Logo of Huzzle

ICT Analyst, Cybersecurity

  • Job
    Full-time
    Junior Level
  • Data
    IT & Cybersecurity
  • Bonn

AI generated summary

  • You must have a master's or bachelor's degree with 2 years' experience, ISO certification, TRA experience, and knowledge of cybersecurity standards. UN experience and fluency in English are required.
  • You will handle cybersecurity incidents, automate tasks, monitor security alerts, conduct assessments, enforce policies, coordinate drills, and improve security posture while ensuring compliance and training.

Requirements

  • Advanced university degree (master’s degree or equivalent) in Information Technology, Computer Science or Engineering, or related discipline is required. Or
  • A first-level university degree (bachelor’s degree) in the areas mentioned above, in combination with an additional two years of qualifying experience will be given due consideration in lieu of the advanced university degree.
  • Applicants with a master’s degree (or equivalent) in a relevant field of study are not required to have professional work experience.
  • Applicants with a bachelor’s degree (or equivalent) are required to have a minimum of two (2) years of relevant professional experience in the areas of data management, computer science, DevOps, or related field at national or international level.
  • ISO20071 certification or similar
  • Participated-in or lead Threat Risk Assessments (TRA)
  • Experience in the field of Cyber Threat Intelligence is desired.
  • Operational experience working with threat detection and incident response systems is desired.
  • Knowledge of international standards and best practices in cybersecurity, risk, and service management (ISO 27001:2022, 9001:2015, 20000:2011, 22301:2012, 27701:2020) is desired.
  • Experience in providing security related training to users in the form of webinars is desired.
  • UN work experience is desired.
  • Fluency in English is required.
  • Working knowledge of other UN language is desired

Responsibilities

  • Under the Supervision of the Team Leader ICT Infrastructure, the ICT Analyst, Cybersecurity is responsible for comprehensive incident handling in accordance with policy and guidelines which includes how incidents are defined, reported, verified, tracked, contained, and recovered. Specifically, the incumbent will be involved with:
  • Developing solutions to automate cybersecurity tasks
  • Maintaining a variety of cloud-native security solutions, including but not limited to: Security Information and Event Management (SIEM), Security Orchestration, Automation, and Response (SOAR), develop automation pipelines and custom scripts to reduce manual labour and minimize human error.
  • Monitoring and evaluating events, alerts, and notifications from the cyber security infrastructure for indications of suspicious/unauthorized activity.
  • Responding to detected or reported cyber security incidents.
  • Monitoring vendor and industry alerts, warnings, and security advisories, and follow up with appropriate system and service owners within the organization to ensure that corresponding risks are mitigated.
  • Promoting security best practices and plan security awareness trainings.
  • Collaborate with development teams to integrate security best practices into all phases of the SDLC.
  • Conduct security risk assessments, code reviews, and vulnerability assessments for UNV applications.
  • Develop (where not exist) and enforce UNDP security policies, standards, training and guidelines for team members and staff.
  • Perform threat modeling and security architecture reviews to identify potential risks.
  • Coordinate vulnerability scans with provider(s)
  • Coordinate “Red Teaming” exercises with all stakeholders.
  • Ensure incident response readiness for all UNV services.
  • Lead initiatives to improve overall UNV Cybersecurity posture, including automation of security testing.
  • Keep an update inventory of UNV digital assets and make sure all measures are taken to make them available to legitimate authorized users and untampered with (Availability, Confidentiality, Integrity).
  • Coach Application owners, Data owners, and Service owners on Backup and restore procedures and business continuity measures.
  • Work closely with UNDP security team to implement ISO27001/2 Information Management certification for UNV.
  • The incumbent performs other duties within their functional profile as deemed necessary for the efficient functioning of the Office and the Organization.

FAQs

What is the role of the ICT Analyst, Cybersecurity at UNDP?

The ICT Analyst, Cybersecurity is responsible for incident handling, developing automated cybersecurity solutions, monitoring cyber threats, conducting security assessments, and promoting security best practices within the organization.

What qualifications are required for this position?

An advanced university degree (master's degree) in Information Technology, Computer Science, or Engineering is required. Alternatively, a bachelor's degree in these fields with an additional two years of relevant work experience will also be considered.

Is professional work experience necessary for applicants with a master's degree?

No, applicants with a master's degree are not required to have professional work experience.

What specific cybersecurity certifications are preferred for this role?

ISO20071 certification or similar certifications are preferred for candidates applying for this position.

How many years of experience are required for applicants with a bachelor's degree?

Applicants with a bachelor's degree are required to have a minimum of two (2) years of relevant professional experience in areas such as data management, computer science, or DevOps.

Are there any preferred additional skills and competencies for candidates?

Yes, preferred additional skills include experience in Cyber Threat Intelligence, operational experience with threat detection systems, and knowledge of international cybersecurity standards.

What languages are required for this job?

Fluency in English is required, and working knowledge of another UN language is desired.

What is the workplace arrangement for this position?

The position supports a hybrid work arrangement, combining both remote and on-site work.

What kind of training responsibilities does the ICT Analyst, Cybersecurity have?

The ICT Analyst will promote security best practices and provide security-related training to users, including webinars.

Are candidates from marginalized populations encouraged to apply?

Yes, the organization strongly encourages individuals from marginalized or excluded populations to apply, reflecting its commitment to diversity, equity, and inclusion.

Government
Industry
10,001+
Employees

Mission & Purpose

The United Nations Development Programme works in nearly 170 countries and territories, helping to achieve the eradication of poverty, and the reduction of inequalities and exclusion. We help countries to develop policies, leadership skills, partnering abilities, institutional capabilities and build resilience in order to sustain development results. DISCLAIMER: The United Nations Development Programme (UNDP) does not guarantee the truthfulness, accuracy, or validity of any comments posted to its social media outlets (blogs, social networks, message boards/forums, etc.). Users must not post any content that is obscene, defamatory, profane, libelous, threatening, harassing, abusive, hateful or embarrassing to any person or entity. UNDP reserves the right to delete or edit any comments that it considers inappropriate or unacceptable, and to delete off-topic comments in order to foster conversations about the topics shared on this page.