Spektrum have a wide range of exciting opportunities in several global locations.
We are always looking to add great new talent to our team and look forward to hearing from you.
Introduction
NSPA are looking for engineers to support their Cyber Security infrastructure to covering day to day and project activities, in addition providing Cyber Security services to NSPA customers or partners from across the NATO nations.
Day to Day Activities
- Planning and carrying out the replacement of products or technologies within the infrastructure. This will involve developing time schedules, collaborating with the helpdesk, communicating with the customers, configuring the new equipment and performing the actual migration work. Following this, documentation and diagrams will have to be updated.
- Operating and maintaining a wide variety of different cyber security solutions on a day-to-day basis, including but not limited to : Network firewall, web proxy, mail proxy and anti-spam, antivirus for servers, DMZ segregation, web application firewall, intrusion prevention, SIEM log correlation and reporting, managed file transfer, certificates, strong authentication etc.
- Providing support on various cyber security tasks and operations, such as incident response, troubleshooting, change management, write and implement security procedures for operating security solutions, lifecycle management, security and risk assessments, etc.
Project Activities
Assessment of new cyber security products or technologies. This will involve researching the product, liaising with the manufacturer, arranging for a lab trial, conducting a test phase and then writing a report and making recommendations to NSPA.Design and implementation of new secure solutions for various projects and to ensure that NSPA Cyber Security posture remains adequate and aligned with best practices.Operating effectiveness testing and improvement of existing cyber security controls involving various cyber security technologies (including but not limited to network firewalls, Web Application firewalls, SIEM, Network IPS, e-mail protection, web browsing protection, Public Key Infrastructure, Medium and Strong authentication, etc.).Cyber Security advisory and support provided for various customer projects.Cyber Security penetration testing project.Working Location
Main working location : Capellen, Luxembourg (NSPA HQ)
Some projects may require business travel to other NSPA LocationsSome remote / hybrid work may be requiredWorking Hours
Monday to Thursday :
Arrival 06 : 00 to 09 : 00Lunch break Minimum 30 minutes 11 : 45 – 13 : 45Departure 16 : 15 to 20 : 00Friday
Arrival 6 : 00 to 9 : 00Departure 12 : 15 to 17 : 00Public Holiday of Luxembourg will be applicableSome on-call duties and weekend work will be required on a rotation basisProject Duration
3 years + 2 YearsMandatory Requirements
Professional Experience
Proven experience of at least 5 years in IT Cyber Security.Proven experience of at least 1 year in a NATO environment.Proven experience and skills (Minimum 8 of the below)
Next Generation Firewalls (including Intrusion Detection / Prevention System),Web Application Firewalls and Reverse Proxies,Web ProxiesE-mail gatewaysVulnerability ManagementAnti-malware, sandboxing and endpoint protection technologiesPublic Key Infrastructures (PKIs), smartcards and user authentication technologiesMobile Device Management (MDM)Apple infrastructure and iOS managementSecurity Incident Event Management (SIEM)Multi-Factor authenticationPrivileged Access ManagementGood Knowledge - Ability to troubleshoot and solve issues involving the aforementioned technologiesProven knowledge of :
Good Knowledge - Cloud Architecture and SecurityGood Knowledge - Operating System (Windows and Linux) security and of Active Directory securityGood Knowledge - Networking protocolsGood Knowledge - Application SecurityExperience allowing to write scripts efficiently - Programming Skills in Bash or Python or PerlGood Knowledge - Offensive security tactics, techniques, tools and proceduresTriage, following, procedures pro-active pivoting and hunting - Handling security alerts (ex : antivirus alert, suspicious email report)Good Knowledge - Handling security incident / intrusionLanguage
Proficiency in English, written and oral, equivalent to CEFR B2 or higherAbility to write clear and concise reports and technical documentation with proper justificationAbility to explain issues at different levels of the hierarchy and in particular to managementSecurity Clearance
Hold a valid NATO SECRET (or higher) security clearanceWe never know what new opportunities might be just over the horizon. If this opportunity isn't for you please feel free to send us your resume anyway and be the first to know if something suitable for your skills and experience comes up.