Penetration Tester 9

Braine-l'Alleud, Belgium (initially) and Brussels, Belgium (following move of NCSC) Deadline: 08-06-2026 Posted: 29-05-2026 #16885

Duties

  • Lead and/or be part of the Red/Blue Team during NATO military exercises;
  • Provide Web, infrastructure and application level penetration testing;
  • Provide security design reviews to ensure compliance with NATO policies and directives;
  • Provide security consultancy and advice to projects, plans, and other entities;
  • Build and sustain effective communications with different stakeholders; specifically, the NCIA Configuration Control Board, Security Accreditation Boards, NATO Security Accreditation Authorities, and NCI Agency organization units supporting accreditation processes.
  • Brief at both executive and technical levels on security reports and testing outcome, including at flag officer level;
  • In co-ordination with the Head of the Penetration testing Cell, ensure proactive collaboration and coordination with internal and external stakeholders.

Requirement

  • The required skillset for the contracted individual is extensive knowledge and experience (more than 3 years) in the following areas: - Web application penetration testing;.
  • The required skillset for the contracted individual is extensive knowledge and experience (more than 3 years) in the following areas: - IT infrastructure penetration testing;.
  • The required skillset for the contracted individual is extensive knowledge and experience (more than 3 years) in the following areas: - Network security architecture design;.
  • The required skillset for the contracted individual is extensive knowledge and experience (more than 3 years) in the following areas: - Assessing security vulnerabilities within OS, software, protocols & networks;.
  • The required skillset for the contracted individual is extensive knowledge and experience (more than 3 years) in the following areas: - Researching and evaluating security products & technologies;.
  • The required skillset for the contracted individual is extensive knowledge and experience (more than 3 years) in the following areas: - Knowledge in system and network administration of UNIX and Windows systems;.
  • The required skillset for the contracted individual is extensive knowledge and experience (more than 3 years) in the following areas: - Use of penetration testing tools, techniques, and recognized testing methodologies;.
  • The required skillset for the contracted individual is extensive knowledge and experience (more than 3 years) in the following areas: - Scripting skills in at least one of the following: Perl, Python, Ruby, shell (bash, ksh, csh);.
  • The required skillset for the contracted individual is extensive knowledge and experience (more than 3 years) in the following areas: - Technical knowledge in system and network security, authentication and security protocols, cryptography, application security, as well as, malware infection techniques and protection technologies.
  • The required skillset for the contracted individual is extensive knowledge and experience (more than 3 years) in the following areas: - Ability to evaluate risks and formulate mitigation plans;.
  • The required skillset for the contracted individual is extensive knowledge and experience (more than 3 years) in the following areas: - Proven ability to write clear and structured technical reports including executive summary, technical findings and remediation plan for several different audiences.
  • Required Security Clearance: NATO Secret.

Apply for this position

Back