Information Security Officer (P-3) (Re-opened)

Tags: Russian English language Environment
  • Added Date: Friday, 27 June 2025
5 Steps to get a job in the United Nations

About Us

The OPCWโ€™s mission is to implement the provisions of the Chemical Weapons Convention to achieve our vision of a world free of chemical weapons in which chemistry is used for peace, progress, and prosperity, and to contribute to international security and stability, general and complete disarmament, and global economic development.

The OPCW was awarded the Nobel Peace Prize in 2013 for its extensive efforts to eliminate chemical weapons.

General Information

  • Contract Type
    Fixed-term Professional
  • Grade
    P3
  • Total Estimated monthly remuneration depending on post adjustment and family status: USD
    7,382
  • Closing Date
    27/07/2025

    Responsibilities

    Job Summary

    The Vacancy Notice has been re-opened in order to expand the pool of candidates. Candidates who have already applied do not need to re-apply.

    The Office of Confidentiality and Security (OCS) sets the framework, provides the guidelines, institutes the measures and implements the provisions necessary to guarantee and enforce the fulfilment of the stringent OPCW confidentiality regime; operational security of the Secretariat's assets; the security of all its electronic systems; the confidentiality of all classified material and its safeguarding.

    The Confidentiality and Information Security Section is responsible for the implementation and management of the confidentiality regime and information security programme by exercising both advisory and oversight of all information security aspects of all business processes and information, communication, technology (ICT)-related functions and responsibilities.

    Main Responsibilities

    1. Coordinate all aspects of the OPCW information security programme with daily management and implementation of information and ICT security measures to ensure the preservation of the confidentiality, integrity and availability of OPCWโ€™s information.

  • Serve as an information security focal point at the detailed technical level for all information security related programmes and projects and advises the Head Confidentiality and Information Security on all information security related matters;
Ensure compliance with the organisational and relevant industry standards (i.e., ISO 27001) is maintained for all ICT, data systems and assets;Develop and maintain information security related policies, procedures, standards, and guidelines for secure ICT to support the mandate of the OPCW by maintaining an adequate balance between effective confidentiality and information security controls and an efficient and unimpeded discharge of the OPCWโ€™s tasks;Communicate and enforce information security policies, procedures, standards, and guidelines to all personnel and relevant stakeholders; Conduct and review security audits of ICT service providers, to include the full supply chain, in accordance with the relevant contractual agreements;Perform routine security monitoring of all networks (internet and non-internet connected), to include identification of critical functions and vulnerabilities in line with policies and procedures;Collaborate with staff members of other branches/units and relevant stakeholders to provide guidance on confidentiality and information security requirements to ensure the Organisation is compliant with the security standards;Monitor user access across all networks ensuring access to confidential and sensitive information is in line with that authorised within the framework of relevant policies and procedures;Ensure ICT assets are managed and monitored for performance to ensure effective security measures are in place.

2. Perform security risk assessments to identify vulnerabilities and related risks to the organisation, to recommend, develop and implement security controls and measures that reduce the risks to an acceptable level and to prioritise tasks and activities in accordance with the identified risks and risk levels.

Identify, analyse, evaluate, and mitigate risks to ICT and data systems in close coordination with relevant stakeholders;Perform regular assessments of the OPCW infrastructure to identify potential vulnerabilities, prioritising and categorizing the risks, and developing implementation plans to remediate or mitigate them;Maintain currency with emerging information security threats, standards, products, techniques, and technologies;

3. Contribute to the maintenance of a strong information security resilience strategy.

Participate in security investigations and events related to ICT, data systems, networks, and devices and assist in maintaining the divisional and organisational Business Continuity Plan (BCP);As authorised and under the direction of management, handle coordinated incident response, digital forensics, and authorised investigation efforts through close collaboration with business units and relevant stakeholders.

4. Conduct preliminary enquiries into (alleged) breaches of confidentiality and security incidents and/or violations of confidentiality procedures.

Report all violations of the Confidentiality Regime to the Head of Section and advice on the conduct of respective enquiries and investigations;Advise/assist staff members on the proper reporting of (potential) breaches of confidentiality and/or security incidents and, as/when necessary, ensure such breaches/incidents are highlighted to the Head of Section and Head of OCS as soon as practically possible;Assist in the collection of information pertaining to specific (potential) beaches of confidentiality or security incidents as part of the preliminary enquiry process.

5. Contribute to the confidentiality and information security education and awareness programme by developing relevant curriculum, delivery of training to relevant stakeholders, and providing briefings to address specific information security-related topics.


6. Contribute to data collection to be used to inform senior leadership about the information security posture of the organisation as well as to assist with measuring effectiveness of the information security programme at the Organisation.


7. Assist the Head of Section and contribute to the drafting of the Director General's โ€œAnnual Report on the Implementation of the Regime Governing Confidentialityโ€ to the Conference of States Parties and any other report requiring input from the OCS Confidentiality and Information Security Section.


8. Serve as Acting Head, Confidentiality and Information Security when required.

9. Perform other duties as required.

Qualifications and Experience

Education

Essential:

Advanced university degree in information security or related field;A first level university degree in any relevant subjects in combination with qualifying experience (minimum 7 years) may be accepted in lieu of the specified university degree.

Required Certification:

๐Ÿ“š ๐——๐—ถ๐˜€๐—ฐ๐—ผ๐˜ƒ๐—ฒ๐—ฟ ๐—›๐—ผ๐˜„ ๐˜๐—ผ ๐—š๐—ฒ๐˜ ๐—ฎ ๐—๐—ผ๐—ฏ ๐—ถ๐—ป ๐˜๐—ต๐—ฒ ๐—จ๐—ก ๐—ถ๐—ป ๐Ÿฎ๐Ÿฌ๐Ÿฎ๐Ÿฏ! ๐ŸŒ๐Ÿค ๐—ฅ๐—ฒ๐—ฎ๐—ฑ ๐—ผ๐˜‚๐—ฟ ๐—ก๐—˜๐—ช ๐—ฅ๐—ฒ๐—ฐ๐—ฟ๐˜‚๐—ถ๐˜๐—บ๐—ฒ๐—ป๐˜ ๐—š๐˜‚๐—ถ๐—ฑ๐—ฒ ๐˜๐—ผ ๐˜๐—ต๐—ฒ ๐—จ๐—ก ๐Ÿฎ๐Ÿฌ๐Ÿฎ๐Ÿฏ ๐˜„๐—ถ๐˜๐—ต ๐˜๐—ฒ๐˜€๐˜ ๐˜€๐—ฎ๐—บ๐—ฝ๐—น๐—ฒ๐˜€ ๐—ณ๐—ผ๐—ฟ ๐—จ๐—ก๐—›๐—–๐—ฅ, ๐—ช๐—™๐—ฃ, ๐—จ๐—ก๐—œ๐—–๐—˜๐—™, ๐—จ๐—ก๐——๐—ฆ๐—ฆ, ๐—จ๐—ก๐—™๐—ฃ๐—”, ๐—œ๐—ข๐—  ๐—ฎ๐—ป๐—ฑ ๐—ผ๐˜๐—ต๐—ฒ๐—ฟ๐˜€! ๐ŸŒ

โš ๏ธ ๐‚๐ก๐š๐ง๐ ๐ž ๐˜๐จ๐ฎ๐ซ ๐‹๐ข๐Ÿ๐ž ๐๐จ๐ฐ: ๐๐จ๐ฐ๐ž๐ซ๐Ÿ๐ฎ๐ฅ ๐“๐ž๐œ๐ก๐ง๐ข๐ช๐ฎ๐ž๐ฌ ๐ก๐จ๐ฐ ๐ญ๐จ ๐ ๐ž๐ญ ๐š ๐ฃ๐จ๐› ๐ข๐ง ๐ญ๐ก๐ž ๐”๐ง๐ข๐ญ๐ž๐ ๐๐š๐ญ๐ข๐จ๐ง๐ฌ ๐๐Ž๐–!

Relevant industry certifications (e.g., CISSP, CISM, CCSP, etc.).

Desirable Certification:

CRISC, GIAC, Vendor certifications, network administration, etc.

Knowledge and Experience

Essential:

At least 5 years of relevant working experience in the information security profession (minimum 7 years with a first level university degree) with significant experience in information security implementation, to include practical experience in:

Designing ICT security solutions;Experience in incident monitoring and security investigations;Experience in assisting and conducting of security risk assessments;Experience in advising on and testing of security of ICT environments;Firewall administration and monitoring;Experience in the supervision of operations within secure environments and information processing systems;

Desirable:

Experience with certificate authority management, Microsoft Office 365 Security, Cloud security, and digital forensics;Experience in an international organisation.

Skills and Competencies

Abilities (key competencies):

Knowledge of information security principles and best practices;nowledge of industry standards and frameworks (e.g., NIST, ISO 27001, etc.)Experience in the development and drafting of information security-related policies.Hands on experience in using information security tools and technologies (e.g., SIEM, IDS/IPS, antivirus, firewalls, etc.);Excellent analytical and conceptualisation skills and an ability to plan and organise complicated processes;Excellent inter-personal, interview and negotiation skills;Excellent communication skills, with a demonstrated ability to present information clearly and logically both verbally and in writing;Demonstrated ability to draft, edit and present documents/papers in the English language;Ability to act with discretion and tact in sensitive situations;Ability to work well in a team with people of different national/cultural backgrounds.

Other Skills:

Diplomacy and demonstrated ability to work in an international organisation with diverse cultures.

Languages

Fluency in English is essential and a good working knowledge of one of the other official languages (Arabic, Chinese, French, Russian, and Spanish) is desirable.

Additional Information

This fixed-term appointment is for the duration of two years with a six-month probationary period, and is subject to the OPCW Staff Regulations and Interim Staff Rules.

The OPCW is a non-career organisation with limited staff tenure. The total length of service for Professional staff shall not exceed 7 years.

The mandatory age of separation at the OPCW is 65 years.

The Director-General retains the discretion to not make any appointment to this vacancy, to make an appointment at a lower grade, or to make an appointment with a modified job description. Several vacancies may be filled.

Only fully completed applications submitted before the closing date and through OPCW CandidateSpace will be considered. Only applicants under serious consideration for a post will be contacted.

According to article 8 paragraph 44 of the Chemical Weapons Convention the paramount consideration in the employment of the staff is the necessity of securing the highest standards of efficiency, competence, and integrity. Due regard will be paid to the importance of recruiting the staff on as wide a geographical basis as possible.

OPCW is committed to maintaining a diverse and inclusive environment of mutual respect. OPCW recruits and employs staff regardless of disability status, sex, gender identity, sexual orientation, language, race, marital status, religious, ethnic, cultural and socio-economic backgrounds, or any other personal characteristics.

OPCW General Terms and Conditions

Important notice for applicants who are currently insured under the Dutch Social Security system

Although headquartered in the Netherlands, the OPCW is not a regular Dutch employer but a public international organisation with its own special status. Please be advised that if you are currently insured under the Dutch Social Security system, you will be excluded from this system as a staff member of the OPCW. You will consequently be insured under the organisationโ€™s system. The above also applies to your dependents unless they are employed by a regular Dutch employer, they are self-employed in the Netherlands, or are receiving Dutch social security payments.

Please refer to the website of the Ministry of Social Affairs and Employment for more information about the possible consequences for you and your dependents, such as exclusion from โ€˜AWBZโ€™ and โ€˜Zorgverzekeringswetโ€™ coverage: โ€˜Werken bij een internationale organisatieโ€™.

Recommended for you