Penetration Tester

Spektrum

Amsterdam

On-site

EUR 60,000 - 90,000

Full time

3 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Spektrum seeks a Penetration Tester to support NATO security activities by performing penetration testing, security assessments, and design reviews across web applications, IT infrastructure, networks, and applications.

The role includes supporting NATO exercises with Red/Blue Team activities and providing security guidance to technical teams and stakeholders.

Qualifications

  • More than 3 years of relevant professional experience in penetration testing and the required cybersecurity areas.
  • Hands-on experience with web application and infrastructure penetration testing.
  • Experience assessing security vulnerabilities across networks, systems, applications, software, and protocols.
  • Experience using established penetration testing methodologies and security testing tools.
  • Experience researching and evaluating cybersecurity technologies and products.

Responsibilities

  • Lead or participate in Red Team and Blue Team activities during NATO military exercises.
  • Perform web application, infrastructure, and application-level penetration testing.
  • Conduct security design reviews to ensure compliance with NATO security policies and directives.
  • Provide cybersecurity consultancy and technical security advice to projects, plans, and other stakeholders.
  • Identify and assess security vulnerabilities across operating systems, software, protocols, applications, and networks.
  • Evaluate cybersecurity risks and recommend appropriate mitigation and remediation actions.
  • Research and assess security products, tools, and technologies.
  • Work closely with internal and external stakeholders involved in security accreditation.
  • Coordinate with the NCIA Configuration Control Board, Security Accreditation Boards, NATO Security Accreditation Authorities, and relevant NCI Agency teams.
  • Prepare clear and structured penetration testing and security assessment reports. Present security findings and testing outcomes to both technical and executive audiences, including senior leadership.
  • Coordinate closely with the Head of the Penetration Testing Cell and maintain effective stakeholder collaboration.

Skills

Web pentesting
Infra pentesting
Network security
Vulnerability assessment
Pentest tools
Scripting: Python
Scripting: Bash
UNIX/Linux
Windows admin
App security
Report writing
Stakeholder communication

Tools

Penetration testing tools

Job description

Spektrum supports apex purchasers (NATO, UN, EU, and National Government and Defence) and their Tier 1 supplier ecosystem with a wide range of specialist services. We provide our clients with professional services, specialised aerospace and defence sales, delivery, and operational subject matter expertise. We are looking for personnel to join our team and support key client projects.

Who we are supporting

The NATO Communication and Information Agency (NCIA) is responsible for providing secure and effective communications and information technology (IT) services to NATO's member countries and its partners. The agency was established in 2012 and is headquartered in Brussels, Belgium.

The NCIA provides a wide range of services, including:

  • Cyber Security: The NCIA provides advanced cybersecurity solutions to protect NATO's communication networks and information systems against cyber threats.
  • Command and Control Systems: The NCIA develops and maintains the systems used by NATO's military commanders to plan and execute operations.
  • Satellite Communications: The NCIA provides satellite communications services to enable secure and reliable communications between NATO forces.
  • Electronic Warfare: The NCIA provides electronic warfare services to support NATO's mission to detect, deny, and defeat threats to its communication networks.
  • Information Management: The NCIA manages NATO's information technology infrastructure, including its databases, applications, and servers.

Overall, the NCIA plays a critical role in ensuring the security and effectiveness of NATO's communication and information technology capabilities.

The program
Assistance and Advisory Service (AAS)

The NATO Communications and Information Agency (NCI Agency) is NATO’s principal C3 capability deliverer and CIS service provider. It provides, maintains and defends the NATO enterprise-wide information technology infrastructure to enable Allies to consult together under Article IV, and, when required, stand together in the face of attack under Article V.

To provide these critical services, in the modern evolving dynamic environment the NCI Agency needs to build and maintain high performance-engaged workforce. The NCI Agency workforce strategically consists of three major categorise's: NATO International Civilians (NIC)'s, Military (Mil), and Interim Workforce Consultants (IWC)'s. The IWCs are a critical part of the overall NCI Agency workforce and make up approximately 15 percent of the total workforce.

Penetration Tester

Role ID – C004912

The Penetration Tester will support NATO security activities by performing penetration testing, security assessments, and security design reviews across web applications, IT infrastructure, networks, and applications. The role also supports NATO military exercises through Red and Blue Team activities and provides security advice to technical teams, projects, and senior stakeholders.

Role Duties and Responsibilities
  • Lead or participate in Red Team and Blue Team activities during NATO military exercises.
  • Perform web application, infrastructure, and application-level penetration testing.
  • Conduct security design reviews to ensure compliance with NATO security policies and directives.
  • Provide cybersecurity consultancy and technical security advice to projects, plans, and other stakeholders.
  • Identify and assess security vulnerabilities across operating systems, software, protocols, applications, and networks.
  • Evaluate cybersecurity risks and recommend appropriate mitigation and remediation actions.
  • Research and assess security products, tools, and technologies.
  • Work closely with internal and external stakeholders involved in security accreditation.
  • Coordinate with the NCIA Configuration Control Board, Security Accreditation Boards, NATO Security Accreditation Authorities, and relevant NCI Agency teams.
  • Prepare clear and structured penetration testing and security assessment reports. Present security findings and testing outcomes to both technical and executive audiences, including senior leadership.
  • Coordinate closely with the Head of the Penetration Testing Cell and maintain effective stakeholder collaboration.
Essential Skills
  • Strong knowledge of web application penetration testing .
  • Strong knowledge of IT infrastructure penetration testing .
  • Knowledge of network security architecture and design.
  • Ability to identify and assess vulnerabilities in operating systems, software, protocols, and networks.
  • Experience using penetration testing tools, techniques, and recognized testing methodologies.
  • Knowledge of UNIX and Windows system and network administration.
  • Scripting skills in at least one of the following:
    • Python
    • Perl
    • Ruby
    • Bash or other shell scripting
  • Strong technical knowledge of:
    • System and network security
    • Authentication and security protocols
    • Cryptography
    • Application security
    • Malware infection techniques
    • Malware protection technologies
  • Ability to evaluate cybersecurity risks and develop mitigation plans.
  • Strong technical reporting skills, including writing executive summaries, technical findings, and remediation plans for different audiences.
  • Strong stakeholder communication and presentation skills.
Experience
  • More than 3 years of relevant professional experience in penetration testing and the required cybersecurity areas.
  • Hands-on experience with web application and infrastructure penetration testing.
  • Experience assessing security vulnerabilities across networks, systems, applications, software, and protocols.
  • Experience using established penetration testing methodologies and security testing tools.
  • Experience researching and evaluating cybersecurity technologies and products. Experience communicating technical security findings to both technical and senior/executive stakeholders.
Working Location

The Hague, Netherlands

Working Policy
  • Full-time on-site position in The Hague.
  • Normal office working conditions.
  • Approximately 10 days of travel are expected for this assignment.
Contract Details

Required start date: 29 September 2026 .

Contract end date: 31 December 2026 .

Total scope: 697 hours .

NATO Secret Security Clearance is required.

Travel

Some travel to other NATO sites may be required

Security Clearance

Valid NATO Secret security clearance.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Penetration Tester
Penetration Tester

Spektrum • Maasdijk

On-site
EUR 65,000 - 90,000
Test Engineer
Test Engineer

Spektrum • Den Haag

On-site
EUR 60,000 - 90,000
REACH Kiosk Support
REACH Kiosk Support

Spektrum • Brunssum

Hybrid
EUR 36,000 - 48,000
Penetration Tester: Red/Blue Team for NATO Security
Penetration Tester: Red/Blue Team for NATO Security

Spektrum • Maasdijk

On-site
EUR 65,000 - 90,000
Resource and Portfolio Management Assistant
Resource and Portfolio Management Assistant

Spektrum • Den Haag

On-site
EUR 40,000 - 70,000
Principal Technician TEMPEST
Principal Technician TEMPEST

Spektrum • Brunssum

On-site
EUR 60,000 - 90,000
C004928 Senior Engineer (Cyber Security) (CTS) - TUE 23 Jun
C004928 Senior Engineer (Cyber Security) (CTS) - TUE 23 Jun

EMW • Den Haag

On-site
EUR 60,000 - 85,000
Principal Technician (Digital Communications Services)
Principal Technician (Digital Communications Services)

NATO • Netherlands

On-site
EUR 70,000 - 90,000
Tax-free salary
Private health insurance
30 days annual leave
+2
Principal Technician (ICT System)
Principal Technician (ICT System)

NATO • Netherlands

On-site
EUR 70,000 - 90,000
Tax-free salary
Expatriation allowances
Private health insurance
+3
Principal Technician (ICT Systems)
Principal Technician (ICT Systems)

NATO Communications and Information Agency (NCIA) • Brunssum

On-site
EUR 61,000 - 73,000
Genuine meaningful work
5 year contract with allowances
Expatriate staff allowances
+4