Cybersecurity Advisory Consultant (IAM & Endpoint Protection) (Roma)

Cybersecurity Advisory Consultant (IAM & Endpoint Protection) (Roma)

12 set
|
Logistics Cluster
|
Roma

12 set

Logistics Cluster

Roma

ppDATE LIMITE DE CANDIDATURE 21 September :59-UTC+01:00 heure d’Europe centrale (Rome) /ppWFP celebrates and embraces diversity. It is committed to the principle of equal employment opportunity for all its employees and encourages qualified candidates to apply irrespective of race, colour, national origin, ethnic or social background, genetic information, gender, gender identity and/or expression, sexual orientation, religion or belief, HIV status or disability. /ppABOUT WFP The World Food Programme is the world’s largest humanitarian organization saving lives in emergencies and using food assistance to build a pathway to peace, stability and prosperity, for people recovering from conflict, disasters and the impact of climate change. At WFP, people are at the heart of everything we do and the vision of the future WFP workforce is one of diverse, committed, skilled, and high performing teams, selected on merit, operating in a healthy and inclusive work environment, living WFP’s values (Integrity, Collaboration, Commitment, Humanity, and Inclusion) and working with partners to save and change the lives of those WFP serves. To learn more about WFP, visit our website: /ph3WHY JOIN WFP? /h3pWFP is a 2020 Nobel Peace Prize Laureate. WFP offers a highly inclusive, diverse, and multicultural working environment. WFP invests in the personal professional development of its employees through a range of training, accreditation, coaching, mentorship, and other programs as well as through internal mobility opportunities. A career path in WFP provides an exciting opportunity to work across the various country, regional and global offices around the world, and with passionate colleagues who work tirelessly to ensure that effective humanitarian assistance reaches millions of people across the globe. /ppWe offer an attractive compensation package (please refer to the Terms and Conditions section of this vacancy announcement). /ph3Job Details /h3pJob Title: CYBERSECURITY ADVISORY CONSULTANT (IAM Endpoint Protection) /ppType of contract: Consultant /ppLevel: II /ppUnit/Division: Technology Division, Information Security /ppDuty station: Remote working /ppDuration: 11 months /ph3Background and purpose of the role /h3ulliAuthorization to Operate and cyber security compliance /liliApplication security /liliDefinition, assessment and continuous improvement of authentication, authorization, device security and access management controls. /liliSecurity architecture /liliSecuring critical applications such as beneficiary management systems /liliAzure and Active Directory security /liliStrengthen the organization’s identity security and endpoint protection capabilities /li /ulh3Accountabilities/Responsibilities /h3ulliConduct comprehensive risk assessments and lead the Authorization to Operate (ATO) process for IT systems and services, ensuring that security risks are appropriately identified, evaluated, documented, mitigated and communicated to relevant stakeholders. /liliDesign, review and oversee the security architecture of new and existing applications, platforms, cloud services and technology initiatives, ensuring that appropriate security controls are embedded by design and aligned with organizational policies,



data classification requirements and industry best practices. /liliAssess and strengthen identity and access management controls across applications, cloud services and enterprise platforms, including authentication, authorization, privileged access, access lifecycle management and periodic access reviews. /liliDefine and review endpoint protection requirements and security baselines for corporate endpoints, mobile devices and other managed devices, addressing device compliance, configuration hardening, threat protection, encryption and security monitoring. /liliProvide security guidance on the integration of identity and endpoint controls, ensuring that access decisions appropriately consider user identity, device security posture, privilege level and information sensitivity. /liliLead the development, implementation and continuous improvement of cybersecurity procedures, services, methodologies and governance frameworks aimed at protecting organizational information assets, systems and services. /liliResearch, evaluate and propose innovative technologies, security capabilities and process improvements that strengthen the cybersecurity posture of the organization while demonstrating measurable business value and operational effectiveness. /liliPropose and maintain new security standards, procedures and guidelines to help raise the current security maturity level of the organization. In close collaboration with the Architecture branch, perform regular baseline and hardening reviews of WFP security solutions and technologies. /liliProvide expert cybersecurity advisory services and technical guidance to County Offices, Regional Bureaus and HQ divisions to address cybersecurity challenges and maintain compliance with organizational security standards. /liliProvide guidance to IT solution owners across the organization to:ulliDesign security controls appropriate to the technology and risk landscape. /liliProtect information according to its classification and sensitivity. /liliImplement secure software development lifecycle (SSDLC) practices. /liliIntegrate security requirements into project and solution lifecycles. /liliEnsure compliance with cybersecurity standards and requirements. /li /ul /liliAdvise stakeholders on cybersecurity risks associated with emerging technologies, including cloud services, artificial intelligence, software-as-a-service (SaaS), digital transformation initiatives and data-driven solutions. /liliMaintain a record of decisions taken and assessments performed, in cooperation with other members of the Advisory team. /liliIdentify and execute improvements to existing processes, through solutions to address recurring problems and enhancements to existing solutions or documentation. /liliAct as Subject Matter Expert (SME) for assigned technologies, platforms ,



business applications and cybersecurity domains. /liliPrepare and present high-quality reports, risk assessments, executive briefings, architecture recommendations and management updates tailored to technical and business audiences. /liliMentor, coach and provide technical leadership to junior team members, contributing to knowledge sharing, capability development and continuous improvement within the Advisory team. /liliRepresent the Cybersecurity Branch in meetings, working groups, steering committees, audits, assessments and enterprise initiatives as required. /liliPerform additional duties and responsibilities as required in support of TECI Cybersecurity objectives. /li /ulh3Qualifications and Experience required /h3ulliEducation:ulliDegree in the field of Computer Science/Engineering or related STEM disciplines or equivalent working experience. /li /ul /liliExperience:ulliAt least 6 years of relevant work experience. /li /ul /liliKnowledge and Skills:ulliSolid IT Security skills, with both academic background and professional experience. /liliSolid IT SDLC expertise. /liliStrong knowledge of Identity and Access Management (IAM) technologies and concepts. /liliExperience with endpoint protection technologies and security controls, including endpoint detection and response (EDR), device compliance, configuration hardening and mobile device management (MDM). /liliAbility to assess and design identity-centric and device-based security controls, supporting Zero Trust, conditional access and risk-based access management approaches. /liliUnderstanding of IT architecture and design concepts. /liliAbility to manage stakeholder relationships, aligning cybersecurity risk strategies with business objectives. /liliUnderstand cybersecurity risk concepts to assess threats, vulnerabilities and mitigation strategies. /liliGood project management skills. /liliExperience in multinational organizations. /liliIT Security and IT Audit certifications. /liliSecurity architecture in the cloud. /liliUnderstanding of AI security concepts and framework. /liliExperience in ISO, NIST, HIPAA or PCI compliance processes. /li /ul /liliLanguages:ulliFluency in oral and written English is mandatory with an intermediate knowledge of another official UN language (Arabic, Chinese, French, Russian and Spanish) or Portuguese (one of WFP’s working languages) is desirable. /li /ul /li /ulh3WFP Leadership Framework /h3pWFP Leadership Framework guides to the common standards of behavior that guide HOW we work together to accomplish our mission. /ph3Reasonable Accommodation /h3pWFP is committed to supporting individuals with disabilities by providing reasonable accommodations throughout the recruitment process. If you require a reasonable accommodation, please contact: /ppWFP celebrates and embraces diversity. It is committed to the principle of equal employment opportunity for all its employees and encourages qualified candidates to apply irrespective of race, colour, national origin, ethnic or social background, genetic information, gender, gender identity and/or expression, sexual orientation, religion or belief, HIV status, physical or mental disability. /p /p #J-18808-Ljbffr

📌 Cybersecurity Advisory Consultant (IAM & Endpoint Protection) (Roma)
🏢 Logistics Cluster
📍 Roma

Candidati a questo annuncio

Mostra le tue capacità professionali all'azienda, compila il form e lascia un tocco personale nella lettera di presentazione, aiuterà il recruiter nella scelta del candidato.

Iscriviti a questa job alert:

Ricevi via email le nuove offerte di lavoro per: cybersecurity advisory consultant (iam & endpoint protection) (roma) / roma

Iscriviti a questa job alert:

Ricevi via email le nuove offerte di lavoro per: cybersecurity advisory consultant (iam & endpoint protection) (roma) / roma