EMW, Inc. logo
EMW, Inc.

The NATO Communications and Information Agency (NCIA) is dedicated to acquiring, deploying, and defending communication systems for NATO's political decision-makers and Commands.

Cyber Governance Support - Lessons Learned Scorecard

Location

Europe

Posted

3 days ago

Salary

0

Seniority

Mid Level

No structured requirement data.

Job Description

Cyber Governance Support - Lessons Learned Scorecard

EMW, Inc.

Role Description The objective of this engagement is to provide governance and coordination support for enterprise cybersecurity governance activities, specifically supporting the Cyber Lessons Learned (LL) and NATO Enterprise Cybersecurity Scorecard (Scorecard) processes. The contractor will assist CDT in coordinating stakeholders, supporting reporting activities, and ensuring that cybersecurity governance processes are executed in a structured, consistent, and traceable manner. The engagement focuses on supporting two main work packages: - Cyber Lessons Learned coordination and process support - Cybersecurity Scorecard oversight The contractor will provide coordination and documentation support but will not perform operational cybersecurity activities or entity-level assessments. Qualifications - Expertise in Cyber Security: Extensive experience in cyber security with a focus on analytical assessment, scorecard development, and performance metrics. - Methodology Development Skills: Proficiency in developing, refining, and updating methodologies for assessing cybersecurity maturity and performance. - Experience with Lessons Learned or Knowledge Management Processes: Experience supporting Lessons Learned, knowledge management, or continuous improvement processes, including capturing lessons, structuring information, and tracking improvement actions. - Communication Skills: Strong written and verbal communication skills for engaging with various stakeholders and facilitating Enterprise-wide assessments. - Autonomous Working Capability: Capable of performing effectively and efficiently with minimal supervision. Requirements - Required Security Clearance: NATO SECRET - Special Terms and Conditions: Non-disclosure agreement must be signed Deliverables Deliverables are structured under two WPs corresponding to the two workstreams of the assignments. All deliverables will be assessed according to the criteria described in General Acceptance Criteria. Work Package I – Cyber Lessons Learned Coordination Support - Deliverable WP1-D1: Lessons Learned Coordination Plan - Deliverable WP1-D2: Lessons Learned Capture Template - Deliverable WP1-D3: Lessons Learned Register - Deliverable WP1-D4: Lessons Learned Workshop Summary Reports - Deliverable WP1-D5: Lessons Learned Consolidation Report Work Package II – Scorecard Oversight Deliverables - Deliverable WP2-D1: Scorecard Oversight Tracking Dashboard - Deliverable WP2-D2: Contractor Deliverable Review Report Payment Schedule - WP1-D1: 7% of total contract value. Due: 2026 Q3. - WP1-D2: 5% of total contract value. Due: 2026 Q3. - WP1-D3: 30% of total contract value. Due: 2026 Q3. - WP1-D4: 20% of total contract value (5% each). Due: 2026 Q3–Q4. - WP1-D5: 23% of total contract value. Due: 2026 Q4. - WP2-D1: 5% of total contract value. Due: 2026 Q3–Q4. - WP2-D2: 10% of total contract value (2.5% each). Due: 2026 Q4. Work Execution The work will be executed remotely; no travel is considered. The Contractor's personnel are expected to follow the Purchaser's working hours and observe the Purchaser's official holidays. Reporting At the end of each milestone, the Contractor shall report the completion and achievements to the Purchaser POC via email for each resource providing services under this SoW. Period of Performance The service is expected to start on 03 August 2026 (tentative) and end no later than 31 December 2026. Security and Non-Disclosure Agreement The resource providing services under this SoW must be in possession of a security clearance of NATO SECRET or above. The signature of a Non-Disclosure Agreement between the contractors contributing to this task and NCIA will be required prior to execution.

Related Categories

Related Job Pages

More Risk Jobs

ContractRemoteTeam 51-200Since 1995H1B No Sponsor

• Provide governance and coordination support for enterprise cybersecurity governance activities. • Support Cyber Lessons Learned coordination and process support. • Provide oversight for Cybersecurity Scorecard processes. • Assist in coordinating stakeholders and supporting reporting activities. • Ensure that cybersecurity governance processes are executed in a structured and traceable manner.

Netherlands
€139K / year
Stonewater logo

Information Governance Officer

Stonewater

Our mission is to deliver good quality affordable homes to people who need them most.

Risk3 days ago
Full TimeRemoteTeam 501-1,000Since 2015H1B No Sponsor

• Manage data subject rights requests (including SARs) end-to-end, ensuring they are completed accurately and within statutory deadlines • Provide first-line advice and guidance on data protection queries across the organisation • Support the handling of personal data breaches, including logging, investigation support and follow-up actions • Maintain key information governance records, including the Record of Processing Activities (RoPA) • Monitor compliance with policies and processes, escalating risks where appropriate • Support training and awareness activities to promote good data protection practices • Assist with audits, reviews and regulatory reporting requirements

United Kingdom
£33K / year
Stonewater logo

Information Governance Manager

Stonewater

Our mission is to deliver good quality affordable homes to people who need them most.

Risk3 days ago
Full TimeRemoteTeam 501-1,000Since 2015H1B No Sponsor

• Taking ownership of statutory responsibilities • Lead the development and continuous improvement of our data protection and information governance framework • Provide expert advice and assurance to senior leaders on data protection compliance • Oversee data subject rights processes, ensuring timely and compliant handling of requests • Lead the management of personal data breaches, including investigation, risk assessment and regulatory reporting where required • Oversee and maintain the Record of Processing Activities (RoPA) and data protection records • Embed Data Protection by Design and Default across projects, systems and business processes • Develop and deliver training and awareness to build a strong data protection culture • Support audits, reviews and regulatory inspections, ensuring actions are effectively managed • Build strong relationships with internal teams, regulators and external partners • Lead on the management and response to data protection complaints • Provide line management and leadership to the Information Governance team

United Kingdom
£55K / year
Stonewater logo

Governance Officer

Stonewater

Our mission is to deliver good quality affordable homes to people who need them most.

Risk3 days ago
Full TimeRemoteTeam 501-1,000Since 2015H1B No Sponsor

• Act as a first point of contact for governance-related queries, providing timely and helpful advice to colleagues • Organise and support board and committee meetings, including preparing arrangements and attending where required • Provide dedicated support to non-executive members, helping them fulfil their roles effectively • Support the organisation in meeting its statutory responsibilities, including data protection requirements • Maintain governance records, registers and documentation to support regulatory compliance • Contribute to the completion of regulatory returns and governance processes • Review and support updates to governance frameworks, delegations and policies • Identify opportunities to improve processes and enhance the service provided by the team • Research and draft papers, proposals and reports on governance-related matters • Provide efficient case management support across governance and assurance activities

United Kingdom
£33K / year