Leader Cybersecurity Consultant

Luxembourg, Luxembourg

Netcompany

Innovative digital solutions that empower societies, companies, and institutions to take control of their processes and data to stay highly competitive.

View all jobs at Netcompany

Company Description

We are Netcompany-Intrasoft, a member of Netcompany Group A/S, and a leading European IT Solutions and Services company with strong international presence and expertise, dedicated to responsible digitalisation. We offer innovative and added-value solutions of the highest quality to a wide range of public and private organizations, while being a key-player in the EU Institutions for the past 30 years. We hold an outstanding record of 500+ organizations in 70+ countries, that have chosen our solutions and services, to fulfil their business needs. Our team of 3500+ professionals is our driving force and our most valuable asset.

Job Description

The security unit is seeking a Lead Cybersecurity Consultant to enhance its capacity to protect its ICT infrastructure and applications, develop and update security policies, manage security governance, conduct user awareness, and perform risk assessments on all ICT systems. The ideal candidate must possess excellent organizational skills, be proactive and capable of working independently, have the ability to manage multiple tasks simultaneously, and be prepared to perform and lead security investigations on short notice.

As a Leader Cybersecurity Consultant you will:

Contribute to Security Management activities:

  • Contribute to building the strategic view for the future of ICT security at the European Parliament.
  • Draft ICT Security policies, standards, guidelines.
  • Perform market reviews, products analyses, studies.
  • Lead security-related solutions assessments and labs.
  • Lead and manage Security-related projects.
  • Contribute to the communication of the available policies.

Define and deliver user awareness programs:

  • Elaborate presentations, messages targeted to the end-users.
  • Elaborate demos and videos for illustration.
  • Provide support to Communication and Training Departments for building various material (e.g. posters, flyers, e-learning).
  • Lead lectures, conferences, demos and workshops.

Support project and application owners in designing, implementing and maintaining ICT Security:

  • Perform Risk analysis according to state-of-the-art methodologies and practices (including standards such as EBIOS, ISO 27005).
  • Elaborate ICT Security requirements for in-house and outsourced projects and applications.
  • Define and review architectures for security systems.
  • Design and implement Security settings on various kinds of IT components.
  • Coordinate ICT Security activities in the projects, provide support to project managers.
  • Supervise Security testing/assessment throughout the projects.
  • Provide support for remediating Security vulnerabilities or issues.
  • Assess security aspects of products and solutions.

Protect the Institution’s ICT infrastructure and applications:

  • Design and implement secured architectures.
  • Design and implement Security settings on various kinds of IT components.
  • Develop scripts and programs for a more efficient automation.
  • Collaborate with ICT departments for defining security procedures and best practices.
  • Study ICT security standards and regulations for applying them to the European Parliament's context.
  • Perform and/or supervise system risk analysis.
  • Propose appropriate security counter-measures according to standards and best practices.
  • Define security-operating procedures for systems and products.
  • Perform security studies and the design of security architectures.
  • Select, test and customize software and hardware tools for security.
  • Define risk management plans related to ICT security.


Support other ICT Security activities:

  • Provide input for policies/standards/baselines writing.
  • Provide technical support to Project owners for Security design.
  • Perform market analyses, set up labs/PoC for assessing and participate in the evaluation and selection of appropriate technical solutions and/or tools.
  • Contribute to technical presentations and demos for user awareness.
  • Manage and analyse security ICT events that occurs within the European Parliament.
  • Auditing and reviewing configuration of software, communication, computing systems.
  • Respond to incidents and perform technical analysis tasks.
  • Detect and analyse security events; plan, execute and monitor the operations.
  • Design, implement and manage technical security architectures, systems and software.
  • Develop associated processes and procedures and follow-up on their implementation.
  • Define a taxonomy for ICT assets within the European Parliament.
  • Collect information on ICT assets and categorize them according to the taxonomy.
  • Develop scripts and programs for a more efficient automation.
  • Regularly attends conferences, professional association meetings, and technical symposia to remain aware of the latest information security technological developments.
  • Acts as a technical consultant on information security incident investigations and forensic technical analyses.

Qualifications

What would make you a fit for the role:

  • Master’s degree
  • At least 1 ICT professional certification
  • At least six years of professional relevant experience, including 3 years of experience related to ICT security management (e.g. ISMS implementation, cybersecurity policy management, development of security policies and standards), and 2 years of experience as a team leader or project leader for major security-related projects.
  • Technical background experience is required with basic understanding of cloud services and infrastructure.
  • Very good knowledge of both written and oral English (proficient user - C level, according to the Europass Language Passport classification) is mandatory.
  • Good command of French is an asset.
  • Excellent organisational skills, ability to work with a minimum supervision and be committed to excellence and quality service delivery.
  • Ability to generate reports and written analysis on complex and multi-domain security topics, both at high and technical levels.
  • Be available for managing unplanned events and work under pressure, occasionally outside the normal working hours in case of severe security incidents.
  • Excellent communication skills, ability to lead multi-lingual meetings and to do presentations to managers, technical staff and also end-users in the context of user awareness activities.
  • Leadership, autonomy and commitment to increasing maturity.
  • Excellent team player and ability to coordinate other experts' work.
  • Strong background in Risk Management.
  • Knowledge of Standards and Policies and experience on drafting documents and reports.
  • High level experience in cloud architecture such as Azure and AWS.
  • Background as a DevSecOps engineer or knowledge of the domain.
  • High level experience in Cyber Security Awareness and policies.
  • Knowledge of ServiceNow systems such as Risk Management module and GRC module.
  • Furthermore, the client requested a high level of autonomy for the candidate.

Additional Information

Being a part of the Netcompany-Ιntrasoft team, you will be provided with:

  • The opportunity to work in a modern environment.
  • A competitive compensation & benefits package
  • Hospitalization plan
  • Hybrid working model
  • Meal and commuting allowance
  • Well-being activities (on-premises)
  • Continuous learning opportunities using the most modern methods (unlimited access to Udemy for Business, ad-hoc training)
  • A personalized development plan for targeted career growth

If you are looking forward to being part of a diverse environment and having the opportunity to work alongside well-experienced professionals, on challenging, large-scale projects that directly impact millions of citizens around the globe, then this is the place to be!

By joining Netcompany - Intrasoft Belgium, you will be an integral part of a distinguished team of 600+ tech enthusiasts working on international projects, primarily within the European Institutions market. Whether you're collaborating with clients on their premises or harnessing the power of cutting-edge technologies at our facilities, you'll have the opportunity to shape the future of digital services in an environment that values your ideas and fosters your growth.

#LI-MA1

Our culture

Our people are the most important element of our success. Our work life is well defined by our set of fundamental Valueshttps://bit.ly/3SSbBzU 

 #BePartOfSomethingGreat!

*Please submit your CV in English

All applications will be treated as strictly confidential.

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  4  0  0

Tags: Audits Automation AWS Azure C Cloud DevSecOps Governance ISMS ISO 27005 Risk analysis Risk assessment Risk management Vulnerabilities

Perks/benefits: Career development Competitive pay Conferences Startup environment Team events

Region: Europe
Country: Luxembourg

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.