Cybersecurity Specialist
2 settimane fa
Cybersecurity Specialist - Threat, Risk and Vulnerability Management Join to apply for the Cybersecurity Specialist - Threat, Risk and Vulnerability Management role at World Food Programme DEADLINE FOR APPLICATIONS 4 January :59-GMT+01:00 Central European Time (Rome) WFP celebrates and embraces diversity. It is committed to the principle of equal employment opportunity for all its employees and encourages qualified candidates to apply irrespective of race, colour, national origin, ethnic or social background, genetic information, gender, gender identity and/or expression, sexual orientation, religion or belief, HIV status or disability. ABOUT WFP The World Food Programme is the world’s largest humanitarian organization saving lives in emergencies and using food assistance to build a pathway to peace, stability and prosperity, for people recovering from conflict, disasters and the impact of climate change. At WFP, people are at the heart of everything we do and the vision of the future WFP workforce is one of diverse, committed, skilled, and high performing teams, selected on merit, operating in a healthy and inclusive work environment, living WFP's values (Integrity, Collaboration, Commitment, Humanity, and Inclusion) and working with partners to save and change the lives of those WFP serves. To learn more about WFP , visit our website: and follow us on social media to keep up with our latest news: YouTube, LinkedIn, Instagram, Facebook, Twitter, TikTok. WHY JOIN WFP? WFP is a 2020 Nobel Peace Prize Laureate. WFP offers a highly inclusive, diverse, and multicultural working environment. WFP invests in the personal & professional development of its employees through a range of training, accreditation, coaching, mentorship, and other programs as well as through internal mobility opportunities. A career path in WFP provides an exciting opportunity to work across the various country, regional and global offices around the world, and with passionate colleagues who work tirelessly to ensure that effective humanitarian assistance reaches millions of people across the globe. We offer an attractive compensation package (please refer to the Terms and Conditions section of this vacancy announcement). JOB TITLE: Cybersecurity Specialist - Threat, Risk and Vulnerability Management TYPE OF CONTRACT: Regular Consultant (CST2) DUTY STATION: Rome/Italy or Remote DURATION: 11 months BACKGROUND AND PURPOSE OF THE ASSIGNMENT Under the general supervision of the Chief TECI and the direct supervision of the Head of Cybersecurity Operations, the incumbent will lead efforts to enhance the organization's threat exposure & vulnerability management practices. This includes coordinating adversarial validation initiatives – such as penetration testing, threat exposure assessments, red/purple teaming – to identify and assess exploitable vulnerabilities in IT infrastructure and systems. The role focuses on validating risks and gaps, prioritizing remediation and controls, and aligning efforts with business priorities. The incumbent will collaborate with teams to integrate validation results into threat exposure and detection processes, while continuously monitoring, reporting, and refining adversarial validation practices to minimize organizational risk by addressing critical vulnerabilities and detection gaps. ACCOUNTABILITIES / RESPONSIBILITIES Design and coordinate adversarial validation activities such as penetration tests, threat exposure assessments, and red/purple team exercises to identify detection gaps, exploitable weak points and assess their risk impact in real‑world scenarios. Validate findings to confirm exploitability, assess risk levels, and guide prioritization of remediation efforts, leveraging team input and expertise and guiding integration into WFP's threat exposure management program. Collaborate with relevant teams and provide technical direction to ensure timely mitigation of validated vulnerabilities or detection gaps. Develop clear reports and dashboards that highlight key findings, including critical vulnerabilities, attack paths, and remediation progress for stakeholder visibility. Communicate adversarial validation findings, risks, and remediation strategies effectively to senior leadership and stakeholders. Continuously refine validation techniques based on emerging threat intelligence, vulnerabilities, and attack methods to maintain program relevance and effectiveness. Prioritize vulnerabilities based on adversarial validation outcomes, focusing on those posing the highest risk to the organization's operations, and coordinate team efforts accordingly. Perform other cybersecurity related duties as assigned. DELIVERABLES AT THE END OF THE CONTRACT Comprehensive Adversarial Validation Reports: Developed in coordination with a small technical team, including findings, attack paths, categorized vulnerabilities, proof of concept, and real‑world risk impact. Prioritized Mitigation Recommendations: Actionable strategies based on business impact and organizational risk, incorporating team-driven insights to address critical gaps and improve security posture. Integrated Workflows & Threat Exposure Alignment: Team-supported automation and structured processes for embedding validation results into vulnerability management and threat intelligence programs. Stakeholder Communication Briefs: Executive-level summaries and presentations reflecting the team's findings and strategic recommendations, tailored based on different audiences. Refined Validation Methodology: Updated adversarial validation techniques and documentation, developed collaboratively and incorporating lessons learned across the team. QUALIFICATIONS & EXPERIENCE REQUIRED Education: University Degree in Information Technology, Information Systems, Cybersecurity, or related fields or a combination of relevant education and experience. Experience: At least 5 years of experience in cybersecurity, with focus on vulnerability management and threat exposure management. Knowledge & Skills: Sound IT Security skills, with both academic background and practical hands‑on experience. In‑depth understanding of vulnerability management frameworks, processes, and best practices. Experience with vulnerability scanning processes, tools and remediation workflows. Familiarity with security concepts such as threat modeling, asset classification, and risk‑based decision‑making. Experience with penetration testing, and adversarial emulation activities that aid in identifying potential attack vectors and their impact. Previous experience in international or UN environments is valued, but not essential. IT Audit and/or PM certifications are desirable, though equivalent hands‑on experience is equally appreciated. Strong organisational and communication skills. Languages: Fluency (level C) in English language. Intermediate knowledge (level B) of a second official UN language desirable: Arabic, Chinese, French, Russian, Spanish, and/or WFP's working language, Portuguese. WFP LEADERSHIP FRAMEWORK WFP Leadership Framework guides to the common standards of behavior that guide HOW we work together to accomplish our mission. Click here to access WFP Leadership Framework REASONABLE ACCOMMODATION WFP is committed to supporting individuals with disabilities by providing reasonable accommodations throughout the recruitment process. If you require a reasonable accommodation, please contact: NO FEE DISCLAIMER The United Nations does not charge any application, processing, training, interviewing, testing or other fee in connection with the application or recruitment process. Should you receive a solicitation for the
-
Hybrid Cybersecurity Governance
7 giorni fa
WorkFromHome, Italia NEVERHACK Italy A tempo pienoUna società di cybersecurity sta cercando un Cybersecurity Governance & Risk Specialist per garantire la conformità e gestire i rischi in un ambiente complesso. Il candidato ideale avrà esperienza in cybersecurity e conoscenza approfondita delle normative come GDPR e ISO. Offriamo un ambiente stimolante con modalità di lavoro ibrida e opportunità di...
-
SOC Specialist: Cybersecurity Provisioning
5 giorni fa
WorkFromHome, Italia Aubay Italia A tempo pienoUn'azienda specializzata in cybersecurity cerca un SOC Specialist per gestire le attività di sicurezza informatica dei clienti aziendali. Il candidato si occuperà di attivare e configurare progetti di cybersecurity, collaborando con vari team per garantire un'efficace implementazione. È richiesta esperienza con strumenti di rete e soluzioni di Identity...
-
Cybersecurity Specialist: MFA
4 settimane fa
WorkFromHome, Italia JUMPIT S.R.L. A tempo pienoUn'innovativa azienda di tecnologia è alla ricerca di un Cybersecurity Specialist che lavorerà su progetti per un importante cliente nel settore assicurativo. Il candidato ideale avrà esperienza in cybersecurity operativa e conoscenza di strumenti come Burp Suite e Metasploit. Offriamo un ambiente di lavoro ibrido, e opportunità di formazione continua...
-
Cybersecurity Governance
7 giorni fa
WorkFromHome, Italia NEVERHACK Italy A tempo pienoNEVERHACK ( https : / / neverhack.com / it ) è un gruppo francese specializzato in cybersecurity. Fondato nel 2021 e con sedi in 10 paesi, il gruppo conta oggi più di 1200 dipendenti in tutto il mondo. La nostra ambizione è quella di espanderci a livello internazionale per costruire un mondo digitale sicuro per tutti. Cybersecurity Governance & Risk...
-
Offensive Cybersecurity Specialist — Remote
5 giorni fa
WorkFromHome, Italia Orienta Digital A tempo pienoUn'azienda specializzata in ICT ricerca un Cybersecurity Specialist con esperienza in ambito offensivo per lavorare in modalità fully remote. Il candidato ideale avrà competenze solide in penetration testing e vulnerability assessment, oltre a capacità di redigere report tecnici e comunicare efficacemente con i clienti. Questa posizione offre opportunità...
-
Cybersecurity Specialist
2 settimane fa
WorkFromHome, Italia Jumpit S.r.l A tempo pienoUnisciti a JUMPIT: Innovazione, Persone e Crescita nel Cuore della Digital Transformation Jumpit è oggi una realtà affermata nel panorama della trasformazione digitale. Con una storica esperienza in ambito SAP, maturata grazie a progetti complessi per grandi aziende, principalmente nel settore Manufacturing, Utilities, Servizi, Food & Beverage. La nostra...
-
Cybersecurity Specialist IT/OT
3 settimane fa
WorkFromHome, Italia Mondi Group A tempo pienoCybersecurity Specialist IT/OT – Mondi Group Join to apply for the Cybersecurity Specialist IT/OT role at Mondi Group . Role Description: The OT specialist is responsible for coordinating cybersecurity and operational technology (OT) activities within the Romano di Lombardia site and the other 4 production sites in Italia. The role requires travel to...
-
Enterprise Cortex
4 settimane fa
WorkFromHome, Italia Palo Alto Networks A tempo pienoA cybersecurity company is seeking a Sales Specialist to boost business growth in their Cortex and Cloud divisions in the Rome area. The ideal candidate should have over 5 years of experience in field sales, particularly within cybersecurity. Strong relationship management skills and a proven track record in complex sales are essential. The role involves...
-
Cybersecurity Specialist
5 giorni fa
WorkFromHome, Italia Centrico A tempo pienoL’Open Banking è il nostro DNA! Centrico ha le sue radici nelle rivoluzioni tecnologiche guidate dal gruppo Sella e dal 2019 è una realtà indipendente: creiamo innovazione per il mondo delle banche e della finanza con un sistema informativo aperto, veloce, modulabile e conveniente. Ti appassiona l'ambito della Cybersecurity e ti piacerebbe crescere...
-
Cybersecurity Specialist
2 settimane fa
WorkFromHome, Italia Jumpit Srl A tempo pienoCybersecurity Specialist (MFA & Penetration Testing) Join to apply for the Cybersecurity Specialist (MFA & Penetration Testing) role at Jumpit Srl . Unisciti a JUMPIT: Innovazione, Persone e Crescita nel Cuore della Digital Transformation. Jumpit, nata nel 2019 come startup innovativa con l’obiettivo di guidare la trasformazione digitale di grandi aziende...