WLG

Security Analyst — Vulnerability Data and Dashboards for NATO with security clearance

WLG Mons, Wallonia, Belgium

Financial Services · 2-10 employees

6 h ago
Senior (5-10 yrs) Full-time Belgium
Create a free account to apply — email only, no card. You can also save this posting or score it against your profile with AI.

About the role

The analyst will interpret weekly vulnerability scan results to create remediation plans and coordinate with system owners to ensure security gaps are closed. Additionally, they will build and maintain automated data pipelines and dashboards to track security metrics and operational reporting.

What they look for

Vulnerability management Data engineering Power BI Grafana SQL PostgreSQL SQL Server Python Pandas NumPy PowerShell Security architecture Nessus Qualys OpenVAS Risk assessment

Requirements

Candidates must have substantial experience in vulnerability management and practical familiarity with security scanning tools like Nessus or Qualys. Strong technical proficiency in SQL, data modeling, and scripting languages such as Python or PowerShell is required to manage and visualize large security datasets.

Full description

Most organisations can scan. Far fewer can say what the scans mean, who owns eachfinding and whether anything was fixed. A multinational defence organisation is looking for theanalyst who closes that gap — half security assessment, half data engineering, and thecoordination that turns a report into a repaired system.

What you would be doing

  • Reading the weekly assessment results, interpreting the technical findings, and writing theremediation plan that goes to the right technical owner.
  • Judging technical impact so that remediation is prioritised on risk rather than on volume,and advising on hardening at operating system, database and network level.
  • Building and running the data side: a structured repository that aggregates raw scan outputfrom several sources, and the pipeline that ingests it without manual handling.
  • Designing and maintaining live dashboards in Power BI or Grafana, and the metrics that makeoperational and management reporting meaningful.
  • Acting as the technical contact for site administrators and system owners, and keeping theremediation tracking honest and current.
  • Producing the weekly and monthly reporting, and chairing the coordination meetings whereroadblocks get cleared.
  • Leaving behind documentation good enough that the platform can be maintained withoutyou.

What you would bring

  • Substantial vulnerability management experience, current rather than historical, plus atrack record of validating that delivered work meets its security requirements.
  • Practical familiarity with scanners and their output formats — Nessus, Qualys, OpenVAS.
  • A working grounding in security architecture: boundary protection, encryption, identity andaccess, monitoring and detection, incident response and risk.
  • Real SQL depth for modelling and querying large scan datasets, in PostgreSQL or SQLServer.
  • Advanced Power BI, including data modelling and DAX, or the Grafana equivalent against SQLand time-series sources.
  • Python with Pandas or NumPy, or PowerShell, for parsing scan output and removing manualsteps.
  • Ownership: the motivation to carry a task to its end, alone or in a team, and the writing toshow for it.
  • Nice to have: certifications such as CISSP, CISM or a GIAC, and a data or businessintelligence certification such as PL-300.

Extensions are offered where the work goes well. Applications are reviewed as theyarrive.