[6316] Cyber Security Incident Responder
Start date: Negotiable
Clearance: NATO Secret or equivalent
Location: Mons, Belgium
Skills:
• At least 4 years practical experience in cyber security incident response, or a directly connected field such as network analysis, digital forensics, malware analysis or threat hunting. It is noted that Industry often separates responsibilities in such a way that personnel in these roles may also be performing incident response;
• Comprehensive understanding of the principles of Computer and Communication Security, networking, and the vulnerabilities of modern operating systems and applications acquired through a blend of academic or professional training coupled with practical professional experience;
• Recent practical, hands-on experience of Intrusion Detection and Incident Response (TRIAGE, Contain, Eradicate, Recover) in an enterprise-level Computer Emergency Response Team, ideally making use of the MITRE ATT&CK framework;
• At least 3 years experience in Information and Knowledge Management, ideally in the field of Cyber Security
• Experience in interfacing with IT Service Management.
• Knowledge of vulnerability assessment and scoring (CVSS, SSVC, CVD)
• Relevant certifications in cyber security, such as Certified Information Security Manager (CISM), Certified Information Systems Security Professional (CISSP) or GIAC Security.
Desirable Experience and Education:
• Hold a University degree in Cyber Security or IT Security-related discipline or Information Management.
• Practical experience working with, and/or formal research, of the use of AI/LLM within Cyber Security Defense (not from a red team / penetration testing perspective)
• Practical experience in the management of vulnerabilities, from ingestion, scoring, assessing prioritization of, and potential impact to CIS
• Hold relevant certifications such as Certified Information Systems Security Professional (CISSP), GCIH or GIAC/GCIM Security (this list is not exhaustive)
• Hold a professional certification on IT Service Management.
• In-depth knowledge of potential security event sources and their interpretation and analysis in support of the incident detection and handling processes
• Practical hands-on experience in System and Network administration to include Network (TCP/IP) Engineering
• Experience in working for or supporting a military or governmental organization.
• Recent experience in a large organisational CERT, especially within the Incident Response Team.
• Experience in actively contributing to industry recognized communities for incident response, such as FIRST.org
.png)

