- Home
- ...
- Open Positions
- Job Detail
Job Highlight
The ICT Associate – ICT Security contributes to deliver a threat and incident management program that will improve threat detection and implementation of timely and adequate responses to security incidents to globally distributed operational ICT environments faced with heightened threat and increased volume and level of sophistication of targeted cyberattacks.
The incumbent of this position will be a staff member of UNOPS under its full responsibility.
**** THIS IS A LOCAL POSITION FOR WHICH ONLY APPLICANTS WHO ARE SPANISH OR EUROPEAN UNION CITIZENS OR APPLICANTS WHO POSSESS A VALID RESIDENCE AND WORK PERMIT IN SPAIN ARE ELIGIBLE FOR CONSIDERATION****
About the Region
About the Region
The UNOPS Global Portfolios Office (GPO) brings together diverse expertise to help partners deliver impact worldwide. With hubs in New York, Geneva, and Vienna, and expert teams operating globally, GPO leads multi-regional initiatives that advance sustainable development, climate action, and peacebuilding - including in some of the world’s most challenging environments. By leveraging our collective expertise and global networks, GPO supports UNOPS’ strategic priorities and the Sustainable Development Goals across more than 130 countries. We work closely with major global partners - including governments, international financial institutions, and UN agencies - to deliver a wide range of services, such as project management, fund management, hosting services, and HR support.
About the Country/Multi-Country Office
About the Country/Multi-Country Office
Not Required - part of GPO/NYPO
Job Specific Context
Job Specific Context
UNOPS has signed an agreement with OICT to support to deliver a threat and incident management capacity and capabilities that will improve threat detection and implementation of timely and adequate responses to security incidents to globally distributed operational ICT environments faced with heightened threat and increased volume and level of sophistication of targeted cyberattacks.
Role Purpose
Role Purpose
Under the overall supervision of the UNOPS Senior Programme Manager, this position is in the United Nations Information and Communications Technology Facility (UNICTF) in Valencia, Spain. The incumbent will work under the guidance of Chief of ICT Security Service (ISS) and direct supervision of ICT Senior Manager- ICT Security.
Functions / Key Results Expected
Functions / Key Results Expected
The ICT Associate contributes to delivering a threat and incident management program that will improve threat detection and implementation of timely and adequate responses to security incidents to globally distributed operational ICT environments faced with heightened threat and increased volume and level of sophistication of targeted cyberattacks.
With the delegated authority, the ICT Associate’s key functions are:
Monitoring and Reporting
Incidents Response
Knowledge Management
Details of Duties:
Monitoring and Reporting:
Conducts continuous monitoring and revision of security events.
Analyzes alerts and correlates events from multiple data sources and tools.
Supports and actively contributes to threat hunting campaigns proactively searching for anomalies and evidence of compromise across the Secretariat.
Develops and fine-tunes detection rules, aligning use cases with the business and organizational requirements.
Develops and implements advanced detection and mitigation strategies against persistent threats and threat actors.
Incidents Response
Supports and contributions to the Secretariat's global incident response team.
Responds to information security incidents and assists during the entire lifecycle of the incidents. Analyses root causes of security incidents and propose preventive controls and mitigations.
Supports the escalation, response, and remediation efforts liaising with local IT focal points, and operational teams to ensure timely resolution of security incidents and implementation of the required countermeasures.
Performs digital forensic analyses and assists with authorized technical analysis efforts through close collaboration with internal business units and external partners.
Develops and improves incident response playbooks, processes, and procedures.
Participates in a rotating on-call schedule to support the organization’s 24x7 incident response efforts.
Knowledge Management
Supports the cyberthreat intelligence program through the collection, correlation and analysis of events and threat information from various sources to identify artefacts and patterns of suspicious activities, and methods used by adversaries.
Supports the identification, analysis, evaluation, and mitigation of risks to information technology, communications, and data systems in collaboration with stakeholders.
Maintains confidentiality, integrity, and discreet handling of sensitive information in compliance with the UN data privacy, security requirements, and standards.
Tracks and monitors threat actors relevant to the organization.
Researches and evaluates innovative and effective information security technology solutions, their configuration and integration into the organization’s existing ICT landscape.
Maintains internal security tools and related infrastructure.
Develops and improves internal tools, integrations, and automation of processes.
Contributes to the formulation of the policy and other supporting documents including procedures and guidelines.
Performs other duties as assigned.
Skills
Skills
Competencies
Competencies
Education Requirements
Education Requirements
Required
Secondary school (or equivalent) with 6 years of relevant experience OR
Bachelor’s degree (or equivalent) prefererably in computer science, information systems, information security or related field with 2 years of relevant experience is required.
Desired
Certifications in Information Security (such as certifications issued by organizations including ISC2, GIAC, ISACA, and Offensive Security) are an advantage.
Experience Requirements
Experience Requirements
Required
- Relevant experience is defined as experience working in information security and/or incident response and threat management.
Desired
- Experience as a Security Operations Center (SOC) analyst and/or demonstrable knowledge in Security Information and Event Management (SIEM), Endpoint Detention and Response (EDR) and Identity Management products and technologies (e.g. Sentinel, Defender, Entra ID).
- Experience in Cyberthreat Intelligence, Incident Response and Threat Hunting.
- Experience in general-purpose scripting languages (e.g. Python, Bash, PowerShell, etc.).
Language Requirements
Language Requirements
| Language | Proficiency Level | Requirement |
|---|---|---|
| English | Fluent | Required |
| Spanish | Fluent | Desirable |
Additional Information
Additional Information
- Please note that UNOPS does not accept unsolicited resumes.
- Please note that UNOPS will at no stage of the recruitment process request candidates to make payments of any kind.
- Applications to vacancies must be received before midnight Copenhagen time (CET) on the closing date of the announcement. Applications received after the closing date will not be considered.
- Please note that only shortlisted candidates will be contacted and advance to the next stage of the selection process, which involves various assessments.
- UNOPS embraces diversity and is committed to equal employment opportunity. Our workforce consists of many diverse nationalities, cultures, languages, races, gender identities, sexual orientations, and abilities. UNOPS seeks to sustain and strengthen this diversity to ensure equal opportunities as well as an inclusive working environment for its entire workforce.
- UNOPS evaluates all applications based on the skills, qualifications and experience requirements outlined in the vacancy announcement. We are committed to considering all candidates in a fair and transparent manner, and we value diverse perspectives and experiences, including those of women, indigenous and racialized communities, individuals with diverse gender identities and sexual orientations, and people with disabilities.
- We would like to ensure all candidates perform at their best during the assessment process. If you are shortlisted and require additional assistance to complete any assessment, including reasonable accommodation, please inform our human resources team when you receive an invitation.
Terms and Conditions
- For staff positions only, UNOPS reserves the right to appoint a candidate at a lower level than the advertised level of the post.
- For retainer contracts, you must complete a few mandatory courses (they take around 4 hours to complete) in your own time, before providing services to UNOPS. Refreshers or new mandatory courses may be required during your contract. Please note that you will not receive any compensation for taking courses and refreshers. For more information on a retainer contract here.
- For more details about the contract types, please click here.
- All UNOPS personnel are responsible for performing their duties in accordance with the UN Charter and UNOPS Policies and Instructions, as well as other relevant accountability frameworks. In addition, all personnel must demonstrate an understanding of the Sustainable Development Goals (SDGs) in a manner consistent with UN core values and the UN Common Agenda.
- It is the policy of UNOPS to conduct background checks on all potential personnel. Recruitment in UNOPS is contingent on the results of such checks.