RFQ C004693 - Cyber Security Engineer; Security Accreditation
Listed on 2026-02-28
-
IT/Tech
Cybersecurity, Information Security, IT Consultant, Systems Engineer
's-Gravenhage, Netherlands | Posted on 24/02/2026
McBride Consulting, based in McLean, VA, USA, and with offices in Brussels, BEL and Bucharest; ROU through its wholly owned subsidiary McBride International, is a Prime Contractor on the NCIA Advisory and Assistance Services Plus (AAS+) Framework.
We are a management and IT consulting firm with significant professional services experience that includes IT transformation, project management, digital transformation, strategic planning, business process improvement, change management, human capital management, systems engineering, and operations. Due to our excellent relationship with NATO and the first-class, security cleared candidates that we source and supply from all 32 NATO nations, we are extremely privileged to ask you to review this role to assess your suitability of skills.
You will be working as a contractor for our client the NATO Communications and Information Agency (NCIA)
NATO Communications and Information Agency (NCIA)
NCIA was established on 1 July 2012 from a merger of several NATO entities. It has a 65-year legacy of supporting NATO operations, missions, and exercises and is on the front lines against cyber threats, protecting NATO's networks 24/7. NCIA provides expertise and services that are critical to NATO's ability to fulfill its core tasks of consultation, collective defence, and crisis management.
Under the direction of Head of CIS Planning and Implementation Authority Team in CTO, you will perform duties such as the following:
- Contributes to the development of solution architectures in specific business, infrastructure or functional areas by identification of applicable NATO security directives.
- Provides guidance on the application and operation of elementary physical, procedural and technical security controls;
- Explains the purpose of security controls and performs security risk assessments for communication and information systems.
- Identifies risks that arise from potential technical solution architectures; and
- Suggests alternate solutions or countermeasures, which can mitigate identified risks.
- Defines and manages scoping, requirements definition and prioritisation activities related to security accreditation; and
- Follows agreed standards and applies appropriate techniques to elicit and document detailed requirements related to security accreditation.
- Works with stakeholders to prioritise requirements and resolve conflicts.
- Provide security accreditation advice and guidance to NCI Agency Project, System Managers during whole life cycle of NATO CIS, including providing inputs to Project Proposals and Invitations for Bid;
- Conduct Security Risk Assessment in support of security accreditation of NATO CIS, in particular; identify level of threats and vulnerabilities for all assets comprising NATO CIS, derive residual risks and provide risk management recommendations;
- Identify, plan, request and manage development of required documents for accreditation (CIS Description, Security Accreditation Plan, Security Risk Assessment Report, Security Requirement Statements, Security Operating Procedures, and Security Test and Verification Plan);
- Witness security testing (in accordance with STVP) and coordinate remediation plan with the relevant SAA;
- Build and sustain effective communications with different stakeholders specifically the Security Accreditation Boards, NATO Security Accreditation Authorities, NATO CIS Operational Authorities and NCI Agency organization units supporting security accreditation process.
- Represent the Agency on security accreditation matters;
- Stay abreast of technological developments relevant to the area of work; and
- Perform any other duties as may be required.
Essential education, experience, and training:
- A minimum requirement of a Bachelor's degree at a nationally recognized / certified University in a related discipline and 2 years post-related experience. Exceptionally, the lack of a university degree may be compensated by the demonstration of a candidate's particular abilities or experience that is/are of interest to NCIA, that is, at least 6 years extensive and progressive expertise in duties related to the function of the post;
- Relevant certifications, such as Certified Information Systems Auditor (CISA), Certified Information Systems Security Professional (CISSP);
- Good knowledge and experience (at least 2 years) in the following areas:
- Security Accreditation of major CIS acquisition and/or development projects for a large organization;
- Security risk assessment methodologies and tools;
- Planning, design and implementation of security components of major CIS;
- Knowledge of NATO Security Policy and supporting directives;
- Prior experience of working in an international environment comprising both military and civilian elements; and
- Knowledge of NATO responsibilities and…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).