
Cybersecurity • Telecommunications • Security
EMW is a global, responsive, and adaptable systems integration company, providing lifecycle Systems Engineering and Technical Assistance (SETA), Engineering and Installation (E&I), Operations and Maintenance (O&M) and Force Protection. It specializes in Health Information Technology, Cyber Security and Information Assurance, Perimeter Security, and Telecommunications Infrastructure. As a NATO Premier Security Provider, EMW offers comprehensive solutions in managing health IT operations, help desk support, and medical systems integration. Their approach to cyber threats is holistic, ensuring adherence to Information Assurance Vulnerability Alerts, scanning for network vulnerabilities, and managing security incidents. Additionally, EMW designs and integrates various security systems including sensors and access controls.
November 21

Cybersecurity • Telecommunications • Security
EMW is a global, responsive, and adaptable systems integration company, providing lifecycle Systems Engineering and Technical Assistance (SETA), Engineering and Installation (E&I), Operations and Maintenance (O&M) and Force Protection. It specializes in Health Information Technology, Cyber Security and Information Assurance, Perimeter Security, and Telecommunications Infrastructure. As a NATO Premier Security Provider, EMW offers comprehensive solutions in managing health IT operations, help desk support, and medical systems integration. Their approach to cyber threats is holistic, ensuring adherence to Information Assurance Vulnerability Alerts, scanning for network vulnerabilities, and managing security incidents. Additionally, EMW designs and integrates various security systems including sensors and access controls.
• Providing Web, infrastructure and application level penetration testing, including but not limited to COTS software and NOTS/GOTS software (NATO/Government off the Shelf), following clearly defined methodologies. • Participating in kick-off meetings with stakeholders and technical points of contact in order to identify requirements for testing. • Following the documented procedures and workflows outlined by the technical leads. • Attending team meetings if required. • Writing technical reports in fluent English, following defined templates and Reporting Tools. • Briefing, at both executive and technical levels, on security reports and testing outcome, including at flag officer level. • In case of new vulnerabilities detected for COTS software, following the Responsible Disclosure Process and following-up with vendors and stakeholders. • Providing security design reviews to ensure compliance with NATO policies and directives. • In co-ordination with the Technical Lead of the Penetration testing team, ensuring proactive collaboration and coordination with internal and external stakeholders. • Staying abreast of technological developments relevant to the area of work. • Performing any other duties as may be required. • The measurement of execution for this work is sprints, with each sprint planned for a duration of 5 days.
• It is mandatory to have the candidate be in possession of a NATO SECRET security clearance to facilitate follow-on engagements and coordination at NATO venues. • The contractor personnel will be required to have a Bachelor of Science (BSc) degree at a nationally recognised/certified university in a technical subject with substantial Information Technology (IT) content and 3 years post-related experience. As an exception, the lack of a university degree may be compensated by the demonstration of a candidate’s particular abilities or experience that are of interest to the NCI Agency; namely, at least 10 years of extensive and progressive experience in the duties related to the functions of this post. • Extensive knowledge and experience (at least 3 years) in web application penetration testing • Extensive knowledge and experience (at least 3 years) in IT infrastructure penetration testing • Extensive knowledge and experience (at least 3 years) in network security architecture design • Extensive knowledge and experience (at least 3 years) in assessing security vulnerabilities within OS, software, protocols & networks • Extensive knowledge and experience (at least 3 years) in researching and evaluating security products & technologies • Knowledge in system and network administration of UNIX and Windows systems • Extensive knowledge and experience (at least 3 years) in use of penetration testing tools, techniques, and recognized testing methodologies • Scripting skills in at least one of the following: Python, Go, PowerShell, shell (bash, ksh, csh) • Technical knowledge in system and network security, authentication and security protocols, cryptography, application security, as well as, malware infection techniques and protection technologies. • Ability to evaluate risks and formulate mitigation plans. • Proven ability to brief at executive level on security findings, reports and testing outcome. • Proven ability to write clear and structured technical reports including executive summary, technical findings and remediation plan for several different audiences. • Language Proficiency: A thorough knowledge of one of the two NATO languages, both written and spoken, is essential and some knowledge of the other is desirable. NOTE: Most of the work of the NCI Agency is conducted in the English language.
Apply Now