Cyber Security Defender
North Atlantic Treaty Organization
- Location:
- Mons, Belgium
- Grade:
- G15
- Category:
- Professional Staff
Posted Jun 3, 2026Apply by Jun 28, 2026 (1d left)
Join the NATO Communications and Information Agency as a Cyber Security Defender based in Mons, Belgium. The role involves deploying cyber defence equipment, conducting analysis to identify cyber threats, supporting incident response, and maintaining cyber security toolsets to protect NATO communications and information systems.
Responsibilities
- Deploy as part of the Rapid Response Team (RRT) on short notice, transporting, setting up, and operating cyber defence equipment in both secure and austere environments.
- Conduct host-based and network-based analysis to identify indicators of compromise and adversary activity.
- Support incident triage, containment, and remediation actions under the direction of the team lead.
- Install, configure, and maintain RRT toolsets including EDR, SIEM integrations, network sensors, and forensic platforms.
- Perform log analysis and data correlation across multiple sources to support threat detection and investigation and assist in threat hunting activities to identify hidden or persistent threats within supported networks.
Requirements
- A Bachelor’s degree at a nationally recognised/certified University in a related discipline and 2/3 years post-related experience, or exceptionally, at least 6/10 years extensive and progressive expertise in duties related to the function of the post.
- Minimum of 2-6 years of experience in cybersecurity, with a focus on incident response, defensive cyber operations, or network security.
- Hands-on experience detecting, analysing, and responding to cyber incidents in enterprise or operational environments.
- Familiarity with common attack techniques, tactics, and procedures (TTPs) and modern threat landscapes.
- Experience working within structured operational environments, including adherence to procedures, reporting, and escalation processes.
- Ability to operate effectively under pressure, including during time-sensitive or high-tempo incident response activities.
- Experience collaborating within team-based or multi-organization environments.
- Fluency in English, both written and spoken.
Skills
- Cybersecurity
- Incident Response
- Defensive Cyber Operations
- Network Security
- Cybersecurity Analysis
- Cyber Incident Detection
- Cyber Incident Analysis
- Cybersecurity Incident Response
- Enterprise Cybersecurity
- Operational Cybersecurity
- Attack Techniques Knowledge
- Threat Landscape Awareness
- Cyber Defence Equipment Deployment
- Cyber Security Toolset Maintenance
- Operational Environment Procedures
- Reporting and Escalation Processes
Languages
English