Security Engineer/ISO in the EOP Directorate

Frascati, Italy 
negotiable Expired 1 year ago
This job has expired.

JOB DETAIL

Vacancy in the Directorate of Earth Observation Programmes.

ESA is an equal opportunity employer, committed to achieving diversity within the workforce and creating an inclusive working environment. We therefore welcome applications from all qualified candidates irrespective of gender, sexual orientation, ethnicity, beliefs, age, disability or other characteristics. Applications from women are encouraged.

This post is classified A2A4 on the Coordinated Organisations’ salary scale.

Location

ESRIN, Frascati, Italy

Description

Reporting to the Director of Earth Observation Programmes (D-EOP), and reporting functionally to the Head of the ESA Security Office (ESO) with respect to the ESA Security Framework, you will be tasked with security activities within the scope of the ESA Earth Observation Directorate and shall be entrusted with the role of EOP Information Security Office (ISO).

You may be required to fulfil the role of PSSO (Project/System Security Officer) for those projects in the Directorate managing limited infrastructure for which no dedicated PSSO could be assigned. In such cases, you will guide and provide recommendations to the programmes/projects in the areas of security management, security risk management, controls and countermeasures with respect to the applicability of the ESA Security Regulations and Directives.

Duties

The ISO appointment will be endorsed by the Head of the ESA Security Office subject to successful participation in a dedicated aptitude examination conducted by the ESA Security Office. The minimum mark required to pass this examination is 60%.

Your tasks and responsibilities will include:

  • serving as the security advisor to D/EOP on security matters in general based on the input provided by all the relevant technical security specialists of the Directorate and the ESA Security Office; leading and coordinating a team of ESO resources supporting the EOP Directorate for security management issues as detailed in the Service Level Agreement;
  • providing coordination on security matters within the EOP Directorate with and among the various security forces of the Directorate, ensuring the proper implementation of the ESA Security Framework at Directorate and at project level in synergy and coordination with the ESA Security Office:
  • a. Establishing and supervising the correct implementation of the Information Security Management Plan (ISMP) for the Directorate in coordination with and with the input of the PSSOs;
  • b. Working in synergy with the ESA Security Office and the EOP project managers to exploit the assurance function within the EOP Directorate for the key EOP projects and for all certification and accreditation activities within the Space Programme, as well as corporate activity at Directorate level;
  • c. Supervising the correct implementation of the ISMPs in all relevant contracts;
  • d. Promoting a security culture and implementing a personnel security policy for the Directorate;
  • e. Providing and maintaining a security awareness programme for the Directorate.
  • coordinating with the relevant specialists and services of the Agency on dedicated awareness sessions or briefings, for example with the ESA Export Control Coordinator or the ESA Security Office for COMSEC authorisation briefings;
  • ensuring the reporting of EOP security incidents such as security breaches and the potential or actual compromise of information to the ESA Security Office, taking the immediate remedial measures required and assisting the ESA Security Office in any subsequent security investigation;
  • coordinating with the Directorate’s Cyber Security Managers (CSMs or the PSSO) to ensure a uniform and commensurate approach to cyber security within the Directorate and its programmes in line with the ESA Cyber Security Strategy and the ESA Security Framework;
  • establishing, maintaining and managing the Service Level Agreement with the ESA Security Office;
  • in coordination with the PSSOs, analysing, with the ITT initiating authority and the Contract Officer responsible, the sensitivity of the information generated, distributed and received in the scope of a procurement activity, ensuring compliance with the ESA Security Directives.

Technical competencies

Knowledge and Experience in System Engineering
Experience in Information Protection Management, Personnel Security Management and CIS Security Management (e.g. ISO 27000 series), including risk management
Solid knowledge of security risk analysis, threat profiles, scenario assessment, business continuity management methodologies and standards
Ability to apply techniques like OCTAVE, SABSA, MEHARI, EBIOS, etc. and conduct or coordinate threat assessment/risk analysis exercises on complex systems
Familiarity with security certification and possibly accreditation processes for systems
Experience in writing and implementing operational security processes (SECOPS) for environments, personnel and systems

Behavioural competencies

Result Orientation
Operational Efficiency
Fostering Cooperation
Relationship Management
Continuous Improvement
Forward Thinking

Education

A master’s degree in a discipline relevant to (cyber) security is required for this post.

Additional requirements

You should also :

  • be knowledgeable about the Agency and its internal rules, regulations and working practices
  • have experience of working on Earth observation services or engineering systems
  • have a general knowledge of physical security-related matters

Experience in Earth observation system engineering and certifications such as CISSP, CPP and ISO will be considered assets.

Other information

For behavioural competencies expected from ESA staff in general, please refer to the ESA Competency Framework.

For further information please visit: Professionals, What we offer and FAQ

The working languages of the Agency are English and French. A good knowledge of one of these is required. Knowledge of another Member State language would be an asset.

The Agency may require applicants to undergo selection tests.

At the Agency we value diversity and we welcome people with disabilities. Whenever possible, we seek to accommodate individuals with disabilities by providing the necessary support at the workplace. The Human Resources Department can also provide assistance during the recruitment process. If you would like to discuss this further please contact us email [email protected].


Please note that applications are only considered from nationals of one of the following States: Austria, Belgium, the Czech Republic, Denmark, Estonia, Finland, France, Germany, Greece, Hungary, Ireland, Italy, Luxembourg, the Netherlands, Norway, Poland, Portugal, Romania, Spain, Sweden, Switzerland, the United Kingdom and Canada, Latvia, Lithuania, Slovakia and Slovenia.

According to the ESA Convention, the recruitment of staff must take into account an adequate distribution of posts among nationals of the ESA Member States*. When short-listing for an interview, priority will first be given to internal candidates and secondly to external candidates from under-represented Member States*.

In accordance with the European Space Agency’s security procedures and as part of the selection process, successful candidates will be required to undergo basic screening before appointment conducted by an external background screening service.

Recruitment will normally be at the first grade in the band (A2); however, if the candidate selected has little or no experience, the position may be filled at A1 level.

*Member States, Associate Members or Cooperating States.

Frascati, Italy

location

This job has expired.