PpWould you like to join the leading international intergovernmental organization? The Centre for Maritime Research and Experimentation (CMRE) is an established, world‑class scientific research and experimentation facility that organizes and conducts scientific research and technology development centred on the maritime domain. It delivers innovative and field‑tested science and technology (ST) solutions to address defence and security needs of the Alliance. /p h3Responsibilities /h3 ul liPerform vulnerability assessments, penetration testing, and security evaluations to identify and address weaknesses across IT infrastructure /li liDesign, develop, and maintain security architectures for enterprise, cloud, and hybrid environments incorporating threat modelling and risk management principles /li liAssess and ensure compliance with security frameworks, conduct audits, document findings, and drive continuous improvement initiatives /li liProvide strategic guidance on emerging technologies, risk mitigation strategies, and alignment of security controls with business objectives /li liWork with software development teams to ensure secure software development lifecycle in employed and create guidelines and material to document the security aspects /li liAudit source code to ensure compliance with security frameworks, document findings, and work with developer to increase the security posture of the code /li liConduct penetration test and vulnerability scanning, adapting/defining frameworks and processes to ensure software application are secure across the whole life cycle /li /ul h3Essential Qualifications Experience /h3 ul liA minimum requirement of a bachelor’s degree at a nationally recognised/certified University in an information systems, physics or electronics related scientific or engineering discipline /li liA minimum of 3 years of experience in defining and implementing secure software development lifecycle (SDLC), employing a shift-left security culture /li liProfessional experience in threat modelling, security code review, static/dynamic code analysis, software supply chain security framework (e.g. SLSA) /li liProfessional experience in vulnerabilities scanning and remediation /li liProfessional expertise in manual and automatic penetration test (white/grey/black-box) /li liDeep understanding of cybersecurity frameworks including ISO/IEC 27001, NIST SP-800 series, GDPR, and industry-specific regulatory requirements with ability to translate standards into practical security controls /li liIndustry-recognised security certifications such as CISSP, CISM, CRISC, CISA, CompTIA Security+, or equivalent credentials demonstrating commitment to professional development /li liProfessional hands‑on expertise with enterprise security tools including firewalls, intrusion detection and prevention systems, security information and event management (SIEM) platforms, and identity and access management solutions /li liStrong capability to analyze security breaches, identify root causes, assess complex vulnerabilities, and develop effective remediation strategies based on technical evidence and threat intelligence /liliExcellent ability to document technical security architecture, produce comprehensive reports, write Standard Operating Procedures, communicate risk to stakeholders at all levels, and work effectively across multidisciplinary teams /li liGood level of spoken and written English /li /ul pIf you've read the description and feel this role is a great match, we'd love to hear from you! Click "Apply for this job" to be directed to a brief questionnaire. It should only take a few moments to complete, and we'll be in touch promptly if your experience aligns with our needs. /p h3Seniority level /h3 pMid‑Senior level /p h3Employment type /h3 pFull‑time /p h3Job function /h3 pInformation Technology /p h3Industries /h3 pIT Services and IT Consulting /p /p #J-18808-Ljbffr