GardPass Consulting & Space
[5584] Cybersecurity Engineer
GardPass Consulting & SpaceLuxembourg19 hours ago
ContractInformation Technology
Location: Luxembourg

Service Delivery: Onsite - Ratio TBD

Start Date: Nov/Dec

Duration: Initial 6-month Contract, possibility of yearly extensions.

Security Clearance: All personnel must hold, or be under application for, a SECRET UE / EU SECRET security clearance.

Eligibility: Only native EU citizens are eligible for this role.

We are seeking an experienced Cybersecurity Engineer to support the European Institutions in Luxembourg. The role focuses on managing and enhancing the Interconnection Security Agreement (ISA) authorization framework, ensuring that external connections to the Commission’s Communication and Information Systems (CIS) meet the highest security standards.

The successful candidate will be responsible for security risk management, compliance assurance, and service improvement initiatives within a highly regulated environment. This position requires strong technical expertise in network and information security, coupled with a proactive, analytical approach to problem-solving and process optimization.

Key Responsibilities

ISA Service Management

  • Analyse and process ISA requests from internal and external stakeholders according to defined procedures and policies.
  • Liaise with relevant parties to ensure proper communication and coordination across all involved teams.
  • Review and assess EC CIS IT Security Plans (ITSPs) for compliance with security requirements.
  • Identify and manage non-compliances, ensuring timely resolution and documentation.


Security Inspections

  • Plan, execute, and report on security inspections of external partners, contractors, and EC CIS systems.
  • Assess compliance with established security measures for external connections.
  • Provide detailed findings and ensure effective follow-up actions.


Service Improvement

  • Contribute to the continuous improvement of ISA service processes and quality.
  • Align ISA services with European Commission security policies and standards.
  • Support the development of updated security baselines, standards, and guidelines.
  • Participate in initiatives to integrate new developments and best practices in information security.


Documentation & Reporting

  • Maintain accurate and up-to-date ISA-related documentation (e.g., WIKI pages, reports).
  • Produce and track ISA-related KPIs and performance statistics.
  • Ensure comprehensive documentation for auditability, compliance, and operational transparency.


Required Skills & Experience

  • Post-secondary education (minimum 2 years) in ICT or a related discipline such as Computer Science, Cybersecurity, Information Systems, or Software Engineering.
  • Alternatively, 10+ years of IT experience with at least 5 years in cybersecurity for candidates without an IT degree.
  • 6+ years of IT experience and 3+ years of experience in cybersecurity.
  • In-depth knowledge of network communication protocols (ISO layers 2–5) and network security technologies such as MACSec, IPSec, TLS/SSL.
  • Excellent understanding of information security principles, internationally recognised standards, and their practical implementation (experience with EU Commission security policies is an asset).
  • Knowledge of IT Security Compliance Management frameworks.
  • Strong understanding of emerging technologies in workplace and network security.
  • Experience producing technical documentation, performing risk assessments, and participating in compliance reviews.
  • Excellent written and verbal communication skills, with the ability to convey technical information to both technical and non-technical audiences.
  • Strong analytical, organisational, and problem-solving abilities.
  • Proven ability to work independently and proactively in high-stakes environments.


Preferred Qualifications

  • Familiarity with European Commission security standards and procedures.
  • Experience conducting technical audits or compliance inspections.
  • Knowledge of EU institutional IT governance and frameworks.
  • Relevant industry certifications (e.g., CISSP, CISM, CEH, ISO 27001 Lead Implementer) are advantageous.


Soft Skills & Attributes

  • Excellent interpersonal and communication skills.
  • Strong analytical thinking and attention to detail.
  • Ability to prioritise and manage multiple tasks effectively.
  • Self-motivated and able to work autonomously.
  • Commitment to maintaining the highest levels of confidentiality and security.


Login and apply | Register and apply |

Key Skills

Ranked by relevance