DescriptionDeadline Date: Wednesday 25 February 2026
Requirement: Cyber Incident Responder
Location: Mons BE
Full Time On-Site: Yes
Time On-Site: 100%
Total Scope of the request (hours): 836
Required Start Date: 23 March 2026
End Contract Date: 31 December 2026
Required Security Clearance: NATO SECRET
Specific Working Conditions:Normal working hours 0830-1730. On-call duties after working hours on weekends or holidays are case of a major Cyber Security Incident the incumbent may be required to work extended hours and on shifts including nights and weekends to provide a 24/7 Cyber Security Incident Response.
Duties and Role
- Provision of 24/7 Cyber Security Incident Response (TRIAGE Contain Eradicate Recover) activities during normal working hours and on-call duties including weekends and holidays;
- Deliver of technical co-ordination support and assistance in respect of Cyber Security Incident Response to NATO CIS Operating Authorities or other similar bodies as directed including but not limited to NATO Nations Partner Nations non- Governmental Organisations and Industry partners
- Lead be a member of or support a Cyber Security Response Team designated to provide Cyber Security Incident Reponse happening on one or mutiple physical locations including NATO Alliance Operations and Missions.
- Build manage the lifecycle of and maintain the taxonomy related to the Branchs information.
- Manage the content of the different information portals with the agreed taxonomy.
- Design create and distribute a variety of reports briefings and dashboards to different type of audience (Business owners Operational community IT Service Management Cyber Security community)
- Maintain a network of cyber security personnel across and beyond the NATO Enterprise to facilitate communication and coordination of urgent actions when the need arises.
- Research to identify document and implement improvements to the Incident Response (TRIAGE Contain Eradicate Recover) activities in order to enhance and optimise current best practice to meet new and developing threats
- Production of Standard Operating Procedures covering all aspects of Incident Response (TRIAGE Contain Eradicate Recover) activities
- Performs other duties as may be required.
RequirementsSkill Knowledge & Experience:
- The candidate must have a currently active NATO SECRET security clearance
- A university degree at a nationally recognised/certified University in a technical subject with substantial Information Technology (IT) content and 4 years of specific experience. Exceptionally the lack of a university degree may be compensated by the demonstration of a candidates particular abilities or experience that is/are of interest to NCI Agency; that is at least 10 years extensive and progressive expertise in the duties related to the function of the post.
- Excellent communications skills and reporting experience with capacity to communicate to different types of audience (senior executive middle management technical and non-technical).
- Comprehensive understanding of the principles of Computer and Communication Security networking and the vulnerabilities of modern operating systems and applications acquired through a blend of academic or professional training coupled with practical professional experience
- Recent practical hands-on experience of Intrusion Detection and Incident Response (TRIAGE Contain Eradicate Recover) in an enterprise-level Computer Emergency Response Team ideally making use of the MITRE ATT&CK framework
- At least 3 years experience in Information and Knowledge Management ideally in the field of Cyber Security
- Experience in interfacing with IT Service Management.
Desirable
- Hold a University degree in Cyber Security or IT Security-related discipline or Information Management.
- Hold relevant certifications such as Certified Information Systems Security Professional (CISSP) GCIH or GIAC/GCIM Security
- Hold a professional certification on IT Service Management.
- In-depth knowledge of potential security event sources and their interpretation and analysis in support of the incident detection and handling processes
- Practical hands-on experience in System and Network administration to include Network (TCP/IP) Engineering
DescriptionDeadline Date: Wednesday 25 February 2026Requirement: Cyber Incident ResponderLocation: Mons BEFull Time On-Site: Yes Time On-Site: 100% Total Scope of the request (hours): 836Required Start Date: 23 March 2026End Contract Date: 31 December 2026 Required Security Clearance: NATO SECRETSpe...
DescriptionDeadline Date: Wednesday 25 February 2026
Requirement: Cyber Incident Responder
Location: Mons BE
Full Time On-Site: Yes
Time On-Site: 100%
Total Scope of the request (hours): 836
Required Start Date: 23 March 2026
End Contract Date: 31 December 2026
Required Security Clearance: NATO SECRET
Specific Working Conditions:Normal working hours 0830-1730. On-call duties after working hours on weekends or holidays are case of a major Cyber Security Incident the incumbent may be required to work extended hours and on shifts including nights and weekends to provide a 24/7 Cyber Security Incident Response.
Duties and Role
- Provision of 24/7 Cyber Security Incident Response (TRIAGE Contain Eradicate Recover) activities during normal working hours and on-call duties including weekends and holidays;
- Deliver of technical co-ordination support and assistance in respect of Cyber Security Incident Response to NATO CIS Operating Authorities or other similar bodies as directed including but not limited to NATO Nations Partner Nations non- Governmental Organisations and Industry partners
- Lead be a member of or support a Cyber Security Response Team designated to provide Cyber Security Incident Reponse happening on one or mutiple physical locations including NATO Alliance Operations and Missions.
- Build manage the lifecycle of and maintain the taxonomy related to the Branchs information.
- Manage the content of the different information portals with the agreed taxonomy.
- Design create and distribute a variety of reports briefings and dashboards to different type of audience (Business owners Operational community IT Service Management Cyber Security community)
- Maintain a network of cyber security personnel across and beyond the NATO Enterprise to facilitate communication and coordination of urgent actions when the need arises.
- Research to identify document and implement improvements to the Incident Response (TRIAGE Contain Eradicate Recover) activities in order to enhance and optimise current best practice to meet new and developing threats
- Production of Standard Operating Procedures covering all aspects of Incident Response (TRIAGE Contain Eradicate Recover) activities
- Performs other duties as may be required.
RequirementsSkill Knowledge & Experience:
- The candidate must have a currently active NATO SECRET security clearance
- A university degree at a nationally recognised/certified University in a technical subject with substantial Information Technology (IT) content and 4 years of specific experience. Exceptionally the lack of a university degree may be compensated by the demonstration of a candidates particular abilities or experience that is/are of interest to NCI Agency; that is at least 10 years extensive and progressive expertise in the duties related to the function of the post.
- Excellent communications skills and reporting experience with capacity to communicate to different types of audience (senior executive middle management technical and non-technical).
- Comprehensive understanding of the principles of Computer and Communication Security networking and the vulnerabilities of modern operating systems and applications acquired through a blend of academic or professional training coupled with practical professional experience
- Recent practical hands-on experience of Intrusion Detection and Incident Response (TRIAGE Contain Eradicate Recover) in an enterprise-level Computer Emergency Response Team ideally making use of the MITRE ATT&CK framework
- At least 3 years experience in Information and Knowledge Management ideally in the field of Cyber Security
- Experience in interfacing with IT Service Management.
Desirable
- Hold a University degree in Cyber Security or IT Security-related discipline or Information Management.
- Hold relevant certifications such as Certified Information Systems Security Professional (CISSP) GCIH or GIAC/GCIM Security
- Hold a professional certification on IT Service Management.
- In-depth knowledge of potential security event sources and their interpretation and analysis in support of the incident detection and handling processes
- Practical hands-on experience in System and Network administration to include Network (TCP/IP) Engineering
View more
View less