Job Posting Organization: The NATO Communications and Information Agency (NCIA) has been operational for over 70 years, dedicated to preserving peace and security" style="border-bottom: 1px dotted #007bff !important;">security for nearly one billion citizens across the Alliance. With a workforce of approximately 3000 civilian and military staff, NCIA operates in 29 locations across Europe, North America, and Asia. The agency focuses on providing the technological and cyber capabilities necessary for NATO to conduct critical operations, protect airspace, and defend against cyber threats. The organization values its personnel as its greatest asset and is committed to hiring, training, and retaining top talent to maintain its technological edge.
Job Overview: The position is based in Mons, Belgium, where the successful candidates will join the NATO Cyber Security Centre (NCSC). This center is responsible for the lifecycle management of cyber security services, which encompass planning, execution, and support for NATO Communications and Information Systems (CIS). The role involves participating in red team engagements that simulate adversarial tactics against enterprise systems, including networks, applications, and cloud domains. Candidates will be expected to conduct reconnaissance, vulnerability scanning, and offensive security operations, as well as perform research and development to create custom tools and malware. Additionally, the role includes executing social engineering and phishing campaigns to evaluate human and process defenses, and producing clear reports for both technical teams and executive stakeholders. The internal job title for this position is Cyber Security Assessor, with two available roles: Principal Cyber Security Assessor (G20) and Senior Cyber Security Assessor (G17).
Duties and Responsibilities: The duties and responsibilities for the Red Team Operators include:
Planning, designing, and executing red team engagements that simulate adversarial tactics against enterprise systems.
Conducting reconnaissance and open-source intelligence gathering.
Performing vulnerability scanning and exploitation.
Engaging in lateral movement, persistence installation, and command & control management during offensive security operations.
Developing and utilizing custom tools, scripts, and malware to replicate sophisticated cyber threats.
Executing social engineering and phishing campaigns to assess defenses.
Creating actionable reports for technical teams and executive stakeholders.
Collaborating with other cybersecurity professionals to enhance the effectiveness of security measures.
Staying updated on the latest security trends and best practices. 1
Contributing to the overall mission of the NCSC and NATO.
Required Qualifications: Candidates must possess a Master’s degree from a nationally recognized university in a related discipline with at least 5 years of post-related experience, or a Bachelor’s degree with 8 years of relevant experience for the G20 role. For the G17 role, a Bachelor’s degree with 3 years of post-related experience is required. In exceptional cases, candidates may substitute a university degree with at least 10 years of extensive and progressive experience in relevant duties. Additionally, candidates should hold cybersecurity-oriented certifications such as GRTP, GPEN, GWAPT, OSCP, OSCE, OSEE, GXPN, or Red Team Operator certifications. Practical experience in cybersecurity or related fields is essential, along with extensive knowledge in web application penetration testing, IT infrastructure penetration testing, and network security architecture design.
Educational Background: The educational background required for this position includes a Master’s degree or a Bachelor’s degree from a nationally recognized university in a related discipline. The specific degree requirements vary depending on the role level, with the G20 role requiring a Master’s degree and the G17 role requiring a Bachelor’s degree. Candidates lacking a degree may still qualify based on extensive relevant experience.
Experience: Candidates should have a minimum of 5 years of practical experience in cybersecurity for the G20 role, and at least 3 years for the G17 role. This experience should encompass various aspects of cybersecurity, including penetration testing, adversary emulation, and red teaming. Proven experience in identifying vulnerabilities and discovering potential zero-day exploits is also essential.
Languages: Fluency in English, both written and spoken, is mandatory for this position. Additional language skills may be considered an asset but are not explicitly required.
Additional Notes: The position offers a 5-year contract with a competitive tax-free salary, household and children's allowances, and privileges for expatriate staff, including education allowances and additional home leave. Employees will receive excellent private health insurance, 30 days of annual leave plus official holidays, and participation in the NATO Pension Scheme. The NCIA is committed to fostering an inclusive work environment and is an equal opportunity employer.
Info
Job Posting Disclaimer
This job posting is provided for informational purposes only. The accuracy of the job description, qualifications, and other details mentioned is the sole responsibility of the employer or the organization listing the job. We do not guarantee the validity or legitimacy of this job posting. Candidates are advised to conduct their own due diligence and verify the details directly with the employer before applying.
We are not liable for any decisions or actions taken by applicants in response to this job listing. By applying, you agree that all application processes, interviews, and potential job offers are managed exclusively by the listed employer or organization.
Beware of fraudulent job offers. Do not provide sensitive personal information or make any payments to secure a job.