Cyber Security Engineer
C004997 — Cyber Security Engineer
Location: The Hague, Netherlands
Working arrangement: Full-time, primarily on-site; limited remote work may be approved
Security clearance: NATO Secret
Environment: Normal office environment
Main duties
- Design security-compliant architectures for AirC2 and related mission-support systems.
- Document key architectural decisions and define cloud or on-premises components, interfaces, and technical specifications.
- Ensure solutions comply with enterprise, solution architecture, and security standards.
- Configure, test, integrate, and troubleshoot security products and services.
- Integrate local security services with central security infrastructure or provide equivalent local controls.
- Implement and maintain security controls based on policy and risk assessments.
- Identify, assess, communicate, and mitigate technical and information-security risks.
- Define secure system configurations and support investigations into suspected attacks or breaches.
- Conduct information-assurance assessments and provide routine accreditation support.
- Prepare and maintain risk assessments, risk-treatment plans, and decision records.
- Define, document, prioritise, trace, and manage requirements for small changes and support complex initiatives.
- Review requirements for errors or omissions and manage authorised changes to baselined requirements.
- Work with stakeholders to resolve conflicts and agree priorities.
- Escalate decisions that fall outside the role’s authority.
- Perform other security-related duties as required.
Essential requirements
- Education and experience:
- BSc from a recognised university in a technical subject with substantial IT content, plus at least three years of relevant experience; or
- At least five years of extensive and progressive relevant experience if no degree is held.
- At least three years’ knowledge and experience in:
- Security monitoring
- Public Key Infrastructure (PKI)
- Vulnerability management
- Identity and access management
- Research and evaluation of security products and technologies
- UNIX and Windows system and network administration
- System and network security, particularly Zero-Trust and Data-Centric architectures
- Ability to:
- Evaluate risks and develop mitigation plans
- Produce clear, structured technical reports in English for technical and executive audiences
- Present technical briefings verbally in English
Desirable requirements
- Experience working in an international environment involving military and civilian personnel.
- Knowledge of NATO’s organisation, internal structure, and working relationships.