Function
Task Description
• Define and maintain the reference architectures for the IP network infrastructures provided
by the client and used by its clients, as well as for the new OT network, ensuring their
robustness, high availability, scalability and compliance with security requirements.
• Lead CURB/SCADA projects, from the definition of the architecture and requirements
through to production, ensuring the coordination of the various technical and business
stakeholders and ensuring the integration of data from the field into supervision and
decision-support systems.
• Design and lead network macro- and micro-segmentation projects, in order to strengthen
the security and isolation of IT and OT environments. Expertise in MPLS and/or Cisco
Software-Defined Access (SDA) technologies is an asset.
• Design, develop and deploy monitoring and supervision infrastructures, providing centralized
visibility of the infrastructures and improving their availability, performance and security.
• Act as Network Delivery Manager for SNCB, ensuring the proper coordination and delivery of
f
network solutions, as well as compliance with commitments in terms of quality, deadlines,
performance and security.
• Lead GTC/BMS projects (Centralized Technical Management / Building Management
Systems), ensuring their design and implementation in compliance with applicable
regulations and requirements for public and tertiary buildings, in particular GTCA and EPBD.
• Assist the Security Champion of I-ICT.13 in monitoring and achieving cybersecurity objectives
and NIS requirements, including monitoring actions, risks and security measures at division
level.
• Conduct cybersecurity risk analyses according to the EBIOS method, identify risks associated
with the proposed architectures and solutions, and support business teams in defining and
formalizing treatment plans.
• Define and document cybersecurity requirements through Cybersecurity Requirements
Specifications (CRS), translating the results of risk analyses into concrete and verifiable
technical and organizational requirements.
• Support teams in the design and evolution of security architectures, ensuring the application
of the principles of defense in depth, segmentation and security by design, particularly with
reference to the IEC 62443 standard for industrial and OT environments.
• Provide advice and expertise to IT, OT, network, security and business teams, bringing a
transversal vision that ensures the consistency of the different initiatives and their alignment
with client’s architecture and cybersecurity standards.
Technical Skills
• Knowledge of Dutch or French (C1: complex proficiency).
• Knowledge of English: understanding, writing and reading (B2: upper-intermediate level).
• Demonstrated technical experience in the design, configuration and/or deployment of
Software Defined Networking (SDN) solutions, in particular Cisco Software-Defined Access
(SDA) and Cisco Catalyst Center. This experience must be demonstrated through at least one
concrete and significant project experience. (L2: at least 2 years of experience)
• Significant experience in the use of methodologies and practices associated with CCNA, ITIL
and Project Management. Certifications are an asset, but expertise must above all be
demonstrated through practical application in at least one concrete and significant project.
Certifications do not necessarily need to be recent or renewed. (L3: at least 5 years of
experience)
• Demonstrated technical experience in the design, implementation and/or operation of IP
networks, including routing protocols, DNS, DHCP, WLAN, ISE, Infoblox, etc. This expertise
must be demonstrated through at least 2 concrete project experiences. (L4: at least 10 years
of experience)
• Demonstrated experience in the design and implementation of network segmentation and
micro-segmentation strategies, including the concepts of VRF, VDOM, SGT and associated
technologies. This competence must be demonstrated through at least one concrete project
experience involving the segmentation of network environments of a size similar to the
client. (L2: at least 2 years of experience)
• Demonstrated technical experience in the design, implementation and/or evolution of
firewalling solutions and in the application of network traffic security principles. This
experience must be demonstrated through at least one concrete and significant project
experience. (L4: at least 10 years of experience)
• Demonstrated experience in the railway environment and in taking into account its specific
requirements, acquired within the framework of at least one concrete project carried out for
the client, SNCB or an actor in the railway sector. Concrete and demonstrated experience in
one or more railway environments such as Interlocking, ETCS and/or signalling must also
have been acquired and demonstrated through at least one relevant project experience. (L3:
at least 5 years of experience)
• Demonstrated experience in applying the concepts and requirements related to the EN ISO
52120-1 standard, particularly in the context of technical management systems and building
automation. This knowledge must be illustrated by at least one concrete project experience.
(L2: at least 2 years of experience)
• Demonstrated experience in applying cybersecurity requirements related to NIS2 and the
principles of the ISO 27001 standard. This expertise must be demonstrated through at least
one concrete project experience involving the implementation, assessment or improvement
of security and/or governance measures. (L2: at least 2 years of experience)
• Demonstrated technical experience in the design and architecture of Operational Technology
(OT) environments, taking into account the principles and requirements of the IEC 62443
standard, including the Purdue model and associated architecture and segmentation
principles. This expertise must be demonstrated through at least one concrete project
experience in an OT/industrial environment. (L2: at least 2 years of experience)