Information and Communications Technology
Guarda esta oferta y sigue tu búsqueda
Crea una cuenta gratis para guardar empleos, crear alertas y volver a esta oferta desde tu panel.
Al continuar, aceptas nuestros Términos & Política de Privacidad.
Introduction
Established in 1951, IOM is a Related Organization of the United Nations and the leading UN agency in the field of migration. Working closely with governmental, intergovernmental and non-governmental partners, IOM promotes humane and orderly migration for the benefit of all. It saves lives and protects people on the move, drives solutions to displacement, and facilitates pathways for regular migration, while providing services and advice to governments and migrants.
IOM is committed to fostering a respectful, inclusive and supportive workplace where all employees can thrive professionally and feel valued. By creating such an environment, IOM aims to better harness the full potential of migration and strengthen its support to people on the move.
IOM invites candidates from diverse backgrounds to apply and provides reasonable accommodation throughout the recruitment process when required. Learn more about IOM’s workplace culture at IOM workplace culture | International Organization for Migration
Organizational Department / Unit to which the Consultant is contributing
Under the overall supervison of the Senior Information Security Officer (SISO), the Security Operating Center (SOC) Analyst shall ensure cybersecurity threats are monitored, detected, analyzed, escalated, and responded to in a timely and effective manner. Key responsibilities include continuous Security Monitoring via SIEM, EDR/XDR, IDS/IPS, and other security tool alerts, effective alert triage, incident detection. response and containment, threat hunting and threat Intelligence, log management and visibility, documentation and reporting, documentation and reporting, compliance with processes and SLA, collaboration and communication, and proactive contineous improvement and collaborating with business units to maintain security requirements throughout system lifecycles.
This position reports to the Information Security Officer within the Information Security & Risk Management Unit, All IOM staff must perform duties according to job descriptions, delegated authorities, UN and IOM rules, and uphold IOM’s values of professionalism, integrity, and respect for diversity.
Tasks to be performed under this contract
- 1.Review, handle cybersecurity alerts from SIEM and other threat intelligence source and respond to incidents as they arise through the ticketing system.
- 2.Provide 24x7 incident response coverage to maintain continuous security vigilance.
- 3.Collaborate and communicate with a wide range of IOM staff, including end users, the legal team, social media team, infrastructure team, Office 365 team, regional officers and local ICT officers, to ensure coordinated incident response and information sharing.
- 4.Maintain and update the Global CSIRT website to provide relevant information and resources.
- 5.Prepare comprehensive incident reports that cover all stages of the incident lifecycle, backed by technical expertise.
- 6.Conduct internal log analysis, including audit logs, Active Directory logs, and web proxy logs, to detect and investigate potential security issues.
- 7.Create dashboards using Microsoft Sentinel and Power BI to visualise and track security metrics and incidents.
- 8.Manage, integrate, and optimise cybersecurity tools such as Microsoft suite e.g. SIEM, VM, Purview, and Rapid to enhance security operations.
- 9.Collect and maintain information on endpoint and application inventories to support asset management and vulnerability tracking.
- 10.Collaborating on project initiatives, including data loss prevention (DLP), artificial intelligence applications, Purview, and application development, to strengthen organisational security.
- 11.Supporting audits related to compliance, beneficiary requirements, and internal infrastructure.
- 12.Reviewing internal security policies and controls against recognised standards such as ISO, NIST, CIS, MITRE to ensure best practices are followed.
- 13.Conducting vulnerability assessments and follow-up activities for local offices to mitigate risks.
- 14.Organising and conducting tabletop exercises and training sessions for all IOM regions and staff, including general users, local ICT personnel, and senior management, to improve incident preparedness and response capabilities.
Key Technical Responsibilities
- 15.Monitor and analyses security incidents and respond to breaches or vulnerabilities.
- 16.Respond to security breaches and vulnerabilities.
- 17.Perform hands‑on security monitoring and risk assessments.
- 18.Support penetration testing and vulnerability management activities.
- 19.Oversee the security of systems, data, and infrastructure.
- 20.Conduct comprehensive security assessments of on‑premises and cloud environments, and manage third‑party