Description
The Cyber Security Operations Centre Second-Line Analyst supports the NCIA’s Cyber Security Operations Centre by reviewing and validating first-line investigations, performing deep-dive log and threat analysis, tuning detection rules across SIEM, SOAR, and EDR platforms, providing 24×7 on-call coverage, mentoring analysts, and contributing to operational documentation and threat-hunting activities. The role requires a related bachelor’s degree and three years of post-related experience or five years of equivalent progressive experience, along with SOC/CSOC monitoring experience, incident-analysis, log-analysis, packet-capture, detection-rule, SOAR, and English communication skills. It is a full-time onsite position in Mons, Belgium, with possible travel to other NATO sites and requires a valid National or NATO Secret personal security clearance.
