Cybersecurity and vulnerability management specialist

11 ore fa


Rome, Italia Altro A tempo pieno

Adversarial Exposure Validation & Vulnerability Management SpecialistJoin to apply for theAdversarial Exposure Validation & Vulnerability Management Specialistrole atWorld Food ProgrammeAdversarial Exposure Validation & Vulnerability Management Specialist2 days ago Be among the first 25 applicantsJoin to apply for theAdversarial Exposure Validation & Vulnerability Management Specialistrole atWorld Food ProgrammeDirect message the job poster from World Food ProgrammeGlobal Talent Acquisition at UN World Food ProgrammeBACKGROUND AND PURPOSE OF THE ASSIGNMENT:Under the general supervision of the Chief TECI and the direct supervision of the Head of Cybersecurity Operations, the incumbent will lead efforts to enhance the organization's threat exposure & vulnerability management practices. This includes coordinating adversarial validation initiatives - such as penetration testing, threat exposure assessments, red/purple teaming - to identify and assess exploitable vulnerabilities in IT infrastructure and systems. The role focuses on validating risks and gaps, prioritizing remediation and controls, and aligning efforts with business priorities.The incumbent will collaborate with teams to integrate validation results into threat exposure and detection processes, while continuously monitoring, reporting, and refining adversarial validation practices to minimize organizational risk by addressing critical vulnerabilities and detection gaps.ACCOUNTABILITIES/RESPONSIBILITIES:Main responsibilities include, but not limited to:Design and coordinate adversarial validation activities such as penetration tests, threat exposure assessments, and red/purple team exercises to identify detection gaps, exploitable weak points and assess their risk impact in real-world scenarios.Validate findings to confirm exploitability, assess risk levels, and guide prioritization of remediation efforts, leveraging team input and expertise and guiding integration into WFP's threat exposure management program.Collaborate with relevant teams and provide technical direction to ensure timely mitigation of validated vulnerabilities or detection gaps.Develop clear reports and dashboards that highlight key findings, including critical vulnerabilities, attack paths, and remediation progress for stakeholder visibility.Communicate adversarial validation findings, risks, and remediation strategies effectively to senior leadership and stakeholders.Continuously refine validation techniques based on emerging threat intelligence, vulnerabilities, and attack methods to maintain program relevance and effectiveness.Prioritize vulnerabilities based on adversarial validation outcomes, focusing on those posing the highest risk to the organization's operations, and coordinate team efforts accordingly.Perform other cybersecurity related duties as assigned.DELIVERABLES AT THE END OF THE CONTRACT:Comprehensive Adversarial Validation Reports: Developed in coordination with a small technical team, including findings, attack paths, categorized vulnerabilities, proof of concept, and real-world risk impact.Prioritized Mitigation Recommendations: Actionable strategies based on business impact and organizational risk, incorporating team-driven insights to address critical gaps and improve security posture.Integrated Workflows & Threat Exposure Alignment: Team-supported automation and structured processes for embedding validation results into vulnerability management and threat intelligence programs.Stakeholder Communication Briefs: Executive-level summaries and presentations reflecting the team's findings and strategic recommendations, tailored based on different audiences.Refined Validation Methodology: Updated adversarial validation techniques and documentation, developed collaboratively and incorporating lessons learned across the team.QUALIFICATIONS & EXPERIENCE REQUIRED:Education:University Degree in Information Technology, Information Systems, Cybersecurity, or related fields or a combination of relevant education and experience.Experience:At least 5 years of experience in cybersecurity, with focus on vulnerability management and threat exposure management.Knowledge & Skills:Sound IT Security skills, with both academic background and practical hands-on experienceIn-depth understanding of vulnerability management frameworks, processes, and best practices.Experience with vulnerability scanning processes, tools and remediation workflows.Familiarity with security concepts such as threat modeling, asset classification, and risk-based decision-making.Experience with penetration testing, and adversarial emulation activities that aid in identifying potential attack vectors and their impact.Previous experience in international or UN environments is valued, but not essential.IT Audit and/or PM certifications are desirable, though equivalent hands-on experience is equally appreciated.Strong organisational and communication skills.Languages:Fluency (level C) in English language. Intermediate knowledge (level B) of a second official UN language desirable: Arabic, Chinese, French, Russian, Spanish, and/or WFP's working language, Portuguese.Seniority levelSeniority level Mid-Senior levelEmployment typeEmployment type ContractJob functionJob function ConsultingIndustries Non-profit OrganizationsReferrals increase your chances of interviewing at World Food Programme by 2xGet notified about new Validation Specialist jobs inRome, Latium, Italy.Quality Assurance Software Specialist (Rif. 2025-97)Freelance Economics - Quality Assurance/AI TrainerWe're unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.



  • Rome, Italia Banche E Finanza A tempo pieno

    **Role Profile**Within the Risk & Compliance department, a team of more than 40 talented professionals in Risk, Business Continuity Management, Internal Control and Compliance, spread across our various geographies, is ensuring to preserve the value assets and reputation of the company. Identifying and assessing risks, implementing mitigation actions,...


  • Rome, Italia Pirelli A tempo pieno

    OverviewA global leader in the tire industry based in Milan is looking for a Cybersecurity Specialist to oversee their cybersecurity strategy across the Pirelli Group. In this role, you will manage the monitoring of security events, analyze vulnerabilities, and handle incidents. The ideal candidate has a Master’s degree and at least three years of...


  • Rome - via Tomacelli, Italia Euronext A tempo pieno

    Role ProfileWithin the Risk & Compliance department, a team of more than 40 talented professionals in Risk, Business Continuity Management, Internal Control and Compliance, spread across our various geographies, is ensuring to preserve the value assets and reputation of the company. Identifying and assessing risks, implementing mitigation actions, informing...

  • Sales Manager

    11 ore fa


    Rome, Italia ai.esra A tempo pieno

    ai.ESRA operates as a specialized vendor focused on developing ESRA, the proprietary Cyber Risk Analytics platform. Joining ai.ESRA means contributing to an innovative technology that is transforming the way companies manage cyber risk through a continuous, data-driven approach.The goal of this role is to accelerate ai.ESRA's growth in the Italian market —...

  • Sales manager

    11 ore fa


    Rome, Italia Ai.esra A tempo pieno

    ai. ESRA operates as a specialized vendor focused on developing ESRA , the proprietary Cyber Risk Analytics platform . Joining ai. ESRA means contributing to an innovative technology that is transforming the way companies manage cyber risk through a continuous, data-driven approach.The goal of this role is to accelerate ai. ESRA's growth in the Italian...

  • Sales manager

    11 ore fa


    Rome, Italia Ai.esra A tempo pieno

    Ai. ESRAoperates as a specialized vendor focused on developingESRA , the proprietaryCyber Risk Analytics platform. Joining ai. ESRA means contributing to an innovative technology that is transforming the way companies manage cyber risk through a continuous, data-driven approach.The goal of this role is to accelerate ai. ESRA's growth in the Italian...

  • Sales Manager

    11 ore fa


    Rome, Italia ai.esra A tempo pieno

    ai.ESRA operates as a specialized vendor focused on developing ESRA, the proprietary Cyber Risk Analytics platform. Joining ai.ESRA means contributing to an innovative technology that is transforming the way companies manage cyber risk through a continuous, data-driven approach.The goal of this role is to accelerate ai.ESRA's growth in the Italian market —...

  • Sales Manager

    6 giorni fa


    Rome, Italia Ai.esra A tempo pieno

    ai. ESRA operates as a specialized vendor focused on developing ESRA , the proprietary Cyber Risk Analytics platform. Joining ai. ESRA means contributing to an innovative technology that is transforming the way companies manage cyber risk through a continuous, data-driven approach. The goal of this role is to accelerate ai. ESRA's growth in the Italian...

  • Sales manager

    4 giorni fa


    Rome, Italia Ai.esra A tempo pieno

    ai. ESRA operates as a specialized vendor focused on developing ESRA , the proprietary Cyber Risk Analytics platform . Joining ai. ESRA means contributing to an innovative technology that is transforming the way companies manage cyber risk through a continuous, data-driven approach.The goal of this role is to accelerate ai. ESRA’s growth in the Italian...

  • Sales manager

    4 giorni fa


    Rome, Italia Ai.esra A tempo pieno

    ai. ESRA operates as a specialized vendor focused on developing ESRA, the proprietary Cyber Risk Analytics platform. Joining ai. ESRA means contributing to an innovative technology that is transforming the way companies manage cyber risk through a continuous, data-driven approach.The goal of this role is to accelerate ai. ESRA's growth in the Italian market...