Jobs and Careers
EM

2024-0300 CIS Security Officer (Compliance and Audits) (NS) - FRI 29 Nov

EMW, Inc.
Belgiumfull_timeVerifiedPosted 20 Nov 2024

About the role

<p><strong>Deadline Date:</strong> Friday 29 November 2024</p><p><strong>Requirement:</strong> Provision of CIS Security Officer (Security Compliance and Audits)</p><p><strong>Location:</strong> Brussels, BE</p><p><strong>Full Time On-Site: </strong>Yes</p><p><strong>Time On-Site: </strong>100%</p><p><strong>Period of Performance:</strong> 2025 BASE: As soon as possible not later than 6th January 2025 (tentative) – 31st December 2025 with possibility to the following options:</p><p>• 2026 Option: 1st January 2026 until 31st December 2026</p><p>• 2027 Option: 1st January 2027 until 31st December 2027</p><p><strong>Required Security Clearance:</strong> NATO Secret </p><p> </p><p><strong>1 INTRODUCTION</strong></p><p>NCIA – Coherence Branch</p><p>Within the Agency CIS Support Unit (CSU) Brussels provides consistent, reliable and cost-effective ICT service delivery to all NATO customers located in the NATO compound in Brussels, including understanding and managing the interface with the Secretary General and Deputy Director General International Military Staff (DG IMS), through his/her delegated representatives ICTM/EXCO IMS, who act in the role of Intelligent Customer.</p><p>The Coherence (COH) supports the Agency’s Demand Management (DM) organization, and is responsible for liaison with all customers in the CSU’s AoR and supports the Commander CSU in the role as NCIA representative and provides a single entry point for customers. Service Management Branch (SMB) contributes and/or conducts monitoring and measurement of customer satisfaction. SMB supports the management of all agreements concerning Service Provision, Operations and Exercises within the CSU AoR. SMB supports Service Lines in the implementation and improvement of service management processes.</p><p>NCIA – Service Design and CIS Security</p><p>Service Design and CIS Security (SDCS) team consists of subject matter experts mainly providing security compliance, risk assessment, risk management and security architecture services.</p><p>The service under this SOW have to be delivered by a resource with qualifications and experience as CIS Security Officer (Security Compliance and Audits). The resource will provide services related to main activities as described in Scope of Work section below, under the direction of the Head, Service Design and CIS Security (SDCS) team.</p><p><strong>2 OBJECTIVES</strong></p><p>The main objectives of this statement of work can be summarized as follow:</p><p>• Organize, coordinate and perform CIS security compliance and verification activities;</p><p>• Support CIS security accreditation activities and remediation tasks;</p><p>• Support and participate high-level, multi-stakeholder CIS security related meetings and forums.</p><p><strong>3 SCOPE OF WORK</strong></p><p>Under the direction / guidance of the CIS Security Manager, the services provided will be supporting the following activities:</p><p>1) CIS Security Services</p><p>a) Coordinate system vulnerability assessments to identify weaknesses in security posture.</p><p>b) Analyse Cyber Security Hygiene Indicators report and prioritize remediation activities.</p><p>c) Ensure proper security testing protocols are in place before any system upgrades or changes.</p><p>d) Maintain documentation and evidence for all security tests performed on NATO HQ CIS.</p><p>e) Collaborate with stakeholders to define security accreditation requirements.</p><p>f) Review and update accreditation documentation for compliance with NATO policies and directives.</p><p>g) Coordinate and plan security audits to ensure systems adhere to NATO security accreditation standards.</p><p>h) Prepare audit reports with detailed findings and corrective action recommendations.</p><p>i) Oversee follow-up actions post-audit to ensure implementation of security improvements.</p><p>j) Track remediation progress for security vulnerabilities discovered during audits.</p><p>k) Perform post-accreditation monitoring to ensure continued compliance.</p><p>l) Review security incident reports and incorporate findings into future audit cycles.</p><p>m) Provide expertise in the design and analysis of CIS architectures, equipment, and system technical specifications, including security-related requirements.</p><p>n) Engage with relevant NATO HQ bodies, NCIA bodies, and others on network and application system issues affecting CIS operation and maintenance, including staging, pre-production, and production environments.</p><p>o) Coordinate and support the design, planning, and testing of network infrastructures and related applications and data, including security aspects.</p><p>p) Coordinate discussions and the elaboration of technical and security details for required solutions, in close coordination with Subject Matter Experts (SMEs).</p><p>q) Prepare written technical documentation throughout the planning and implementation of CIS initiatives.</p><p>r) Work in close coordination with the NHQ CIS Security Officer(s) in

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

EMW, Inc.

View company profile →