1309

Il y a 3 heures

Arrondissement de BruxellesCapitale, Bruxelles, Belgique Zohorecruit Temps plein

Bruxelles, Belgium | Posted on 05/03/2022

  • Installation,configuration, maintenance and upgrades of cyber security solutions andcomponents, with a specific focus on cloud native technologies (containersbased on Docker/Kubernetes, etc.)
  • Monitor managedcomponents and manage incidents and problems
  • Perform day-to-daysystem management with regards to cloud native security components, on premisesas well as on public cloud deployments (AWS and Azure Cloud)
  • Develop, maintain androll-out reference configurations
  • Implement and followsecurity policies
  • Develop and maintain system inventory/CMDB, system documentation, operating procedures for allthe work performed
  • Report on serviceperformances and availability, produce dashboards
  • Design, develop,install, configure, test, monitor, maintain, troubleshoot and upgrade cybersecurity infrastructure with a specific focus on cloud native technologies(containers based on Docker/Kubernetes, etc.)
  • Provide expertise,guidance, recommendations and documented security configurations forimplementation of security tools and processes
  • Evaluate and recommendsecure configurations
  • Identify security requirements, based upon need or translate high-level security requirementsinto detailed technical requirements
  • Support varioustechnical and non-technical stakeholders to specify and negotiate securityrequirements
  • Interact with network and system engineering teams to effectively communicate and develop security solutions
  • Draft documentation andstandard operational procedures to support security systems operations
  • Ensure the technicaldesign and contributes to implementation of new components and/or enhancementsin coordination with other team members in particular project managers,security architects and engineers.
  • Support data integrityassurance work is completed through appropriate back-ups methods to ensure RTO aremet
  • Support securitymonitoring use-case engineering
  • Security eventscollection technical design. Integration of log sources into a SIEM solution.
  • Elaboration andtranslation of the security monitoring policy into monitoring rules
  • Investigate, diagnoseand solve system related problems with regards to security services andinfrastructure, on-premises as well as on public cloud deployments
  • Diagnose and solve problems and faults occurring in the operation of cyber security components
  • Comply with organizationprocedures to ensure integrity of the system
  • Recommend resolutionsand improvements
  • Provide consolidatefindings on components or processes
  • Ensure that communication performance, recovery, and security needs meet agreed service agreementstandards
  • Contribute to definenetwork design policies, philosophies and criteria
  • Development, test androll-out new releases of Identity and Access Management solutions according toEuropol’s standards

Requirements

Mandatory:

  • More than 6 years of experience in security and system engineering
  • A minimum of 2 years of experience in network and system security administration
  • A minimum of 2 years of experience in Kubernetes/cloud native security engineering
  • Good knowledge of authentication, authorization and accounting (IAM, Federation, RBAC, service accounts) for on-premises and public cloud deployments
  • Good knowledge of container security for on-premises and public cloud deployments
  • Good knowledge of administration and task automation using scripting and/or programming languages (e.g. Python, PowerShell, Perl, Java) for on-premises and public cloud deployments
  • A minimum of 2 years of experience in Kubernetes/cloud native security testing
  • Good knowledge of Network Protocols for on-premises and public cloud deployments
  • Good knowledge of Security protocols for on-premises and public cloud deployments
  • Good knowledge of Cryptographic solutions for on-premises and public cloud deployments
  • Good knowledge of auditing systems and networks for configuration weaknesses and vulnerabilities for on-premises and public cloud deployments
  • Good knowledge of hardening/Securing of Unix-like systems, logging/detection, and general systems design for on-premises and public cloud deployments
  • Good knowledge of security monitoring and automated response for on-premises and public cloud deployments
  • Good knowledge of enterprise Active Directory and GPO development for on-premises and public cloud deployments
  • Certification: Certified Kubernetes Security Specialist, Azure Security Engineer Associate (AZ-500), GSEC (GIAC Certified Security Essentials), GCUX (GIAC Certified UNIX Security Administrator), Linux Foundation Certified System Administrator (LFCS), CCSP, CCSK or similar