Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Details on the tasks can be found in the the Annexes of the WP8 Security whitepaper.

Task

Topics

(Sub)Task Leader Requirements

General (Sub)Task Leader Requirements

Business Continuity 

Incident response, Crisis Management, Training and Awareness

Experience with (in an NREN or university) :

  • setting up bussiness continuity (policies)
  • crisis management
  • incident management and incident response

Project management skills

  • First-class inter-personal skills
  • Thorough – pays attention to detail
  • Able to work on own initiative with minimum supervision
  • Organised and able to identify and prioritise work
  • Supportive and reliable team member
  • Able to provide creative solutions or ideas

  • Good verbal and written communication skills
  • The vacancy can be filled by either a direct employee of a GÉANT partner NREN or an employee of a subcontractor/third party to a GÉANT partner NREN.

    Security Baselining 

    Risk Management, Security Baselining

    Experience with (in an NREN or university):

    running an Information security management process

    Extensive knowledge of:

    • International security and privacy standards

    Project management skills

  • implementing security management
  • performing risk analyses
  • Products & Services 

    SUBTASKS:

    SOC

    Experience with (in an NREN or university):

    • security incident response processes and procedures
    • CERT/CSIRT organisation and operations
    • Threat analysis
    • Processing of large datasets
    • information system design

    Knowledge of:

    • protocols an standards such as MISP
    • open source software
    • software development and scripting

    Vulnerability assessment as a service

    Experience with running vulnerability scanners, knowledge of vulnerability management process, knowledge of different vulnerability scanning products, product management, procurement

    DDoS
    Experience with DDOS mitigation tools and techniques, knowledge of different DDOS attacks and attackers, firm knowledge of (NREN) network architectures, firewalls and routing techniques

    Firewall on Demand

    Knowledge of firewall and routing techniques, (NREN and university) networking, product management, secure software development, software testing

    eduVPN

    Knowledge of VPN and networking protocols, cryptography, product management, secure software development, software testing, development, testing and deployment of mobile apps