Cyber Security Defender (SIEM & Splunk)

NATO Communications and Information Agency (NCIA)

Henegouwen

Sur place

EUR 71 000 - 80 000

Plein temps

Il y a 36 heures
Soyez parmi les premiers à postuler
Générateur de candidature

Obtenez une réponse de cet employeur — un CV et une lettre de motivation adaptés exactement à ce qu’il recherche.

Passez les filtres ATS

Avantages offerts par ce poste

Expats allowances
Private health insurance
30 days leave
NATO Pension Scheme
Training & development

Résumé du poste

NCIA, based in Mons, Belgium, is seeking a skilled SIEM engineer to join the NATO Cyber Security Centre. You will lead Splunk-based data security initiatives, design and maintain distributed log collection, and provide expert guidance across security operations.

Required are a Bachelor’s degree (or substantial equivalent experience), strong Linux admin skills, and proficient scripting (Bash, Python, Ansible).

Qualifications

  • At least 1 year of extensive practical experience as SIEM administrator in large enterprise environments.
  • Experience in design and maintenance of distributed Splunk architectures.
  • 2+ years and expert level experience with SIEM and log collection using Splunk Enterprise.
  • Ability to analyze and interpret system, security and application logs to diagnose faults.
  • Hands-on Linux systems and tools administration.
  • Solid knowledge of computer and network security principles and operating system vulnerabilities.
  • Scripting skills in Bash, Python or Ansible to automate tasks.
  • Clear technical documentation and procedures writing skills.
  • Ability to work autonomously, follow processes, and communicate clearly.

Responsabilités

  • Act as SME for SIEM and log collection services.
  • Provide technical advice and stay current with new technologies for data security projects.
  • Responsible for management and further development of data security systems.
  • Follow ITIL standards; support Operations and Service Delivery across lifecycle stages.
  • Ensure data security systems are installed, configured, and operating correctly and integrated with other systems.

Connaissances

SIEM administration
Splunk expertise
Linux administration
Scripting: Bash/Python/Ansible
Incident analysis
Technical documentation
Autonomous working
English communication

Formation

Bachelor’s degree in related discipline; 2+ years post-related experience or 6+ years relevant experience without degree

Outils

Splunk Enterprise

Description du poste

Primary Location

Belgium-Mons

Schedule

Full-time

Application Deadline

28-Sep-2026, 12:59:00 AM

Salary (Pay Basis)

6,713.06

Grade

NATO Grade G15

Who we are:

For more than 70 years, NATO’s mission has been to preserve peace and security in the Alliance for nearly one billion citizens. The NATO Communications and Information Agency (NCIA) and its predecessors have worked tirelessly in providing the means that enable the connectedness and togetherness that keep our Alliance strong. We are the NCIA, a team of 3000 civilian and military staff in 29 locations throughout Europe, North America and Asia.

Our technology and cyber experts allow NATO to conduct critical operations, protect NATO’s airspace, make data-driven decisions, defend against cyber-attacks, secure NATO networks and maintain superiority in space. This is all possible because of our greatest force, our people. In order to keep this edge we aim to hire, train and retain the very best staff.

Our staff members represent both the diversity and unity of our Alliance. When you join the NCIA, you will be part of an organization where you can contribute authentically to the mission and purpose of NATO and help us keep our technological edge.

About the job:

Based in Mons, Belgium, you will join the Agency as we embark on a journey to transform our IT services to support NATO’s Digital Endeavour. You will join NATO Cyber Security Centre (NCSC), which is responsible for planning and executing all lifecycle management activities for cyber security. In executing this responsibility, NCSC provides specialist cyber security-related services covering the spectrum of scientific, technical, acquisition, operations, maintenance, and sustainment support, throughout the lifecycle of NATO Communications and Information Systems (CIS).

  • Act as one of the main engineers and Subject Matter Expert (SME) for SIEM and Log collection services;
  • Provide advice and technical assistance to other stakeholders, maintain technical expertise, awareness, and developments in related new technologies, and provide technical contributions to any projects related to the data security systems;
  • Responsible for management and further development of the data security systems;
  • Following ITIL standards, provide support to Operations and Service Delivery management covering all stages of the data security systems lifecycle (e.g. Service Design, Transition, Operations, Change Management and Continual Service Improvement);
  • Ensure that data security systems are installed, configured, and operating correctly and in line with dependencies with others systems or applications required.

For a full list of duties, please review the job description on the NCI Agency career site .

About you:

The valuable knowledge and experience that you bring to this role are:

  • A Bachelor’s degree at a nationally recognised/certified University in a related discipline and 2 years post-related experience. Or exceptionally, the lack of a university degree may be compensated by the demonstration of a candidate’s particular abilities or experience that is/are of interest to NCIA, that is, at least 6 years extensive and progressive expertise in duties related to the function of the post;
  • At least 1 year of extensive practical experience as SIEM administrator in large enterprise environment (deployment, installation, configuration and maintenance);
  • Hands-on experience in the design and maintenance of distributed Splunk architectures;
  • At least 2 years and expert level experience related to SIEM and Log collection management activities with Splunk Enterprise;
  • Demonstrable experience of analysing and interpreting system, security and application logs in order to diagnose faults and spot abnormal behaviours;
  • Practical hands-on experience in systems and tools administration, especially Linux environment;
  • Comprehensive knowledge of the principles of computer and communication security, networking, and the vulnerabilities of modern operating systems and applications;
  • Practical skills in writing Bash, Python or Ansible scripts to support repetitive tasks automation;
  • Solid Linux system and application administration and troubleshooting skills;
  • Solid understanding of regular expressions;
  • Ability to develop clear and concise technical documentation, including procedures;
  • Demonstrable ability to work autonomously and proactively, to understand the chain of command and to follow internal processes;
  • Good communication abilities, both written and verbal, with the ability to clearly and successfully articulate complex issues to a variety of audiences and teams;
  • Fluency in English, both written and spoken.
What we offer:
  • Genuinely meaningful work as part of the most successful alliance in history;
  • 5 year contract with competitive tax-free salary and household and children’s allowances;
  • Privileges for expatriate staff including expatriation and education allowances (where appropriate) and additional home leave;
  • Excellent private health insurance scheme;
  • Generous annual leave of 30 days plus official holidays;
  • NATO Pension Scheme;
  • Development programs such as professional training, wellbeing, and more.

To learn more about NCIA and our work, please visit our website .

The NCIA prides itself on being an equal opportunity employer. We are committed to fostering an inclusive environment of mutual respect and value uniqueness and differences in gender, gender identity, race, ethnic or cultural origin, age, religion, sexual orientation and physical or neurocognitive ability.

Additional details on the conditions of application can be found via the NCIA career site.

Obtenez votre examen gratuit et confidentiel de votre CV.
ou faites glisser et déposez votre fichier ici.
Similar jobs

Postes similaires à comparer

Cyber Security Defender (SIEM & Splunk)
Cyber Security Defender (SIEM & Splunk)

North Atlantic Treaty Organization • Henegouwen

Sur place
EUR 90 000 - 130 000
Private health insurance scheme
30 days annual leave
NATO Pension Scheme
+1
Cyber Security Defender - Network Security Tool Manager
Cyber Security Defender - Network Security Tool Manager

NATO Communications and Information Agency (NCIA) • Henegouwen

Sur place
EUR 68 000 - 82 000
Meaningful work
5-year contract
Expatriate allowances
+4
Cyber Security Defender - Network Security Tool Manager
Cyber Security Defender - Network Security Tool Manager

North Atlantic Treaty Organization • Henegouwen

Sur place
EUR 90 000 - 120 000
5 year contract
Tax-free salary
Household allowances
+5
Senior Technician (Cyber Security – Endpoint Security)
Senior Technician (Cyber Security – Endpoint Security)

NATO Communications and Information Agency (NCIA) • Henegouwen

Sur place
EUR 48 000 - 58 000
Private health insurance
Expatriation and education allowances
30 days annual leave + holidays
+2
Cyber Security Engineer
Cyber Security Engineer

North Atlantic Treaty Organization • Henegouwen

Sur place
EUR 90 000 - 130 000
5 year contract
Private health insurance
30 days annual leave
+3
Senior CIS Security Officer
Senior CIS Security Officer

North Atlantic Treaty Organization • Henegouwen

Sur place
EUR 90 000 - 120 000
Tax-free salary
Expatriation allowances
Private health insurance
+2
Cyber Security Defender (SIEM & Splunk)
Cyber Security Defender (SIEM & Splunk)

Global Roles • Henegouwen

Hybride
EUR 70 000 - 100 000
C005335 Splunk Engineer (NS) - MON 21 Sep
C005335 Splunk Engineer (NS) - MON 21 Sep

EMW • Henegouwen

Hybride
EUR 75 000 - 105 000
Red Team Technical Lead
Red Team Technical Lead

NATO Communications and Information Agency (NCIA) • Henegouwen

Sur place
EUR 64 000 - 107 000
Tax-free salary
Expatriation allowances
Private health insurance
+2
Cybersecurity Detection Engineer
Cybersecurity Detection Engineer

Spektrum • Henegouwen

Sur place
EUR 65 000 - 95 000