Spektrum have a wide range of exciting opportunities in several global locations.

We are always looking to add great new talent to our team and look forward to hearing from you.

Spektrum supports apex purchasers (NATO, UN, EU, and National Government and Defence) and their Tier 1 supplier ecosystem with a wide range of specialist services. We provide our clients with professional services, specialised aerospace and defence sales, delivery, and operational subject matter expertise. We are looking for personnel to join our team and support key client projects.


Who we are supporting 

The NATO Communication and Information Agency (NCIA) is responsible for providing secure and effective communications and information technology (IT) services to NATO's member countries and its partners. The agency was established in 2012 and is headquartered in Brussels, Belgium.

The NCIA provides a wide range of services, including:

  • Cyber Security: The NCIA provides advanced cybersecurity solutions to protect NATO's communication networks and information systems against cyber threats.
  • Command and Control Systems: The NCIA develops and maintains the systems used by NATO's military commanders to plan and execute operations.
  • Satellite Communications: The NCIA provides satellite communications services to enable secure and reliable communications between NATO forces.
  • Electronic Warfare: The NCIA provides electronic warfare services to support NATO's mission to detect, deny, and defeat threats to its communication networks.
  • Information Management: The NCIA manages NATO's information technology infrastructure, including its databases, applications, and servers.

Overall, the NCIA plays a critical role in ensuring the security and effectiveness of NATO's communication and information technology capabilities.

The program

Assistance and Advisory Service (AAS)

The NATO Communications and Information Agency (NCI Agency) is NATO’s principal C3 capability deliverer and CIS service provider. It provides, maintains and defends the NATO enterprise-wide information technology infrastructure to enable Allies to consult together under Article IV, and, when required, stand together in the face of attack under Article V.

To provide these critical services, in the modern evolving dynamic environment the NCI Agency needs to build and maintain high performance-engaged workforce. The NCI Agency workforce strategically consists of three major categorise's: NATO International Civilians (NIC)'s, Military (Mil), and Interim Workforce Consultants (IWC)'s. The IWCs are a critical part of the overall NCI Agency workforce and make up approximately 15 percent of the total workforce.


Role Background

Supporting NATO throughout all its geographical locations, the NCI Agency is looking for Cloud Engineer (Hybrid), Infrastructure Management, joining the journey of NATO’s modernisation of IT services, through leveraging the public cloud (Microsoft Azure, M365 and Amazon AWS), delivering managed, protected, security-centric and reliable IT Services.

NCI Agency – Cloud Operations Team

The NATO Communications and Information Agency (NCI Agency) is dedicated to supporting NATO's strategic objectives, including the ambitious NATO 2030 agenda. As part of this commitment, we are spearheading the modernization and digital transformation of NATO’s IT services. Our focus is on leveraging public cloud technologies like Microsoft 365 and Intune, incorporating a security-by-design approach, and ensuring a seamless transition to a modern, collaborative workplace environment.

To achieve these goals, we are building a Cloud Operations team under the Cloud Center of Excellence, operating under the NATO Enterprise Cloud Operating Model (NECOM). The NECOM framework provides a standardized approach for cloud service management, ensuring interoperability, scalability, and security across NATO's IT infrastructure. The Cloud Center of Excellence will serve as a hub for best practices, innovation, and expertise, driving the adoption and optimization of cloud technologies within NATO. This team will play a crucial role in our journey towards providing managed, protected, and reliable End User Services.

Embracing the latest technological advancements, this initiative will foster innovation and ensure NATO remains at the cutting edge of IT capabilities. By continuously evolving and integrating new technologies, we aim to enhance operational efficiency and readiness for future challenges. This remote position offers an exciting opportunity to be at the forefront of NATO's technological evolution and contribute to the security and efficiency of our operations.

NCI Agency – Cloud Centre of Excellence (CCoE)

The Cloud Centre of Excellence (CCoE) within the NCI Agency is focused on driving successful cloud adoption and maximizing the potential of cloud technologies across the organization. It serves as a central governing body, promoting best practices, enabling knowledge sharing, and ensuring alignment between business objectives and cloud initiatives. The CCoE supports various cloud-based solutions, ensuring their effective and efficient implementation and management. By fostering a culture of continuous improvement and innovation, the CCoE helps the NCI Agency leverage cloud technologies to enhance operational efficiency, scalability, and agility.

The NCI Agency is seeking a highly skilled Cloud Engineer (Hybrid), Infrastructure Management to join our IT team. The M365 Core Infrastructure Engineer will manage the overarching platform settings for Microsoft 365, Azure-hosted virtual machines, connected databases, Kubernetes clusters, and AWS-hosted machines. This role involves maintaining and securing virtual machines for both application and OS levels, managing the top- level M365 portal/platform, and supporting application users in conjunction with M365 services. The ideal candidate will have extensive experience with cloud infrastructure, virtualization, and security tools. You will collaborate with cloud operations teams, business areas, boundary protection teams, and customers to maintain, operate, and support applications dependent on M365 user services.

As an M365 Core Infrastructure Engineer, you will be responsible for deploying, configuring, and maintaining virtual machines in both Azure and AWS environments. You will ensure the seamless integration and optimization of connected databases, utilizing services like Azure SQL Database and AWS RDS. Additionally, you will manage Kubernetes clusters using Azure Kubernetes Service (AKS) and AWS Elastic Kubernetes Service (EKS). Your role will also involve implementing and maintaining robust security measures, including network security groups, firewalls, and data loss prevention (DLP) policies.

You will develop and maintain PowerShell scripts for automating cloud management tasks, enhancing operational efficiency through tools like Azure Automation and AWS Lambda. Monitoring and reporting on the health and performance of cloud resources using Azure Monitor, AWS CloudWatch, and Kubernetes dashboards will be critical to your role. You will generate detailed reports on cloud resource usage, performance, and compliance, providing insights and recommendations for continuous improvement.

Collaboration will be key, as you work closely with CloudOps teams, business areas, and boundary protection teams to ensure cohesive cloud management strategies. You will also support application users by providing technical support and troubleshooting to ensure high levels of user satisfaction. If you are a motivated individual with a strong background in cloud infrastructure and full proficiency in English, we invite you to apply and join our dynamic team.

Role Duties and Responsibilities

M365 Platform Management:

  • Manage and optimize the overarching settings for the M365 platform.
  • Configure and maintain M365 portal settings and policies.
  • Monitor platform performance and ensure high availability.
  • Implement best practices for M365 platform management and governance.

Azure Virtual Machine Management:

  • Deploy, configure, and maintain Azure-hosted virtual machines.
  • Manage and optimize connected databases using Azure SQL Database, Azure Cosmos DB, or other database services.
  • Set up, configure, and manage Kubernetes clusters in Azure using Azure Kubernetes Service (AKS).
  • Implement security measures, including Azure Security Center, to ensure compliance with organizational policies.

AWS Virtual Machine Management:

  • Deploy, configure, and maintain AWS-hosted virtual machines using EC2.
  • Ensure seamless integration with AWS services like RDS for databases and EKS for Kubernetes.
  • Monitor and optimize the performance of AWS virtual machines using CloudWatch.
  • Implement security measures, including AWS IAM and AWS Security Hub.

Virtual Machine Maintenance:

  • Perform regular patching and updates for virtual machines using tools like Azure Update Management and AWS Systems Manager.
  • Maintain and monitor security tools, such as antivirus and intrusion detection systems.
  • Monitor virtual machine health and performance using Azure Monitor and AWS CloudWatch.
  • Troubleshoot and resolve virtual machine-related issues, ensuring minimal downtime.

Application Support:

  • Support application users in conjunction with M365 provided services, ensuring seamless integration and performance.
  • Collaborate with application teams to ensure cloud resources meet their requirements.
  • Provide technical support and troubleshooting for application-related issues.
  • Ensure high levels of user satisfaction by delivering prompt and effective support.

Collaboration with CloudOps and Business Areas:

  • Work closely with CloudOps teams to ensure cohesive cloud management strategies.
  • Collaborate with other business areas to support their cloud infrastructure needs.
  • Provide expertise and support for cloud-related projects and initiatives.
  • Participate in cross-functional team meetings and discussions to share insights and best practices.

Boundary Protection and Security:

  • Collaborate with boundary protection teams to ensure secure cloud infrastructure.
  • Implement and maintain security measures for virtual machines and cloud services, including network security groups and firewalls.
  • Conduct regular security assessments and vulnerability scans using tools like Azure Security Center and AWS Inspector.
  • Develop and maintain data loss prevention (DLP) policies for cloud infrastructure.

Automation and Scripting:

  • Develop and maintain PowerShell scripts for automating cloud management tasks in Azure.
  • Use tools like Azure Automation and AWS Lambda to enhance operational efficiency.
  • Implement automated workflows for routine maintenance tasks using tools like Azure DevOps and AWS CodePipeline.
  • Maintain and update existing automation scripts to adapt to new requirements and technologies.

Monitoring and Reporting:

  • Use monitoring tools such as Azure Monitor, AWS CloudWatch, and Kubernetes dashboards to track the health and performance of cloud resources.
  • Generate detailed reports on cloud resource usage, performance, and compliance.
  • Analyze usage patterns to optimize resource allocation and reduce costs.
  • Provide insights and recommendations for improving cloud infrastructure and services.

Continuous Improvement:

  • Stay up-to-date with the latest developments in cloud infrastructure, M365 technologies, and best practices.
  • Continuously improve cloud services to meet evolving organizational needs.
  • Participate in industry forums, webinars, and training sessions to enhance technical knowledge.
  • Propose and implement new features and enhancements based on user feedback and technological advancements.

Disaster Recovery Planning:

  • Develop and implement disaster recovery and business continuity plans for cloud infrastructure.
  • Ensure quick restoration of services in the event of an outage.
  • Conduct regular disaster recovery drills to test the effectiveness of recovery plans.
  • Maintain documentation of recovery procedures and processes.

Integration with Third-Party Services:

  • Integrate cloud services with third-party applications and services using APIs and connectors.
  • Manage and troubleshoot API integrations to ensure seamless data exchange and functionality.
  • Ensure compatibility and security of integrated services by following best practices.
  • Collaborate with third-party vendors to resolve integration issues and optimize performance.

Configuration Management:

  • Implement and maintain configuration management practices for cloud resources.
  • Use tools like Azure DevOps, Ansible, and Terraform for configuration management.
  • Ensure consistency and compliance with configuration management policies.
  • Monitor and report on configuration changes and their impact on services.

Performance Optimization:

  • Continuously monitor and optimize the performance of cloud resources.
  • Implement performance tuning and optimization strategies for virtual machines and databases.
  • Analyze performance metrics to identify bottlenecks and areas for improvement.
  • Work with development and operations teams to ensure optimal performance of applications and services.

Essential Skills and Experience

M365 Platform Management:

  • Advanced knowledge of M365 platform settings and configurations.
  • Experience optimizing M365 portal performance.
  • Proficiency in monitoring and maintaining M365 services.
  • Ability to implement best practices for platform management and governance.

Azure Virtual Machine Management:

  • Expertise in deploying and managing Azure-hosted virtual machines.
  • Experience with connected databases and Kubernetes clusters in Azure.
  • Proficiency in implementing and maintaining security measures using Azure Security Center.
  • Ability to troubleshoot and resolve Azure VM-related issues.

AWS Virtual Machine Management:

  • Skilled in deploying and managing AWS-hosted virtual machines using EC2.
  • Experience ensuring seamless integration with AWS services like RDS and EKS.
  • Proficiency in monitoring and optimizing AWS VM performance using CloudWatch.
  • Ability to implement and maintain security measures using AWS IAM and Security Hub.

Virtual Machine Maintenance:

  • Advanced knowledge of patching and maintaining virtual machines using Azure Update Management and AWS Systems Manager.
  • Experience with security tools, such as antivirus and intrusion detection systems.
  • Proficiency in monitoring virtual machine health and performance using Azure Monitor and AWS CloudWatch.
  • Ability to troubleshoot and resolve virtual machine-related issues.

Application Support:

  • Strong technical support and troubleshooting skills for application users.
  • Experience collaborating with application teams to integrate M365 services.
  • Proficiency in resolving application-related issues and ensuring seamless integration with cloud services.
  • Ability to ensure high levels of user satisfaction through effective support.

Collaboration with CloudOps and Business Areas:

  • Skilled in working with CloudOps teams and other business areas to support cloud infrastructure needs.
  • Experience providing expertise for cloud-related projects and initiatives.
  • Proficiency in participating in cross-functional team meetings and discussions.
  • Ability to share insights and best practices for cloud management.

Boundary Protection and Security:

  • Advanced knowledge of security measures for cloud infrastructure, including network security groups and firewalls.
  • Experience collaborating with boundary protection teams to ensure secure cloud infrastructure.
  • Proficiency in conducting security assessments and vulnerability scans using Azure Security Center and AWS Inspector.
  • Ability to develop and maintain DLP policies for cloud services.

Automation and Scripting:

  • Proficient in writing and executing PowerShell scripts for cloud management tasks in Azure.
  • Experience using automation tools like Azure Automation and AWS Lambda.
  • Ability to implement automated workflows for routine maintenance tasks using tools like Azure DevOps and AWS CodePipeline.
  • Knowledge of maintaining and updating automation scripts to adapt to new requirements and technologies.

Monitoring and Reporting:

  • Proficient in using monitoring tools such as Azure Monitor, AWS CloudWatch, and Kubernetes dashboards to track cloud resource health and performance.
  • Ability to generate detailed reports on cloud resource usage, performance, and compliance.
  • Experience analyzing usage patterns to optimize resource allocation and reduce costs.
  • Proficiency in providing insights and recommendations for improving cloud infrastructure and services.

Continuous Improvement:

  • Commitment to staying current with the latest developments in cloud infrastructure, M365 technologies, and best practices.
  • Proactive in implementing improvements and enhancements to cloud services.
  • Participation in industry forums, webinars, and training sessions to enhance technical knowledge.
  • Ability to propose and implement new features and enhancements based on user feedback and technological advancements.

Disaster Recovery Planning:

  • Experience developing and implementing disaster recovery and business continuity plans for cloud infrastructure.
  • Ability to conduct regular disaster recovery drills to test the effectiveness of recovery plans.
  • Knowledge of maintaining detailed documentation of recovery procedures and processes.
  • Proficiency in ensuring quick restoration of services in the event of an outage.

Integration with Third-Party Services:

  • Knowledge of integrating cloud services with third-party applications and services using APIs and connectors.
  • Experience managing and troubleshooting API integrations to ensure seamless data exchange and functionality.
  • Ability to ensure compatibility and security of integrated services by following best practices.
  • Skilled in collaborating with third-party vendors to resolve integration issues and optimize performance.

Configuration Management:

  • Expertise in implementing and maintaining configuration management practices for cloud resources.
  • Proficiency in using tools like Azure DevOps, Ansible, and Terraform for configuration
  •  
  • Ability to ensure consistency and compliance with configuration management policies.
  • Experience monitoring and reporting on configuration changes and their impact on services.

Performance Optimization:

  • Skilled in monitoring and optimizing the performance of cloud resources.
  • Proficiency in implementing performance tuning and optimization strategies for virtual machines and databases.
  • Experience analyzing performance metrics to identify bottlenecks and areas for improvement.
  • Ability to work with development and operations teams to ensure optimal performance of applications and services.

Others:

  • The candidate has strong customer relationship skills, including negotiating complex and sensitive situations under pressure.
  • The candidate must have the nationality of one of the NATO nations.

Language Proficiency

  • Business English

Working Location

  • Remote

Working Policy

  • Off-Site
  • Must work inside of a NATO Country

Travel

  • They may be required to travel, not exceeding 1 week per month, to other NCI Agency locations as part of his role.(Brussels, Belgium and The Hague, Netherlands

Security Clearance

  • Valid National or NATO Secret personal security clearance

We never know what new opportunities might be just over the horizon. If this opportunity isn't for you please feel free to send us your resume anyway and be the first to know if something suitable for your skills and experience comes up. 

Apply for this Job

* Required
Almost there! Review your information then click 'Submit Application' to apply.

resume chosen  
(File types: pdf, doc, docx, txt, rtf)


Enter the verification code sent to to confirm you are not a robot, then submit your application.

This application was flagged as potential bot traffic. To resubmit your application, turn off any VPNs, clear the browser's cache and cookies, or try another browser. If you still can't submit it, contact our support team through the help center.