Position Summary
Job Category | Vacancy |
Vacancy Notice Number | ICC-19-NY-654 |
Position Title | Information Security Specialist (PKI) |
Position Type | Fixed Term |
Number of Positions | 1 |
Date of Issue | 12/03/2019 |
Date of Closing | 31/03/2019 |
Grade | P3 |
Annual Salary Estimation | USD 100,890 (net, single rate, including post adjustment) |
Duty Station | New york, USA |
Organizational Location/Unit | Information Security Services |
Note: | Applications from women are particularly encouraged for this vacancy |
Position Description
Are you an experienced Information Security Specialist with the ability to work in autonomy to develop, implement, and monitor Information Security initiatives? Would you like to work for a number of prestigious clients from the United Nations system and other IOs, while being involved in a stimulating international environment? Than join the United Nations International Computing Center (UNICC) in our Geneva or New York office, and contribute to address security challenges.
Purpose of the Position:
Provide front line support to ICC’s Partners in the area of information/cyber security consulting and security operations activities, in collaboration with a team of information and cyber security professionals who collaborate with multiple UN agencies, IT professionals, and International Organizations.
Objectives of the Programme:
The objectives of the Centre, as stated by its mandate, are to provide information and communication technology (ICT) services (including training) on an inter-organizational basis.
Main duties and responsibilities:
The incumbent will work under the guidance and supervision of the Head of CPI and in close collaboration with the CPI team. S/he will perform the following duties:
- Contribute to the development and delivery of new and existing information security services that include security governance, common secure, security operations centre, security awareness, vulnerability management and security benchmarking
- Take responsibility for managing and maintaining the UN System wide Public Key Infrastructure (PKI) and identity and access management services for ICC and its clients
- Contribute to threat and anomaly detection, to digital forensics, security assessments, penetration testing and to incident response, within a team of information security professionals
- Wherever necessary, propose and develop new information security standards that address elements that are not fully addressed in existing information security policies or standards
- Engage with stakeholders identified by ICC’s Partners for the approval, training, and dissemination of security policies or standards
- Manage critical incidents involving slow moving or persistent threats across ICC’s partner infrastructure
- Document actions and effectively communicate information internally and to client
- Provide other ad hoc support and duties as required
Recruitment Profile
Experience And Skills required:
Essential
- Expert knowledge of PKI and IDAM concepts
- At least 5 years experience in IT security related position, with exposure to at least 3 of the following fields:
- Application integration support and development
- Cloud support
- Security incident response activities
- Penetration testing web application
- Reviewing raw log files, data correlation, and analysis (i.e. firewall, network flow, IDS, system logs)
- System administration
- Network administration
- Software development
- Implementing and designing Microsoft Active Directory services
- Experience of implementing security procedures and standards
- Expert knowledge of Linux or Windows operating systems
- Ability to learn and excel in new and changing environments
- Ability to work in autonomy with minimum supervision
- Excellent written & verbal communication skills
- Excellent management, inter-personal, and teamwork skills.
Desirable
- Experience in ISO 27001
- Project management skills and ability to manage multiple projects under strict timelines
- Working knowledge of international and/or not-for-profit environments
- Strong understanding of most of the following common security compliance frameworks, controls, and best practices: (SSAE 16 – SOC 2 and 3), OWASP Top 10, SANS, NIST.
Education:
Essential
- Bachelor’s equivalent university degree in computer sciences or related area
- Trainings or certifications in any of the following fields: PKI, Identity management, AWS, Azure, ISO 27001, CISSP, GIAC certifications or similar.
Desirable
- Project Management qualification, such as PRINCE2
- Service management qualification, such as ITIL
Languages:
- Expert knowledge of English is required
- Working knowledge of French is desirable
ICC Global Competencies:
- Producing results: Produces and delivers quality results. Is action oriented and committed to achieving outcomes.
- Communicating in a credible and effective way: Expresses oneself clearly in conversations and interactions with others; listens actively. Produces effective written communications. Ensures that information is shared.
- Moving forward in a changing environment: Is open to and proposes new approaches and ideas. Adapts and responds positively to change.
- Fostering integration and teamwork: Develops and promotes effective relationships with colleagues and team members. Deals constructively with conflicts.
- Building and promoting partnerships across the organization and beyond: Develops and strengthens internal and external partnerships that can provide information, assistance and support to ICC. Identifies and uses synergies across the Organization and with external partners.
Other Information
Compensation:
Annual Salary Estimation (net of tax at single rate), including post adjustment (67.5% on March 2019): US$ 100,890.
UNICC also offers generous leave and absence allowances, flexible working hours, overtime compensation, teleworking, access to training, and depending on eligibility other benefits such as relocation grant, dependency allowance, language allowance, or education grant.
Closing date for applications:
Applications will be accepted until midnight (Geneva Time) on 31 March 2019.
Notes:
- Technical and/or personality tests may be carried out as part of the selection process
- Only short-listed candidates will be contacted
- Though you may not be selected for this advertised position, the ICC will keep your application in a roster if your profile is deemed to be of potential interest for the Centre. You may thus be solicited by our HR department to participate in an interview for another position
Applications from women are particularly encouraged for this vacancy