Threat Hunting Analyst

il y a 2 semaines


Mons, Belgique Spektrum Temps plein

Spektrum have a wide range of exciting opportunities in several global locations.

We are always looking to add great new talent to our team and look forward to hearing from you.

**Who we are supporting**

The NATO Communication and Information Agency (NCIA) is responsible for providing secure and effective communications and information technology (IT) services to NATO's member countries and its partners. The agency was established in 2012 and is headquartered in Brussels, Belgium.

The NCIA provides a wide range of services, including:

- Cyber Security: The NCIA provides advanced cybersecurity solutions to protect NATO's communication networks and information systems against cyber threats.
- Command and Control Systems: The NCIA develops and maintains the systems used by NATO's military commanders to plan and execute operations.
- Satellite Communications: The NCIA provides satellite communications services to enable secure and reliable communications between NATO forces.
- Electronic Warfare: The NCIA provides electronic warfare services to support NATO's mission to detect, deny, and defeat threats to its communication networks.

Overall, the NCIA plays a critical role in ensuring the security and effectiveness of NATO's communication and information technology capabilities.

**The program**

**Assistance and Advisory Service (AAS)**

The NATO Communications and Information Agency (NCI Agency) is NATO's principal C3 capability deliverer and CIS service provider. It provides, maintains and defends the NATO enterprise-wide information technology infrastructure to enable Allies to consult together under Article IV, and, when required, stand together in the face of attack under Article V.

To provide these critical services, in the modern evolving dynamic environment the NCI Agency needs to build and maintain high performance-engaged workforce. The NCI Agency workforce strategically consists of three major categorise's: NATO International Civilians (NIC)'s, Military (Mil), and Interim Workforce Consultants (IWC)'s. The IWCs are a critical part of the overall NCI Agency workforce and make up approximately 15 percent of the total workforce.

**Role Duties and Responsibilities**
- Prioritize, plan and execute threat hunts.
- Can work independently, as well as part of the team.
- Highlight improvements on the detection and prevention methods (IDS, SIEM content for correlation, modification of security settings, etc ).
- Pro -active engagement with the Cyber Community internal to NATO.
- Monthly reporting on approved KPIs.
- Creation/maintenance of Standard Operating Procedures (SOPs) to support all aspects of their role.
- Monthly reporting to both the Customer and Business Stake Holders.
- Assist NCSC, when required, in support to Cyber Incident Analysis and Response.
- Production of high quality hypotheses and detection use cases documented in the centralized knowledge base of NCSC.
- Advise on, test and implement Data Analysis, Artificial Intelligence and Machine Learning technologies to augment and improve existing NCSC process,
- Improvement of NCSC processes for receiving, searching, analysing, and storing cyber threat data.
- Regular, at least monthly, Knowledge Transfer meetings with appropriate stakeholders, focusing on:

- Successes and setbacks,
- Lessons identified/learned,
- Improvements to the Cyber Security processes currently in use within NCSC.

**Essential Skills and Experience**
- Significant demonstrable experience in Cyber Security related environment.
- Excellent analytical and hypothetical thinking.
- Experience in liaising at both the technical and managerial level, the incumbent must have excellent written and spoken communication skills.
- Experience in producing accurate and meaningful reports, both technical and managerial, on activities related to Cyber Security.
- Able to organize and lead.
- Able to work as part of a team and under direction of a higher authority.
- Strong collaboration and interpersonal skills.
- Pattern Recognition/Deductive Reasoning
- Knowledge and practice of Data Analytics, Data Mining, Data Enrichment, Artificial Intelligence and connected concepts such as Large Language Models, Retrieval Augmented Generation, Machine Learning;
- A good understanding in at least three of these areas:

- Network Based Intrusion Detection Systems (NIDS), Host Based Intrusion Detection Systems (HIDS), Network security appliances and networking devices and associated management software. A variety of Security Event generating sources at network and host level (e.g. Firewalls, IDS, Routers, Security Appliances,),
- Computer Forensics Tools (stand alone, online and network),
- Computer Security Tools (Vulnerability Assessment, Anti-Virus, Anti-Spyware etc.)
- Network protocols
- Scripting languages (PowerShell/Python/ ).
- Ability to effectively manage own workload in a high tempo environment to Time, Quality and Standards.
- Ability to effectively communicate technical solution


  • Threat Hunting Analyst

    il y a 6 jours


    Mons, Belgique Vector Synergy Temps plein

    **Location**: Mons, Belgium **Security Clearance**: NATO Secret **Reference No**: C002521 / Mons **Introduction**: As a Cyber Security Threat Hunting Analyst, the consultant will work alongside a team of Security Analysts to proactively detect cyber security attacks against NATO networks. They will research and react to the latest threats, using industry...

  • Threat Hunting Analyst

    il y a 6 jours


    Mons, Belgique Enterpryze Consulting Ltd. Temps plein

    **Threat Hunting Analyst - **Working Location**:Mons, Belgium** - **Security Clearance**: NATO Secret** - **Language**:High proficiency level in English language **EXPERIENCE AND EDUCATION: **Essential Qualifications/Experience: - Expert level in at least three of the following areas and a high level of experience in several of the other areas -...

  • Threat Hunting Analyst

    il y a 6 jours


    Mons, Belgique Systems Planning and Analysis, Inc. Temps plein

    Overview: Systems Planning and Analysis, Inc. (SPA) delivers high-impact, technical solutions to complex national security issues. As we enter our 50th year in business, we are known for continuous innovation for government customers, both long-established and newly acquired, as our capabilities expand around the globe. Our work is state-of-the-art and made...

  • Threat Hunting Analyst

    il y a 6 jours


    Mons, Belgique Enterpryze Consulting Ltd. Temps plein

    **Threat Hunting Analyst** - **Working Location**:Mons, Belgium** - **Language**:High proficiency level in English language **EXPERIENCE AND EDUCATION**: **Essential Qualifications/Experience**: - Significant demonstrable experience in Cyber Security related environment - Experience in producing accurate and meaningful reports, both technical and...


  • Mons, Belgique MCR, LLC. Temps plein

    **Get an edge on advancing your career** If you’re ready to meet complex challenges, we’re ready to meet you. MCR is a fast-growing global company headquartered in McLean, VA that supports defense and civilian agencies, NATO, and European ministries that face some of the most complex mission challenges in the world. If you are the best at what you do,...


  • Mons, Belgique Vector Synergy Temps plein

    **Location**: Mons, Belgium **Security Clearance**: NATO Secret **Reference No**: 2024-0324 / Mons **Skills, knowledge, experience required**: - Experience in: - Threat hunting and threat hunting methodologies; - Writing Splunk queries using SPL; - Analyzing Sysmon events. - Good knowledge of networking protocols; - Knowledge of Python and/or PowerShell is...


  • Mons, Belgique Enterpryze Consulting Ltd. Temps plein

    **Cyberspace Operations Threat Hunting Support 1** - **Working Location**:Mons, Belgium** - **Language**:High proficiency level in English language **EXPERIENCE AND EDUCATION**: **Essential Qualifications/Experience**: - Experience in threat hunting and threat hunting methodologies - Experience in writing Splunk queries using SPL - Experience in analysing...

  • Threat Hunting Support 1/2

    il y a 2 semaines


    Mons, Belgique AbAKUS IT Solutions Temps plein

    **Key Responsibilities**: - Splunk Query Development: Craft and optimize SPL queries for effective data analysis. - Forensic Analysis: Examine Windows artifacts such as Event Logs, UAL, and MFT. - Event Analysis: Analyze Sysmon events to uncover potential threats. - Collaboration: Participate in internal discussions to enhance service quality and...

  • Threat Hunting Analyst

    il y a 6 jours


    Mons, Belgique Vector Synergy Temps plein

    **Location**: Mons, Belgium **Security Clearance**: NATO Secret **Reference No**: C003950 / Mons **Skills, knowledge, experience required**: - Significant demonstrable experience in Cyber Security related environment; - Excellent analytical and hypothetical thinking; - Experience in liaising at both the technical and managerial level, the incumbent must...

  • Cyber Threat Hunter

    il y a 1 semaine


    Mons, Belgique Spektrum Temps plein

    Spektrum have a wide range of exciting opportunities in several global locations. We are always looking to add great new talent to our team and look forward to hearing from you. **Who we are supporting** The NATO Communication and Information Agency (NCIA) is responsible for providing secure and effective communications and information technology (IT)...


  • Mons, Belgique Enterpryze Consulting Ltd. Temps plein

    **Second Line Security Event Analyst** - **Working Location**:Mons, Belgium - **Security Clearance**:NATO Secret / SC - **Language**:High proficiency level in English language **EXPERIENCE AND EDUCATION**: **Essential Qualifications/Experience**: - Expert level in 3+ of the following areas and a high level of experience in several of the other areas: -...


  • Mons, Belgique Enterpryze Consulting Ltd. Temps plein

    **Second Line Security Event Analyst** - **Working Location**:Mons, Belgium - **Security Clearance**:NATO Secret / SC - **Language**:High proficiency level in English language **EXPERIENCE AND EDUCATION**: **Essential Qualifications/Experience**: - Expert level in 3+ of the following areas and a high level of experience in several of the other areas: -...


  • Mons, Belgique Enterpryze Consulting Ltd. Temps plein

    **Cyber Security Incident Detection Analyst** - **Working Location**:Mons, Belgium - **Security Clearance**:NATO Secret / SC - **Language**:High proficiency level in English language **EXPERIENCE AND EDUCATION**: **Essential Qualifications/Experience**: - Expert level in 3+ of the following areas and a high level of experience in several of the other...


  • Mons, Belgique Enterpryze Consulting Ltd. Temps plein

    **Second Line Security Event Analyst (SLSEA) - **Working Location**:Mons, Belgium** - **Security Clearance**: NATO Secret** - **Language**:High proficiency level in English language **EXPERIENCE AND EDUCATION: **Essential Qualifications/Experience: - Expert level in at least three of the following areas and a high level of experience in several of the other...


  • Mons, Belgique Enterpryze Consulting Ltd. Temps plein

    **Senior Incident Detection Analyst - Cloud Security** - **Working Location**:Mons, Belgium - **Security Clearance**:NATO Secret / **SC - **Language**:High proficiency level in English language **EXPERIENCE AND EDUCATION**: **Essential Qualifications/Experience**: - 2+ years of demonstrable experience in security monitoring and analysis of enterprise level...


  • Mons, Belgique Enterpryze Consulting Ltd. Temps plein

    **Senior Incident Detection Analyst - Cloud Security** - **Working Location**:Mons, Belgium - **Security Clearance**:NATO Secret / **SC - **Language**:High proficiency level in English language **EXPERIENCE AND EDUCATION**: **Essential Qualifications/Experience**: - 2+ years of demonstrable experience in security monitoring and analysis of enterprise level...


  • Mons, Belgique Systems Planning and Analysis, Inc. Temps plein

    Overview: - Systems Planning and Analysis, Inc. (SPA) is a well-established and progressive defense contracting company in the Northern Virginia area just a few miles south of the Pentagon. We are a professional services firm established in 1972 that has a long-standing reputation for unrivaled technical and analytical support to some of the top decision...


  • Mons, Belgique Enterpryze Consulting Ltd. Temps plein

    **Cyber Security Incident Detection Analyst - **Working Location**:Mons, Belgium** - **Security Clearance**:NATO Secret / SC** - **Language**:High proficiency level in English language **EXPERIENCE AND EDUCATION: **Essential Qualifications/Experience: - **Expert level in 3+ of the following areas and a high level of experience in several of the other...


  • Mons, Belgique MCR, LLC. Temps plein

    **Get an edge on advancing your career.** If you’re ready to meet complex challenges, we’re ready to meet you. MCR is a fast-growing global company headquartered in McLean, VA that supports defense and civilian agencies, NATO, and European ministries that face some of the most complex mission challenges in the world. If you are the best at what you do,...


  • Mons, Belgique Vector Synergy Temps plein

    **Location**: Mons, Belgium **Security Clearance**: NATO Secret **Reference No**: C002337 / Mons **Skills, knowledge, experience required**: - OR experience that is/are of interest to NCIA; that is, at least 7 years extensive and progressive expertise in the duties related to the function of the post; - Expert level in at least three of the following...