Cyber Security Defender (SIEM & Splunk)

North Atlantic Treaty Organization

Henegouwen

Sur place

EUR 90 000 - 130 000

Plein temps

Il y a 2 jours
Soyez parmi les premiers à postuler
Générateur de candidature

Une candidature complète en une minute — un CV et une lettre de motivation personnalisés, prêts à être envoyés.

Passez les filtres ATS

Avantages offerts par ce poste

Private health insurance scheme
30 days annual leave
NATO Pension Scheme
Professional training and wellbeing

Résumé du poste

NCIA invites applications for a Cyber Security Defender (SIEM & Splunk) based in Mons, Belgium, to join the NATO Cyber Security Centre (NCSC) and contribute to lifecycle management of data security systems and SIEM operations across NATO CIS.

The role requires strong SIEM expertise, Splunk architecture, Linux, scripting, and English fluency. You will work autonomously within ITIL-aligned processes and collaborate with cross-functional teams to protect NATO networks.

Qualifications

  • Bachelor’s degree in a related discipline with 2 years’ experience, or 6+ years of applicable expertise.
  • At least 1 year of SIEM administrator experience in a large enterprise.
  • Hands-on experience in design and maintenance of distributed Splunk architectures.
  • 2+ years of SIEM and Log collection management with Splunk Enterprise.
  • Experience analyzing and interpreting system, security and application logs to diagnose faults.
  • Hands-on Linux systems administration.
  • Knowledge of computer and network security principles.
  • Scripting in Bash, Python, or Ansible for automation.
  • Strong documentation and ability to work autonomously.
  • Excellent written and spoken English.

Responsabilités

  • Act as SME for SIEM and log collection services.
  • Provide advice and technical assistance; stay updated on security technologies.
  • Responsible for management and development of data security systems.
  • Follow ITIL standards; support Service Design, Transition, Operations, Change Management.
  • Ensure data security systems are installed, configured and integrated with dependencies.

Connaissances

SIEM administration
Splunk
Linux
Python scripting
Log analysis
Networking basics
Documentation skills
English fluency

Formation

Bachelor’s degree in related discipline

Outils

Splunk Enterprise
Ansible
Bash scripting
Python scripting

Description du poste

NATO - North Atlantic Treaty Organisation

Job Description - Cyber Security Defender (SIEM & Splunk) (261437)

Cyber Security Defender (SIEM & Splunk) - 261437

Primary Location
NATO Body

NATO Communications and Information Agency (NCIA)

Schedule

Full-time

Application Deadline

27-Sep-2026, 9:59:00 PM

Salary (Pay Basis)

Grade NATO Grade G15

Description

Description :

Who we are:

For more than 70 years, NATO’s mission has been to preserve peace and security in the Alliance for nearly one billion citizens. The NATO Communications and Information Agency (NCIA) and its predecessors have worked tirelessly in providing the means that enable the connectedness and togetherness that keep our Alliance strong. We are the NCIA, a team of 3000 civilian and military staff in 29 locations throughout Europe, North America and Asia.

Our technology and cyber experts allow NATO to conduct critical operations, protect NATO’s airspace, make data-driven decisions, defend against cyber-attacks, secure NATO networks and maintain superiority in space. This is all possible because of our greatest force, our people. In order to keep this edge we aim to hire, train and retain the very best staff.

Our staff members represent both the diversity and unity of our Alliance. When you join the NCIA, you will be part of an organization where you can contribute authentically to the mission and purpose of NATO and help us keep our technological edge.

About the job:

Based in Mons, Belgium, you will join the Agency as we embark on a journey to transform our IT services to support NATO’s Digital Endeavour. You will join NATO Cyber Security Centre (NCSC), which is responsible for planning and executing all lifecycle management activities for cyber security. In executing this responsibility, NCSC provides specialist cyber security-related services covering the spectrum of scientific, technical, acquisition, operations, maintenance, and sustainment support, throughout the lifecycle of NATO Communications and Information Systems (CIS).

We are looking for a driven and enthusiastic Cyber Security Defender who will take on the following roles and responsibilities:

  • Act as one of the main engineers and Subject Matter Expert (SME) for SIEM and Log collection services;

  • Provide advice and technical assistance to other stakeholders, maintain technical expertise, awareness, and developments in related new technologies, and provide technical contributions to any projects related to the data security systems;

  • Responsible for management and further development of the data security systems;

  • Following ITIL standards, provide support to Operations and Service Delivery management covering all stages of the data security systems lifecycle (e.g. Service Design, Transition, Operations, Change Management and Continual Service Improvement);

  • Ensure that data security systems are installed, configured, and operating correctly and in line with dependencies with others systems or applications required.

For a full list of duties, please review the job description on the NCI Agency career site .

About you:

The valuable knowledge and experience that you bring to this role are:

  • A Bachelor’s degree at a nationally recognised/certified University in a related discipline and 2 years post-related experience. Or exceptionally, the lack of a university degree may be compensated by the demonstration of a candidate’s particular abilities or experience that is/are of interest to NCIA, that is, at least 6 years extensive and progressive expertise in duties related to the function of the post;

  • At least 1 year of extensive practical experience as SIEM administrator in large enterprise environment (deployment, installation, configuration and maintenance);

  • Hands-on experience in the design and maintenance of distributed Splunk architectures;

  • At least 2 years and expert level experience related to SIEM and Log collection management activities with Splunk Enterprise;

  • Demonstrable experience of analysing and interpreting system, security and application logs in order to diagnose faults and spot abnormal behaviours;

  • Practical hands‑on experience in systems and tools administration, especially Linux environment;

  • Comprehensive knowledge of the principles of computer and communication security, networking, and the vulnerabilities of modern operating systems and applications;

  • Practical skills in writing Bash, Python or Ansible scripts to support repetitive tasks automation;

  • Solid Linux system and application administration and troubleshooting skills;

  • Solid understanding of regular expressions;

  • Ability to develop clear and concise technical documentation, including procedures;

  • Demonstrable ability to work autonomously and proactively, to understand the chain of command and to follow internal processes;

  • Good communication abilities, both written and verbal, with the ability to clearly and successfully articulate complex issues to a variety of audiences and teams;

  • Fluency in English, both written and spoken.

What we offer:

  • Genuinely meaningful work as part of the most successful alliance in history;

  • 5 year contract with competitive tax‑free salary and household and children’s allowances;

  • Privileges for expatriate staff including expatriation and education allowances (where appropriate) and additional home leave;

  • Excellent private health insurance scheme;

  • Generous annual leave of 30 days plus official holidays;

  • NATO Pension Scheme;

  • Development programs such as professional training, wellbeing, and more.

To learn more about NCIA and our work, please visit our website .

The NCIA prides itself on being an equal opportunity employer. We are committed to fostering an inclusive environment of mutual respect and value uniqueness and differences in gender, gender identity, race, ethnic or cultural origin, age, religion, sexual orientation and physical or neurocognitive ability.

Additional details on the conditions of application can be found via the NCIA career site.

Obtenez votre examen gratuit et confidentiel de votre CV.
ou faites glisser et déposez votre fichier ici.
Similar jobs

Postes similaires à comparer

Cyber Security Defender (SIEM & Splunk)
Cyber Security Defender (SIEM & Splunk)

NATO Communications and Information Agency (NCIA) • Henegouwen

Sur place
EUR 71 000 - 80 000
Expats allowances
Private health insurance
30 days leave
+2
Cyber Security Defender - Network Security Tool Manager
Cyber Security Defender - Network Security Tool Manager

North Atlantic Treaty Organization • Henegouwen

Sur place
EUR 90 000 - 120 000
5 year contract
Tax-free salary
Household allowances
+5
Cyber Security Defender - Network Security Tool Manager
Cyber Security Defender - Network Security Tool Manager

NATO Communications and Information Agency (NCIA) • Henegouwen

Sur place
EUR 68 000 - 82 000
Meaningful work
5-year contract
Expatriate allowances
+4
Cyber Security Engineer
Cyber Security Engineer

North Atlantic Treaty Organization • Henegouwen

Sur place
EUR 90 000 - 130 000
5 year contract
Private health insurance
30 days annual leave
+3
Senior CIS Security Officer
Senior CIS Security Officer

North Atlantic Treaty Organization • Henegouwen

Sur place
EUR 90 000 - 120 000
Tax-free salary
Expatriation allowances
Private health insurance
+2
Senior Technician (Cyber Security – Endpoint Security)
Senior Technician (Cyber Security – Endpoint Security)

NATO Communications and Information Agency (NCIA) • Henegouwen

Sur place
EUR 48 000 - 58 000
Private health insurance
Expatriation and education allowances
30 days annual leave + holidays
+2
Cyber Security Defender (SIEM & Splunk)
Cyber Security Defender (SIEM & Splunk)

Global Roles • Henegouwen

Hybride
EUR 70 000 - 100 000
C005335 Splunk Engineer (NS) - MON 21 Sep
C005335 Splunk Engineer (NS) - MON 21 Sep

EMW • Henegouwen

Hybride
EUR 75 000 - 105 000
Cybersecurity Detection Engineer
Cybersecurity Detection Engineer

Spektrum • Henegouwen

Sur place
EUR 65 000 - 95 000
Deputy Chief Information Officer
Deputy Chief Information Officer

North Atlantic Treaty Organization • Brussel Hoofdstad

Sur place
EUR 140 000 - 185 000
Health insurance
Housing allowance
Education allowances
+2