Threat Hunting Analyst
Il y a 7 mois
Spektrum have a wide range of exciting opportunities in several global locations.
We are always looking to add great new talent to our team and look forward to hearing from you.
**Who we are supporting**
The NATO Communication and Information Agency (NCIA) is responsible for providing secure and effective communications and information technology (IT) services to NATO's member countries and its partners. The agency was established in 2012 and is headquartered in Brussels, Belgium.
The NCIA provides a wide range of services, including:
- Cyber Security: The NCIA provides advanced cybersecurity solutions to protect NATO's communication networks and information systems against cyber threats.
- Command and Control Systems: The NCIA develops and maintains the systems used by NATO's military commanders to plan and execute operations.
- Satellite Communications: The NCIA provides satellite communications services to enable secure and reliable communications between NATO forces.
- Electronic Warfare: The NCIA provides electronic warfare services to support NATO's mission to detect, deny, and defeat threats to its communication networks.
Overall, the NCIA plays a critical role in ensuring the security and effectiveness of NATO's communication and information technology capabilities.
**The program**
**Assistance and Advisory Service (AAS)**
The NATO Communications and Information Agency (NCI Agency) is NATO's principal C3 capability deliverer and CIS service provider. It provides, maintains and defends the NATO enterprise-wide information technology infrastructure to enable Allies to consult together under Article IV, and, when required, stand together in the face of attack under Article V.
In order to provide these critical services, in the modern evolving dynamic environment the NCI Agency needs to build and maintain high performance engaged workforce. The NCI Agency workforce strategically consists of three major categorises: NATO International Civilians (NIC)s, Military (Mil) and Interim Workforce Consultants (IWC)s. The IWCs are a critical part of the overall NCI Agency workforce and make up approximately 15 percent of the total workforce.
**Role Background**
As a Cyber Security Threat Hunting Analyst they will work alongside a team of Security Analysts to proactively detect cyber security attacks against NATO networks. They will research and and react to the latest threats, using industry leading tools to discover new and ongoing attacks.
**Role Duties and Responsibilities**
- Develop hypotheses to be used in a threat hunt for given threat groups.
- Create security tool content such as searches, reports and dashboards to facilitate threat hunting.
- Perform indepth analysis to deliver conclusions and recommendations.
- Review and develop logging configurations to enable a comprehensive threat hunting capability.
- Develop and document threat hunting procedures.
- Document analysis, findings, and recommendations in reports and presentations to be delivered to stakeholders.
- Tasks in support of NATO network monitoring and other NCSC Operations branch activities.
**Essential Skills and Experience**
- Experience in analysis of threat actor group attack patterns, tactics, techniques, and procedures (TTPs).
- Knowledge of the TaHiTI threat hunting methodology and the MITRE ATT&CK framework.
- Strong analytical and problem-solving abilities, ability to identify patterns, detect anomalies and make accurate, informed decisions.
- Experience in performing indepth cyber security analysis in large, complex networks using security use cases, relevant datasets, and documentation.
- Experience in performing indepth cyber security analysis in large, complex networks using security use cases, relevant datasets, and documentation
- Expertise in at least three of the following areas and a high level of experience in several of the other areas:
- Cyber security threat hunting
- Security Information and Events Management systems (SIEM) - e.g. Splunk
- Splunk processing language
- Network and host based intrusion detection systems
- Sysmon configuration, Windows, and Linux log analysis
- Full Packet Capture systems (FPC) - e.g. Niksun, RSA/NetWitness
- Data visualisation and statistical analysis
- Technical report writing
- Good written and verbal communication skills (English)
**Desirable Skills and Experience**
- A good understanding of Security, Orchestrations, Automation and Response (SOAR) concepts and their benefits to the protection of CIS infrastructures.
- Strong knowledge of malware families and network attack vectors.
- Experience in intrusion detection and incident handling.
- Ability to analyse attack vectors against a particular system to determine attack surface.
- Industry leading certification in the area of cyber security such as GCFA, GCIA, GNFA.
**Education**
**Working Location**
- Mons, Belgium
**Working Policy**
- On-Site
**Travel**
- Some travel to other NATO sites may be required
**Contr
-
Threat Hunting Analyst
Il y a 7 mois
Mons, Belgique Enterpryze Consulting Ltd. Temps plein**Threat Hunting Analyst - **Working Location**:Mons, Belgium** - **Security Clearance**: NATO Secret** - **Language**:High proficiency level in English language **EXPERIENCE AND EDUCATION: **Essential Qualifications/Experience: - Experience in analysis of threat actor group attack patterns, tactics, techniques, and procedures (TTPs). - Knowledge of the...
-
Threat Hunting Analyst
Il y a 7 mois
Mons, Belgique Vector Synergy Temps plein**Location**: Mons, Belgium **Security Clearance**: NATO Secret **Reference No**: C002914 / Mons **Skills, knowledge, experience required**: - Experience in: - Analysis of threat actor group attack patterns, tactics, techniques, and procedures (TTPs); - Performing in-depth cyber security analysis in large, complex networks using security use cases,...
-
Threat Hunting Analyst
Il y a 7 mois
Mons, Belgique Enterpryze Consulting Ltd. Temps plein**Threat Hunting Analyst - **Working Location**:Mons, Belgium** - **Security Clearance**: NATO Secret** - **Language**:High proficiency level in English language **EXPERIENCE AND EDUCATION: **Essential Qualifications/Experience: - Experience in analysis of threat actor group attack patterns, tactics, techniques, and procedures (TTPs). - Knowledge of the...
-
Threat Hunting Analyst
Il y a 7 mois
Mons, Belgique Spektrum Group Temps pleinSpektrum have a wide range of exciting opportunities in several global locations. We are always looking to add great new talent to our team and look forward to hearing from you. **Whom we are supporting** The NATO Communication and Information Agency (NCIA) is responsible for providing secure and effective communications and information technology (IT)...
-
Threat Hunting Analyst
il y a 2 semaines
Mons, Belgique Enterpryze Consulting Ltd. Temps plein**Threat Hunting Analyst** - **Working Location**:Mons, Belgium** - **Language**:High proficiency level in English language **EXPERIENCE AND EDUCATION**: **Essential Qualifications/Experience**: - Significant demonstrable experience in Cyber Security related environment - Experience in producing accurate and meaningful reports, both technical and...
-
Second Line Security Event Analyst Threat Hunting
il y a 4 jours
Mons, Belgique MCR, LLC. Temps plein**Get an edge on advancing your career** If you’re ready to meet complex challenges, we’re ready to meet you. MCR is a fast-growing global company headquartered in McLean, VA that supports defense and civilian agencies, NATO, and European ministries that face some of the most complex mission challenges in the world. If you are the best at what you do,...
-
Cyberspace Operations Threat Hunting Support 1
il y a 2 semaines
Mons, Belgique Vector Synergy Temps plein**Location**: Mons, Belgium **Security Clearance**: NATO Secret **Reference No**: 2024-0324 / Mons **Skills, knowledge, experience required**: - Experience in: - Threat hunting and threat hunting methodologies; - Writing Splunk queries using SPL; - Analyzing Sysmon events. - Good knowledge of networking protocols; - Knowledge of Python and/or PowerShell is...
-
Cyberspace Operations Threat Hunting Support 1
il y a 2 semaines
Mons, Belgique Enterpryze Consulting Ltd. Temps plein**Cyberspace Operations Threat Hunting Support 1** - **Working Location**:Mons, Belgium** - **Language**:High proficiency level in English language **EXPERIENCE AND EDUCATION**: **Essential Qualifications/Experience**: - Experience in threat hunting and threat hunting methodologies - Experience in writing Splunk queries using SPL - Experience in analysing...
-
Threat Hunting Analyst
il y a 2 semaines
Mons, Belgique Vector Synergy Temps plein**Location**: Mons, Belgium **Security Clearance**: NATO Secret **Reference No**: C003950 / Mons **Skills, knowledge, experience required**: - Significant demonstrable experience in Cyber Security related environment; - Excellent analytical and hypothetical thinking; - Experience in liaising at both the technical and managerial level, the incumbent must...
-
Cyber Security Incident Detection Analyst
il y a 1 jour
Mons, Belgique Systems Planning and Analysis, Inc. Temps pleinOverview: - MCR, an SPA company, is a fast-growing global company headquartered in Northern Virginia that supports defense and civilian agencies, NATO, and European ministries that face some of the most complex mission challenges in the world. If you are the best at what you do, we are looking for you. At MCR/SPA, you will contribute to programs and...
-
Journeyman Ci/humint Analyst
il y a 1 mois
Mons, Belgique SOSi Temps plein**Overview** SOS International LLC (SOSi) is seeking a Journeyman Counterintelligence/Human Intelligence (CI/HUMINT) Analyst to support our government customer in Europe. **Essential Job Duties** - Conduct daily research and analysis of information pertinent to terrorism, subversion, sabotage, espionage, paramilitary/insurgency, organized crime, and...
-
Security Event Analyst
Il y a 6 mois
Mons, Belgique Uni Systems Temps pleinAt Uni Systems, we are working towards turning digital visions into reality. We are continuously growing and we are looking for a professionalSecurity Event Analyst to join our UniQue Mons team. In this role, you will have the opportunity to work closely with our customers in the public sector and you will be responsible for developing new business by...
-
Ci/humint Analyst
Il y a 7 mois
Mons, Belgique SOSi Temps pleinOverview SOSi is seeking a Counterintelligence/Human (CI/HUMINT) Intelligence Analyst to join a large intelligence and technical support program for contingency operations, battle staff and operational-level planning, joint and multi-lateral training exercises, and strategic engagement policy throughout Europe. **Responsibilities**: - Analyzes CI/HUMINT...
-
Ci/humint Analyst
Il y a 7 mois
Mons, Belgique SOSi Temps plein**Overview** SOSi is seeking a Counterintelligence/Human (CI/HUMINT) Intelligence Analyst to join a large intelligence and technical support program for contingency operations, battle staff and operational-level planning, joint and multi-lateral training exercises, and strategic engagement policy throughout Europe. **Essential Job Duties** - Analyzes...
-
Ci/humint Analyst
il y a 4 jours
Mons, Belgique SOSi Temps pleinOverview SOSi is seeking a Counterintelligence/Human (CI/HUMINT) Intelligence Analyst to join a large intelligence and technical support program for contingency operations, battle staff and operational-level planning, joint and multi-lateral training exercises, and strategic engagement policy throughout Europe. **Responsibilities**: - Analyzes CI/HUMINT...
-
Ci/humint Analyst
Il y a 7 mois
Mons, Belgique SOSi Temps pleinOverview SOSi is seeking a Counterintelligence/Human (CI/HUMINT) Intelligence Analyst to join a large intelligence and technical support program for contingency operations, battle staff and operational-level planning, joint and multi-lateral training exercises, and strategic engagement policy throughout Europe. **Responsibilities**: - Analyzes CI/HUMINT...
-
First Line Security Event Analyst
Il y a 7 mois
Mons, Belgique Enterpryze Consulting Ltd. Temps plein**First Line Security Event Analyst (FLSEA) 6 - **Working Location**:Mons, Belgium** - **Security Clearance**: NATO Secret** - **Language**:High proficiency level in English language **EXPERIENCE AND EDUCATION: **Essential Qualifications/Experience: - Comprehensive knowledge of the principles of computer and communications security including knowledge of...
-
Cryptographic Modernisation
il y a 2 jours
Mons, Belgique Enterpryze Consulting Ltd. Temps plein**Cryptographic Modernisation (Risk Analyst/Concept Developer) - **Working Location**:Mons, Belgium** - **Security Clearance**: NATO Secret** - **Language**:High proficiency level in English language **EXPERIENCE AND EDUCATION: **Essential Qualifications/Experience: - Knowledge and multiyear experience in organization, management and support of various...
-
Cryptographic Modernisation
il y a 2 jours
Mons, Belgique Systems Planning and Analysis, Inc. Temps pleinOverview: Systems Planning and Analysis, Inc. (SPA) delivers high-impact, technical solutions to complex national security issues. As we enter our 50th year in business, we are known for continuous innovation for government customers, both long-established and newly acquired, as our capabilities expand around the globe. Our work is state-of-the-art and made...
-
Cyber Analyst 3
Il y a 7 mois
Mons, Belgique Enterpryze Consulting Ltd. Temps plein**Cyber Analyst 3 - **Working Location**:Mons, Belgium** - **Security Clearance**: NATO Secret** - **Language**:High proficiency level in English language **EXPERIENCE AND EDUCATION: **Essential Qualifications/Experience: - Knowledge and multiyear experience in organization, management and support of various (international) operations, activities, units...