NATOIS-ICT Security Architect; NS - WED
Listed on 2026-07-14
-
IT/Tech
Cybersecurity, Information Security, IT Consultant, Security Management & Operations
Location: Belgique
Deadline Date
Wednesday 22 July 2026
RequirementICT Security Architect
LocationBrussels, BE. The Service will be 100% at NATO Headquarters in Brussels. Due to the nature of the service, there will be flexibility for part‑time teleworking from Belgium.
Full Time On‑SiteFlexibility for part‑time teleworking
Scope of the Request (hours)On the basis of 38 hours per week, a total of 2500 hours is requested until 31/08/2028. There is a possibility to work 28‑32 hours per week.
Period of Performance01 Sep 2026 - 31 December 2026 (~500 hours)
Extension options:
- Option 1: 01 January - 31 December 2027 (~1200 hours)
- Option 2: 01 January - 31 August 2028 (~800 hours)
NATO SECRET
NoteFor all Level-of‑Effort and Completion‑Type requests processed outside of the IWC Value Stream, and for which the contractor will not be reimbursed directly by NCIA for travel expenses, additional travel funding shall be allocated on a Not‑to‑exceed basis when the yearly Option is exercised.
Profile Description SummaryThe Information and Communication Technology Management (ICTM) Directorate has a portfolio of ICT‑related projects with a diverse nature, some rather infrastructure related and others related to software acquisition and development. ICTM has a requirement for an expert in ICT security architecture for these projects.
Their efforts will focus on supporting the work of the Security Authority being the JISD/NOS, in particular with security architecture advice and guidance to ICT‑related projects and with security auditing activities.
DivisionInternational Staff (IS) - ICTM
MissionICTM provides support and services to the North Atlantic Council (NAC), its Committees, IS and IMS staff, and, when required, to Member and Partner Nation Delegations based in the HQ. The Directorate comprises of two pillars:
Information Communication Technology (ICT) and Digital Information Management Services (DIMS).
ICTM is a recognised and trusted Directorate for the implementation of ICT‑related projects for the IS. PRINCE2 has been adopted as methodology. In order to guarantee the (cyber)‑security of systems that are being implemented, ICTM follows a security approval process, agreed by the Security Authority. As part of this process, security‑related documentation needs to be submitted to a variety of stakeholders for review and approval.
BackgroundThe incumbent will be embedded in the Security Architect Authority, being the Joint Intelligence and Security Division/NATO Office of Security (JISD/NOS), in order to enable the Security Approval/Accreditation Process of ICTM‑led projects. In the past years ICTM and JISD/NOS have developed templates and examples of the documentation set that needs to be submitted as part of a Security Approval/Accreditation Process, as well as specific procedures applicable within the NHQ CIS Governance.
These templates and procedures will be made available to the expert.
- Provide security architecture‑related advice to NHQ ICT‑related projects
- Contribute to the oversight of the Security Approval/Accreditation process of NHQ ICT‑related projects and to CIS Security Risk Management activities
- Support the security auditing activities of JISD/NOS
- Provide security‑related advice and guidance to project managers and other project stakeholders regarding security design matters throughout the entire project lifecycle, including security approval‑related activities;
- Perform Security Risk Assessments and make recommendations for risk mitigation and acceptance
- Review security‑related documents or Approval/Accreditation Documentation Sets (ADS) from
- ICT‑projects including but not limited to Security Test and Verifications, Security Audit Reports, etc.;
- Draft security recommendations and Security Approval/Accreditation letters
- Contribute as necessary to the Security Auditing activities
- Ensure continuous functionality of the SIEM / UEBA systems and that all relevant security logs are properly ingested
- Develop custom SIEM / UEBA queries, reports and dashboards in order to support and enhance Security…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).