Information Security Advisory Specialist

1 settimana fa


Roma, Italia World Food Programme A tempo pieno

DEADLINE FOR APPLICATIONS

5 July 2025-23:59-GMT+01:00 Central European Time (Rome)

ABOUT WFP

The World Food Programme is the world’s largest humanitarian organization saving lives in emergencies and using food assistance to build a pathway to peace, stability and prosperity, for people recovering from conflict, disasters and the impact of climate change.

At WFP, people are at the heart of everything we do and the vision of the future WFP workforce is one of diverse, committed, skilled, and high performing teams, selected on merit, operating in a healthy and inclusive work environment, living WFP's values (Integrity, Collaboration, Commitment, Humanity, and Inclusion) and working with partners to save and change the lives of those WFP serves.

To learn more about WFP, visit our website:
WHY JOIN WFP?- WFP is a 2020 Nobel Peace Prize Laureate.- WFP offers a highly inclusive, diverse, and multicultural working environment.- WFP invests in the personal & professional development of its employees through a range of training, accreditation, coaching, mentorship, and other programs as well as through internal mobility opportunities.- A career path in WFP provides an exciting opportunity to work across the various country, regional and global offices around the world, and with passionate colleagues who work tirelessly to ensure that effective humanitarian assistance reaches millions of people across the globe.- We offer an attractive compensation package (please refer to the Terms and Conditions section of this vacancy announcement).

JOB TITLE: INFORMATION SECURITY ADVISORY SPECIALIST

TYPE OF CONTRACT: CST2

UNIT/DIVISION: TECI

DUTY STATION (City, Country): REMOTE WORK

DURATION: 11 months

BACKGROUND AND PURPOSE OF THE ASSIGNMENT:
Under the general supervision of the Chief Information Security Officer and supervision of the Head of Cybersecurity Advisory Services, the incumbent will conduct consulting activities to the business, including, but not limited to:

- Authorization to Operate and security compliance
- Application security
- Network security
- Security architecture
- Third Party Risk Management
- Securing beneficiary management systems
- Azure and Active Directory security
- Identity and access management

ACCOUNTABILITIES/RESPONSIBILITIES:

- Conduct comprehensive risk assessments and manage the Authorization to Operate (ATO) process for IT systems, ensuring that all security controls are effectively implemented and maintained to meet organizational and regulatory requirements.
- Lead the design, implementation and maintenance of cybersecurity procedures and services, aimed at protecting IT systems and sensitive data.
- Produce proposals around technologies to improve the cybersecurity posture of the organization, with sound research to ensure these produce value.
- Propose and maintain new security standards, procedures and guidelines to help raise the current security maturity level of the organization. In close collaboration with the Architecture branch, perform regular baseline and hardening reviews of WFP security solutions and technologies.
- Provide expert support and advisory services to County Offices and Regional Bureaus to address cybersecurity challenges and maintain compliance with organizational security standards.
- Conduct third-party risk assessments, ensuring cybersecurity compliance and effective risk management. Provide guidance to IT solution owners across the organization to:

- Properly design the needed measures to ensure the cybersecurity of the solution.
- Protect data as appropriate for their classification.
- Understand and propose secure software development lifecycle (SDLC) principles.
- Ensure the compliance with Enterprise Architecture and security guidelines.
- Advise the organization on other risk and data classification concerns.
- Consistently find opportunities to innovate, extend and enhance service delivery wherever possible.
- Maintain a record of decisions taken and assessments performed, in cooperation with other members of the Advisory team.
- Identify and execute improvements to existing processes, through solutions to address recurring problems and enhancements to existing solutions or documentation.
- Produce high quality reports.
- Provide leadership and advice to more junior colleagues.
- Manage cybersecurity related projects.
- Additional duties as requested.

DELIVERABLES AT THE END OF THE CONTRACT:

- Comprehensive reports detailing the risk assessments conducted for IT systems, including identified risks, mitigation measures, and residual risks.
- Complete documentation for the Authorization to Operate (ATO) process, including security controls, compliance status, and any necessary remediation actions.
- Well-researched proposals for technologies and strategies to improve the organization's cybersecurity posture.
- Updated security standards, procedures, and guidelines to raise the corporate security maturity level, including baseline and hard



  • Roma, Italia Intrum AB A tempo pieno

    At Intrum, you will grow by making a difference. You will do it in a highly international environment and in a supportive culture where effort counts. Intrum è il leader europeo nel settore dei credit services con una presenza in 24 mercati del vecchio continente. Intrum aiuta le aziende offrendo soluzioni progettate per migliorare i flussi di cassa e la...


  • Roma, Italia Intrum Justitia A tempo pieno

    Hos Intrum vil du udvikle dig ved at gøre en forskel - på såvel højt plan som i et internationalt miljø. Og dét i en bekræftende kultur, hvor din indsats tæller. Intrum è il leader europeo nel settore dei credit services con una presenza in 24 mercati del vecchio continente. Intrum aiuta le aziende offrendo soluzioni progettate per migliorare i...

  • Hybrid Cybersecurity

    7 giorni fa


    Roma, Italia Open Future Projects A tempo pieno

    Un laboratorio strategico innovativo a Roma cerca un Cybersecurity & Information Security Specialist per gestire progetti di sicurezza. Il candidato ideale deve avere almeno 3 anni di esperienza in cybersecurity e ottime capacità organizzative. Il ruolo richiede supporto nella progettazione di attività per la sicurezza delle informazioni, analisi di dati e...

  • Cyber Security Manager

    1 settimana fa


    Roma, Italia IT002 Marsh Advisory S.r.l A tempo pieno

    Overview Description : Cyber Security Manager Siamo alla ricerca di una persona motivata e competente che abbia voglia unirsi al team di Business Resilience & Digital Risk di Marsh Advisory. L’opportunità è sul nostro ufficio di Milano o Roma per un ruolo ibrido. Marsh Advisory è la società di consulenza manageriale di Marsh che offre servizi e...


  • Roma, Italia World Food Programme A tempo pieno

    DEADLINE FOR APPLICATIONS 5 July 2025-23:59-GMT+01:00 Central European Time (Rome) ABOUT WFP The World Food Programme is the world’s largest humanitarian organization saving lives in emergencies and using food assistance to build a pathway to peace, stability and prosperity, for people recovering from conflict, disasters and the impact of climate...


  • Roma, Italia Hotjar A tempo pieno

    At Hotjar, we're creating Product Experience insights software for digital product teams. We help show how users behave and what they feel strongly about, so product teams can deliver real value, fast. Hotjar's Security Team sits within a global security / trust team at the level of Hotjar's parent company, Contentsquare, and is responsible for the...


  • Giuliano di Roma, Italia IT002 Marsh Advisory S.r.l A tempo pieno

    OverviewDescription :Cyber Security ManagerSiamo alla ricerca di una persona motivata e competente che abbia voglia unirsi al team di Business Resilience & Digital Risk di Marsh Advisory. L’opportunità è sul nostro ufficio di Milano o Roma per un ruolo ibrido.Marsh Advisory è la società di consulenza manageriale di Marsh che offre servizi e soluzioni...


  • Roma, Italia Techyon A tempo pieno

    Techyon: Information Technology Recruitment Experts | Head Hunter **Posizione**: **Techyon** is the first **Head Hunter** specialising exclusively in search and selection of senior professionals and managers in the **Information Technology**. Our Recruitment Engineers select the best IT profiles for prestigious IT consulting firms, banks,...


  • Roma, Italia Wyser A tempo pieno

    Per azienda finale, operante nel segmento industrial/produzione, stiamo cercando un/una Chief Information Security Officer (CISO) La risorsa individuata, a diretto riporto della Direzione Generale, sarà responsabile della sicurezza delle informazioni e delle infrastrutture ICT aziendali, coordinando un team formato da risorse interne e consulenti esterni...


  • Roma, Italia European Investment Bank (EIB) A tempo pieno

    Associate Information Security Officer – based in Luxembourg This position is based at our Luxembourg headquarters and requires regular office presence. The European Investment Bank (EIB) offers the opportunity to live and work in a truly international and multi‑cultural environment, with relocation support. The EIB, the European Union’s bank, is...