WLG

Information Security Engineer (Endpoint Security, Firewalls, Risk Assessment) for NATO with security clearance

WLG Ramstein-Miesenbach, Rhineland-Palatinate, Germany

Financial Services · 2-10 employees

3 h ago
security Senior (5-10 yrs) Full-time Germany
Log in to apply, save this posting, or score it against your profile with AI.

About the role

You will lead a team of cyber security and COMSEC staff to manage site-wide security operations, including boundary protection and data loss prevention. Additionally, you will conduct risk assessments, define secure system configurations, and facilitate security audits to ensure compliance with NATO standards.

What they look for

Cyber security COMSEC Windows Server security Trellix ePolicy Orchestrator Risk assessment Network security Security architecture Vulnerability mitigation Firewalls Data loss prevention Security auditing Incident handling Security governance VMware vSphere Nessus Public Key Infrastructure

Requirements

Candidates must have at least five years of experience in Windows Server security hardening and three years with Trellix security suites. A bachelor's degree in a related field is required, along with a valid security clearance and citizenship of a NATO member country.

Full description

A NATO communications and information systems unit at Ramstein needs someone to owncyber security for the site. Not a monitoring seat: you would be the section head, with three orfour cyber security and COMSEC people reporting to you, responsible for every part of the securitypicture from the boundary in.

What you would be doing

  • Leading a team of three to four cyber security and COMSEC staff through day to dayoperations.
  • Owning the administration of all cyber security activity for the site, coordinated with thecentral NATO cyber security organisation - boundary protection management, data loss prevention andenterprise antimalware among them.
  • Applying and maintaining the specific security controls that policy and local risk assessmentscall for.
  • Running risk assessments for smaller information systems, identifying the risks that come witha proposed technical architecture, and suggesting the countermeasures that reduce them.
  • Defining secure system configurations that match the intended architecture.
  • Supporting the investigation of suspected attacks and security breaches.
  • Scheduling, coordinating and facilitating security audits and inspections, then managing thepost inspection actions.
  • Supervising the monitoring, testing and evaluation of computer security systems, and thesecurity side of CIS accreditation.
  • Planning and where necessary implementing cyber security services for the other parts of theorganisation.
  • Explaining security risk to business managers in language they can act on.

What they are looking for

  • Five years or more of Windows Server security hardening - security baselines,policy enforcement, vulnerability mitigation and system compliance.
  • Three years or more with Trellix ePolicy Orchestrator and Trellix Endpoint Security,including Data Loss Prevention and Application Control, or an equivalent security suite.
  • Two years of system security, security architecture, network security engineering, securitygovernance and risk management.
  • Detailed working knowledge of security and networking technology: IPv4, software firewalls,VPNs, intrusion detection and forensic tools.
  • Practical experience of wireless LAN technology and endpoint security across laptops, tabletsand phones.
  • Security incident handling, reading the results of a security audit, and conducting riskassessments.
  • Supporting large NATO enterprise CIS estates, with a working understanding of the NATO commandstructure and of NATO security policy and its supporting directives.
  • CISM or CISSP certification. Also valued: CGRC/CAP or CASP+ (or Cloud+,PenTest+, Security+, GSEC or equivalent), ITIL v3 or v4 Foundation, and the NATO COMPUSECPractitioner and CIS Security Officer courses.
  • Palo Alto enterprise firewalls, Public Key Infrastructure, and centralised endpoint security -antivirus, DLP, application control, drive encryption - plus vulnerability scanning withNessus.
  • Windows Server 2022, 2019 and 2016, and Windows 10 and 11.
  • Server, network and storage virtualisation: VMware vSphere, ESX, NSX and vSAN. A grounding incloud technology.
  • Familiarity with ITIL or another service management framework - incident, request fulfilment,problem, change and capacity management - and the basics of disaster recovery and businesscontinuity (RPO, RTO, MTTR, MTBF, active-active and active-passive).
  • A bachelor's degree in a related discipline with two years of relevant experience. Exceptionally,six years or more of progressive experience in the same work can stand in place of the degree.
  • English to NATO STANAG 6001 level 3 (3333), or B2 to C1.
  • Previous work in an international environment with both military and civilian elements.

Practical detail

  • Fully on site in Ramstein, Germany.
  • 38 hours a week, Monday to Friday, with an unpaid lunch break per local practice.
  • 1 October to 30 December 2026, 420 hours in total.
  • You must hold a valid clearance and be a citizen of a NATO member country.

If you have run a security section rather than sat in one, and you can hold your nerve in aninspection week, this is the shape of role that suits you.

Similar roles