We are seeking an experienced Cyber Security Manager to support a critical operational environment in Ramstein.
The successful candidate will be responsible for developing, implementing and maintaining effective, resilient cyber security solutions aligned to operational requirements and security policies. You will work closely with technical and business stakeholders to understand requirements, assess risks and translate them into secure technical solutions across the full systems development lifecycle.
As Cyber Security Section Head, you will also lead a small team of 3–4 Cyber Security and COMSEC personnel, overseeing day-to-day operations and coordinating cyber security activities with the NATO Cyber Security Centre (NCSC).
This is a hands-on leadership role suited to a security professional with strong experience across Windows security, endpoint protection, network security, vulnerability management and cyber security governance.
Key Responsibilities
- Lead and coordinate the day-to-day activities of a Cyber Security and COMSEC team.
- Act as Cyber Security Section Head and coordinate cyber security activities with the NCSC.
- Develop and implement security controls in accordance with organisational policies and local risk assessments.
- Assess security risks and communicate risks, issues and mitigation strategies to stakeholders and business managers.
- Identify security risks associated with technical architectures and recommend appropriate countermeasures.
- Define secure system configurations and ensure compliance with approved architectures.
- Support the investigation and resolution of suspected cyber attacks and security breaches.
- Manage boundary protection, Data Loss Prevention (DLP) and enterprise anti-malware capabilities.
- Coordinate and facilitate security audits and inspections, including management of post-inspection actions.
- Monitor, test and evaluate computer security systems.
- Support the assessment of cyber security aspects of CIS accreditation.
- Plan and implement cyber security services in support of wider organisational requirements.
- Identify, assess and remediate security vulnerabilities.
- Conduct security risk assessments and interpret cyber security audit results.
- Deputise for senior staff when required.
- Provide technical guidance and support to users and stakeholders, communicating complex security concepts clearly and effectively.
Technical Environment
The role requires strong hands-on knowledge across a broad range of security technologies, including:
- Windows Server 2016, 2019 and 2022
- Windows 10 and Windows 11
- Trellix / McAfee Endpoint Security
- Trellix Application Control
- Endpoint security, AV, DLP and drive encryption
- Software-based firewalls and VPN technologies
- Intrusion Detection and forensic tools
- Nessus and vulnerability scanning
- Public Key Infrastructure (PKI)
- IPv4 networking
- Wireless LAN technologies
- VMware vSphere, ESX, NSX and vSAN
- Server, network and storage virtualisation
Security & Governance
You will contribute to security governance and assurance activities across the environment, including:
- Security architecture and network security engineering
- Security governance and risk management
- Security incident handling and investigation
- Vulnerability identification and remediation
- CIS accreditation
- Security audits and inspections
- NATO security policies and supporting directives
- ITIL-based service management
- Disaster Recovery and Business Continuity principles
- Active NATO COSMIC TOP SECRET (CTS-A) security clearance, valid and available at the time of submission and covering the contract period. Clearance currently in process will not be accepted.
- Minimum 5 years' experience in Windows Server security hardening, including security baselines, policy enforcement, vulnerability mitigation and compliance.
- At least 3 years' experience with Trellix ePolicy Orchestrator, Trellix Endpoint Security, Trellix DLP and Application Control, or equivalent security technologies.
- At least 2 years' experience in system security, security architecture, network security engineering, security governance and risk management.
- Strong knowledge of networking and security technologies including IPv4, firewalls, VPNs, intrusion detection and forensic tools.
- Practical experience in endpoint and mobile device security.
- Experience handling security incidents, conducting risk assessments and interpreting audit findings.
- Experience identifying and mitigating security vulnerabilities.
- Knowledge of NATO Enterprise CIS and NATO security responsibilities and organisation.
- Knowledge of the NATO Command Structure, including ACO and ACT.
- Knowledge of NATO Security Policy and supporting directives.
- Bachelor's degree from a nationally recognised university in a relevant discipline with relevant post-graduate experience, or equivalent extensive and progressive professional experience.
- CISM or CISSP certification.
- NATO STANAG 6001 English Level 3 (3333) or equivalent CEFR B2–C1 English proficiency.
- Ability to work independently and manage multiple priorities in a demanding operational environment.
- Strong analytical, written and verbal communication skills.
Desirable Certifications & Experience
The following qualifications and experience would be advantageous:
- CGRC/CAP, CASP+, Cloud+, PenTest+, Security+, GSEC or equivalent.
- ITIL v3 or v4 Foundation.
- NATO COMPUSEC Practitioner Level 1 (0731).
- NATO COMPUSEC Practitioner Level 2 (0732).
- NATO CIS Security Officer (0280).
- Additional professional security certifications such as CISSP, CISM, CISSO, CySA+, CISA, CEH, GIAC or equivalent.
- Previous experience working in an international environment comprising both military and civilian personnel.
- Experience with Disaster Recovery and Business Continuity concepts including RPO, RTO, MTTR and MTBF.
- Familiarity with active-active and active-passive resilience models.
- Experience with ITIL service management processes including incident, request fulfilment, problem, change and capacity management.