Cyber Security Engineer
Spektrum
Wiesbaden, Germany
7 days ago
Role details
Contract type
Contract Employment type
Full-time (> 32 hours) Working hours
Regular working hours Languages
EnglishJob location
Wiesbaden, Germany
Tech stack
Software Documentation
CompTIA Security+
Computer Security
Virtual Private Networks (VPN)
OSI Models
Information Systems Security Architecture Professional
Network Security
Network Architecture
Network Protocols
Release Management
Remote Access Technology
Backup and Restore
Mttr
Data Management
Firewall Services Module
Cisco networks
Job description
- Supporting the delivery of advanced (3rd level) technical support for NSATU NATO CIS Services and architecture and IT/Data Management Services, ensuring service availability is maintained in accordance with defined targets.
- Supporting fault diagnosis activities using the IT and Data Management Services Management System, including both local and remote diagnostic capabilities.
- Supporting the supervision and execution of routine maintenance activities for NGFW infrastructure, management systems, and associated components.
- Supporting the implementation, modification, and validation of firewall rulesets and security policies, ensuring that all configuration changes are properly assessed, documented, approved, and implemented in accordance with NATO processes and cyber security requirements.
- Supporting the maintenance and updating of system documentation to reflect changes, configurations, and operational procedures.
- Supporting the execution and validation of backup and restore procedures for IT and Data Management Services devices.
- Supporting remote fault diagnosis and intervention activities as required to ensure service continuity.
- Supporting collaboration with internal and external stakeholders to ensure effective coordination of support, maintenance, and service activities.
- Supporting the execution of:
- Incident Management
- Change Management
- Release Management
- Provide transparent and auditable evidence of service performance against defined KPIs;
- Enable continuous monitoring of service health, availability, and operational risks;
- Support informed decision-making by NCIA;
- Facilitate performance evaluation and validation of payment.
- The Contractor shall produce monthly Service Performance Reports, including, as a minimum:
- KPI performance (MTTI, MTTR, MRT);
- Incident summaries and analysis (P1-P4), including volume, classification, and resolution status;
- Service availability across NGFW and related service domains;
- Major incidents and outages, including impact assessment;
- Root cause analysis for critical incidents (P1/P2);
- Preventive and corrective actions implemented or planned;
- Change and maintenance activities performed during the reporting period;
- Identified risks and associated mitigation measures;
- Recommendations for service optimisation and improvement.
- The Contractor shall provide:
- Initial notification
- Regular status updates
- Post-Incident Reports including root cause analysis and corrective actions
- KPI measurement data and supporting evidence
- Identification of KPI breaches
- Calculation of applicable service credits
- Service status and availability
- Active incidents
- Performance trends
- Identify opportunities for service optimisation and efficiency improvements
- Propose and track corrective and preventive actions
- Monitor trends and recurring issues to drive long-term improvements
Requirements
Do you have experience in VPN?, * PaloAlto Networks Certified Network Security Engineer (PCNSE) or equivalent qualification.
- CompTIA Security+ (pre 2020- Code SY0-601. Post 2020 Code SY0-701).
- In-depth knowledge of PaloAlto firewall configuration, management, and troubleshooting.
- Understanding of networking protocols and security principles.
- In-depth knowledge of network infrastructure and architecture.
- Experience with security policy design and implementation.
- In-depth knowledge of VPN technologies and configurations.
- In-depth knowledge of scripting and automation skills.
- Strong interpersonal skills, with the ability to work effectively in multinational and multidisciplinary environments;
- Ability to work autonomously with minimal supervision, while contributing effectively as part of a team;
- Strong analytical and problem-solving capabilities, with a results-oriented approach;
- Demonstrated ability to interact with users, stakeholders, and technical teams in a professional and collaborative manner;
- High level of motivation, adaptability, and professional integrity;
- In depth practical understanding of NATO Command structures, roles, and organisational context
- In depth practical Knowledge of NATO Enterprise Architecture and DCIS services, covering OSI Layers 1-7
Desirable Skills, Experience and Certifications
- PaloAlto Networks Certified Network Security Administrator (PCNSA).
- Certified Information Systems Security Professional (CISSP).
- Cisco Certified Network Associate (CCNA) - (Code 200-301)..
Language Proficiency
- Shall be able to listen, speak, read and write in English to or above the NATO SLP 3333 (= good/minimum professional) in accordance with STANAG 6001.
- Proven English language ability to communicate effectively, both orally and in writing, including the ability to deliver clear briefings and articulate complex technical matters, * Valid National or NATO Cosmic Top Secret personal security clearance
About the company
Spektrum supports apex purchasers (NATO, UN, EU, and National Government and Defence) and their Tier 1 supplier ecosystem with a wide range of specialist services. We provide our clients with professional services, specialised aerospace and defence sales, delivery, and operational subject matter expertise. We are looking for personnel to join our team and support key client projects., The NATO Communication and Information Agency (NCIA) is responsible for providing secure and effective communications and information technology (IT) services to NATO's member countries and its partners. The agency was established in 2012 and is headquartered in Brussels, Belgium.
The NCIA provides a wide range of services, including:
* Cyber Security: The NCIA provides advanced cybersecurity solutions to protect NATO's communication networks and information systems against cyber threats.
* Command and Control Systems: The NCIA develops and maintains the systems used by NATO's military commanders to plan and execute operations.
* Satellite Communications: The NCIA provides satellite communications services to enable secure and reliable communications between NATO forces.
* Electronic Warfare: The NCIA provides electronic warfare services to support NATO's mission to detect, deny, and defeat threats to its communication networks.
* Information Management: The NCIA manages NATO's information technology infrastructure, including its databases, applications, and servers.
Overall, the NCIA plays a critical role in ensuring the security and effectiveness of NATO's communication and information technology capabilities.
The program
Assistance and Advisory Service (AAS)
The NATO Communications and Information Agency (NCI Agency) is NATO's principal C3 capability deliverer and CIS service provider. It provides, maintains and defends the NATO enterprise-wide information technology infrastructure to enable Allies to consult together under Article IV, and, when required, stand together in the face of attack under Article V.
To provide these critical services, in the modern evolving dynamic environment the NCI Agency needs to build and maintain high performance-engaged workforce. The NCI Agency workforce strategically consists of three major categorise's: NATO International Civilians (NIC)'s, Military (Mil), and Interim Workforce Consultants (IWC)'s. The IWCs are a critical part of the overall NCI Agency workforce and make up approximately 15 percent of the total workforce.