networks interested by the accreditation process, maintaining a situational awareness regarding said CIS Provides inputs for the planning and monitors the implementation, of the annual program of work for the auditing/inspection within the CIO AoR;
- Supporting and contributing to the process of policy changes related to CIS security and its management in coordination with the SAA and CISP.

VECTOR SYNERGY sp. z o.o., ul. Marcelińska 90, 60-324 Poznań, NIP PL7811857270, REGON 301575740, KRS: 0000369575

Rejestr Przedsiębiorców KRS prowadzony przez Sąd Rejonowy Poznań - Nowe Miasto i Wilda w Poznaniu, VIII Wydział Gospodarczy KRS,



  • Brussels, Belgique Spektrum Temps plein

    Spektrum have a wide range of exciting opportunities in several global locations. We are always looking to add great new talent to our team and look forward to hearing from you. **Who we are supporting** The NATO Communication and Information Agency (NCIA) is responsible for providing secure and effective communications and information technology (IT)...


  • Brussels, Belgique Enterpryze Consulting Ltd. Temps plein

    **ICT Security Accreditation expert - **Working Location**:Brussels, Belgium** - **Security Clearance**: NATO Secret** - **Language**:High proficiency level in English language **EXPERIENCE AND EDUCATION: **Essential Qualifications/Experience: - Minimum 8 years of experience in ICT security-related functions - Proven, strong expertise in ICT security -...


  • Brussels, Belgique Spektrum Group Temps plein

    Spektrum have a wide range of exciting opportunities in several global locations. We are always looking to add great new talent to our team and look forward to hearing from you. Spektrum have a wide range of exciting opportunities in several global locations. We are always looking to add great new talent to our team and look forward to hearing from...


  • Brussels, Belgique HNM Solutions Temps plein

    **Job ID: HNMJD2720**: **Role: Enterprise Security Architecture (ESA)** **Location: Brussels, Belgium** **Requirements**: 10 years of professional experience in Information Security of which 3 years of professional experience in ESA **Technical experience**: Mandatory: Autonomy in developing Enterprise Security Architecture - Experience in IT...

  • Enterprise Security Architect

    il y a 3 semaines


    Brussels, Belgique Oliver James Associates Temps plein

    **Job offer**: *** Looking for a new opportunity as an Enterprise Security Architect? Then you are in the right place one of our clients is offering you a chance to join their dynamic and young team. **Why would you want to work with us?** *** - With us you will have the opportunity to showcase your expertise and boost your experience by piloting your own...


  • Brussels, Belgique E-Resourcing Temps plein

    We have a current opportunity for a Enterprise Security Architect (medior) with a well-known, Brussels based, Telecoms company. The position is on a contract basis and the offices are in Brussels. For further information about this position please apply.


  • Brussels, Belgique RHEA Group Temps plein

    Are you looking for a new opportunity in a fast-moving global company with a family feel? A job where you could have an impact? We are looking for an Enterprise Security Services Analyst to work onsite at NATO’s Headquarter in the city of Brussels, Belgium. **Tasks and Activities**: The scope of work will include: - Acquire oversight and control of the...


  • Brussels, Belgique Enterpryze Consulting Ltd. Temps plein

    **Enterprise Cybersecurity Validation and Compliance Officer - **Working Location**:Brussels, Belgium** - **Security Clearance**: NATO Secret** - **Language**:High proficiency level in English language **EXPERIENCE AND EDUCATION: **Essential Qualifications/Experience: - Knowledge and multiyear experience in organisation, management and support of various...


  • Brussels, Belgique Vector Synergy Temps plein

    **Location**: Brussels, Belgium **Security Clearance**: NATO Secret **Reference No**: OCIO-0036 / Brussels **Introduction**: The NATO Chief Information Officer (CIO) function brings Information and Communications Technology (ICT) coherence across NATO Enterprise’s civil and military bodies. The NATO CIO is empowered to realize the Allies’ vision for...


  • Brussels, Belgique Vector Synergy Temps plein

    **Location**: Brussels, Belgium **Security Clearance**: NATO Secret **Reference No**: OCIO-0036 / Brussels **Introduction**: The NATO Chief Information Officer (CIO) function brings Information and Communications Technology (ICT) coherence across NATO Enterprise’s civil and military bodies. The NATO CIO is empowered to realize the Allies’ vision for...


  • Brussels, Belgique Sander and Partners Temps plein

    Join the forefront of the Healthcare sector in Belgium, where you'll architect and implement security solutions critical to protecting sensitive health information. Work in tandem with cross-functional teams and the security coordinator to design infrastructure that's not just resilient but also pioneering in the industry. What you'll do Design security...


  • Brussels, Belgique Sander and Partners Temps plein

    Join the forefront of the Healthcare sector in Belgium, where you'll architect and implement security solutions critical to protecting sensitive health information. Work in tandem with cross-functional teams and the security coordinator to design infrastructure that's not just resilient but also pioneering in the industry. What you'll do Design security...


  • Brussels, Belgique E-Resourcing Temps plein

    **SECURITY CULTURE & AWARENESS SPECIALIST** We have a vacancy for the above contract role and applicants should have at least 3 years of security experience working on Security Culture and Awareness Program Creation, Planning, Implementation and Maintenance - Have a strong technical understanding of cyber security principles and techniques in general -...

  • Enterprise Architect

    il y a 3 semaines


    Brussels, Belgique EUROPEAN DYNAMICS Temps plein

    **Your tasks** - Create business architecture and process models that reflect the organization’s strategies and goals; - Develop comprehensive business architecture models that align with organizational strategies to ensure coherence with business objectives; - Assess both IT and business leadership costs to identify opportunities for cost reduction and...


  • Brussels, Belgique Enterpryze Consulting Ltd. Temps plein

    **Enterprise Cybersecurity Incident Manager - **Working Location**:Brussels, Belgium** - **Security Clearance**: NATO Secret** - **Language**:High proficiency level in English language **EXPERIENCE AND EDUCATION: **Essential Qualifications/Experience: - A degree from a university or establishment of similar standing - 3+ years of experience in...


  • Brussels, Belgique Enterpryze Consulting Ltd. Temps plein

    **Enterprise Cybersecurity Incident Manager - **Working Location**:Brussels, Belgium** - **Security Clearance**: NATO Secret** - **Language**:High proficiency level in English language **EXPERIENCE AND EDUCATION: **Essential Qualifications/Experience: - A degree from a university or establishment of similar standing - 3+ years of experience in...


  • Brussels, Belgique Enterpryze Consulting Ltd. Temps plein

    **Enterprise Cybersecurity Incident Manager - **Working Location**:Brussels, Belgium** - **Security Clearance**: NATO Secret** - **Language**:High proficiency level in English language **EXPERIENCE AND EDUCATION: **Essential Qualifications/Experience: - A degree from a university or establishment of similar standing - 3+ years of experience in...


  • Brussels, Belgique The White Team Temps plein

    **LEVEL OF EDUCATION** As stated in Article 2.6.3.1 of DIGIT-TM II Service requirements, the minimum educational qualification for Lot 3 is: Level of education corresponding to Level 7 of the European Qualifications Framework, which typically corresponds to a master’s degree of 5 years. **DESCRIPTION OF THE TASKS** The following tasks will be performed...

  • Solution Security Architect

    il y a 3 semaines


    Brussels, Belgique Sequoia Projects Temps plein

    SBC is looking for an additional Security Architect for our architecture community. **As a Security Architect, you**: Work in close collaboration with Enterprise Security Architects and Solution IT architects. Acts as the first Point of Contact (POC) for all security related architectural topics. **Mentality**: Customer centric (solution builders that...


  • Brussels, Belgique Enterpryze Consulting Ltd. Temps plein

    **Working Location**:Brussels, Belgium - **Security Clearance**:NATO Secret - **Language**:High proficiency level in English language **EXPERIENCE AND EDUCATION: **Essential Qualifications/Experience**: - A degree from a university or establishment of similar standing - 3+ years of experience in cybersecurity incident management, preferably in a large...