#NC26ICT190012-2 - Technical Leadership Architecture Support services for the ITM Recovery project.
Deadline: September 7, 2026
Requester: NATO
Location: The Hague, Netherlands
Job type: Contractor
Start date: October, 2026
Security clearance: NATO SECRET
SCOPE OF WORK / DUTIES / ROLES
Architecture Validation & Guidance:
- Review and validate the design documents for the private air-gapped cloud (vCF 9, NSX-T, Cisco ACI), identifying gaps, risks, and non-conformances against best practices, dependencies and overarching NATO architecture and directives documents;
- Provide design guidance to infrastructure and platform teams throughout the implementation lifecycle;
- Define and maintain architecture decision records (ADRs) and ensure traceability from requirements to design.
Interface Control & Integration:
- Define and specify Interface Control Documents (ICDs) between the private cloud infrastructure and all producer/consumer services;
- Ensure interfaces are designed with security, observability, and automation in mind;
- Maintain an interface register and track ICD sign-off across workstream owners.
Cross-team Coordination:
- Coordinate design and implementation efforts between the cyber security team and the infrastructure team, specifically covering:
- Privileged Access Management (PAM) implementation via CyberArk;
- PKI design and certificate lifecycle management;
- Cyber Security Monitoring capability integration with the private cloud.
- Chair or co-chair joint design sessions and resolve cross-team technical dependencies.
Automation & IaaC Enablement:
- Validate and guide implementation of infrastructure automation using Ansible / AAP, Terraform, Jenkins, and vCF Automation;
- Define the automation and IaaC target operating model for the cloud platform team;
- Advise on and document the transition from traditional infrastructure support to an automation-first operating model;
- Support upskilling of cloud operating teams in automation principles and tooling.
REQUIRED SKILLS, KNOWLEDGE AND EXPERIENCE
- Hands-on experience with VMware vCF 5; working knowledge of vCF 9 (direct vCF 9 experience strongly preferred);
- Experience designing or validating NSX-T software-defined networking at enterprise scale;
- Familiarity with Cisco ACI in a multi-site or data center context;
- Experience with Backup and Recovery solution and implementation. Security;
- Experience with ensuring Security by design in private cloud or data center environments;
- Direct experience with a PAM implementation and integration;
- Understanding of PKI design and certificate management in enterprise environments;
- Solid understanding of two or more of: Ansible / AAP, Terraform, Jenkins, vCF Automation;
- Experience leading or supporting the adoption of IaaC practices within an infrastructure or cloud operating team;
- Ability to produce and maintain ADRs, ICDs, and architecture review reports to a professional standard;
- Experience coordinating across security, infrastructure, and application teams in a complex enterprise programme.
APPLY TO THIS POSITION
