Jobs

OCIO-0035 Expert on Defensive Cyberspace Operations Management (NS) - MON 22 Jan

Deadline Date:  Monday 22 January 2024

Requirement: Expert on Defensive Cyberspace Operations Management

Location: Brussels, BE 

Full time on-site: Yes

Time On-Site: 100%

Total Scope of the request (hours): 1400

Required Start Date: 1 March 2024

End Contract Date: 31 December 2024

Required Security Clearance: NATO SECRET

Note: For all Level-of-Effort and Completion-Type requests processed outside of the IWC Value Stream, and for which the contractor will not be reimbursed directly by OCIO for travel expenses, additional travel funding shall be allocated on a Not-to-exceed basis when the yearly Option is exercised.

Annex A – Special Terms and Conditions

The contractor will be responsible for complying with the respective national requirements for working permits, visas, taxes, social security etc. whilst working on site at NATO HQ Brussels, Belgium.

No special status is either conferred or implied by the host organisation, NATO HQ Brussels, Belgium to the contractor whilst working on site.

The contractor will be responsible for complying with all the respective National Health COVID-19 regulations in Belgium before taking up the position.

1. INTRODUCTION

The NATO Chief Information Officer (CIO) function brings Information and Communications Technology (ICT) coherence across NATO Enterprise’s civil and military bodies. The NATO CIO is empowered to realize the Allies’ vision for the NATO Enterprise, is accountable to the Secretary General and is responsible for the development of Enterprise directives and advice on the acquisition and use of information technologies and services. The NATO CIO provides Enterprise oversight on cybersecurity issues, and, in close coordination with all relevant NATO civil and military bodies, works towards the continual improvement of the cyber hygiene and cybersecurity posture in the NATO Enterprise.

The Office of the NATO CIO (OCIO) is an integrated staff organization comprised of International Staff (IS) and International Military Staff (IMS) members.

The OCIO supports the planning, coordination and execution of Defensive Cyberspace Operations (DCO) in NATO networks, as one of the leading members of the DCO Planning and Coordination Cell (DPCC).

The incumbent will be responsible for ensuring appropriate coordination amongst the DPCC members (i.e. NATO Cyberspace Operations Centre (CyOC), Joint Intelligence and Security Division (JISD), NATO Communications and Information Agency (NCIA) and OCIO). S/He will also be responsible for managing the complete lifecycle of DCOs led by the OCIO, including the planning, conduct, assessment, and follow-up phases.

The incumbent must demonstrate in-depth knowledge of advanced technical operations in defence of communication and information systems, but also good knowledge in cyber incident management and cyber risk management best practices and processes.

2. TASKS

The contractor will effectively and efficiently provide, with minimal support, the following services:

  • Plan, coordinate and execute advanced technical operations, including threat hunting activities, adversary emulation and deception technologies;
  • Draft clear and concise reports;
  • Develop DCO plans, supporting processes and procedures;
  • Prepare and deliver presentations to technical and non-technical audiences, in order to facilitate consensus building and decision-making;
  • Coordinate the work of the DPCC, ensuring appropriate communication and cooperation amongst the relevant NATO Enterprise stakeholders;
  • Support the DPCC meetings, in working level and principals level format, facilitating discussions, leading OCIO initiatives and providing advice during the DCO lifecycle;
  • Liaise with CyOC, NCIA and other stakeholders for the planning and coordination of any cyberspace activities in the context of DCOs;
  • Support the NATO Enterprise Incident Manager in the coordination and assessment of cybersecurity incident response activities in relation to ongoing DCOs;
  • Support the risk management and decision making processes, coordinating with the NATO Cyber Risk Management Group (CRMG) and the NATO Board of CISOA (BCISOA).

3. PROFILE

[See Requirements]

4. LOCATION OF DUTY

The work will be executed primarily on site at the NATO HQ offices in Brussels, Belgium. Frequent travels or short deployments to NATO Command Structure bodies would be required. Due to the nature of the work, minimal teleworking can be foreseen.

5. TIMELINES

The services of the contractor are required for the period starting 1 March 2024 until 31 December 2024.

A contract extension is possible for the calendar years 2025 and 2026. Future contract extensions are subject to performance of the contractor and related NATO regulations.

6. SPECIFIC WORKING CONDITIONS

Secure environment with standard working hours. Occasional non-standard hours may be required in support of the NATO Chief Information Officer urgent tasks.

7. TRAVEL

Occasional business travel may be required. Travel expenses will be reimbursed to the individual directly (in addition to the hourly rate) under NATO rules.

8. SECURITY AND NON-DISCLOSURE AGREEMENT

The contractor must be in possession or capable of possessing a security clearance of NATO SECRET.

A signed Non-Disclosure Agreement will be required.

Requirements

3. PROFILE

  • The contractor must have a currently active NATO SECRET security clearance
  • The contractor must have more than 3 years of experience in cybersecurity, preferably planning and conducting defensive cyberspace operations and activities (advanced technical operations, incident response, threat hunting, adversary emulation, etc.) and/or managing cybersecurity projects;
  • The contractor must have excellent communication and negotiation skills;
  • The contractor must have excellent English writing skills, the ability to draft clear and concise reports, and the ability to brief on their work in English;
  • The contractor must have good knowledge of the principles, policy and procedures governing cybersecurity, preferably in military and/or defence organizations;
  • Previous NATO experience in one or more of the fields of cybersecurity, cyber defence, cyberspace operations, cyber risk management or cyber incident management is desirable;
  • Cyber security certifications such as CISM, CISSP or equivalent post-graduate degree in cybersecurity is desirable;

Cyber Security Jobs by Category

Cyber Security Salaries