RFQ C004023 - Cyber Incident Responder
Listed on 2026-02-20
-
IT/Tech
Cybersecurity, IT Consultant
McBride, based in McLean, VA, USA, and with offices in Brussels, BEL and Bucharest; ROU through its wholly owned subsidiary McBride International, is a Prime Contractor on the NCIA Advisory and Assistance Services Plus (AAS+) Framework.
We are a management and IT consulting firm with significant professional services experience that includes IT transformation, project management, digital transformation, strategic planning, business process improvement, change management, human capital management, systems engineering, and operations. Due to our excellent relationship with NATO and the first-class, security cleared candidates that we source and supply from all 32 NATO nations, we are extremely privileged to ask you to review this role to assess your suitability of skills.
You will be working as a contractor for our client the NATO Communications and Information Agency (NCIA)
NATO Communications and Information Agency (NCIA)
NCIA was established on 1 July 2012 from a merger of several NATO entities. It has a 65-year legacy of supporting NATO operations, missions, and exercises and is on the front lines against cyber threats, protecting NATO's networks 24/7. NCIA provides expertise and services that are critical to NATO's ability to fulfill its core tasks of consultation, collective defence, and crisis management.
- Provision of 24/7 Cyber Security Incident Response (TRIAGE, Contain, Eradicate, Recover) activities, during normal working hours and on-call duties, including weekends and holidays;
- Deliver of technical co-ordination, support and assistance in respect of Cyber Security Incident Response to NATO CIS
- Operating Authorities or other similar bodies as directed, including but not limited to, NATO Nations, Partner Nations, non-Governmental Organisations and Industry partners;
- Lead, be a member of, or support a Cyber Security Response Team designated to provide Cyber Security Incident Reponse happening on one or mutiple physical locations, including NATO Alliance Operations and Missions;
- Build, manage the lifecycle of, and maintain the taxonomy related to the Branch's information;
- Manage the content of the different information portals with the agreed taxonomy;
- Design, create and distribute a variety of reports, briefings and dashboards, to different type of audience (Business owners, Operational community, IT Service Management, Cyber Security community);
- Maintain a network of cyber security personnel across and beyond the NATO Enterprise to facilitate communication and coordination of urgent actions when the need arises;
- Research to identify, document and implement improvements to the Incident Response (TRIAGE, Contain, Eradicate, Recover) activities in order to enhance and optimise current best practice to meet new and developing threats;
- Production of Standard Operating Procedures covering all aspects of Incident Response (TRIAGE, Contain, Eradicate, Recover) activities; and
- Performs other duties as may be required.
Essential education, experience, and training:
- A university degree at a nationally recognised/certified University in a technical subject with substantial Information Technology (IT) content and 4 years of specific experience. Exceptionally, the lack of a university degree may be compensated by the demonstration of a candidate's particular abilities or experience that is/are of interest to NCI Agency; that is, at least 10 years extensive and progressive expertise in the duties related to the function of the post;
- Excellent communications skills and reporting experience with capacity to communicate to different types of audience (senior executive, middle management, technical and non-technical);
- Comprehensive understanding of the principles of Computer and Communication Security, networking, and the vulnerabilities of modern operating systems and applications acquired through a blend of academic or professional training coupled with practical professional experience;
- Recent practical, hands-on experience of Intrusion Detection and Incident Response (TRIAGE, Contain, Eradicate, Recover) in an enterprise-level Computer Emergency Response Team, ideally making use of the MITRE ATT&CK framework;
- At least 3 years experience in Information and Knowledge Management, ideally in the field of Cyber Security; and
- Experience in interfacing with IT Service Management.
- Hold a University degree in Cyber Security or IT Security-related discipline or Information Management;
- Hold relevant certifications such as Certified Information Systems Security Professional (CISSP), GCIH or GIAC/GCIM Security;
- Hold a professional certification on IT Service Management;
- In-depth knowledge of potential security event sources and their interpretation and analysis in support of the incident detection and handling processes; and
- Practical hands-on experience in System and Network.
Personnel Security Clearance (PSC) NATO Secret
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).