# European Cybersecurity Skills Framework (ECSF) Role Profiles (September 2022)

European Cybersecurity Skills Framework (ECSF) Role Profiles, September 2022 (v1). 12 role profiles; each profile is a top competency whose children are Main task(s), Key skill(s), and Key knowledge from the official ENISA JSON. Profile competencyText is the official summary statement; mission, alternative titles, deliverables, and e-CF mappings are in comments. ENISA, ISBN 978-92-9204-584-5, DOI 10.2824/859537, CC-BY 4.0. Generated for TLA Toolbox import 2026-08-27. PDF: https://www.enisa.europa.eu/sites/default/files/publications/European%20Cybersecurity%20Skills%20Framework%20Role%20Profiles.pdf.

## Framework Details

| Property | Value |
| --- | --- |
| **Status** | draft |
| **Version** | 1.0 |
| **Competencies** | 364 |

## Competencies

| Statement | Domain | Bloom Level | Context |
| --- | --- | --- |--- |
| Demonstrate knowledge of cybersecurity-related certifications. | Penetration Tester — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity recommendations and best practices. | Penetration Tester — Knowledge | - | - |
| Demonstrate knowledge of computer systems vulnerabilities. | Penetration Tester — Knowledge | - | - |
| Demonstrate knowledge of computer programming. | Penetration Tester — Knowledge | - | - |
| Demonstrate knowledge of penetration testing tools. | Penetration Tester — Knowledge | - | - |
| Demonstrate knowledge of penetration testing standards, methodologies and frameworks. | Penetration Tester — Knowledge | - | - |
| Demonstrate knowledge of penetration testing procedures. | Penetration Tester — Knowledge | - | - |
| Demonstrate knowledge of computer networks security. | Penetration Tester — Knowledge | - | - |
| Demonstrate knowledge of operating systems security. | Penetration Tester — Knowledge | - | - |
| Demonstrate knowledge of offensive and defensive security procedures. | Penetration Tester — Knowledge | - | - |
| Demonstrate knowledge of information technology (IT) and operational technology (OT) appliances. | Penetration Tester — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity attack procedures. | Penetration Tester — Knowledge | - | - |
| Review codes assess their security. | Penetration Tester — Skill | - | - |
| Decompose and analyse systems to identify weaknesses and ineffective controls. | Penetration Tester — Skill | - | - |
| Conduct technical analysis and reporting. | Penetration Tester — Skill | - | - |
| Use penetration testing tools effectively. | Penetration Tester — Skill | - | - |
| Communicate, present and report to relevant stakeholders. | Penetration Tester — Skill | - | - |
| Identify and solve cybersecurity-related issues. | Penetration Tester — Skill | - | - |
| Think creatively and outside the box. | Penetration Tester — Skill | - | - |
| Conduct ethical hacking. | Penetration Tester — Skill | - | - |
| Identify and exploit vulnerabilities. | Penetration Tester — Skill | - | - |
| Perform social engineering. | Penetration Tester — Skill | - | - |
| Develop codes, scripts and programmes. | Penetration Tester — Skill | - | - |
| Deploy penetration testing tools and test programs. | Penetration Tester — Task | - | - |
| Document and report penetration testing results to stakeholders. | Penetration Tester — Task | - | - |
| Establish procedures for penetration testing result analysis and reporting. | Penetration Tester — Task | - | - |
| Organise test plans and procedures for penetration testing. | Penetration Tester — Task | - | - |
| Select and develop appropriate penetration testing techniques. | Penetration Tester — Task | - | - |
| Test systems and operations compliance with regulatory standards. | Penetration Tester — Task | - | - |
| Identify attack vectors, uncover and demonstrate exploitation of technical cybersecurity vulnerabilities. | Penetration Tester — Task | - | - |
| Identify, analyse and assess technical and organisational cybersecurity vulnerabilities. | Penetration Tester — Task | - | - |
| Demonstrate knowledge of cybersecurity-related certifications. | Digital Forensics Investigator — Knowledge | - | - |
| Demonstrate knowledge of computer networks security. | Digital Forensics Investigator — Knowledge | - | - |
| Demonstrate knowledge of operating systems security. | Digital Forensics Investigator — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity attack procedures. | Digital Forensics Investigator — Knowledge | - | - |
| Demonstrate knowledge of computer systems vulnerabilities. | Digital Forensics Investigator — Knowledge | - | - |
| Demonstrate knowledge of cyber threats. | Digital Forensics Investigator — Knowledge | - | - |
| Demonstrate knowledge of malware analysis tools. | Digital Forensics Investigator — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity related laws, regulations and legislations. | Digital Forensics Investigator — Knowledge | - | - |
| Demonstrate knowledge of criminal investigation procedures, standards, methodologies and frameworks. | Digital Forensics Investigator — Knowledge | - | - |
| Demonstrate knowledge of testing procedures. | Digital Forensics Investigator — Knowledge | - | - |
| Demonstrate knowledge of digital forensics analysis procedures. | Digital Forensics Investigator — Knowledge | - | - |
| Demonstrate knowledge of digital forensics standards, methodologies and frameworks. | Digital Forensics Investigator — Knowledge | - | - |
| Demonstrate knowledge of digital forensics recommendations and best practices. | Digital Forensics Investigator — Knowledge | - | - |
| Develop and communicate, detailed and reasoned investigation reports. | Digital Forensics Investigator — Skill | - | - |
| Explain and present digital evidence in a simple, straightforward and easy to understand way. | Digital Forensics Investigator — Skill | - | - |
| Identify, analyse and correlate cybersecurity events. | Digital Forensics Investigator — Skill | - | - |
| Collect information while preserving its integrity. | Digital Forensics Investigator — Skill | - | - |
| Work ethically and independently; not influenced and biased by internal or external actors. | Digital Forensics Investigator — Skill | - | - |
| Select and customise forensics testing, analysing and reporting techniques. | Digital Forensics Investigator — Task | - | - |
| Systematically and deterministic document, report and present digital forensic analysis findings and results. | Digital Forensics Investigator — Task | - | - |
| Inspect environments for evidence of unauthorised and unlawful actions. | Digital Forensics Investigator — Task | - | - |
| Preserve and protect digital evidence and make it available to authorised stakeholders. | Digital Forensics Investigator — Task | - | - |
| Identify, recover, extract, document and analyse digital evidence. | Digital Forensics Investigator — Task | - | - |
| Develop digital forensics investigation policy, plans and procedures. | Digital Forensics Investigator — Task | - | - |
| Demonstrate knowledge of cybersecurity-related technologies. | Cybersecurity Risk Manager — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity-related certifications. | Cybersecurity Risk Manager — Knowledge | - | - |
| Demonstrate knowledge of monitoring, testing and evaluating cybersecurity controls' effectiveness. | Cybersecurity Risk Manager — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity risks. | Cybersecurity Risk Manager — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity controls and solutions. | Cybersecurity Risk Manager — Knowledge | - | - |
| Demonstrate knowledge of computer systems vulnerabilities. | Cybersecurity Risk Manager — Knowledge | - | - |
| Demonstrate knowledge of cyber threats. | Cybersecurity Risk Manager — Knowledge | - | - |
| Demonstrate knowledge of risk management recommendations and best practices. | Cybersecurity Risk Manager — Knowledge | - | - |
| Demonstrate knowledge of risk management tools. | Cybersecurity Risk Manager — Knowledge | - | - |
| Demonstrate knowledge of risk management standards, methodologies and frameworks. | Cybersecurity Risk Manager — Knowledge | - | - |
| Propose and manage risk-sharing options. | Cybersecurity Risk Manager — Skill | - | - |
| Communicate, present and report to relevant stakeholders. | Cybersecurity Risk Manager — Skill | - | - |
| Build a cybersecurity risk-aware environment. | Cybersecurity Risk Manager — Skill | - | - |
| Enable business assets owners, executives and other stakeholders to make risk-informed decisions to manage and mitigate risks. | Cybersecurity Risk Manager — Skill | - | - |
| Analyse and consolidate organisation’s quality and risk management practices. | Cybersecurity Risk Manager — Skill | - | - |
| Implement cybersecurity risk management frameworks, methodologies and guidelines and ensure compliance with regulations and standards. | Cybersecurity Risk Manager — Skill | - | - |
| Develop, maintain, report and communicate complete risk management cycle. | Cybersecurity Risk Manager — Task | - | - |
| Ensure that all cybersecurity risks remain at an acceptable level for the organisation’s assets. | Cybersecurity Risk Manager — Task | - | - |
| Monitor effectiveness of cybersecurity controls and risk levels. | Cybersecurity Risk Manager — Task | - | - |
| Assess cybersecurity risks and propose most appropriate risk treatment options, including security controls and risk mitigation and avoidance that best address the organisation’s strategy. | Cybersecurity Risk Manager — Task | - | - |
| Identification of threat landscape including attackers’ profiles and estimation of attacks’ potential. | Cybersecurity Risk Manager — Task | - | - |
| Identify and assess cybersecurity-related threats and vulnerabilities of ICT systems. | Cybersecurity Risk Manager — Task | - | - |
| Manage an inventory of organisation’s assets. | Cybersecurity Risk Manager — Task | - | - |
| Develop an organisation’s cybersecurity risk management strategy. | Cybersecurity Risk Manager — Task | - | - |
| Demonstrate knowledge of responsible information disclosure procedures. | Cybersecurity Researcher — Knowledge | - | - |
| Demonstrate knowledge of multidiscipline aspect of cybersecurity. | Cybersecurity Researcher — Knowledge | - | - |
| Demonstrate knowledge of legal, regulatory and legislative requirements on releasing or using cybersecurity related technologies. | Cybersecurity Researcher — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity standards, methodologies and frameworks. | Cybersecurity Researcher — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity-related research, development and innovation (RDI). | Cybersecurity Researcher — Knowledge | - | - |
| Collaborate with other team members and colleagues. | Cybersecurity Researcher — Skill | - | - |
| Identify and solve cybersecurity-related issues. | Cybersecurity Researcher — Skill | - | - |
| Communicate, present and report to relevant stakeholders. | Cybersecurity Researcher — Skill | - | - |
| Monitor new advancements in cybersecurity-related technologies. | Cybersecurity Researcher — Skill | - | - |
| Decompose and analyse systems to develop security and privacy requirements and identify effective solutions. | Cybersecurity Researcher — Skill | - | - |
| Decompose and analyse systems to identify weaknesses and ineffective controls. | Cybersecurity Researcher — Skill | - | - |
| Generate new ideas and transfer theory into practice. | Cybersecurity Researcher — Skill | - | - |
| Publish and present scientific works and research and development results. | Cybersecurity Researcher — Task | - | - |
| Lead or participate in the innovation processes and projects including project management and budgeting. | Cybersecurity Researcher — Task | - | - |
| Identify cross-sectoral cybersecurity achievements and apply them in a different context or propose innovative approaches and solutions. | Cybersecurity Researcher — Task | - | - |
| Assist in cybersecurity-related capacity building including awareness, theoretical training, practical training, testing, mentoring, supervising and sharing. | Cybersecurity Researcher — Task | - | - |
| Contributes towards cutting-edge cybersecurity business ideas, services and solutions. | Cybersecurity Researcher — Task | - | - |
| Select and apply frameworks, methods, standards, tools and protocols including a building and testing a proof of concept to support projects. | Cybersecurity Researcher — Task | - | - |
| Conduct experiments and develop a proof of concept, pilots and prototypes for cybersecurity solutions. | Cybersecurity Researcher — Task | - | - |
| Assist in the development of innovative cybersecurity-related solutions. | Cybersecurity Researcher — Task | - | - |
| Advance the current state-of-the-art in cybersecurity-related topics. | Cybersecurity Researcher — Task | - | - |
| Manifest and generate research and innovation ideas. | Cybersecurity Researcher — Task | - | - |
| Conduct research, innovation and development work in cybersecurity-related topics. | Cybersecurity Researcher — Task | - | - |
| Analyse and assess cybersecurity technologies, solutions, developments and processes. | Cybersecurity Researcher — Task | - | - |
| Demonstrate knowledge of cybersecurity-related technologies. | Cybersecurity Implementer — Knowledge | - | - |
| Demonstrate knowledge of testing procedures. | Cybersecurity Implementer — Knowledge | - | - |
| Demonstrate knowledge of testing standards, methodologies and frameworks. | Cybersecurity Implementer — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity recommendations and best practices. | Cybersecurity Implementer — Knowledge | - | - |
| Demonstrate knowledge of secure coding recommendations and best practices. | Cybersecurity Implementer — Knowledge | - | - |
| Demonstrate knowledge of offensive and defensive security practices. | Cybersecurity Implementer — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity controls and solutions. | Cybersecurity Implementer — Knowledge | - | - |
| Demonstrate knowledge of computer networks security. | Cybersecurity Implementer — Knowledge | - | - |
| Demonstrate knowledge of operating systems security. | Cybersecurity Implementer — Knowledge | - | - |
| Demonstrate knowledge of computer programming. | Cybersecurity Implementer — Knowledge | - | - |
| Demonstrate knowledge of secure development lifecycle. | Cybersecurity Implementer — Knowledge | - | - |
| Collaborate with other team members and colleagues. | Cybersecurity Implementer — Skill | - | - |
| Identify and solve cybersecurity-related issues. | Cybersecurity Implementer — Skill | - | - |
| Develop code, scripts and programmes. | Cybersecurity Implementer — Skill | - | - |
| Assess the security and performance of solutions. | Cybersecurity Implementer — Skill | - | - |
| Configure solutions according to the organisation’s security policy. | Cybersecurity Implementer — Skill | - | - |
| Integrate cybersecurity solutions to the organisation’s infrastructure. | Cybersecurity Implementer — Skill | - | - |
| Communicate, present and report to relevant stakeholders. | Cybersecurity Implementer — Skill | - | - |
| Implement, apply and manage patches to products to address technical vulnerabilities. | Cybersecurity Implementer — Task | - | - |
| Work close with the IT/OT personnel on cybersecurity-related actions. | Cybersecurity Implementer — Task | - | - |
| Document and report on the security of systems, services and products. | Cybersecurity Implementer — Task | - | - |
| Monitor and assure the performance of the implemented cybersecurity controls. | Cybersecurity Implementer — Task | - | - |
| Implement cybersecurity procedures and controls. | Cybersecurity Implementer — Task | - | - |
| Maintain and upgrade the security of systems, services and products. | Cybersecurity Implementer — Task | - | - |
| Securely configure systems, services and products. | Cybersecurity Implementer — Task | - | - |
| Integrate cybersecurity solutions and ensure their sound operation. | Cybersecurity Implementer — Task | - | - |
| Provide cybersecurity-related support to users and customers. | Cybersecurity Implementer — Task | - | - |
| Develop, implement, maintain, upgrade, test cybersecurity products. | Cybersecurity Implementer — Task | - | - |
| Demonstrate knowledge of cybersecurity controls and solutions. | Cybersecurity Educator — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity standards, methodologies and frameworks. | Cybersecurity Educator — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity recommendations and best practices. | Cybersecurity Educator — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity related laws, regulations and legislations. | Cybersecurity Educator — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity education and training standards, methodologies and frameworks. | Cybersecurity Educator — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity-related certifications. | Cybersecurity Educator — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity awareness, education and training programme development. | Cybersecurity Educator — Knowledge | - | - |
| Demonstrate knowledge of pedagogical standards, methodologies and frameworks. | Cybersecurity Educator — Knowledge | - | - |
| Motivate and encourage people. | Cybersecurity Educator — Skill | - | - |
| Identify and select appropriate pedagogical approaches for the intended audience. | Cybersecurity Educator — Skill | - | - |
| Communicate, present and report to relevant stakeholders. | Cybersecurity Educator — Skill | - | - |
| Develop evaluation programs for the awareness, training and education activities. | Cybersecurity Educator — Skill | - | - |
| Utilise existing cybersecurity-related training resources. | Cybersecurity Educator — Skill | - | - |
| Provide training towards cybersecurity and data protection professional certifications. | Cybersecurity Educator — Skill | - | - |
| Develop cybersecurity exercises including simulations using cyber range environments. | Cybersecurity Educator — Skill | - | - |
| Design, develop and deliver learning programmes to cover cybersecurity needs. | Cybersecurity Educator — Skill | - | - |
| Identify needs in cybersecurity awareness, training and education. | Cybersecurity Educator — Skill | - | - |
| Continuously maintain and enhance expertise; encourage and empower continuous enhancement of cybersecurity capacities and capabilities building. | Cybersecurity Educator — Task | - | - |
| Provide guidance on cybersecurity certification programs for individuals. | Cybersecurity Educator — Task | - | - |
| Design, develop and deliver cybersecurity simulations, virtual labs or cyber range environments. | Cybersecurity Educator — Task | - | - |
| Finding new approaches for education, training and awareness-raising. | Cybersecurity Educator — Task | - | - |
| Evaluate and report trainee’s performance. | Cybersecurity Educator — Task | - | - |
| Monitor, evaluate and report training effectiveness. | Cybersecurity Educator — Task | - | - |
| Organise, design and deliver cybersecurity and data protection awareness-raising activities, seminars, courses, practical training. | Cybersecurity Educator — Task | - | - |
| Develop, update and deliver cybersecurity and data protection curricula and educational material for training and awareness based on content, method, tools, trainees need. | Cybersecurity Educator — Task | - | - |
| Demonstrate knowledge of cybersecurity-related certifications. | Cybersecurity Auditor — Knowledge | - | - |
| Demonstrate knowledge of auditing-related certification. | Cybersecurity Auditor — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity standards, methodologies and frameworks. | Cybersecurity Auditor — Knowledge | - | - |
| Demonstrate knowledge of auditing standards, methodologies and frameworks. | Cybersecurity Auditor — Knowledge | - | - |
| Demonstrate knowledge of conformity assessment standards, methodologies and frameworks. | Cybersecurity Auditor — Knowledge | - | - |
| Demonstrate knowledge of monitoring, testing and evaluating cybersecurity controls' effectiveness. | Cybersecurity Auditor — Knowledge | - | - |
| Demonstrate knowledge of legal, regulatory and legislative compliance requirements, recommendations and best practices. | Cybersecurity Auditor — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity controls and solutions. | Cybersecurity Auditor — Knowledge | - | - |
| Audit with integrity, being impartial and independent. | Cybersecurity Auditor — Skill | - | - |
| Collect, evaluate, maintain and protect auditing information. | Cybersecurity Auditor — Skill | - | - |
| Communicate, explain and adapt legal and regulatory requirements and business needs. | Cybersecurity Auditor — Skill | - | - |
| Decompose and analyse systems to identify weaknesses and ineffective controls. | Cybersecurity Auditor — Skill | - | - |
| Analyse business processes, assess and review software or hardware security, as well as technical and organisational controls. | Cybersecurity Auditor — Skill | - | - |
| Apply auditing tools and techniques. | Cybersecurity Auditor — Skill | - | - |
| Follow and practice auditing frameworks, standards and methodologies. | Cybersecurity Auditor — Skill | - | - |
| Organise and work in a systematic and deterministic way based on evidence. | Cybersecurity Auditor — Skill | - | - |
| Monitor risk remediation activities. | Cybersecurity Auditor — Task | - | - |
| Develop and communicate conformity assessment, assurance, audit, certification and maintenance reports. | Cybersecurity Auditor — Task | - | - |
| Maintain and protect the integrity of audit records. | Cybersecurity Auditor — Task | - | - |
| Execute the audit plan and collect evidence and measurements. | Cybersecurity Auditor — Task | - | - |
| Audit conformity with cybersecurity-related applicable standards. | Cybersecurity Auditor — Task | - | - |
| Audit compliance with cybersecurity-related applicable laws and regulations. | Cybersecurity Auditor — Task | - | - |
| Review target of evaluation, security objectives and requirements based on the risk profile. | Cybersecurity Auditor — Task | - | - |
| Develop an audit plan describing the frameworks, standards, methodology, procedures and auditing tests. | Cybersecurity Auditor — Task | - | - |
| Define audit scope, objectives and criteria to audit against. | Cybersecurity Auditor — Task | - | - |
| Establish the target environment and manage auditing activities. | Cybersecurity Auditor — Task | - | - |
| Establish the methodologies and practices used for systems auditing. | Cybersecurity Auditor — Task | - | - |
| Develop the organisation's auditing policy, procedures, standards and guidelines. | Cybersecurity Auditor — Task | - | - |
| Demonstrate knowledge of privacy-by-design standards, methodologies and frameworks. | Cybersecurity Architect — Knowledge | - | - |
| Demonstrate knowledge of privacy-Enhancing Technologies (PET). | Cybersecurity Architect — Knowledge | - | - |
| Demonstrate knowledge of legacy cybersecurity procedures. | Cybersecurity Architect — Knowledge | - | - |
| Demonstrate knowledge of legal, regulatory and legislative compliance requirements, recommendations and best practices. | Cybersecurity Architect — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity trends. | Cybersecurity Architect — Knowledge | - | - |
| Demonstrate knowledge of cyber threats. | Cybersecurity Architect — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity risks. | Cybersecurity Architect — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity controls and solutions. | Cybersecurity Architect — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity-related technologies. | Cybersecurity Architect — Knowledge | - | - |
| Demonstrate knowledge of security architecture reference models. | Cybersecurity Architect — Knowledge | - | - |
| Demonstrate knowledge of secure development lifecycle. | Cybersecurity Architect — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity-related requirements analysis. | Cybersecurity Architect — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity standards, methodologies and frameworks. | Cybersecurity Architect — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity recommendations and best practices. | Cybersecurity Architect — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity-related certifications. | Cybersecurity Architect — Knowledge | - | - |
| Coordinate the integration of security solutions. | Cybersecurity Architect — Skill | - | - |
| Build resilience against points of failure across the architecture. | Cybersecurity Architect — Skill | - | - |
| Select appropriate specifications, procedures and controls. | Cybersecurity Architect — Skill | - | - |
| Propose cybersecurity architectures based on stakeholder’s needs and budget. | Cybersecurity Architect — Skill | - | - |
| Communicate, present and report to relevant stakeholders. | Cybersecurity Architect — Skill | - | - |
| Guide and communicate with implementers and IT/OT personnel. | Cybersecurity Architect — Skill | - | - |
| Design systems and architectures based on security and privacy by design and by defaults cybersecurity principles. | Cybersecurity Architect — Skill | - | - |
| Decompose and analyse systems to develop security and privacy requirements and identify effective solutions. | Cybersecurity Architect — Skill | - | - |
| Draw cybersecurity architectural and functional specifications. | Cybersecurity Architect — Skill | - | - |
| Conduct user and business security requirements analysis. | Cybersecurity Architect — Skill | - | - |
| Assess the implemented architecture to maintain an appropriate level of security. | Cybersecurity Architect — Task | - | - |
| Adapt the organisation’s architecture to emerging threats. | Cybersecurity Architect — Task | - | - |
| Evaluate the impact of cybersecurity solutions on the design and performance of the organisation’s architecture. | Cybersecurity Architect — Task | - | - |
| Collaborate with other teams and colleagues. | Cybersecurity Architect — Task | - | - |
| Assure the security of the solution architectures through security reviews and certification. | Cybersecurity Architect — Task | - | - |
| Analyse and evaluate the cybersecurity of the organisation’s architecture. | Cybersecurity Architect — Task | - | - |
| Coordinate the development, integration and maintenance of cybersecurity components ensuring the cybersecurity specifications. | Cybersecurity Architect — Task | - | - |
| Establish a secure environment during the development lifecycle of systems, services and products. | Cybersecurity Architect — Task | - | - |
| Present high-level security architecture design to stakeholders. | Cybersecurity Architect — Task | - | - |
| Produce architectural documentation and specifications. | Cybersecurity Architect — Task | - | - |
| Develop organisation’s cybersecurity architecture to address security and privacy requirements. | Cybersecurity Architect — Task | - | - |
| Design and propose a secure architecture to implement the organisation’s strategy. | Cybersecurity Architect — Task | - | - |
| Demonstrate knowledge of cybersecurity-related certifications. | Cyber Threat Intelligence Specialist — Knowledge | - | - |
| Demonstrate knowledge of threat actors Tactics, Techniques and Procedures (TTPs). | Cyber Threat Intelligence Specialist — Knowledge | - | - |
| Demonstrate knowledge of advanced and persistent cyber threats (APT). | Cyber Threat Intelligence Specialist — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity attack procedures. | Cyber Threat Intelligence Specialist — Knowledge | - | - |
| Demonstrate knowledge of cyber threat actors. | Cyber Threat Intelligence Specialist — Knowledge | - | - |
| Demonstrate knowledge of cyber threats. | Cyber Threat Intelligence Specialist — Knowledge | - | - |
| Demonstrate knowledge of cross-domain and border-domain knowledge related to cybersecurity. | Cyber Threat Intelligence Specialist — Knowledge | - | - |
| Demonstrate knowledge of responsible information disclosure procedures. | Cyber Threat Intelligence Specialist — Knowledge | - | - |
| Demonstrate knowledge of cyber Threat Intelligence (CTI) sharing standards, methodologies and frameworks. | Cyber Threat Intelligence Specialist — Knowledge | - | - |
| Demonstrate knowledge of computer programming. | Cyber Threat Intelligence Specialist — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity controls and solutions. | Cyber Threat Intelligence Specialist — Knowledge | - | - |
| Demonstrate knowledge of computer networks security. | Cyber Threat Intelligence Specialist — Knowledge | - | - |
| Demonstrate knowledge of operating systems security. | Cyber Threat Intelligence Specialist — Knowledge | - | - |
| Use and apply CTI platforms and tools. | Cyber Threat Intelligence Specialist — Skill | - | - |
| Communicate, present and report to relevant stakeholders. | Cyber Threat Intelligence Specialist — Skill | - | - |
| Communicate, coordinate and cooperate with internal and external stakeholders. | Cyber Threat Intelligence Specialist — Skill | - | - |
| Model threats, actors and TTPs. | Cyber Threat Intelligence Specialist — Skill | - | - |
| Identify non-cyber events with implications on cyber-related activities. | Cyber Threat Intelligence Specialist — Skill | - | - |
| Conduct technical analysis and reporting. | Cyber Threat Intelligence Specialist — Skill | - | - |
| Automate threat intelligence management procedures. | Cyber Threat Intelligence Specialist — Skill | - | - |
| Identify threat actors TTPs and campaigns. | Cyber Threat Intelligence Specialist — Skill | - | - |
| Collect, analyse and correlate cyber threat information originating from multiple sources. | Cyber Threat Intelligence Specialist — Skill | - | - |
| Collaborate with other team members and colleagues. | Cyber Threat Intelligence Specialist — Skill | - | - |
| Convey the proper security severity by explaining the risk exposure and its consequences to non-technical stakeholders. | Cyber Threat Intelligence Specialist — Task | - | - |
| Articulate and communicate intelligence openly and publicly at all levels. | Cyber Threat Intelligence Specialist — Task | - | - |
| Leverage intelligence data to support and assist with threat modelling, recommendations for Risk Mitigation and cyber threat hunting. | Cyber Threat Intelligence Specialist — Task | - | - |
| Coordinate with stakeholders to share and consume intelligence on relevant cyber threats. | Cyber Threat Intelligence Specialist — Task | - | - |
| Elaborate and advise on mitigation plans at the tactical, operational and strategic level. | Cyber Threat Intelligence Specialist — Task | - | - |
| Produce actionable reports based on threat intelligence data. | Cyber Threat Intelligence Specialist — Task | - | - |
| Identify, monitor and assess the Tactics, Techniques and Procedures (TTPs) used by cyber threat actors by analysing open-source and proprietary data, information and intelligence. | Cyber Threat Intelligence Specialist — Task | - | - |
| Identify and assess cyber threat actors targeting the organisation. | Cyber Threat Intelligence Specialist — Task | - | - |
| Implement threat intelligence collection, analysis and production of actionable intelligence and dissemination to security stakeholders. | Cyber Threat Intelligence Specialist — Task | - | - |
| Translate business requirements into Intelligence Requirements. | Cyber Threat Intelligence Specialist — Task | - | - |
| Develop plans and procedures to manage threat intelligence. | Cyber Threat Intelligence Specialist — Task | - | - |
| Develop, implement and manage the organisation's cyber threat intelligence strategy. | Cyber Threat Intelligence Specialist — Task | - | - |
| Demonstrate knowledge of privacy impact assessment standards, methodologies and frameworks. | Cyber Legal, Policy & Compliance Officer — Knowledge | - | - |
| Demonstrate knowledge of legal, regulatory and legislative compliance requirements, recommendations and best practices. | Cyber Legal, Policy & Compliance Officer — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity policies. | Cyber Legal, Policy & Compliance Officer — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity standards, methodologies and frameworks. | Cyber Legal, Policy & Compliance Officer — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity related laws, regulations and legislations. | Cyber Legal, Policy & Compliance Officer — Knowledge | - | - |
| Collaborate with other team members and colleagues. | Cyber Legal, Policy & Compliance Officer — Skill | - | - |
| Understand legal framework modifications implications to the organisation’s cybersecurity and data protection strategy and policies. | Cyber Legal, Policy & Compliance Officer — Skill | - | - |
| Understand, practice and adhere to ethical requirements and standards. | Cyber Legal, Policy & Compliance Officer — Skill | - | - |
| Explain and communicate data protection and privacy topics to stakeholders and users. | Cyber Legal, Policy & Compliance Officer — Skill | - | - |
| Conduct, monitor and review privacy impact assessments using standards, frameworks, acknowledged methodologies and tools. | Cyber Legal, Policy & Compliance Officer — Skill | - | - |
| Lead the development of appropriate cybersecurity and privacy policies and procedures that complement the business needs and legal requirements; further ensure its acceptance, comprehension and implementation and communicate it between the involved parties. | Cyber Legal, Policy & Compliance Officer — Skill | - | - |
| Carry out working-life practices of the data protection and privacy issues involved in the implementation of the organisational processes, finance and business strategy. | Cyber Legal, Policy & Compliance Officer — Skill | - | - |
| Comprehensive understanding of the business strategy, models and products and ability to factor into legal, regulatory and standards’ requirements. | Cyber Legal, Policy & Compliance Officer — Skill | - | - |
| Manage legal aspects of information security responsibilities and third-party relations. | Cyber Legal, Policy & Compliance Officer — Task | - | - |
| Develop and propose staff awareness training to achieve compliance and foster a culture of data protection within the organization. | Cyber Legal, Policy & Compliance Officer — Task | - | - |
| Contribute to the development of the organisation’s cybersecurity strategy, policy and procedures. | Cyber Legal, Policy & Compliance Officer — Task | - | - |
| Cooperate and share information with authorities and professional groups. | Cyber Legal, Policy & Compliance Officer — Task | - | - |
| Monitor audits and data protection related training activities. | Cyber Legal, Policy & Compliance Officer — Task | - | - |
| Assist in designing, implementing, auditing and compliance testing activities in order to ensure cybersecurity and privacy compliance. | Cyber Legal, Policy & Compliance Officer — Task | - | - |
| Act as a key contact point to handle queries and complaints regarding data processing. | Cyber Legal, Policy & Compliance Officer — Task | - | - |
| Ensure that data owners, holders, controllers, processors, subjects, internal or external partners and entities are informed about their data protection rights, obligations and responsibilities. | Cyber Legal, Policy & Compliance Officer — Task | - | - |
| Enforce and advocate organisation’s data privacy and protection program. | Cyber Legal, Policy & Compliance Officer — Task | - | - |
| Conduct privacy impact assessments and develop, maintain, communicate and train upon the privacy policies, procedures. | Cyber Legal, Policy & Compliance Officer — Task | - | - |
| Identify and document compliance gaps. | Cyber Legal, Policy & Compliance Officer — Task | - | - |
| Ensure compliance with and provide legal advice and guidance on data privacy and data protection standards, laws and regulations. | Cyber Legal, Policy & Compliance Officer — Task | - | - |
| Demonstrate knowledge of computer Security Incident Response Teams (CSIRTs) operation. | Cyber Incident Responder — Knowledge | - | - |
| Demonstrate knowledge of secure Operation Centres (SOCs) operation. | Cyber Incident Responder — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity related laws, regulations and legislations. | Cyber Incident Responder — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity-related certifications. | Cyber Incident Responder — Knowledge | - | - |
| Demonstrate knowledge of computer systems vulnerabilities. | Cyber Incident Responder — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity attack procedures. | Cyber Incident Responder — Knowledge | - | - |
| Demonstrate knowledge of cyber threats. | Cyber Incident Responder — Knowledge | - | - |
| Demonstrate knowledge of computer networks security. | Cyber Incident Responder — Knowledge | - | - |
| Demonstrate knowledge of operating systems security. | Cyber Incident Responder — Knowledge | - | - |
| Demonstrate knowledge of incident handling communication procedures. | Cyber Incident Responder — Knowledge | - | - |
| Demonstrate knowledge of incident handling tools. | Cyber Incident Responder — Knowledge | - | - |
| Demonstrate knowledge of incident handling recommendations and best practices. | Cyber Incident Responder — Knowledge | - | - |
| Demonstrate knowledge of incident handling standards, methodologies and frameworks. | Cyber Incident Responder — Knowledge | - | - |
| Manage and analyse log files. | Cyber Incident Responder — Skill | - | - |
| Communicate, present and report to relevant stakeholders. | Cyber Incident Responder — Skill | - | - |
| Work under pressure. | Cyber Incident Responder — Skill | - | - |
| Work on operating systems, servers, clouds and relevant infrastructures. | Cyber Incident Responder — Skill | - | - |
| Collect, analyse and correlate cyber threat information originating from multiple sources. | Cyber Incident Responder — Skill | - | - |
| Practice all technical, functional and operational aspects of cybersecurity incident handling and response. | Cyber Incident Responder — Skill | - | - |
| Cooperate with key personnel for reporting of security incidents according to applicable legal framework. | Cyber Incident Responder — Task | - | - |
| Cooperate with Secure Operation Centres (SOCs) and Computer Security Incident Response Teams (CSIRTs). | Cyber Incident Responder — Task | - | - |
| Document incident results analysis and incident handling actions. | Cyber Incident Responder — Task | - | - |
| Establish procedures for incident results analysis and incident handling reporting. | Cyber Incident Responder — Task | - | - |
| Adopt and develop incident handling testing techniques. | Cyber Incident Responder — Task | - | - |
| Evaluate the resilience of the cybersecurity controls and mitigation actions taken after a cybersecurity or data breach incident. | Cyber Incident Responder — Task | - | - |
| Measure cybersecurity incidents detection and response effectiveness. | Cyber Incident Responder — Task | - | - |
| Assess and manage technical vulnerabilities. | Cyber Incident Responder — Task | - | - |
| Identify, analyse, mitigate and communicate cybersecurity incidents. | Cyber Incident Responder — Task | - | - |
| Develop, implement and assess procedures related to incident handling. | Cyber Incident Responder — Task | - | - |
| Contribute to the development, maintenance and assessment of the Incident Response Plan. | Cyber Incident Responder — Task | - | - |
| Demonstrate knowledge of risk management standards, methodologies and frameworks. | Chief Information Security Officer (CISO) — Knowledge | - | - |
| Demonstrate knowledge of management practices. | Chief Information Security Officer (CISO) — Knowledge | - | - |
| Demonstrate knowledge of resource management. | Chief Information Security Officer (CISO) — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity procedures. | Chief Information Security Officer (CISO) — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity maturity models. | Chief Information Security Officer (CISO) — Knowledge | - | - |
| Demonstrate knowledge of ethical cybersecurity organisation requirements. | Chief Information Security Officer (CISO) — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity-related certifications. | Chief Information Security Officer (CISO) — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity related laws, regulations and legislations. | Chief Information Security Officer (CISO) — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity recommendations and best practices. | Chief Information Security Officer (CISO) — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity standards, methodologies and frameworks. | Chief Information Security Officer (CISO) — Knowledge | - | - |
| Demonstrate knowledge of cybersecurity policies. | Chief Information Security Officer (CISO) — Knowledge | - | - |
| Motivate and encourage people. | Chief Information Security Officer (CISO) — Skill | - | - |
| Anticipate cybersecurity threats, needs and upcoming challenges. | Chief Information Security Officer (CISO) — Skill | - | - |
| Define and apply maturity models for cybersecurity management. | Chief Information Security Officer (CISO) — Skill | - | - |
| Anticipate required changes to the organisation’s information security strategy and formulate new plans. | Chief Information Security Officer (CISO) — Skill | - | - |
| Communicate, coordinate and cooperate with internal and external stakeholders. | Chief Information Security Officer (CISO) — Skill | - | - |
| Establish a cybersecurity plan. | Chief Information Security Officer (CISO) — Skill | - | - |
| Identify and solve cybersecurity-related issues. | Chief Information Security Officer (CISO) — Skill | - | - |
| Review and enhance security documents, reports, SLAs and ensure the security objectives. | Chief Information Security Officer (CISO) — Skill | - | - |
| Design, apply, monitor and review Information Security Management System (ISMS) either directly or by leading its outsourcing. | Chief Information Security Officer (CISO) — Skill | - | - |
| Influence an organisation’s cybersecurity culture. | Chief Information Security Officer (CISO) — Skill | - | - |
| Develop, champion and lead the execution of a cybersecurity strategy. | Chief Information Security Officer (CISO) — Skill | - | - |
| Manage cybersecurity resources. | Chief Information Security Officer (CISO) — Skill | - | - |
| Implement cybersecurity recommendations and best practices. | Chief Information Security Officer (CISO) — Skill | - | - |
| Analyse and comply with cybersecurity-related laws, regulations and legislations. | Chief Information Security Officer (CISO) — Skill | - | - |
| Analyse and implement cybersecurity policies, certifications, standards, methodologies and frameworks. | Chief Information Security Officer (CISO) — Skill | - | - |
| Assess and enhance an organisation’s cybersecurity posture. | Chief Information Security Officer (CISO) — Skill | - | - |
| Review, plan and allocate appropriate cybersecurity resources. | Chief Information Security Officer (CISO) — Task | - | - |
| Manage continuous capacity building within the organisation. | Chief Information Security Officer (CISO) — Task | - | - |
| Ensure the organisation’s resiliency to cyber incidents. | Chief Information Security Officer (CISO) — Task | - | - |
| Negotiate the cybersecurity budget with the senior management. | Chief Information Security Officer (CISO) — Task | - | - |
| Secure resources to implement the cybersecurity strategy. | Chief Information Security Officer (CISO) — Task | - | - |
| Monitor advancement in cybersecurity. | Chief Information Security Officer (CISO) — Task | - | - |
| Report cybersecurity incidents, risks, findings to the senior management. | Chief Information Security Officer (CISO) — Task | - | - |
| Develop relationships with cybersecurity-related authorities and communities. | Chief Information Security Officer (CISO) — Task | - | - |
| Develop cybersecurity plans. | Chief Information Security Officer (CISO) — Task | - | - |
| Ensure the senior management approves the cybersecurity risks of the organisation. | Chief Information Security Officer (CISO) — Task | - | - |
| Educate senior management about cybersecurity risks, threats and their impact to the organisation. | Chief Information Security Officer (CISO) — Task | - | - |
| Supervise the application and improvement of the Information Security Management System (ISMS). | Chief Information Security Officer (CISO) — Task | - | - |
| Prepare and present cybersecurity vision, strategies and policies for approval by the senior management of the organisation and ensure their execution. | Chief Information Security Officer (CISO) — Task | - | - |
| Define, implement, communicate and maintain cybersecurity goals, requirements, strategies, policies, aligned with the business strategy to support the organisational objectives. | Chief Information Security Officer (CISO) — Task | - | - |
| Assess the effectiveness of security controls, reveals and utilise cybersecurity vulnerabilities, assessing their criticality if exploited by threat actors. | Role Profile | - | - |
| Ensure the cybercriminal investigation reveals all digital evidence to prove the malicious activity. | Role Profile | - | - |
| Manage the organisation's cybersecurity-related risks aligned to the organisation’s strategy. Develop, maintain and communicate the risk management processes and reports. | Role Profile | - | - |
| Research the cybersecurity domain and incorporate results in cybersecurity solutions. | Role Profile | - | - |
| Develop, deploy and operate cybersecurity solutions (systems, assets, software, controls and services) on infrastructures and products. | Role Profile | - | - |
| Improves cybersecurity knowledge, skills and competencies of humans. | Role Profile | - | - |
| Perform cybersecurity audits on the organisation’s ecosystem. Ensuring compliance with statutory, regulatory, policy information, security requirements, industry standards and best practices. | Role Profile | - | - |
| Plans and designs security-by-design solutions (infrastructures, systems, assets, software, hardware and services) and cybersecurity controls. | Role Profile | - | - |
| Collect, process, analyse data and information to produce actionable intelligence reports and disseminate them to target stakeholders. | Role Profile | - | - |
| Manages compliance with cybersecurity-related standards, legal and regulatory frameworks based on the organisation’s strategy and legal requirements. | Role Profile | - | - |
| Monitor the organisation’s cybersecurity state, handle incidents during cyber-attacks and assure the continued operations of ICT systems. | Role Profile | - | - |
| Manages an organisation’s cybersecurity strategy and its implementation to ensure that digital systems, services and assets are adequately secure and protected. | Role Profile | - | - |

## Competency Details

### Demonstrate knowledge of cybersecurity-related certifications.

Demonstrate knowledge of cybersecurity-related certifications.

### Demonstrate knowledge of cybersecurity recommendations and best practices.

Demonstrate knowledge of cybersecurity recommendations and best practices.

### Demonstrate knowledge of computer systems vulnerabilities.

Demonstrate knowledge of computer systems vulnerabilities.

### Demonstrate knowledge of computer programming.

Demonstrate knowledge of computer programming.

### Demonstrate knowledge of penetration testing tools.

Demonstrate knowledge of penetration testing tools.

### Demonstrate knowledge of penetration testing standards, methodologies and frameworks.

Demonstrate knowledge of penetration testing standards, methodologies and frameworks.

### Demonstrate knowledge of penetration testing procedures.

Demonstrate knowledge of penetration testing procedures.

### Demonstrate knowledge of computer networks security.

Demonstrate knowledge of computer networks security.

### Demonstrate knowledge of operating systems security.

Demonstrate knowledge of operating systems security.

### Demonstrate knowledge of offensive and defensive security procedures.

Demonstrate knowledge of offensive and defensive security procedures.

### Demonstrate knowledge of information technology (IT) and operational technology (OT) appliances.

Demonstrate knowledge of information technology (IT) and operational technology (OT) appliances.

### Demonstrate knowledge of cybersecurity attack procedures.

Demonstrate knowledge of cybersecurity attack procedures.

### Review codes assess their security.

Review codes assess their security.

### Decompose and analyse systems to identify weaknesses and ineffective controls.

Decompose and analyse systems to identify weaknesses and ineffective controls.

### Conduct technical analysis and reporting.

Conduct technical analysis and reporting.

### Use penetration testing tools effectively.

Use penetration testing tools effectively.

### Communicate, present and report to relevant stakeholders.

Communicate, present and report to relevant stakeholders.

### Identify and solve cybersecurity-related issues.

Identify and solve cybersecurity-related issues.

### Think creatively and outside the box.

Think creatively and outside the box.

### Conduct ethical hacking.

Conduct ethical hacking.

### Identify and exploit vulnerabilities.

Identify and exploit vulnerabilities.

### Perform social engineering.

Perform social engineering.

### Develop codes, scripts and programmes.

Develop codes, scripts and programmes.

### Deploy penetration testing tools and test programs.

Deploy penetration testing tools and test programs.

### Document and report penetration testing results to stakeholders.

Document and report penetration testing results to stakeholders.

### Establish procedures for penetration testing result analysis and reporting.

Establish procedures for penetration testing result analysis and reporting.

### Organise test plans and procedures for penetration testing.

Organise test plans and procedures for penetration testing.

### Select and develop appropriate penetration testing techniques.

Select and develop appropriate penetration testing techniques.

### Test systems and operations compliance with regulatory standards.

Test systems and operations compliance with regulatory standards.

### Identify attack vectors, uncover and demonstrate exploitation of technical cybersecurity vulnerabilities.

Identify attack vectors, uncover and demonstrate exploitation of technical cybersecurity vulnerabilities.

### Identify, analyse and assess technical and organisational cybersecurity vulnerabilities.

Identify, analyse and assess technical and organisational cybersecurity vulnerabilities.

### Demonstrate knowledge of cybersecurity-related certifications.

Demonstrate knowledge of cybersecurity-related certifications.

### Demonstrate knowledge of computer networks security.

Demonstrate knowledge of computer networks security.

### Demonstrate knowledge of operating systems security.

Demonstrate knowledge of operating systems security.

### Demonstrate knowledge of cybersecurity attack procedures.

Demonstrate knowledge of cybersecurity attack procedures.

### Demonstrate knowledge of computer systems vulnerabilities.

Demonstrate knowledge of computer systems vulnerabilities.

### Demonstrate knowledge of cyber threats.

Demonstrate knowledge of cyber threats.

### Demonstrate knowledge of malware analysis tools.

Demonstrate knowledge of malware analysis tools.

### Demonstrate knowledge of cybersecurity related laws, regulations and legislations.

Demonstrate knowledge of cybersecurity related laws, regulations and legislations.

### Demonstrate knowledge of criminal investigation procedures, standards, methodologies and frameworks.

Demonstrate knowledge of criminal investigation procedures, standards, methodologies and frameworks.

### Demonstrate knowledge of testing procedures.

Demonstrate knowledge of testing procedures.

### Demonstrate knowledge of digital forensics analysis procedures.

Demonstrate knowledge of digital forensics analysis procedures.

### Demonstrate knowledge of digital forensics standards, methodologies and frameworks.

Demonstrate knowledge of digital forensics standards, methodologies and frameworks.

### Demonstrate knowledge of digital forensics recommendations and best practices.

Demonstrate knowledge of digital forensics recommendations and best practices.

### Develop and communicate, detailed and reasoned investigation reports.

Develop and communicate, detailed and reasoned investigation reports.

### Explain and present digital evidence in a simple, straightforward and easy to understand way.

Explain and present digital evidence in a simple, straightforward and easy to understand way.

### Identify, analyse and correlate cybersecurity events.

Identify, analyse and correlate cybersecurity events.

### Collect information while preserving its integrity.

Collect information while preserving its integrity.

### Work ethically and independently; not influenced and biased by internal or external actors.

Work ethically and independently; not influenced and biased by internal or external actors.

### Select and customise forensics testing, analysing and reporting techniques.

Select and customise forensics testing, analysing and reporting techniques.

### Systematically and deterministic document, report and present digital forensic analysis findings and results.

Systematically and deterministic document, report and present digital forensic analysis findings and results.

### Inspect environments for evidence of unauthorised and unlawful actions.

Inspect environments for evidence of unauthorised and unlawful actions.

### Preserve and protect digital evidence and make it available to authorised stakeholders.

Preserve and protect digital evidence and make it available to authorised stakeholders.

### Identify, recover, extract, document and analyse digital evidence.

Identify, recover, extract, document and analyse digital evidence.

### Develop digital forensics investigation policy, plans and procedures.

Develop digital forensics investigation policy, plans and procedures.

### Demonstrate knowledge of cybersecurity-related technologies.

Demonstrate knowledge of cybersecurity-related technologies.

### Demonstrate knowledge of cybersecurity-related certifications.

Demonstrate knowledge of cybersecurity-related certifications.

### Demonstrate knowledge of monitoring, testing and evaluating cybersecurity controls' effectiveness.

Demonstrate knowledge of monitoring, testing and evaluating cybersecurity controls' effectiveness.

### Demonstrate knowledge of cybersecurity risks.

Demonstrate knowledge of cybersecurity risks.

### Demonstrate knowledge of cybersecurity controls and solutions.

Demonstrate knowledge of cybersecurity controls and solutions.

### Demonstrate knowledge of computer systems vulnerabilities.

Demonstrate knowledge of computer systems vulnerabilities.

### Demonstrate knowledge of cyber threats.

Demonstrate knowledge of cyber threats.

### Demonstrate knowledge of risk management recommendations and best practices.

Demonstrate knowledge of risk management recommendations and best practices.

### Demonstrate knowledge of risk management tools.

Demonstrate knowledge of risk management tools.

### Demonstrate knowledge of risk management standards, methodologies and frameworks.

Demonstrate knowledge of risk management standards, methodologies and frameworks.

### Propose and manage risk-sharing options.

Propose and manage risk-sharing options.

### Communicate, present and report to relevant stakeholders.

Communicate, present and report to relevant stakeholders.

### Build a cybersecurity risk-aware environment.

Build a cybersecurity risk-aware environment.

### Enable business assets owners, executives and other stakeholders to make risk-informed decisions to manage and mitigate risks.

Enable business assets owners, executives and other stakeholders to make risk-informed decisions to manage and mitigate risks.

### Analyse and consolidate organisation’s quality and risk management practices.

Analyse and consolidate organisation’s quality and risk management practices.

### Implement cybersecurity risk management frameworks, methodologies and guidelines and ensure compliance with regulations and standards.

Implement cybersecurity risk management frameworks, methodologies and guidelines and ensure compliance with regulations and standards.

### Develop, maintain, report and communicate complete risk management cycle.

Develop, maintain, report and communicate complete risk management cycle.

### Ensure that all cybersecurity risks remain at an acceptable level for the organisation’s assets.

Ensure that all cybersecurity risks remain at an acceptable level for the organisation’s assets.

### Monitor effectiveness of cybersecurity controls and risk levels.

Monitor effectiveness of cybersecurity controls and risk levels.

### Assess cybersecurity risks and propose most appropriate risk treatment options, including security controls and risk mitigation and avoidance that best address the organisation’s strategy.

Assess cybersecurity risks and propose most appropriate risk treatment options, including security controls and risk mitigation and avoidance that best address the organisation’s strategy.

### Identification of threat landscape including attackers’ profiles and estimation of attacks’ potential.

Identification of threat landscape including attackers’ profiles and estimation of attacks’ potential.

### Identify and assess cybersecurity-related threats and vulnerabilities of ICT systems.

Identify and assess cybersecurity-related threats and vulnerabilities of ICT systems.

### Manage an inventory of organisation’s assets.

Manage an inventory of organisation’s assets.

### Develop an organisation’s cybersecurity risk management strategy.

Develop an organisation’s cybersecurity risk management strategy.

### Demonstrate knowledge of responsible information disclosure procedures.

Demonstrate knowledge of responsible information disclosure procedures.

### Demonstrate knowledge of multidiscipline aspect of cybersecurity.

Demonstrate knowledge of multidiscipline aspect of cybersecurity.

### Demonstrate knowledge of legal, regulatory and legislative requirements on releasing or using cybersecurity related technologies.

Demonstrate knowledge of legal, regulatory and legislative requirements on releasing or using cybersecurity related technologies.

### Demonstrate knowledge of cybersecurity standards, methodologies and frameworks.

Demonstrate knowledge of cybersecurity standards, methodologies and frameworks.

### Demonstrate knowledge of cybersecurity-related research, development and innovation (RDI).

Demonstrate knowledge of cybersecurity-related research, development and innovation (RDI).

### Collaborate with other team members and colleagues.

Collaborate with other team members and colleagues.

### Identify and solve cybersecurity-related issues.

Identify and solve cybersecurity-related issues.

### Communicate, present and report to relevant stakeholders.

Communicate, present and report to relevant stakeholders.

### Monitor new advancements in cybersecurity-related technologies.

Monitor new advancements in cybersecurity-related technologies.

### Decompose and analyse systems to develop security and privacy requirements and identify effective solutions.

Decompose and analyse systems to develop security and privacy requirements and identify effective solutions.

### Decompose and analyse systems to identify weaknesses and ineffective controls.

Decompose and analyse systems to identify weaknesses and ineffective controls.

### Generate new ideas and transfer theory into practice.

Generate new ideas and transfer theory into practice.

### Publish and present scientific works and research and development results.

Publish and present scientific works and research and development results.

### Lead or participate in the innovation processes and projects including project management and budgeting.

Lead or participate in the innovation processes and projects including project management and budgeting.

### Identify cross-sectoral cybersecurity achievements and apply them in a different context or propose innovative approaches and solutions.

Identify cross-sectoral cybersecurity achievements and apply them in a different context or propose innovative approaches and solutions.

### Assist in cybersecurity-related capacity building including awareness, theoretical training, practical training, testing, mentoring, supervising and sharing.

Assist in cybersecurity-related capacity building including awareness, theoretical training, practical training, testing, mentoring, supervising and sharing.

### Contributes towards cutting-edge cybersecurity business ideas, services and solutions.

Contributes towards cutting-edge cybersecurity business ideas, services and solutions.

### Select and apply frameworks, methods, standards, tools and protocols including a building and testing a proof of concept to support projects.

Select and apply frameworks, methods, standards, tools and protocols including a building and testing a proof of concept to support projects.

### Conduct experiments and develop a proof of concept, pilots and prototypes for cybersecurity solutions.

Conduct experiments and develop a proof of concept, pilots and prototypes for cybersecurity solutions.

### Assist in the development of innovative cybersecurity-related solutions.

Assist in the development of innovative cybersecurity-related solutions.

### Advance the current state-of-the-art in cybersecurity-related topics.

Advance the current state-of-the-art in cybersecurity-related topics.

### Manifest and generate research and innovation ideas.

Manifest and generate research and innovation ideas.

### Conduct research, innovation and development work in cybersecurity-related topics.

Conduct research, innovation and development work in cybersecurity-related topics.

### Analyse and assess cybersecurity technologies, solutions, developments and processes.

Analyse and assess cybersecurity technologies, solutions, developments and processes.

### Demonstrate knowledge of cybersecurity-related technologies.

Demonstrate knowledge of cybersecurity-related technologies.

### Demonstrate knowledge of testing procedures.

Demonstrate knowledge of testing procedures.

### Demonstrate knowledge of testing standards, methodologies and frameworks.

Demonstrate knowledge of testing standards, methodologies and frameworks.

### Demonstrate knowledge of cybersecurity recommendations and best practices.

Demonstrate knowledge of cybersecurity recommendations and best practices.

### Demonstrate knowledge of secure coding recommendations and best practices.

Demonstrate knowledge of secure coding recommendations and best practices.

### Demonstrate knowledge of offensive and defensive security practices.

Demonstrate knowledge of offensive and defensive security practices.

### Demonstrate knowledge of cybersecurity controls and solutions.

Demonstrate knowledge of cybersecurity controls and solutions.

### Demonstrate knowledge of computer networks security.

Demonstrate knowledge of computer networks security.

### Demonstrate knowledge of operating systems security.

Demonstrate knowledge of operating systems security.

### Demonstrate knowledge of computer programming.

Demonstrate knowledge of computer programming.

### Demonstrate knowledge of secure development lifecycle.

Demonstrate knowledge of secure development lifecycle.

### Collaborate with other team members and colleagues.

Collaborate with other team members and colleagues.

### Identify and solve cybersecurity-related issues.

Identify and solve cybersecurity-related issues.

### Develop code, scripts and programmes.

Develop code, scripts and programmes.

### Assess the security and performance of solutions.

Assess the security and performance of solutions.

### Configure solutions according to the organisation’s security policy.

Configure solutions according to the organisation’s security policy.

### Integrate cybersecurity solutions to the organisation’s infrastructure.

Integrate cybersecurity solutions to the organisation’s infrastructure.

### Communicate, present and report to relevant stakeholders.

Communicate, present and report to relevant stakeholders.

### Implement, apply and manage patches to products to address technical vulnerabilities.

Implement, apply and manage patches to products to address technical vulnerabilities.

### Work close with the IT/OT personnel on cybersecurity-related actions.

Work close with the IT/OT personnel on cybersecurity-related actions.

### Document and report on the security of systems, services and products.

Document and report on the security of systems, services and products.

### Monitor and assure the performance of the implemented cybersecurity controls.

Monitor and assure the performance of the implemented cybersecurity controls.

### Implement cybersecurity procedures and controls.

Implement cybersecurity procedures and controls.

### Maintain and upgrade the security of systems, services and products.

Maintain and upgrade the security of systems, services and products.

### Securely configure systems, services and products.

Securely configure systems, services and products.

### Integrate cybersecurity solutions and ensure their sound operation.

Integrate cybersecurity solutions and ensure their sound operation.

### Provide cybersecurity-related support to users and customers.

Provide cybersecurity-related support to users and customers.

### Develop, implement, maintain, upgrade, test cybersecurity products.

Develop, implement, maintain, upgrade, test cybersecurity products.

### Demonstrate knowledge of cybersecurity controls and solutions.

Demonstrate knowledge of cybersecurity controls and solutions.

### Demonstrate knowledge of cybersecurity standards, methodologies and frameworks.

Demonstrate knowledge of cybersecurity standards, methodologies and frameworks.

### Demonstrate knowledge of cybersecurity recommendations and best practices.

Demonstrate knowledge of cybersecurity recommendations and best practices.

### Demonstrate knowledge of cybersecurity related laws, regulations and legislations.

Demonstrate knowledge of cybersecurity related laws, regulations and legislations.

### Demonstrate knowledge of cybersecurity education and training standards, methodologies and frameworks.

Demonstrate knowledge of cybersecurity education and training standards, methodologies and frameworks.

### Demonstrate knowledge of cybersecurity-related certifications.

Demonstrate knowledge of cybersecurity-related certifications.

### Demonstrate knowledge of cybersecurity awareness, education and training programme development.

Demonstrate knowledge of cybersecurity awareness, education and training programme development.

### Demonstrate knowledge of pedagogical standards, methodologies and frameworks.

Demonstrate knowledge of pedagogical standards, methodologies and frameworks.

### Motivate and encourage people.

Motivate and encourage people.

### Identify and select appropriate pedagogical approaches for the intended audience.

Identify and select appropriate pedagogical approaches for the intended audience.

### Communicate, present and report to relevant stakeholders.

Communicate, present and report to relevant stakeholders.

### Develop evaluation programs for the awareness, training and education activities.

Develop evaluation programs for the awareness, training and education activities.

### Utilise existing cybersecurity-related training resources.

Utilise existing cybersecurity-related training resources.

### Provide training towards cybersecurity and data protection professional certifications.

Provide training towards cybersecurity and data protection professional certifications.

### Develop cybersecurity exercises including simulations using cyber range environments.

Develop cybersecurity exercises including simulations using cyber range environments.

### Design, develop and deliver learning programmes to cover cybersecurity needs.

Design, develop and deliver learning programmes to cover cybersecurity needs.

### Identify needs in cybersecurity awareness, training and education.

Identify needs in cybersecurity awareness, training and education.

### Continuously maintain and enhance expertise; encourage and empower continuous enhancement of cybersecurity capacities and capabilities building.

Continuously maintain and enhance expertise; encourage and empower continuous enhancement of cybersecurity capacities and capabilities building.

### Provide guidance on cybersecurity certification programs for individuals.

Provide guidance on cybersecurity certification programs for individuals.

### Design, develop and deliver cybersecurity simulations, virtual labs or cyber range environments.

Design, develop and deliver cybersecurity simulations, virtual labs or cyber range environments.

### Finding new approaches for education, training and awareness-raising.

Finding new approaches for education, training and awareness-raising.

### Evaluate and report trainee’s performance.

Evaluate and report trainee’s performance.

### Monitor, evaluate and report training effectiveness.

Monitor, evaluate and report training effectiveness.

### Organise, design and deliver cybersecurity and data protection awareness-raising activities, seminars, courses, practical training.

Organise, design and deliver cybersecurity and data protection awareness-raising activities, seminars, courses, practical training.

### Develop, update and deliver cybersecurity and data protection curricula and educational material for training and awareness based on content, method, tools, trainees need.

Develop, update and deliver cybersecurity and data protection curricula and educational material for training and awareness based on content, method, tools, trainees need.

### Demonstrate knowledge of cybersecurity-related certifications.

Demonstrate knowledge of cybersecurity-related certifications.

### Demonstrate knowledge of auditing-related certification.

Demonstrate knowledge of auditing-related certification.

### Demonstrate knowledge of cybersecurity standards, methodologies and frameworks.

Demonstrate knowledge of cybersecurity standards, methodologies and frameworks.

### Demonstrate knowledge of auditing standards, methodologies and frameworks.

Demonstrate knowledge of auditing standards, methodologies and frameworks.

### Demonstrate knowledge of conformity assessment standards, methodologies and frameworks.

Demonstrate knowledge of conformity assessment standards, methodologies and frameworks.

### Demonstrate knowledge of monitoring, testing and evaluating cybersecurity controls' effectiveness.

Demonstrate knowledge of monitoring, testing and evaluating cybersecurity controls' effectiveness.

### Demonstrate knowledge of legal, regulatory and legislative compliance requirements, recommendations and best practices.

Demonstrate knowledge of legal, regulatory and legislative compliance requirements, recommendations and best practices.

### Demonstrate knowledge of cybersecurity controls and solutions.

Demonstrate knowledge of cybersecurity controls and solutions.

### Audit with integrity, being impartial and independent.

Audit with integrity, being impartial and independent.

### Collect, evaluate, maintain and protect auditing information.

Collect, evaluate, maintain and protect auditing information.

### Communicate, explain and adapt legal and regulatory requirements and business needs.

Communicate, explain and adapt legal and regulatory requirements and business needs.

### Decompose and analyse systems to identify weaknesses and ineffective controls.

Decompose and analyse systems to identify weaknesses and ineffective controls.

### Analyse business processes, assess and review software or hardware security, as well as technical and organisational controls.

Analyse business processes, assess and review software or hardware security, as well as technical and organisational controls.

### Apply auditing tools and techniques.

Apply auditing tools and techniques.

### Follow and practice auditing frameworks, standards and methodologies.

Follow and practice auditing frameworks, standards and methodologies.

### Organise and work in a systematic and deterministic way based on evidence.

Organise and work in a systematic and deterministic way based on evidence.

### Monitor risk remediation activities.

Monitor risk remediation activities.

### Develop and communicate conformity assessment, assurance, audit, certification and maintenance reports.

Develop and communicate conformity assessment, assurance, audit, certification and maintenance reports.

### Maintain and protect the integrity of audit records.

Maintain and protect the integrity of audit records.

### Execute the audit plan and collect evidence and measurements.

Execute the audit plan and collect evidence and measurements.

### Audit conformity with cybersecurity-related applicable standards.

Audit conformity with cybersecurity-related applicable standards.

### Audit compliance with cybersecurity-related applicable laws and regulations.

Audit compliance with cybersecurity-related applicable laws and regulations.

### Review target of evaluation, security objectives and requirements based on the risk profile.

Review target of evaluation, security objectives and requirements based on the risk profile.

### Develop an audit plan describing the frameworks, standards, methodology, procedures and auditing tests.

Develop an audit plan describing the frameworks, standards, methodology, procedures and auditing tests.

### Define audit scope, objectives and criteria to audit against.

Define audit scope, objectives and criteria to audit against.

### Establish the target environment and manage auditing activities.

Establish the target environment and manage auditing activities.

### Establish the methodologies and practices used for systems auditing.

Establish the methodologies and practices used for systems auditing.

### Develop the organisation's auditing policy, procedures, standards and guidelines.

Develop the organisation's auditing policy, procedures, standards and guidelines.

### Demonstrate knowledge of privacy-by-design standards, methodologies and frameworks.

Demonstrate knowledge of privacy-by-design standards, methodologies and frameworks.

### Demonstrate knowledge of privacy-Enhancing Technologies (PET).

Demonstrate knowledge of privacy-Enhancing Technologies (PET).

### Demonstrate knowledge of legacy cybersecurity procedures.

Demonstrate knowledge of legacy cybersecurity procedures.

### Demonstrate knowledge of legal, regulatory and legislative compliance requirements, recommendations and best practices.

Demonstrate knowledge of legal, regulatory and legislative compliance requirements, recommendations and best practices.

### Demonstrate knowledge of cybersecurity trends.

Demonstrate knowledge of cybersecurity trends.

### Demonstrate knowledge of cyber threats.

Demonstrate knowledge of cyber threats.

### Demonstrate knowledge of cybersecurity risks.

Demonstrate knowledge of cybersecurity risks.

### Demonstrate knowledge of cybersecurity controls and solutions.

Demonstrate knowledge of cybersecurity controls and solutions.

### Demonstrate knowledge of cybersecurity-related technologies.

Demonstrate knowledge of cybersecurity-related technologies.

### Demonstrate knowledge of security architecture reference models.

Demonstrate knowledge of security architecture reference models.

### Demonstrate knowledge of secure development lifecycle.

Demonstrate knowledge of secure development lifecycle.

### Demonstrate knowledge of cybersecurity-related requirements analysis.

Demonstrate knowledge of cybersecurity-related requirements analysis.

### Demonstrate knowledge of cybersecurity standards, methodologies and frameworks.

Demonstrate knowledge of cybersecurity standards, methodologies and frameworks.

### Demonstrate knowledge of cybersecurity recommendations and best practices.

Demonstrate knowledge of cybersecurity recommendations and best practices.

### Demonstrate knowledge of cybersecurity-related certifications.

Demonstrate knowledge of cybersecurity-related certifications.

### Coordinate the integration of security solutions.

Coordinate the integration of security solutions.

### Build resilience against points of failure across the architecture.

Build resilience against points of failure across the architecture.

### Select appropriate specifications, procedures and controls.

Select appropriate specifications, procedures and controls.

### Propose cybersecurity architectures based on stakeholder’s needs and budget.

Propose cybersecurity architectures based on stakeholder’s needs and budget.

### Communicate, present and report to relevant stakeholders.

Communicate, present and report to relevant stakeholders.

### Guide and communicate with implementers and IT/OT personnel.

Guide and communicate with implementers and IT/OT personnel.

### Design systems and architectures based on security and privacy by design and by defaults cybersecurity principles.

Design systems and architectures based on security and privacy by design and by defaults cybersecurity principles.

### Decompose and analyse systems to develop security and privacy requirements and identify effective solutions.

Decompose and analyse systems to develop security and privacy requirements and identify effective solutions.

### Draw cybersecurity architectural and functional specifications.

Draw cybersecurity architectural and functional specifications.

### Conduct user and business security requirements analysis.

Conduct user and business security requirements analysis.

### Assess the implemented architecture to maintain an appropriate level of security.

Assess the implemented architecture to maintain an appropriate level of security.

### Adapt the organisation’s architecture to emerging threats.

Adapt the organisation’s architecture to emerging threats.

### Evaluate the impact of cybersecurity solutions on the design and performance of the organisation’s architecture.

Evaluate the impact of cybersecurity solutions on the design and performance of the organisation’s architecture.

### Collaborate with other teams and colleagues.

Collaborate with other teams and colleagues.

### Assure the security of the solution architectures through security reviews and certification.

Assure the security of the solution architectures through security reviews and certification.

### Analyse and evaluate the cybersecurity of the organisation’s architecture.

Analyse and evaluate the cybersecurity of the organisation’s architecture.

### Coordinate the development, integration and maintenance of cybersecurity components ensuring the cybersecurity specifications.

Coordinate the development, integration and maintenance of cybersecurity components ensuring the cybersecurity specifications.

### Establish a secure environment during the development lifecycle of systems, services and products.

Establish a secure environment during the development lifecycle of systems, services and products.

### Present high-level security architecture design to stakeholders.

Present high-level security architecture design to stakeholders.

### Produce architectural documentation and specifications.

Produce architectural documentation and specifications.

### Develop organisation’s cybersecurity architecture to address security and privacy requirements.

Develop organisation’s cybersecurity architecture to address security and privacy requirements.

### Design and propose a secure architecture to implement the organisation’s strategy.

Design and propose a secure architecture to implement the organisation’s strategy.

### Demonstrate knowledge of cybersecurity-related certifications.

Demonstrate knowledge of cybersecurity-related certifications.

### Demonstrate knowledge of threat actors Tactics, Techniques and Procedures (TTPs).

Demonstrate knowledge of threat actors Tactics, Techniques and Procedures (TTPs).

### Demonstrate knowledge of advanced and persistent cyber threats (APT).

Demonstrate knowledge of advanced and persistent cyber threats (APT).

### Demonstrate knowledge of cybersecurity attack procedures.

Demonstrate knowledge of cybersecurity attack procedures.

### Demonstrate knowledge of cyber threat actors.

Demonstrate knowledge of cyber threat actors.

### Demonstrate knowledge of cyber threats.

Demonstrate knowledge of cyber threats.

### Demonstrate knowledge of cross-domain and border-domain knowledge related to cybersecurity.

Demonstrate knowledge of cross-domain and border-domain knowledge related to cybersecurity.

### Demonstrate knowledge of responsible information disclosure procedures.

Demonstrate knowledge of responsible information disclosure procedures.

### Demonstrate knowledge of cyber Threat Intelligence (CTI) sharing standards, methodologies and frameworks.

Demonstrate knowledge of cyber Threat Intelligence (CTI) sharing standards, methodologies and frameworks.

### Demonstrate knowledge of computer programming.

Demonstrate knowledge of computer programming.

### Demonstrate knowledge of cybersecurity controls and solutions.

Demonstrate knowledge of cybersecurity controls and solutions.

### Demonstrate knowledge of computer networks security.

Demonstrate knowledge of computer networks security.

### Demonstrate knowledge of operating systems security.

Demonstrate knowledge of operating systems security.

### Use and apply CTI platforms and tools.

Use and apply CTI platforms and tools.

### Communicate, present and report to relevant stakeholders.

Communicate, present and report to relevant stakeholders.

### Communicate, coordinate and cooperate with internal and external stakeholders.

Communicate, coordinate and cooperate with internal and external stakeholders.

### Model threats, actors and TTPs.

Model threats, actors and TTPs.

### Identify non-cyber events with implications on cyber-related activities.

Identify non-cyber events with implications on cyber-related activities.

### Conduct technical analysis and reporting.

Conduct technical analysis and reporting.

### Automate threat intelligence management procedures.

Automate threat intelligence management procedures.

### Identify threat actors TTPs and campaigns.

Identify threat actors TTPs and campaigns.

### Collect, analyse and correlate cyber threat information originating from multiple sources.

Collect, analyse and correlate cyber threat information originating from multiple sources.

### Collaborate with other team members and colleagues.

Collaborate with other team members and colleagues.

### Convey the proper security severity by explaining the risk exposure and its consequences to non-technical stakeholders.

Convey the proper security severity by explaining the risk exposure and its consequences to non-technical stakeholders.

### Articulate and communicate intelligence openly and publicly at all levels.

Articulate and communicate intelligence openly and publicly at all levels.

### Leverage intelligence data to support and assist with threat modelling, recommendations for Risk Mitigation and cyber threat hunting.

Leverage intelligence data to support and assist with threat modelling, recommendations for Risk Mitigation and cyber threat hunting.

### Coordinate with stakeholders to share and consume intelligence on relevant cyber threats.

Coordinate with stakeholders to share and consume intelligence on relevant cyber threats.

### Elaborate and advise on mitigation plans at the tactical, operational and strategic level.

Elaborate and advise on mitigation plans at the tactical, operational and strategic level.

### Produce actionable reports based on threat intelligence data.

Produce actionable reports based on threat intelligence data.

### Identify, monitor and assess the Tactics, Techniques and Procedures (TTPs) used by cyber threat actors by analysing open-source and proprietary data, information and intelligence.

Identify, monitor and assess the Tactics, Techniques and Procedures (TTPs) used by cyber threat actors by analysing open-source and proprietary data, information and intelligence.

### Identify and assess cyber threat actors targeting the organisation.

Identify and assess cyber threat actors targeting the organisation.

### Implement threat intelligence collection, analysis and production of actionable intelligence and dissemination to security stakeholders.

Implement threat intelligence collection, analysis and production of actionable intelligence and dissemination to security stakeholders.

### Translate business requirements into Intelligence Requirements.

Translate business requirements into Intelligence Requirements.

### Develop plans and procedures to manage threat intelligence.

Develop plans and procedures to manage threat intelligence.

### Develop, implement and manage the organisation's cyber threat intelligence strategy.

Develop, implement and manage the organisation's cyber threat intelligence strategy.

### Demonstrate knowledge of privacy impact assessment standards, methodologies and frameworks.

Demonstrate knowledge of privacy impact assessment standards, methodologies and frameworks.

### Demonstrate knowledge of legal, regulatory and legislative compliance requirements, recommendations and best practices.

Demonstrate knowledge of legal, regulatory and legislative compliance requirements, recommendations and best practices.

### Demonstrate knowledge of cybersecurity policies.

Demonstrate knowledge of cybersecurity policies.

### Demonstrate knowledge of cybersecurity standards, methodologies and frameworks.

Demonstrate knowledge of cybersecurity standards, methodologies and frameworks.

### Demonstrate knowledge of cybersecurity related laws, regulations and legislations.

Demonstrate knowledge of cybersecurity related laws, regulations and legislations.

### Collaborate with other team members and colleagues.

Collaborate with other team members and colleagues.

### Understand legal framework modifications implications to the organisation’s cybersecurity and data protection strategy and policies.

Understand legal framework modifications implications to the organisation’s cybersecurity and data protection strategy and policies.

### Understand, practice and adhere to ethical requirements and standards.

Understand, practice and adhere to ethical requirements and standards.

### Explain and communicate data protection and privacy topics to stakeholders and users.

Explain and communicate data protection and privacy topics to stakeholders and users.

### Conduct, monitor and review privacy impact assessments using standards, frameworks, acknowledged methodologies and tools.

Conduct, monitor and review privacy impact assessments using standards, frameworks, acknowledged methodologies and tools.

### Lead the development of appropriate cybersecurity and privacy policies and procedures that complement the business needs and legal requirements; further ensure its acceptance, comprehension and implementation and communicate it between the involved parties.

Lead the development of appropriate cybersecurity and privacy policies and procedures that complement the business needs and legal requirements; further ensure its acceptance, comprehension and implementation and communicate it between the involved parties.

### Carry out working-life practices of the data protection and privacy issues involved in the implementation of the organisational processes, finance and business strategy.

Carry out working-life practices of the data protection and privacy issues involved in the implementation of the organisational processes, finance and business strategy.

### Comprehensive understanding of the business strategy, models and products and ability to factor into legal, regulatory and standards’ requirements.

Comprehensive understanding of the business strategy, models and products and ability to factor into legal, regulatory and standards’ requirements.

### Manage legal aspects of information security responsibilities and third-party relations.

Manage legal aspects of information security responsibilities and third-party relations.

### Develop and propose staff awareness training to achieve compliance and foster a culture of data protection within the organization.

Develop and propose staff awareness training to achieve compliance and foster a culture of data protection within the organization.

### Contribute to the development of the organisation’s cybersecurity strategy, policy and procedures.

Contribute to the development of the organisation’s cybersecurity strategy, policy and procedures.

### Cooperate and share information with authorities and professional groups.

Cooperate and share information with authorities and professional groups.

### Monitor audits and data protection related training activities.

Monitor audits and data protection related training activities.

### Assist in designing, implementing, auditing and compliance testing activities in order to ensure cybersecurity and privacy compliance.

Assist in designing, implementing, auditing and compliance testing activities in order to ensure cybersecurity and privacy compliance.

### Act as a key contact point to handle queries and complaints regarding data processing.

Act as a key contact point to handle queries and complaints regarding data processing.

### Ensure that data owners, holders, controllers, processors, subjects, internal or external partners and entities are informed about their data protection rights, obligations and responsibilities.

Ensure that data owners, holders, controllers, processors, subjects, internal or external partners and entities are informed about their data protection rights, obligations and responsibilities.

### Enforce and advocate organisation’s data privacy and protection program.

Enforce and advocate organisation’s data privacy and protection program.

### Conduct privacy impact assessments and develop, maintain, communicate and train upon the privacy policies, procedures.

Conduct privacy impact assessments and develop, maintain, communicate and train upon the privacy policies, procedures.

### Identify and document compliance gaps.

Identify and document compliance gaps.

### Ensure compliance with and provide legal advice and guidance on data privacy and data protection standards, laws and regulations.

Ensure compliance with and provide legal advice and guidance on data privacy and data protection standards, laws and regulations.

### Demonstrate knowledge of computer Security Incident Response Teams (CSIRTs) operation.

Demonstrate knowledge of computer Security Incident Response Teams (CSIRTs) operation.

### Demonstrate knowledge of secure Operation Centres (SOCs) operation.

Demonstrate knowledge of secure Operation Centres (SOCs) operation.

### Demonstrate knowledge of cybersecurity related laws, regulations and legislations.

Demonstrate knowledge of cybersecurity related laws, regulations and legislations.

### Demonstrate knowledge of cybersecurity-related certifications.

Demonstrate knowledge of cybersecurity-related certifications.

### Demonstrate knowledge of computer systems vulnerabilities.

Demonstrate knowledge of computer systems vulnerabilities.

### Demonstrate knowledge of cybersecurity attack procedures.

Demonstrate knowledge of cybersecurity attack procedures.

### Demonstrate knowledge of cyber threats.

Demonstrate knowledge of cyber threats.

### Demonstrate knowledge of computer networks security.

Demonstrate knowledge of computer networks security.

### Demonstrate knowledge of operating systems security.

Demonstrate knowledge of operating systems security.

### Demonstrate knowledge of incident handling communication procedures.

Demonstrate knowledge of incident handling communication procedures.

### Demonstrate knowledge of incident handling tools.

Demonstrate knowledge of incident handling tools.

### Demonstrate knowledge of incident handling recommendations and best practices.

Demonstrate knowledge of incident handling recommendations and best practices.

### Demonstrate knowledge of incident handling standards, methodologies and frameworks.

Demonstrate knowledge of incident handling standards, methodologies and frameworks.

### Manage and analyse log files.

Manage and analyse log files.

### Communicate, present and report to relevant stakeholders.

Communicate, present and report to relevant stakeholders.

### Work under pressure.

Work under pressure.

### Work on operating systems, servers, clouds and relevant infrastructures.

Work on operating systems, servers, clouds and relevant infrastructures.

### Collect, analyse and correlate cyber threat information originating from multiple sources.

Collect, analyse and correlate cyber threat information originating from multiple sources.

### Practice all technical, functional and operational aspects of cybersecurity incident handling and response.

Practice all technical, functional and operational aspects of cybersecurity incident handling and response.

### Cooperate with key personnel for reporting of security incidents according to applicable legal framework.

Cooperate with key personnel for reporting of security incidents according to applicable legal framework.

### Cooperate with Secure Operation Centres (SOCs) and Computer Security Incident Response Teams (CSIRTs).

Cooperate with Secure Operation Centres (SOCs) and Computer Security Incident Response Teams (CSIRTs).

### Document incident results analysis and incident handling actions.

Document incident results analysis and incident handling actions.

### Establish procedures for incident results analysis and incident handling reporting.

Establish procedures for incident results analysis and incident handling reporting.

### Adopt and develop incident handling testing techniques.

Adopt and develop incident handling testing techniques.

### Evaluate the resilience of the cybersecurity controls and mitigation actions taken after a cybersecurity or data breach incident.

Evaluate the resilience of the cybersecurity controls and mitigation actions taken after a cybersecurity or data breach incident.

### Measure cybersecurity incidents detection and response effectiveness.

Measure cybersecurity incidents detection and response effectiveness.

### Assess and manage technical vulnerabilities.

Assess and manage technical vulnerabilities.

### Identify, analyse, mitigate and communicate cybersecurity incidents.

Identify, analyse, mitigate and communicate cybersecurity incidents.

### Develop, implement and assess procedures related to incident handling.

Develop, implement and assess procedures related to incident handling.

### Contribute to the development, maintenance and assessment of the Incident Response Plan.

Contribute to the development, maintenance and assessment of the Incident Response Plan.

### Demonstrate knowledge of risk management standards, methodologies and frameworks.

Demonstrate knowledge of risk management standards, methodologies and frameworks.

### Demonstrate knowledge of management practices.

Demonstrate knowledge of management practices.

### Demonstrate knowledge of resource management.

Demonstrate knowledge of resource management.

### Demonstrate knowledge of cybersecurity procedures.

Demonstrate knowledge of cybersecurity procedures.

### Demonstrate knowledge of cybersecurity maturity models.

Demonstrate knowledge of cybersecurity maturity models.

### Demonstrate knowledge of ethical cybersecurity organisation requirements.

Demonstrate knowledge of ethical cybersecurity organisation requirements.

### Demonstrate knowledge of cybersecurity-related certifications.

Demonstrate knowledge of cybersecurity-related certifications.

### Demonstrate knowledge of cybersecurity related laws, regulations and legislations.

Demonstrate knowledge of cybersecurity related laws, regulations and legislations.

### Demonstrate knowledge of cybersecurity recommendations and best practices.

Demonstrate knowledge of cybersecurity recommendations and best practices.

### Demonstrate knowledge of cybersecurity standards, methodologies and frameworks.

Demonstrate knowledge of cybersecurity standards, methodologies and frameworks.

### Demonstrate knowledge of cybersecurity policies.

Demonstrate knowledge of cybersecurity policies.

### Motivate and encourage people.

Motivate and encourage people.

### Anticipate cybersecurity threats, needs and upcoming challenges.

Anticipate cybersecurity threats, needs and upcoming challenges.

### Define and apply maturity models for cybersecurity management.

Define and apply maturity models for cybersecurity management.

### Anticipate required changes to the organisation’s information security strategy and formulate new plans.

Anticipate required changes to the organisation’s information security strategy and formulate new plans.

### Communicate, coordinate and cooperate with internal and external stakeholders.

Communicate, coordinate and cooperate with internal and external stakeholders.

### Establish a cybersecurity plan.

Establish a cybersecurity plan.

### Identify and solve cybersecurity-related issues.

Identify and solve cybersecurity-related issues.

### Review and enhance security documents, reports, SLAs and ensure the security objectives.

Review and enhance security documents, reports, SLAs and ensure the security objectives.

### Design, apply, monitor and review Information Security Management System (ISMS) either directly or by leading its outsourcing.

Design, apply, monitor and review Information Security Management System (ISMS) either directly or by leading its outsourcing.

### Influence an organisation’s cybersecurity culture.

Influence an organisation’s cybersecurity culture.

### Develop, champion and lead the execution of a cybersecurity strategy.

Develop, champion and lead the execution of a cybersecurity strategy.

### Manage cybersecurity resources.

Manage cybersecurity resources.

### Implement cybersecurity recommendations and best practices.

Implement cybersecurity recommendations and best practices.

### Analyse and comply with cybersecurity-related laws, regulations and legislations.

Analyse and comply with cybersecurity-related laws, regulations and legislations.

### Analyse and implement cybersecurity policies, certifications, standards, methodologies and frameworks.

Analyse and implement cybersecurity policies, certifications, standards, methodologies and frameworks.

### Assess and enhance an organisation’s cybersecurity posture.

Assess and enhance an organisation’s cybersecurity posture.

### Review, plan and allocate appropriate cybersecurity resources.

Review, plan and allocate appropriate cybersecurity resources.

### Manage continuous capacity building within the organisation.

Manage continuous capacity building within the organisation.

### Ensure the organisation’s resiliency to cyber incidents.

Ensure the organisation’s resiliency to cyber incidents.

### Negotiate the cybersecurity budget with the senior management.

Negotiate the cybersecurity budget with the senior management.

### Secure resources to implement the cybersecurity strategy.

Secure resources to implement the cybersecurity strategy.

### Monitor advancement in cybersecurity.

Monitor advancement in cybersecurity.

### Report cybersecurity incidents, risks, findings to the senior management.

Report cybersecurity incidents, risks, findings to the senior management.

### Develop relationships with cybersecurity-related authorities and communities.

Develop relationships with cybersecurity-related authorities and communities.

### Develop cybersecurity plans.

Develop cybersecurity plans.

### Ensure the senior management approves the cybersecurity risks of the organisation.

Ensure the senior management approves the cybersecurity risks of the organisation.

### Educate senior management about cybersecurity risks, threats and their impact to the organisation.

Educate senior management about cybersecurity risks, threats and their impact to the organisation.

### Supervise the application and improvement of the Information Security Management System (ISMS).

Supervise the application and improvement of the Information Security Management System (ISMS).

### Prepare and present cybersecurity vision, strategies and policies for approval by the senior management of the organisation and ensure their execution.

Prepare and present cybersecurity vision, strategies and policies for approval by the senior management of the organisation and ensure their execution.

### Define, implement, communicate and maintain cybersecurity goals, requirements, strategies, policies, aligned with the business strategy to support the organisational objectives.

Define, implement, communicate and maintain cybersecurity goals, requirements, strategies, policies, aligned with the business strategy to support the organisational objectives.

### Assess the effectiveness of security controls, reveals and utilise cybersecurity vulnerabilities, assessing their criticality if exploited by threat actors.

Assess the effectiveness of security controls, reveals and utilise cybersecurity vulnerabilities, assessing their criticality if exploited by threat actors.

### Ensure the cybercriminal investigation reveals all digital evidence to prove the malicious activity.

Ensure the cybercriminal investigation reveals all digital evidence to prove the malicious activity.

### Manage the organisation's cybersecurity-related risks aligned to the organisation’s strategy. Develop, maintain and communicate the risk management processes and reports.

Manage the organisation's cybersecurity-related risks aligned to the organisation’s strategy. Develop, maintain and communicate the risk management processes and reports.

### Research the cybersecurity domain and incorporate results in cybersecurity solutions.

Research the cybersecurity domain and incorporate results in cybersecurity solutions.

### Develop, deploy and operate cybersecurity solutions (systems, assets, software, controls and services) on infrastructures and products.

Develop, deploy and operate cybersecurity solutions (systems, assets, software, controls and services) on infrastructures and products.

### Improves cybersecurity knowledge, skills and competencies of humans.

Improves cybersecurity knowledge, skills and competencies of humans.

### Perform cybersecurity audits on the organisation’s ecosystem. Ensuring compliance with statutory, regulatory, policy information, security requirements, industry standards and best practices.

Perform cybersecurity audits on the organisation’s ecosystem. Ensuring compliance with statutory, regulatory, policy information, security requirements, industry standards and best practices.

### Plans and designs security-by-design solutions (infrastructures, systems, assets, software, hardware and services) and cybersecurity controls.

Plans and designs security-by-design solutions (infrastructures, systems, assets, software, hardware and services) and cybersecurity controls.

### Collect, process, analyse data and information to produce actionable intelligence reports and disseminate them to target stakeholders.

Collect, process, analyse data and information to produce actionable intelligence reports and disseminate them to target stakeholders.

### Manages compliance with cybersecurity-related standards, legal and regulatory frameworks based on the organisation’s strategy and legal requirements.

Manages compliance with cybersecurity-related standards, legal and regulatory frameworks based on the organisation’s strategy and legal requirements.

### Monitor the organisation’s cybersecurity state, handle incidents during cyber-attacks and assure the continued operations of ICT systems.

Monitor the organisation’s cybersecurity state, handle incidents during cyber-attacks and assure the continued operations of ICT systems.

### Manages an organisation’s cybersecurity strategy and its implementation to ensure that digital systems, services and assets are adequately secure and protected.

Manages an organisation’s cybersecurity strategy and its implementation to ensure that digital systems, services and assets are adequately secure and protected.

---
*Generated from TLA Toolbox on 8/27/2026*