Senior Online Vulnerability Assessment - Mons, België - Spektrum

Spektrum
Spektrum
Geverifieerd bedrijf
Mons, België

4 weken geleden

Sophie Dubois

Geplaatst door:

Sophie Dubois

beBee Recruiter


Beschrijving
Spektrum have a wide range of exciting opportunities in several global locations.

We are always looking to add great new talent to our team and look forward to hearing from you.


Who we are supporting


The NATO Communication and Information Agency (NCIA) is responsible for providing secure and effective communications and information technology (IT) services to NATO's member countries and its partners.

The agency was established in 2012 and is headquartered in Brussels, Belgium.

The NCIA provides a wide range of services, including:

  • Cyber Security: The NCIA provides advanced cybersecurity solutions to protect NATO's communication networks and information systems against cyber threats.
  • Command and

Control Systems:
The NCIA develops and maintains the systems used by NATO's military commanders to plan and execute operations.

  • Satellite Communications: The NCIA provides satellite communications services to enable secure and reliable communications between NATO forces.
  • Electronic Warfare: The NCIA provides electronic warfare services to support NATO's mission to detect, deny, and defeat threats to its communication networks.


Overall, the NCIA plays a critical role in ensuring the security and effectiveness of NATO's communication and information technology capabilities.


The program

Assistance and Advisory Service (AAS)
The NATO Communications and Information Agency (NCI Agency) is NATO's principal C3 capability deliverer and CIS service provider.

It provides, maintains and defends the NATO enterprise-wide information technology infrastructure to enable Allies to consult together under Article IV, and, when required, stand together in the face of attack under Article V.


To provide these critical services, in the modern evolving dynamic environment the NCI Agency needs to build and maintain high performance-engaged workforce.

The NCI Agency workforce strategically consists of three major categorise's:
NATO International Civilians (NIC)'s, Military (Mil), and Interim Workforce Consultants (IWC)'s.

The IWCs are a critical part of the overall NCI Agency workforce and make up approximately 15 percent of the total workforce.


Role Duties and Responsibilities
Under the direction of the NCSC Security Compliance (OVA) Cell Head/Service Delivery Manager, the incumbent shall execute following tasks:

  • Configure and maintain the following modules part of the OVA solution in order to collect and provide accurate information to the stakeholders:
  • Credentials and authentication methods
  • Scan Policies
  • Scan Jobs/Tasks
  • Audit Files
  • Assets groups
  • Report templates
  • Troubleshoot any issues in regards of the OVA scans.
  • Escalate to the OVA Tool Manager any issues that cannot be fixed by the Senior OVA Analyst
  • Daily Analyst and Prioritization of the found vulnerabilities.
  • Weekly / Monthly report the found vulnerabilities, remediation actions taken and status.
  • Support, maintain and improve the OVA data processing procedures
  • Maintain and improve scripted modules part of the OVA data processing procedures
  • Maintain and improve the SQL storage procedures part of the OVA data processing
  • Create, maintain and improve Power BI reports
  • Collaborate with other members of the NATO Security Teams to ensure the protection of enterprise assets.
  • Stay current with emerging security threats and technologies.
  • Keep weekly communication with the CIS personnel of each site under your area of responsibility.

Deliverables and Expected Outcomes:
Under the direction of the NCSC Security Compliance (OVA) Cell Head/Service Delivery Manager, the incumbent shall deliver the following:

  • Daily: verify that the OVA scans are configured correctly and that the information collected is accurate.
  • Monthly: deliver vulnerability report to the stakeholders / CIS personnel, with an overview of the critical/high vulnerabilities identified, the status of the recommended actions to show in a graphic way the trend of the security posture of CIS assets. The monthly report is expected to be delivered in the week of Microsoft patch Tuesday (second Tuesday of the month).
Performance Standards

  • Timely delivery of the reports as specified on the deliverables and expected outcomes Section.
  • Quality of the content of the reports will be assessed regularly by the SDM / SAO.

Essential Skills and Experience

  • 3+ years of experience in IT security, with a focus on Security Audit and / or Security Assessment of large organisation
  • Strong understanding of security best practices and experience with Tenable products specially with Tenable Security Center
  • Strong knowledge and handson in SQL database scripting and Power BI
  • Strong knowledge of python (pyTenable) and PowerShell. Experience working with Tenable.
SC and Nessus Manager APIs

  • Strong analytical and problemsolving skills
  • Excellent communication and collaboration skills
  • The incumbent shall be able to understand and interpret the outcomes of security audi

Meer banen van Spektrum