Position Summary
Job Category | Vacancy |
Vacancy Notice Number | ICC-19-ROM-641 |
Position Title | Information Security Specialist |
Position Type | Fixed Term |
Number of Positions | 1 |
Date of Issue | 11/03/2019 |
Date of Closing | 24/03/2019 |
Grade | P3 |
Annual Salary Estimation | USD 80,471 (net, single rate, including post adjustment) |
Duty Station | Rome, Italy |
Organizational Location/Unit | Information Security Services |
Note: | Applications from women are particularly encouraged for this vacancy |
Position Description
Are you an experienced Information Security Specialist with the ability to work in autonomy to develop, implement, and monitor Information Security initiatives? Would you like to work for a number of prestigious clients from the United Nations system and other IOs, while being involved in a stimulating international environment? Than join the United Nations International Computing Center (UNICC) in our Geneva or New York office, and contribute to address security challenges.
Purpose of the Position:
Provide front line support to ICC’s Partners, be part of a team of information and cyber security professionals who collaborate with multiple UN agencies, IT professionals, and International Organizations to support information/cyber security and risk management consulting engagements.
Objectives of the Programme:
The objectives of the Centre, as stated by its mandate, are to provide information and communication technology (ICT) services (including training) on an inter-organizational basis.
Main duties and responsibilities:
The incumbent will work under the guidance and supervision of the Head of CPI and in close collaboration with the CPI team. S/he will perform the following duties:
- Work in a team of information security specialists experienced in anomaly and advanced threat detection, analytics, digital forensics, security assessments, penetration testing and incident response
- Perform malware research, analysis and risk remediation assistance
- Manage critical incidents involving slow moving or persistent threats across ICC’s partner infrastructure located in Rome
- Manage multiple projects, providing timeline, budget and estimates for work, tracking and escalating issues, defining risks
- Maintain expertise to function as subject matter expert in multiple security disciplines; serve as security consultant for projects
- Have a strong affinity with international Cyber Threat Intelligence and Forensic investigations
- Evaluate and/or implement IS solutions and controls to ensure data security and integrity for ICC as well as Partners located in Rome
- Provide other ad hoc support and duties as assigned
Recruitment Profile
Experience and Skills required:
Essential
- Five years’ experience in three or more of the following fields is essential:
- Implementing security procedures and standards
- Cloud security assessments and investigations
- Leading or conducting security incident response activities
- Penetration testing web application
- Reviewing raw log files, data correlation, and analysis (i.e. firewall, network flow, IDS, system logs)
- Experience in one or more of the following fields is essential:
- System administration
- Network administration
- Software development
- Managing cloud based infrastructure (like Azure, AWS etc)
- Implementing and designing Microsoft Active Directory services
- Working knowledge of databases such as MS SQL, Postgres, MySQL, MongoDB
- Expert level knowledge of :
- Internet protocol stack
- Intrusion detection and prevention methods
- Vulnerability assessments
- Web application and cloud computing architectures
- Structured risk assessment methodologies
- Expert level scripting knowledge using native shells in Windows and Linux
- Advanced level knowledge of PHP, Python, Ruby
- Demonstrable expertise related to security concerns in areas such as servers, mid-range, mainframes, network topology and access controls, physical security, change and problem management, code promotion, privileged access needs, and effective monitoring
- Network Device Access to controls to include Cisco routers and other network devices
- Cryptographic methods and standards
- Experience and proficient knowledge of security areas such as Auditing, Policy, Database Security, Firewall Design and Implementation, Risk Analysis, Identity Management, Access Management, or Web Services
Desirable
- Project management skills and ability to manage multiple projects under strict timelines
- A working knowledge of business management in international and/or not-for-profit environments
- Static and dynamic code analysis on x86
- Advanced programming skills in C/C++/.Net/Java
- Project(s) for achieving and maintaining ISO 27001 certification
Education:
Essential
- Bachelor’s equivalent university degree in computer sciences or related area
Desirable
- Degree in Management Information Systems, Computer Science, or Computer Engineering or similar
- Industry certifications like CISSP, OSCP/E, CPP
- Service management qualification, such as ITIL
Languages:
- Expert knowledge of English is required
- Working knowledge of French is desirable
ICC Global Competencies:
- Producing results: Produces and delivers quality results. Is action oriented and committed to achieving outcomes.
- Communicating in a credible and effective way: Expresses oneself clearly in conversations and interactions with others; listens actively. Produces effective written communications. Ensures that information is shared.
- Moving forward in a changing environment: Is open to and proposes new approaches and ideas. Adapts and responds positively to change.
- Fostering integration and teamwork: Develops and promotes effective relationships with colleagues and team members. Deals constructively with conflicts.
- Building and promoting partnerships across the organization and beyond: Develops and strengthens internal and external partnerships that can provide information, assistance and support to ICC. Identifies and uses synergies across the Organization and with external partners.
Other Information
Compensation:
Annual Salary Estimation (net of tax at single rate), including post adjustment (33.6% on March 2019): US$ 80,471
UNICC also offers generous leave and absence allowances, flexible working hours, overtime compensation, teleworking, access to training, and depending on eligibility other benefits such as relocation grant, dependency allowance, language allowance, or education grant.
Closing date for applications:
Applications will be accepted until midnight (Geneva Time) on 24 March 2019.
Notes:
- Technical and/or personality tests may be carried out as part of the selection process
- Only short-listed candidates will be contacted
- Though you may not be selected for this advertised position, the ICC will keep your application in a roster if your profile is deemed to be of potential interest for the Centre. You may thus be solicited by our HR department to participate in an interview for another position
Applications from women are particularly encouraged for this vacancy