Cybersecurity Consultant

3 ore fa

Florence, Tuscany, Italia WFP - World Food Programme Tempo pieno
DEADLINE FOR APPLICATIONS

15 October 2026-23:59-GMT+01:00 Central European Time (Rome)


Dato che un elevato numero di candidati potrebbe essere interessato a questa posizione, si assicuri di inviare il suo CV il prima possibile.
ABOUT WFP

WFP celebrates and embraces diversity. It is committed to the principle of equal employment opportunity for all its employees and encourages qualified candidates to apply irrespective of race, colour, national origin, ethnic or social background, genetic information, gender, gender identity and/or expression, sexual orientation, religion or belief, HIV status or disability.

WFP is the world’s largest humanitarian organization saving lives in emergencies and using food assistance to build a pathway to peace, stability and prosperity, for people recovering from conflict, disasters and the impact of extreme weather shocks.

At WFP, people are at the heart of everything we do and the vision of the future WFP workforce is one of diverse, committed, skilled, and high performing teams, selected on merit, operating in a healthy and inclusive work environment, living WFP's values (Integrity, Collaboration, Commitment, Humanity, and Inclusion) and working with partners to save and change the lives of those WFP serves.

To learn more about WFP, visit our website: and follow us on social media to keep up with our latest news: YouTube, LinkedIn, Instagram, Facebook, Twitter, TikTok.

WHY JOIN WFP?

WFP is a 2020 Nobel Peace Prize Laureate.

WFP offers a highly inclusive, diverse, and multicultural working environment.

WFP invests in the personal & professional development of its employees through a range of training, accreditation, coaching, mentorship, and other programs as well as through internal mobility opportunities.

A career path in WFP provides an exciting opportunity to work across the various country, regional and global offices around the world, and with passionate colleagues who work tirelessly to ensure that effective humanitarian assistance reaches millions of people across the globe.

We offer an attractive compensation package (please refer to the Terms and Conditions section of this vacancy announcement).

JOB TITLE

Cybersecurity Consultant - Threat Exposure & Vulnerability Management Specialist

Type of contract: Regular Consultant (CST2)

Unit/Division: Technology Division, Information Security

Duty Station: Remote

Duration: 11 months

BACKGROUND AND PURPOSE OF THE ASSIGNMENT

Under the general supervision of the CISO, the incumbent will lead efforts to enhance the organization's threat exposure & vulnerability management practices. This includes coordinating adversarial validation initiatives - such as penetration testing, threat exposure assessments, red/purple teaming - to identify and assess exploitable vulnerabilities in IT infrastructure and systems. The role focuses on validating risks and gaps, prioritizing remediation and controls, and aligning efforts with business priorities. The incumbent will collaborate with teams to integrate validation results into threat exposure and detection processes, while continuously monitoring, reporting, and refining adversarial validation practices to minimize organizational risk by addressing critical vulnerabilities and detection gaps.

ACCOUNTABILITIES/RESPONSIBILITIES

Main responsibilities include, but not limited to:

  • Design and coordinate adversarial validation activities such as penetration tests, threat exposure assessments, and red/purple team exercises to identify detection gaps, exploitable weak points and assess their risk impact in real-world scenarios.
  • Validate findings to confirm exploitability, assess risk levels, and guide prioritization of remediation efforts, leveraging team input and expertise and guiding integration into WFP’s threat exposure management program.
  • Collaborate with relevant teams and provide technical direction to ensure timely mitigation of validated vulnerabilities or detection gaps.
  • Develop clear reports and dashboards that highlight key findings, including critical vulnerabilities, attack paths, and remediation progress for stakeholder visibility.
  • Communicate adversarial validation findings, risks, and remediation strategies effectively to senior leadership and stakeholders.
  • Continuously refine validation techniques based on emerging threat intelligence, vulnerabilities, and attack methods to maintain program relevance and effectiveness.
  • Prioritize vulnerabilities based on adversarial validation outcomes, focusing on those posing the highest risk to the organization’s operations, and coordinate team efforts accordingly.
  • Perform other cybersecurity related duties as assigned.
QUALIFICATIONS & EXPERIENCE REQUIRED
  • Education: University Degree in Information Technology, Information Systems, Cybersecurity, or related fields o