First Line Security Events Analyst - NATO - Mons, Belgium

1 day left

NCIM Groep
Mons, Belgium
Negotiable daily rate
28 Sep 2020
26 Oct 2020
Clearance Level
Job Type


First Line Security Event Analyst (FLSEA)



As a First Line Security Event Analyst (FLSEA), the incumbent will perform initial analysis of logs and network traffic, determine alert severity and escalate when required. The analyst will collate information and present findings in a clear, structured format, providing remediation recommendations and first line response where applicable.

Main responsibilities:

  • Conduct research and assessments of security events within NATO Cyber Security Centre (NCSC)team
  • Provide analysis of firewall, IDS, anti-virus and other network sensor produced events and present findings
  • Appropriately leverage the comprehensive extended toolset (e.g. Log Collection, Intrusion Detection, Packet Capture, VA, Network Devices etc.) for enhancing investigations
  • Support the end-to-end Incident Handling process
  • Propose optimisations and enhancements which help to both maintain and improve NATO’s Cyber Security posture


A university degree in a technical subject with a focus on Information Technology (IT), obtained from a nationally recognised/certified institution in addition to a minimum of 1 year experience in the field of cyber security analysis. The lack of a degree may be compensated by at least 3 years of relevant experience in field of cyber security analysis. Similarly, candidate’s lacking experience can compensate by demonstrating a high level of knowledge in the field of cybersecurity.


  • Comprehensive knowledge of the principles of computer and communications security including knowledge of TCP/IP networking, Windows and Linux operating systems
  • Broad understanding of common network security threats and mitigation techniques

Experience in the following:

  • Security Information and Event Management products (SIEM) – e.g. ArcSight, Splunk
  • Analysis of Network Based Intrusion Detection Systems (NIDS) events – e.g. SourceFire, Palo Alto Network Threat Prevention
  • Log analysis from a variety of sources (e.g. Firewalls, Proxies, Routers, DNS and other security appliances)
  • Network traffic capture analysis using Wireshark
  • Logical approach to analysis and ability to perform structured security investigations using large, complex data sets
  • Good written and spoken communication skills
  • Ability to work independently and as part of a team


  • Holding industry leading certification in the area of cyber security such as GCIA, GNFA, GCIH
  • Computer Incident Response Centre (CIRT), Computer Emergency Response Team (CERT)
  • Proficiency in Intrusion/Incident Detection and Handling


Mons, BE

Contract length

836 hours

Max hourly rate (€)

Lowest Priced Technically Compliant


NATO secret. 

Security clearance

A security clearance is required


The First Line Security Event Analyst (FLSEA) will be working on a shift & rotation basis.

 The current rotation system is:

  • Two consecutive 12 hour day shifts
  • One day off
  • Two consecutive night shifts
  • Two on call days
  • Four days off


Apply for First Line Security Events Analyst - NATO - Mons, Belgium

Already uploaded your CV? Sign in to apply instantly


Upload from your computer

Or import from cloud storage

Your CV must be a .doc, .pdf, .docx, .rtf, and no bigger than 1MB

4000 characters left

When you apply for a job we will send your application to the named recruiter, who may contact you. By applying for a job listed on you agree to our terms and conditions and privacy policy.

As part of the job finding service we provide, we will send you relevant news and information via email. These will be sent by SATOS Media and you may opt out from receiving these emails at any time by following the unsubscribe links within the messages or by contacting us via the details within the Privacy Notice.

You should never be required to provide bank account details. If you are, please email us.

Similar jobs

Similar jobs