C005335 Splunk Engineer (NS) - MON 21 Sep
EMW, Inc.
Deadline Date: Monday 21 September 2026
Requirement: Splunk Engineer
Location: Mons, BE
Full Time On-Site: Yes
Time On-Site: 100%
Total Scope of the request (hours): 395
Required Start Date: 2 November 2026
End Contract Date: 31 December 2026
Required Security Clearance: NATO SECRET
Duties & Role:
Under the direction of Cyber Security Data Engineering Cell Head (CSDE), or a delegated authority, the incumbent will perform duties such as the following:
- Act as one of the main engineers and Subject Matter Expert (SME) for SIEM and Log collection services within the Cyber Security Data team.
- As the SME, you will provide advice and technical assistance to other stakeholders, maintain technical expertise, awareness, and developments in related new technologies, and provide technical contributions to any projects related to the data security systems.
- Be responsible for management and further development of the data security systems;
- The contractor may occasionally be required to provide on-call support and intervene in the event of an issue to ensure the continued operational availability of the SIEM monitoring infrastructure
- Following ITIL standards, provide support to Operations and Service Delivery management covering all stages of the data security systems lifecycle (e.g. Service Design, Transition, Operations, Change Management and Continual Service Improvement).
- Ensure that data security systems are installed, configured, and operating correctly and in line with dependencies with others systems or applications required.
- Ensure that all system components are continuously monitored and take appropriate technical and non-technical actions for solving detected issues.
- Ensure that data security systems operate within any KPI's, as defined in Service Level Agreements with NCSC customers. Support integration with external tools and any associated activities.
- Proactively identify and propose system improvements to ensure an up-to-date and stable environment.
- Justify business needs, prepare documentation and implementation plan for the Change Management Board. Implement the approved changes following co-ordination with other stakeholders.
- Coordinate with service delivery managers, end users and other stakeholders in support of related services; communicate with other NATO entities as well as industry partners where required;
- Develop and maintain documentation guidelines, standard operating procedures, system and service design documents and other relevant documentation that support management of the data security systems.
- Create technical and/or executive level reports as required; organise and deliver presentations and briefings for various audience up to NATO executive level.
- Perform other duties as may be required.
Specific Working Conditions: Normal working hours 0830-1730. On-call duties after working hours, on weekends or holidays are required.
If working from a remote location, the contractor shall provide IT equipment for the processing of public and unclassified information in support of their duties, including the capability to participate in video meetings using Microsoft based collaboration tools.
The incumbent may require to work on 12 hours pattern during weekdays but not exceeding an average of 38h per week In case of an enterprise-level Cyber Incident, the incumbent may be required to work extended hours and on shifts, including nights and weekends, to provide a 24/7 Cyber Incident Response.
Travel required: The contractor may be required to travel to NCIA locations in support of operational duties. In such cases the contractor will be reimbursed for travel costs according to NATO regulations for traveling on NATO duty. Contractors traveling for work purposes shall initiate travel requests from their designated duty station only
Requirements
Skills, Knowledge & Experience:
- The candidate must have a currently active NATO SECRET security clearance
- A minimum requirement of a Bachelor's degree from a nationally recognised/certified university in a related discipline and two years post‑related experience. Alternatively, the lack of a university degree may be compensated by the demonstration of a candidate's particular abilities or experience of interest to the NCI Agency, provided the candidate has at least five years of extensive and progressive expertise in duties related to the function of the post.
- At least 1 year of extensive practical experience as SIEM administrator with Splunk in large enterprise environment (deployment, installation, configuration and maintenance).
- Hands-on experience in the design and maintenance of distributed Splunk architectures.
- At least 2 years and expert level experience related to SIEM and Log collection management activities.
- Demonstrable experience of analysing and interpreting system, security and application logs in order to diagnose faults and spot abnormal behaviours.
- Practical hands-on experience in systems and tools administration, especially Linux environment;
- Comprehensive knowledge of the principles of computer and communication security, networking, and the vulnerabilities of modern operating systems and applications.
- Practical skills in writing Bash, Python or Ansible scripts to support repetitive tasks automation;
- Solid Linux system and application administration and troubleshooting skills.
- Solid understanding of regular expressions.
- Ability to develop clear and concise technical documentation, including procedures.
- Good communication abilities, both written and verbal, with the ability to clearly and successfully articulate complex issues to a variety of audiences and teams.
- Very good communication and analytical skills.
- Language proficiency in English: meet or exceed the NATO STANAG 6001 Level 3 "Professional Proficiency".
- Possessing industry leading certification in the area of Cyber Security such as CISSP, CISM, CISA, GSNA, and SANS GIAC.
Education, Experience and Training (Desirable):
- A university degree (Bachelor's) in Cyber Security, Information Technology, Computer Science or a related discipline.
- Experience working in a regulated, high control environment such as defence, government, financial services or other enterprise sectors.
- Extensive practical experience (as system administrator) with Splunk Enterprise security, Splunk SOAR and Splunk UBA.
- Practical experience with Git software.
- Hands-on experience with Ansible as an automation technology.
- Experience in creation/modification of custom parsers.
- Software engineering including programming and/or scripting knowledge (python, shell scripting, PowerShell).
- Prior experience automating interactions between systems using APIs.
- A solid understanding of Information Security Practices; relating to the Confidentiality, Integrity and Availability of information (CIA triad.).
- ITIL Service Management certifications.
- Experience in developing Splunk Applications.
- Content management experience in Splunk, especially Enterprise Security and Advanced Search and Reporting.
- Hands-on experience with network infrastructure and virtualized environments.
- Previous experience working for Cyber Security related organisations (CERTs, security offices).
- Experience with log collection in cloud environment such as Azure or AWS
- Experience in working for or supporting a military or governmental organization.
- ...Deadline Date: Monday 21 September 2026 Requirement: DCO Tracking Support Location: Mons, BE Full Time On-Site: Yes Time On-Site: 100% Total Scope of the request (hours): 395 Required Start Date: 2 November 2026 End Contract Date: 31 December...SuggéréEmploi contractuelPour les contractantsTemps completÀ distanceTravail le weekend
- ...Deadline Date: Monday 21 September 2026 Requirement: Endpoint Security Assistant Location: Mons, BE Full Time On-Site:... ...Track pending requests and open items Proactively follow up with engineers on unanswered emails and tickets Send reminders and ensure no...SuggéréEmploi contractuelPour les contractantsTemps completÀ distanceTravail à domicile
- ...Date: Monday 14 September 2026 Requirement: Microsoft Senior Engineer Location: Mons, BE Full Time On-Site: Yes Time On-... ...Atlassian Data Center Technology Stack (Jira, Confluence), Power BI, Splunk, SQL Server and other data or collaboration platforms...SuggéréEmploi contractuelPour les contractantsTemps completÀ distanceTravail à domicile
- ...Deadline Date: Monday 14 September 2026 Requirement: MISP Engineer Location: Mons, BE Full Time On-Site: Yes Time On-Site: 100% Total Scope of the request (hours): 395 Required Start Date: 20 October 2026 End Contract Date: 31 December 2026...SuggéréEmploi contractuelPour les contractantsTemps completÀ distanceTravail à domicile
- ...Deadline Date: Wednesday 16 September 2026 Requirement: Detection Engineer Location: Mons, BE Full Time On-Site: Yes Time On-... ...Review newly-ingested log data to ensure it aligns with the Splunk Common Information Model (CIM); carry out periodic audits,...SuggéréEmploi contractuelPour les contractantsTemps completÀ distance
87 € par jour
...Thursday 10 September 2026 Requirement: CDSA Senior Engineer Location: Mons, BELGIUM Full Time On-... ...The role combines technical development work (mainly in Splunk) with operational support and close coordination with both the...Emploi contractuelPour les contractantsEmploi en CDITemps complet- ...Date: Thursday 10 September 2026 Requirement: CDSA Senior Engineer Location: Mons, BE Full Time On-Site: Yes (See Specific... ...platform. The role combines technical development work (mainly in Splunk) with operational support and close coordination with both the...Emploi contractuelPour les contractantsTemps completÀ distance
- ...Deadline Date: Monday 14 September 2026 Requirement: MISP Senior Engineer Location: Mons, BE Full Time On-Site: Yes Time On-Site: 100% Total Scope of the request (hours): 395 Required Start Date: 19 October 2026 End Contract Date: 31 December...Emploi contractuelPour les contractantsTemps completÀ distance
71 € par heure
...Deadline Date: Wednesday 9 September 2026 Requirement: CSAC Engineer Location: Mons, BELGIUM Full Time On-Site: Yes (See Specific Working Conditions below) Time On-Site: 100% Not to Exceed Rate: 71 EUR...Emploi contractuelPour les contractantsEmploi en CDITemps complet87 € par jour
...15 September 2026 Requirement: MISP Senior Data Engineer Location: Mons, BELGIUM Full Time On-Site... ...of the request (hours): 395 Required Start Date: 21 October 2026 End Contract Date: 31 December 2026...Emploi contractuelPour les contractantsEmploi en CDITemps complet87 € par jour
...Deadline Date: Friday 18 September 2026 Requirement Title: CYBER SECURITY Guard and Diode Engineer Location: Mons, BELGIUM Full time on-site: Yes Not to Exceed: 87 Euro Total Scope of the request (hours...Emploi contractuelPour les contractantsEmploi en CDITemps complet- ...detection and handling processes Practical hands-on experience in System and Network administration to include Network (TCP/IP) Engineering Experience in working for or supporting a military or governmental organization. Recent experience in a large...Emploi contractuelPour les contractantsTemps completÉquipe de nuitTravail postéRecrutement immédiat
30510 € par année
...Deadline Date: Friday 04 September 2026 Requirement: Provision of SATCOM Network Engineering Services Location: Mons, Belgium Cost Not to Exceed: 2026 Base: 30,510 EUR Period of Performance: 2026 Base...Emploi contractuelPour les contractantsEmploi en CDITemps complet- ...Location: Mons, BE Full Time On-Site: Yes Time On-Site: 100% Total Scope of the request (hours): 450 Required Start Date: 21 September 2026 End Contract Date: 31 December 2026 Required Security Clearance: NATO SECRET Duties & Role: Business...Emploi contractuelTemps complet
103 € par jour
Deadline Date: Thursday 10 September 2026 Requirement: Penetration Tester Location: Mons, BELGIUM Full Time On-Site: Yes Time On-Site: 100% Not to Exceed: 103 EUR Total Scope of the request ...Emploi contractuelEmploi en CDITemps complet71 € par heure
...Deadline Date: Monday 14 September 2026 Requirement: Type 3 Security Audit Remediation Support Engineer Location: Mons, BELGIUM Full Time On-Site: Yes Time On-Site: 100% Not to Exceed Rate: 71 EUR...Emploi contractuelPour les contractantsEmploi en CDITemps complet95 € par jour
...incident response tools and appliances, including RSA NetWitness and Splunk. Installation, configuration and testing of virtualisation... ...and reporting. Coordination with project managers, system engineers, network engineers, security architects and operational...Emploi contractuelPour les contractantsEmploi en CDITemps complet87 € par jour
...escalation point for cyber‑security monitoring. Perform in‑depth log analysis and threat‑triage using the SIEM and SOAR platforms (Splunk Enterprise Security, Splunk SOAR, Microsoft Sentinel) together with supporting data sources and security appliances, and decide whether...Emploi contractuelPour les contractantsEmploi en CDITemps complet- Deadline Date: Friday 11 September 2026 Requirement: Technician (User Support) Location: Mons, BE Full Time On-Site: Yes Time On-Site: 100% Total Scope of the request (hours): 400 Required Start Date: 12 October 2026 End Contract Date: 31 December...Emploi contractuelTemps complet
87 € par jour
Deadline Date: Friday 18 September 2026 Requirement Title: CYBER SECURITY L3 Firewall Location: Mons, BELGIUM Full time on-site: Yes Not to Exceed: 87 Euro Total Scope of the request (hours): 395 ...Emploi contractuelPour les contractantsEmploi en CDITemps complet- ...This is a hands-on senior engineering post on a cyber defence monitoring platform, and it has two halves that most roles keep apart. One is development, largely in Splunk: dashboards, data models, searches, automation. The other is operational — supporting the operational...Pour les contractants
87 € par jour
...Tuesday 15 September 2026 Requirement: COMS Senior Engineer Location: Mons, BELGIUM Full Time On-... ...of the request (hours): 395 Required Start Date: 21 October 2026 End Contract Date: 31 December 2026...Emploi contractuelPour les contractantsEmploi en CDITemps complet- ...Splunk development where the dashboards are used by a security operations team during real incidents. You will build and maintain... ...before you apply Fully on-site in Mons It is half engineering and half operational support. If you want pure development with...Emploi contractuelPour les contractants
71 € par heure
...Deadline Date: Wednesday 16 September 2026 Requirement: DFIR Tool Engineer Location: Mons, BELGIUM Full Time On-Site: Yes Time On-Site: 100% Not to Exceed Rate: 71 EUR Total Scope of the request...Emploi contractuelPour les contractantsEmploi en CDITemps completÀ distance- ...following roles and responsibilities: Act as one of the main engineers and Subject Matter Expert (SME) for SIEM and Log collection... ...Hands-on experience in the design and maintenance of distributed Splunk architectures; At least 2 years and expert level experience...Emploi contractuelStage
- ...security monitoring: in-depth log analysis and threat triage across Splunk Enterprise Security, Splunk SOAR and Microsoft Sentinel, plus... ...organisation Why this one is worth a look Detection engineering and deep analysis in the same seat, at a scale where the...
72 € par heure
...with a focus on Security Tools Management in large organisations. ~ Strong understanding of security best practices ~ Good engineering skills including programming ~ Demonstrable experience of analysing and interpreting system, security and application logs in...Emploi contractuelPour les contractantsEmploi en CDITemps complet- ...needs someone like you. You would provide the senior Microsoft engineering for a multinational defence organisation in Mons, Belgium —... ...rest of the estate, including the Atlassian stack, Power BI, Splunk and SQL Server Supporting the cloud reference environment and...
- ...to make them one thing, and make it trustworthy. You would engineer the data side of a defence alliance's threat-intelligence sharing... ...threat intelligence analyst, or as an incident responder Splunk Handling cyber threat information at scale Work with open...
- ...including AccessData. Install, configure and test monitoring, detection and incident response tooling, including RSA NetWitness and Splunk. Install, configure and test virtualisation and software-defined networking technologies. Implement and validate security...
Voulez-vous recevoir plus d'offres d'emploi ?
S'abonner et recevoir des offres d'emploi similaires à C005335 Splunk Engineer (NS) - MON 21 Sep. Soyez parmi les premiers à postuler !
