Cyberspace Operations Incident Analysis

il y a 1 jour


Mons, Wallonie, Belgique BREVCO Temps plein

EXPERIENCE AND EDUCATION:

Essential Qualifications/Experience:

·         Bachelor's degree in Computer Science, Information Technology, or related field Or equivalent experience

·         3+ years of experience in IT security, with a focus on System Administration, Security Tools Management in large organisations

·         Strong understanding of security best practice

·         Expert level in at least three of the following areas and a high level of experience in several of the other areas:

ü  Security Incidents Event Management products (SIEM) – e.g. Splunk

ü  Network Based Intrusion Detection Systems (NIDS) – e.g. SourceFire, Palo Alto Network Threat Prevention

ü  Host Based Intrusion Detection Systems (HIDS)

ü  Full Packet Capture systems – e.g. Niksun, RSA/NetWitness

ü  A variety of Security Event generating sources (e.g. Firewalls, IDS, Routers, Security Appliances).

ü  Cloud-specific security tools

ü  Splunk ES suite and Phantom SOAR

·         Proficiency in Intrusion/Incident Detection and Handling

·         Expert knowledge of malware families, network attack vectors and threat actor tools, techniques and procedures

·         Experience in endpoint detection and analysis techniques

·         Expert knowledge of the principles of computer and communications security, networking, and the vulnerabilities of modern operating systems and applications

·         Comprehensive knowledge of the principles of computer and communications security, networking, and the vulnerabilities of modern operating systems and applications

·         Very good communications skills and reporting experience with capacity to communicate to different types of audience (senior executive, middle management, technical and non-technical)

·         Very good understanding of the principles of Computer and Communication Security, networking, and the vulnerabilities of modern operating systems and applications acquired through a blend of academic or professional training coupled with practical professional experience

Desirable Qualifications/Experience:

·         Experience in working with NATO

·         Experience of working with NATO Communications and Information Agency

·         Experience of working with national Defence or Government entities

DUTIES/ROLE:

·         Conduct detailed investigation and research of security events within NATO Cyber Security Centre (NCSC) team:

ü  Analyse firewall, IDS, anti-virus and other sensor-produced system security events and present findings

ü  Leverage the comprehensive extended toolset (e.g. Log Collection, Intrusion Detection, Packet Capture, VA, Network Devices etc.) to identify malicious activity

ü  Outcome:

o   Triage, analysis and response to alerts

o   Deliver analysis and reports in response to tasks associated with ongoing investigations and incidents

·         Develop new Splunk alerts, searches and reports for security monitoring and detection

ü  Identify security gaps in NATO infrastructure, develop, update and review custom content utilising available toolset

ü  Outcome:

o   5 new use cases per month

o   Propose possible optimisations and enhancements, which help to maintain and improve NATO's Cyber Security posture

·         Collaborate with threat intelligence teams to incorporate threat indicators into detection systems.

ü  Work closely with the threat intelligence team to integrate the latest Indicators of Compromise (IOCs) and attack techniques into the detection environment

ü  Outcome:

o   Implementation of at least 3 new threat intelligence-driven detections per quarter to stay ahead of emerging threats

·         Develop and maintain standard operating procedures (SOPs) and playbooks for incident detection and response

ü  Ensure documentation is up-to-date and provides clear guidance for responding to common attack scenarios

ü  Outcome:

o   Delivery of updated SOPs and playbooks quarterly, ensuring they reflect the latest threat landscape and detection capabilities

·         Produce briefings in Microsoft PowerPoint or Word format to provide detailed technical reports in support of incidents and capability improvements

ü  Outcome:

o   Report and/or briefing for the management team containing details on the detection capabilities, scope, and details. This may be requested in either Word, PowerPoint, or both depending on the briefing

·         Review reports and observables from threat hunting, red teaming, and purple teaming activities.

ü  Outcome:

o   Detection gap analysis and recommendations for solutions, subsequently leading on the development, testing and implementation

·         Brainstorm during weekly meetings with the rest of the Monitoring and Detection Team how to improve detection capability to increase detection coverage

ü  Outcome:

o   Participation in meetings as reported and tracked in the meeting minutes which need to be prepared before the meeting and updated during the meeting (Confluence)




  • Mons, Wallonie, Belgique BREVCO Temps plein

    Job DescriptionEXPERIENCE AND EDUCATION:Essential Qualifications/Experience:·         Bachelor's degree in Computer Science, Information Technology, or related field Or equivalent experience·         3+ years of experience in IT security, with a focus on System Administration, Security Tools Management in large...


  • Mons, Wallonie, Belgique North Atlantic Treaty Organization Temps plein

    NATO - North Atlantic Treaty OrganisationPrimary LocationNATO BodyScheduleFull-timeApplication Deadline06-Feb-2025, 10:59:00 PMSalary (Pay Basis)Grade NATO Grade G15Post Context/Post SummarySupreme Headquarters Allied Powers Europe (SHAPE) provides an integrated Strategic Effects framework, employing a multi-domain and multi-region focus to create a...


  • Mons, Wallonie, Belgique North Atlantic Treaty Organization Temps plein

    NATO - North Atlantic Treaty OrganisationJob Description - Engineer – CIS Exercises Support (241741)Primary LocationNATO BodyScheduleFull-timeApplication Deadline05-Jan-2025, 10:59:00 PMSalary (Pay Basis)Grade NATO Grade G15Post Context/Post SummarySupreme Headquarters Allied Powers Europe (SHAPE) provides an integrated Strategic Effects framework,...

  • Technician (Cyber Security)

    il y a 4 semaines


    Mons, Wallonie, Belgique Brevco Services Temps plein

    BREVCO | Full time **Technician (Cyber Security)**Mons, Belgium | Posted on 03/07/2025 · Experience with Information Systems Engineering and Maintenance – Information Security Implementation Computer Security · Specific experience: Must be familiar with the detailed and complex NATO standards for the operation of CRYPTO and the associated...


  • Mons, Wallonie, Belgique BREVCO Temps plein

    Job DescriptionEXPERIENCE AND EDUCATION:Essential Qualifications/Experience:·         Experience with Information Systems Engineering and Maintenance – Information Security Implementation Computer Security·         A good knowledge of Computer Security principles and procedures. Proficiency with Cryptography Technology. Knowledge of...

  • Voice Technician

    il y a 4 semaines


    Mons, Wallonie, Belgique Aptonet Inc Temps plein

    Senior Technical Recruiter IT recruitment | Outsourcing | Nearshore I OffshoreScope of work:Workstream collaboration including email and instant messaging server backend and client frontend provisioning, management, operation and lifecycle across multiple separate networks of different classifications.Voice and Video conferencing server backend and frontend...

  • Technician (Cyber Security)

    il y a 4 semaines


    Mons, Wallonie, Belgique GardPass Consulting & Space Temps plein

    Start date: May 2025Clearance: NATO SecretLocation: Mons, BelgiumDuties and Role:The duties of the individual mainly focus on:Information Assurance incident management;24/7 helpdesk service management;Management of Secure Management Centre's (SMC) including: key management, access control management, security monitoring, IP crypto configuration management,...

  • C004120 Technician

    il y a 4 semaines


    Mons, Wallonie, Belgique EMW Temps plein

    Deadline Date: Wednesday 19 March 2025Requirement: Technician (Cyber Security)Location: Mons, BEFull Time On-Site: YesTime On-Site: 100%Total Scope of the request (hours): 418Required Start Date: 28 April 2025End Contract Date: 31 December 2025Required Security Clearance: NATO SECRETDuties and Role:Information Assurance incident management;24/7 helpdesk...

  • Video Conferencing Technician

    il y a 4 semaines


    Mons, Wallonie, Belgique GardPass Consulting & Space Temps plein

    2 days ago Be among the first 25 applicantsGet AI-powered advice on this job and more exclusive features.Job ResponsibilitiesProvide prompt, professional, and effective resolution of technical issues (including incidents) escalated from Level 2 and (in some cases) Level 3 support and end users on all security domains for all encompassed Area of...

  • Cyber Security Engineer

    il y a 2 semaines


    Mons, Wallonie, Belgique Aptonet Inc Temps plein

    Job Title: Cyber Security Engineer (Endpoint) Location: Mons, Belgium Job Description: We are seeking a skilled Cyber Security Engineer specializing in endpoint protection to provide comprehensive support and consultancy services across a multinational defense environment. The role focuses on implementing, managing, and optimizing enterprise-level...


  • Mons, Wallonie, Belgique Gentis Temps plein

    For one of our clients in the manufacturing sector based in Mouscron, we are seeking a motivated and detail-oriented Junior Business Controller to join their finance team. The ideal candidate will assist in the preparation and analysis of financial reports, monitor performance, and help optimize the company's financial processes. You will support the...


  • Mons, Wallonie, Belgique Cyber Crime Temps plein

    Spektrum has a wide range of exciting opportunities in several global locations.We are always looking to add great new talent to our team and look forward to hearing from you.Spektrum supports apex purchasers (NATO, UN, EU, and National Government and Defence) and their Tier 1 supplier ecosystem with a wide range of specialist services. We provide our...

  • VTC Technician

    il y a 4 semaines


    Mons, Wallonie, Belgique Spektrum Temps plein

    3 days ago Be among the first 25 applicantsGet AI-powered advice on this job and more exclusive features.Spektrum has a wide range of exciting opportunities in several global locations.We are always looking to add great new talent to our team and look forward to hearing from you.Spektrum supports apex purchasers (NATO, UN, EU, and National Government and...


  • Mons, Wallonie, Belgique NMBSSNCB Temps plein

    Comment pouvez-vous faire la différence ? En tant qu'Officer Technical Maintenance, vos responsabilités consistent à analyser, organiser, planifier et suivre aussi bien la résolution de pannes que les travaux de maintenance planifiée des équipements de techniques spéciales des différents bâtiments et gares : entretiens correctifs (dépannages)...

  • Junior Business Controller

    il y a 2 semaines


    Mons, Wallonie, Belgique Gentis Temps plein

    For one of our clients in the manufacturing sector based in Mouscron, we are seeking a motivated and detail-oriented Junior Business Controller to join their finance team. The ideal candidate will assist in the preparation and analysis of financial reports, monitor performance, and help optimize the company's financial processes. You will support the...


  • Mons, Wallonie, Belgique North Atlantic Treaty Organization Temps plein

    NATO - North Atlantic Treaty OrganisationJob Description - Senior Administrative Assistant (250334)Primary LocationNATO Communications and Information Agency (NCIA)ScheduleFull-timeApplication Deadline18-Mar-2025, 10:59:00 PMSalary (Pay Basis)Grade NATO Grade G10Who we are:For more than 70 years, NATO's mission has been to preserve peace and security in the...

  • Cyber Security Technician

    il y a 4 semaines


    Mons, Wallonie, Belgique Spektrum Temps plein

    Spektrum supports apex purchasers (NATO, UN, EU, and National Government and Defence) and their Tier 1 supplier ecosystem with a wide range of specialist services. We provide our clients with professional services, specialised aerospace and defence sales, delivery, and operational subject matter expertise. We are looking for personnel to join our team and...

  • C004104 Senior Technician CSD

    il y a 4 semaines


    Mons, Wallonie, Belgique EMW Temps plein

    Deadline Date: Monday 10 March 2025Requirement: Senior Technician CSDLocation: Mons, BEFull Time On-Site: YesScope (hours): 1000Required Start Date: 20-APR-2025Contract End Date: 31-DEC-2025Required Security Clearance: NATO SECRETSpecific Working Conditions:Working underground and/or secured areas; Working hours based on a shift pattern might be required; Up...


  • Mons, Wallonie, Belgique BREVCO Temps plein

    Job DescriptionEXPERIENCE AND EDUCATION:Essential Qualifications/Experience:·         Technical Proficiency:ü  Trellix ePolicy Orchestrator (EPO)ü  Trellix Agentü  Trellix Endpoint Security (ENS)ü  Trellix Data Loss Prevention – Endpoint, Network, Discover (DLP)ü  Trellix Rogue System Detection (RSD)ü  Trellix Data Exchange Layer...


  • Mons, Wallonie, Belgique BREVCO Temps plein

    EXPERIENCE AND EDUCATION:Essential Qualifications/Experience:·         Technical Proficiency:ü  Trellix ePolicy Orchestrator (EPO)ü  Trellix Agentü  Trellix Endpoint Security (ENS)ü  Trellix Data Loss Prevention – Endpoint, Network, Discover (DLP)ü  Trellix Rogue System Detection (RSD)ü  Trellix Data Exchange Layer (DXL)ü  Trellix...