Job
- Level
- Experienced
- Job Field
- IT, Network, Security
- Employment Type
- Full Time
- Contract Type
- Temporary employment
- Salary
- from 109.999 € Gross/Year
- Location
- Vienna
- Working Model
- Onsite
Job Summary
In this role, you will be responsible for implementing and maintaining cybersecurity controls, including threat analysis, security monitoring, and supporting the secure software development process.
Job Technologies
Your role in the team
- As a member of COR/DIT, the ICT Security Operations Officer operates as part of the first line of defence and is responsible for the implementation, operation, and maintenance of cybersecurity controls and security systems across the organization.
- The incumbent manages the deployment, configuration, daily operation, and optimisation of ICT security technologies and services, including the technical integration and coordination of security capabilities across corporate systems, while prioritizing and executing security operations activities.
- The role performs hands-on technical security analysis, operations, and security engineering activities, including security monitoring, incident response, threat analysis, vulnerability management, and the technical optimisation of operational security processes.
- In addition, the incumbent operates application security controls such as web and application scanning, automated security testing (SAST/DAST), and coordinates remediation activities with development teams to support secure software delivery throughout the application lifecycle.
- In collaboration with relevant technical teams, the role also supports the operation and enforcement of AI security controls for enterprise AI systems and workloads, including monitoring AI usage, detecting anomalous or malicious interactions such as prompt injection or data leakage attempts, and enforcing technical safeguards.
- Furthermore, the incumbent is responsible for operating protection, detection, and forensic capabilities, as well as executing the technical response and resolution of ICT security incidents to ensure the continuous, reliable, and resilient operation of security controls supporting system performance, capacity, and recovery requirements.
- The ICT Security Operations Officer serves as an infrastructure security expert, monitoring and forensics expert, and project manager.
This text has been machine translated. Show original
Our expectations of you
Education
- A first-level university degree (Bachelor's or equivalent) in Information Security, Computer Science, IT Management, Engineering, or in a related field with a specialization related to cybersecurity / information security / ICT security is required.
- An advanced university degree (Master's or equivalent) or a Doctorate in the same fields are accepted with a reduced requirement for years of professional experience.
- A minimum of professional experience associated with the educational level is required, as follows:
- First-level university degree (Bachelor's): at least 8 years of relevant professional experience
- Advanced university degree (Master's): at least 5 years of relevant professional experience
Qualifications
- Operational monitoring of enterprise AI systems, detecting anomalous or malicious interactions, and enforcing secure AI usage policies, is desirable.
- Accredited Certification in Project Management, such as PMP or Prince2, is desirable.
- Accredited certification in ITSM, such as ITIL (v4 or v5), is desirable.
- Certification in any security operations or incident response, such as GIAC GCIH (Incident Handler), GCIA (Intrusion Analyst), GMON (Continuous Monitoring), GSOC (Security Operations), Microsoft SC-200 (Security Operations Analyst), or equivalent is desirable.
- Cloud security certification in any, such as Microsoft AZ-500 (Azure Security Engineer), AWS Certified Security - Specialty, Google Professional Cloud Security Engineer, CCSP (Certified Cloud Security Professional), or equivalent is desirable.
- Certification in Digital forensics and incident response (e.g., GIAC GCFA) is desirable.
- Certification in Application and software security (e.g. CASE, OSWE) is desirable.
- Fluency in written and spoken English is required.
- Fluency in or working knowledge of other United Nations language(s)) is desirable.
Experience
- Doctorate: at least 3 years of relevant professional experience
- Professional experience as a systems and/or security engineer in an Enterprise ICT enterprise environment, of which three (3) years of hands-on experience in configuration, administration, and troubleshooting in cybersecurity and ICT Infrastructure contexts is required.
- Hands-on experience with cloud security operations, including cloud security posture management (CSPM), identity and access monitoring, and remediation of misconfigurations in enterprise or hybrid environments, is required.
- Experience with standard operational procedure development, implementation, and compliance is required.
- Hands-on experience with security protection systems, tools and techniques (e.g., firewalls, proxies) is required.
- Hands-on experience in security monitoring, threat detection, incident response operations, and vulnerability management is required.
- Experience with security operations technologies, including Security Information and Event Management (SIEM), Security Operations Center (SOC) platforms, endpoint detection and response (EDR), intrusion prevention systems (IPS), web application firewalls (WAF), and email security systems, is required.
- Hands-on experience with application security operations, including vulnerability scanning and use of SAST/DAST tools, is required.
- Experience in contracting and overseeing service delivery of Managed Security Service Providers (MSSP) is desirable.
- Experience in information security forensics (concepts and tools) is desirable.
- Experience with ISO 27001 with relevant certifications is desirable.
This text has been machine translated. Show original
What we offer
- Indicative Minimum Net Annual Salary: 109,999 USD
This text has been machine translated. Show original
Topics that you deal with on the job
Job Locations
This is your employer
The United Nations Industrial Development Organization (UNIDO)
The UN's Industrial Development Organization is vital for promoting industrial development to reduce poverty, globalization and environmental sustainability.
Description
- Company Size
- 250+ Employees
- Founding year
- 1966
- Company Type
- Established Company
- Working Model
- Onsite
- Industry
- NGO, NPO, Associations, Healthcare, Social Sector