Cyber Security Accreditation Engineer — Documentation, Testing and Remediation for NATO with security clearance
WLG The Hague, South Holland, Netherlands
Financial Services · 2-10 employees
About the role
The role involves assessing security risks, assembling evidence, and managing the accreditation process for communication and information systems. You will also coordinate security testing and remediation efforts while maintaining relationships with accreditation authorities.
What they look for
Requirements
Candidates must have several years of experience in cyber security, specifically in architecture, risk management, or system delivery. Direct experience with accrediting major system acquisition projects and fluent professional English are required.
Full description
A multinational defence organisation accredits every system it puts into service,and this role carries that work: assessing the risk, assembling the evidence, witnessing thetesting and dealing with the security accreditation authorities until a system is cleared tooperate.
What you would be doing
- Providing accreditation input into project proposals, statements of work and the wider projectdocumentation, early enough to matter.
- Conducting security risk assessments for communication and information systems.
- Identifying, planning and managing the documents accreditation needs — system descriptions andsecurity architecture, accreditation plans, risk assessment reports, security requirementstatements, operating procedures and the test and verification plan.
- Witnessing security testing against that plan, and coordinating the remediation that followswith the people who have to do it.
- Building working relationships with accreditation authorities and with the internal unitsinvolved, so approval is a process rather than a negotiation.
- Feeding accreditation status into project and portfolio reporting, including highlight andexception reports.
- Briefing and presenting on the subject to people who are not specialists in it.
What you would bring
- Several years in cyber security — security architecture, delivery of security capabilities andservices, or security risk management in demanding technical environments.
- Direct experience of accrediting major system acquisition or development projects in a largeorganisation.
- Security risk assessment methodologies and the tools that support them.
- Network knowledge with real deployment experience, including modern addressing.
- The independence to run your own work and the judgement to coordinate industry teams.
- A record of delivering systems and capabilities for government, military or industrycustomers.
- Fluent professional English.