Cyber Security Engineer

Tags: Law English language Environment
  • Added Date: Monday, 16 October 2023
5 Steps to get a job in the United Nations

Vacancy in the Directorate of Navigation.

ESA is an equal opportunity employer, committed to achieving diversity within the workforce and creating an inclusive working environment. We therefore welcome applications from all qualified candidates irrespective of gender, sexual orientation, ethnicity, beliefs, age, disability or other characteristics. Applications from women are encouraged.

This post is classified A2-A4 on the Coordinated Organisationsโ€™ salary scale.

Location
ESTEC, Noordwijk, Netherlands

Description

Cyber Security Engineer in the Navigation Security Office, Directorate of Navigation.

You will be part of the Cyber Internal Auditor Team, reporting to the Head of the Navigation Security Office. The Cyber Internal Auditor is responsible, within navigation projects, for evaluating the level of compliance of the information security management system and implemented security measures with defined requirements, security policies in place and the appropriate safety standards,. It includes the planning and implementation of the cyber security audits and the provision of independent feedback.

Duties

Your tasks and responsibilities will include:

โ€ข analysing and monitoring the European Commissionโ€™s cyber security policies in respect of navigation programmes and the related regulations and standards;

โ€ข supporting the planning and execution of the cyber audits to ensure that the systems are protected and controlled, and providing support during the physical audits performed at contractorsโ€™ facilities;

โ€ข following up penetration tests carried out by the contractors or by the project;

โ€ข managing and maintaining all the evidence from the audit, its reliability, notably by assessing the independence of provider, as well as the objectivity and timing of the evidence;

โ€ข providing support during the analysis of the cyber security risks related to the supply chain;

โ€ข identifying and formulating recommendations to support navigation programme leadership in four strategic cyber security areas: identify, protect, detect, respond and recovery;

โ€ข working with the CIA (Cyber Internal Auditor) to minimise the risks related to the audit;

โ€ข representing the ESA GNSS CIA on boards established within the programmes for dealing with non-conformances (requests for waivers); participation in Cyber Boards and relevant Galileo programme reviews with internal and external stakeholders (ESA, EUSPA and the European Commission).

๐Ÿ“š ๐——๐—ถ๐˜€๐—ฐ๐—ผ๐˜ƒ๐—ฒ๐—ฟ ๐—›๐—ผ๐˜„ ๐˜๐—ผ ๐—š๐—ฒ๐˜ ๐—ฎ ๐—๐—ผ๐—ฏ ๐—ถ๐—ป ๐˜๐—ต๐—ฒ ๐—จ๐—ก ๐—ถ๐—ป ๐Ÿฎ๐Ÿฌ๐Ÿฎ๐Ÿฏ! ๐ŸŒ๐Ÿค ๐—ฅ๐—ฒ๐—ฎ๐—ฑ ๐—ผ๐˜‚๐—ฟ ๐—ก๐—˜๐—ช ๐—ฅ๐—ฒ๐—ฐ๐—ฟ๐˜‚๐—ถ๐˜๐—บ๐—ฒ๐—ป๐˜ ๐—š๐˜‚๐—ถ๐—ฑ๐—ฒ ๐˜๐—ผ ๐˜๐—ต๐—ฒ ๐—จ๐—ก ๐Ÿฎ๐Ÿฌ๐Ÿฎ๐Ÿฏ ๐˜„๐—ถ๐˜๐—ต ๐˜๐—ฒ๐˜€๐˜ ๐˜€๐—ฎ๐—บ๐—ฝ๐—น๐—ฒ๐˜€ ๐—ณ๐—ผ๐—ฟ ๐—จ๐—ก๐—›๐—–๐—ฅ, ๐—ช๐—™๐—ฃ, ๐—จ๐—ก๐—œ๐—–๐—˜๐—™, ๐—จ๐—ก๐——๐—ฆ๐—ฆ, ๐—จ๐—ก๐—™๐—ฃ๐—”, ๐—œ๐—ข๐—  ๐—ฎ๐—ป๐—ฑ ๐—ผ๐˜๐—ต๐—ฒ๐—ฟ๐˜€! ๐ŸŒ

โš ๏ธ ๐‚๐ก๐š๐ง๐ ๐ž ๐˜๐จ๐ฎ๐ซ ๐‹๐ข๐Ÿ๐ž ๐๐จ๐ฐ: ๐๐จ๐ฐ๐ž๐ซ๐Ÿ๐ฎ๐ฅ ๐“๐ž๐œ๐ก๐ง๐ข๐ช๐ฎ๐ž๐ฌ ๐ก๐จ๐ฐ ๐ญ๐จ ๐ ๐ž๐ญ ๐š ๐ฃ๐จ๐› ๐ข๐ง ๐ญ๐ก๐ž ๐”๐ง๐ข๐ญ๐ž๐ ๐๐š๐ญ๐ข๐จ๐ง๐ฌ ๐๐Ž๐–!

Technical competencies Knowledge of cyber security: policy, detection, reaction and correction Knowledge of cyber vulnerability management and associated standards Knowledge and experience in auditing of complex secure systemsKnowledge of security auditing standards and regulationsKnowledge and experience in supply chain management

Behavioural competencies

Result Orientation
Operational Efficiency
Fostering Cooperation
Relationship Management
Continuous Improvement
Forward Thinking

Education

A masterโ€™s degree in engineering or law is required for this post.

Additional requirements

You should have substantial security or audit experience.
You are expected to have a very good background in cyber security, policy, and associated standards and regulations.
You should demonstrate excellent organisational skills and a high-level of stakeholder management.
You must possess good judgment, integrity, and good communications skills, and be willing to travel.

Other information

For behavioural competencies expected from ESA staff in general, please refer to the ESA Competency Framework.

For further information please visit: Professionals, What we offer and FAQ

The working languages of the Agency are English and French. A good knowledge of one of these is required. Knowledge of another Member State language would be an asset.

Applicants must be eligible to access technology and hardware which is subject to European and US export control regulations.

Applicants must be eligible for security clearance by their national security administrations.

The Agency may require applicants to undergo selection tests.

At the Agency we value diversity and we welcome people with disabilities. Whenever possible, we seek to accommodate individuals with disabilities by providing the necessary support at the workplace. The Human Resources Department can also provide assistance during the recruitment process. If you would like to discuss this further please contact us email contact.human.resources@esa.int.

Please note that applications are only considered from nationals of one of the following States: Austria, Belgium, the Czech Republic, Denmark, Estonia, Finland, France, Germany, Greece, Hungary, Ireland, Italy, Luxembourg, the Netherlands, Norway, Poland, Portugal, Romania, Spain, Sweden, Switzerland, the United Kingdom and Canada, Latvia, Lithuania, Slovakia and Slovenia.

According to the ESA Convention, the recruitment of staff must take into account an adequate distribution of posts among nationals of the ESA Member States*. When short-listing for an interview, priority will first be given to internal candidates and secondly to external candidates from under-represented Member States*.

In accordance with the European Space Agencyโ€™s security procedures and as part of the selection process, successful candidates will be required to undergo basic screening before appointment conducted by an external background screening service.

In principle, recruitment will be within the advertised grade band (A2-A4). However, if the selected candidate has less than four years of relevant professional experience following the completion of the masterโ€™s degree, the position may be filled at A1 level.

*Member States, Associate Members or Cooperating States.

Recommended for you