Result of ServiceThe consultant will support the development, implementation, and continuous improvement of cybersecurity operations and vulnerability management frameworks, ensuring alignment with international standards and organizational policies. Work LocationAmman - Jordan Expected durationup to 11 months Duties and ResponsibilitiesThe Consultant will be working with the Digital Risk team members, consultants and Field Information Security officers, to analyze and improve existing Cybersecurity operations capabilities. Specific Outputs/Tasks include but not limited to: Security Operations โข Be responsible for management and improvement of the security technology and tools used. โข Guide and coordinate with the Digital Risk team members, and Field Information Security officers, in the implementation of Cybersecurity Operations architecture โข Coordinate and lead the triage, investigation, and resolution of security incidents in collaboration with other internal and external stakeholders. โข Develop playbooks and runbooks to improve incident response workflows and ensure standardization. โข Maintain up-to-date knowledge of current threat landscape and attack vectors relevant to UN operations. Vulnerability Management โข Manage and improve vulnerability management processes and coordinate regular internal and external vulnerability assessments. โข Collaborate with system owners and administrators to ensure timely remediation and verify the effectiveness of security patches and mitigations. โข Develop dashboards and reporting tools to communicate risk posture to technical and non-technical stakeholders. Governance and Risk โข Support the implementation of UN-wide information security policies, standards, and controls as they relate to operations and vulnerability management. โข Contribute to risk assessments and audits by providing technical expertise and evidence of control effectiveness. Qualifications/special skillsThe Consultant will be working with the Digital Risk team members and will report to the Chief Digital Risk Officer consultants and Field Information Security officers, to analyze and improve existing Cybersecurity operations capabilities. Specific Outputs/Tasks include but not limited to: Security Operations โข Be responsible for management and improvement of the security technology and tools used. โข Guide and coordinate with the Digital Risk team members, and Field Information Security officers, in the implementation of Cybersecurity Operations architecture โข Coordinate and lead the triage, investigation, and resolution of security incidents in collaboration with other internal and external stakeholders. โข Develop playbooks and runbooks to improve incident response workflows and ensure standardization. โข Maintain up-to-date knowledge of current threat landscape and attack vectors relevant to UN operations. Vulnerability Management โข Manage and improve vulnerability management processes and coordinate regular internal and external vulnerability assessments. โข Collaborate with system owners and administrators to ensure timely remediation and verify the effectiveness of security patches and mitigations. โข Develop dashboards and reporting tools to communicate risk posture to technical and non-technical stakeholders. Governance and Risk โข Support the implementation of UN-wide information security policies, standards, and controls as they relate to operations and vulnerability management. โข Contribute to risk assessments and audits by providing technical expertise and evidence of control effectiveness. MINIMUM QUALIFICATIONS AND EXPERIENCE โข A masterโs degree, or equivalent in computer science, information security, information systems, engineering, or a related field. A first-level university degree in combination with two additional years of qualifying experience may be accepted in lieu of the advanced university degree. Excellent oral and written communications skill in English. Arabic language is an advantage. โข A minimum of seven (7) years of progressively responsible experience in information security, including at least three (3) years in security operations or vulnerability management. โข Unless currently serving as an international staff member in the UN Common System, candidates must have a minimum of two continuous years of relevant international experience gained outside UNRWA and outside the country(s) of citizenship. โข Experience working in a complex international environment or multilateral organization is desirable. โข Experience with industry-standard security tools (e.g., SIEM, vulnerability scanners, EDR) is required. โข Experience with scripting or automation (e.g., Python, PowerShell, Bash) is an advantage. โข Expert knowledge of implementing Microsoft Security technologies (Sentinel, Defender products). โข Previous experience with implementing MITRE ATT&CK framework in the Security Operations and implementing Threat Intelligence programs. COMPETENCIES โข Analytical Thinking โข Technological Awareness โข Results Driven/ Goal Oriented โข Teamwork and Collaboration & Communication Skills โข Continuous Learning โข Creativity and innovation DELIVERABLES โข Baseline assessment of cybersecurity tools and processes. Assessment of use case and playbooks in place. โข Preparation of implementation of missing monitoring use cases. โข Preparation and implementation of playbooks for automated incident response. โข Building a framework for future SOC improvements and operations. โข Expanding the vulnerability management process with third party and external monitoring. โข Operationalization and documentation of all delivered services and improvements. CONDITIONS OF SERVICE โข The selected candidate will be based in UNRWA HQA Amman - Jordan. โข The duration of the Contract is up to 11 months, and the possibility of extension is subject to the availability of funds and continuing need and satisfactory performance. โข The selected candidate will receive monthly fees equivalent to the UN international salary scale of P4 Step 1. โข A minimum of seven (7) years of progressively responsible experience in information security, including at least three (3) years in security operations or vulnerability management. โข Unless currently serving as an international staff member in the UN Common System, candidates must have a minimum of two continuous years of relevant international experience gained outside UNRWA and outside the country(s) of citizenship. โข Experience working in a complex international environment or multilateral organization is desirable. โข Experience with industry-standard security tools (e.g., SIEM, vulnerability scanners, EDR) is required. โข Experience with scripting or automation (e.g., Python, PowerShell, Bash) is an advantage. โข Expert knowledge of implementing Microsoft Security technologies (Sentinel, Defender products). โข Previous experience with implementing MITRE ATT&CK framework in the Security Operations and implementing Threat Intelligence programs. Languagesโ Fluent in spoken and written English. โ Fluency in spoken and written Arabic is a plus. Additional InformationNot available. No FeeTHE UNITED NATIONS DOES NOT CHARGE A FEE AT ANY STAGE OF THE RECRUITMENT PROCESS (APPLICATION, INTERVIEW MEETING, PROCESSING, OR TRAINING). THE UNITED NATIONS DOES NOT CONCERN ITSELF WITH INFORMATION ON APPLICANTSโ BANK ACCOUNTS.