Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.
The Senior Common Criteria Certification Specialist will lead cybersecurity product and system certification activities in line with Common Criteria standards. You will evaluate security documentation, conduct risk assessments, oversee testing, and provide expert recommendations on certification decisions (e.g., EAL levels).
Collaborating with developers, evaluators and national authorities, you will help shape certification policies, stay ahead of evolving threats, and ensure consistent,
The Senior Common Criteria Certification Specialist is responsible for leading and executing cybersecurity product and system certification activities in alignment with internationally recognized standards, particularly Common Criteria. The role involves evaluating security documentation, conducting technical risk assessments, overseeing testing processes, and providing expert recommendations on certification decisions (e.g., EAL levels).
This position plays a critical role in ensuring the integrity, consistency, and credibility of the certification process, while collaborating with developers, evaluators, and regulatory stakeholders. The specialist also contributes to the development of certification policies and stays current with emerging cybersecurity threats, technologies, and standards.
Other Required Qualifications:
Analytical and problem-solving skills Proven experience in IT and Information Security Assessment Common Criteria for IT Security Evaluation Training Experience in Risk Assessment and management. Should have hands on experience in information security Understanding of ISO27001 certification audit requirements Excellent communication, documentation, and report-writing skills. In-depth knowledge of security testing methodologies and tools. Have analytical & assessment experience of formal schemes and can assess a situation in a fair and objective manner in order to arrive at a firm conclusion. Have training, workshops planning and delivery experience across Government & private sector.
Experience in Risk Assessment and management including audit methodologies and risk assessment methodologies. Understanding of NIA controls and implementation requirements Proficiency in security frameworks and standards like NIST, ISO27001, NIA. Strong awareness of Information Security / Cyber Security trends.
Ability to multitask and work effectively with multiple project teams, sponsors, and customers. Ability to pay close attention to detail, meet deadlines and work under pressure. Interpersonal skills Work autonomously with a high degree of enthusiasm
Excellent technical report writing skills. Have capabilities to understand and interpret the Certification Criteria (ISO/ IEC 17021, ISO/ IEC 17024, ISO/ IEC 27006 and ISO/IEC 17065). Knowledge of auditing and information assurance standards like ISA, ITAF, ISO17021, ISO19011. Proficiency in security frameworks and standards like, ISO27001, NIA, CSF Q2022. Familiarity with third-party audit, Certification and Information Security / Cyber Security audits. Proven, hands on, experience in Information Security Audit or Information Security Management.