Jobs Career Advice Signup
X

Send this job to a friend

X

Did you notice an error or suspect this job is scam? Tell us.

  • Posted: Dec 8, 2023
    Deadline: Jan 7, 2024
    • @gmail.com
    • @yahoo.com
    • @outlook.com
  • Never pay for any CBT, test or assessment as part of any recruitment process. When in doubt, contact us

    Médecins sans frontières (MSF) or Doctors Without Borders, is an international humanitarian-aid non-governmental organization (NGO) and Nobel Peace Prize laureate, best known for its projects in war-torn regions and developing countries facing endemic diseases.
    Read more about this company

     

    ICT Cybersecurity Officer

    As ICT Cybersecurity Officer your role is:

    • to contribute to the definition and to lead the implementation of the ICT Cybersecurity strategy of the OCB ICT Unit,
    • to contribute to the definition and to lead the implementation of technical policies and procedures, providing guidelines for the improvement of information security and data privacy,
    • to establish a security-aware culture, both within the technical ICT teams in Brussels and in the countries of interventions, as well as in the organisation as a whole; to protect the integrity of ICT infrastructure, to safeguard data (be it medical, financial, HR, or other) against loss or theft,
    • to minimise the risk of reputational damage to the organization in case of security incidents.

    This role applies to all OCB countries of interventions as well as to the headquarters in Brussels.

    You play the role of advisor/subject matter expert on behalf of the ICT Team, by promoting best practices and preventive measure related to Cybersecurity for our infrastructure, digital ecosystem and projects.

    MAIN RESPONSIBILITIES

    • Coordinate the ICT cybersecurity improvement priorities and roadmap for OCB
    • Be the focal point for the organisation in case of ICT security breaches and threats
    • Contribute to the design and lead the implementation of security policies aimed at avoiding, and/or minimizing the impact of security incidents and the necessary control mechanisms to make sure that these policies are being applied
    • Document security breaches, evaluate impact and implement mitigation plans
    • Contribute to the design and lead the implementation of an incident-response and business continuity strategies to be applied when a security incident does occur aimed at reducing the impact of such security incidents
    • Lead the Cybersecurity working group with representatives from the different team of the ICT organisation (approximately 8 people)
    • Work closely with other key members of the ICT Unit to ensure that key interventions identified as part of the cybersecurity roadmap are implemented timely and according to the relevant security controls
    • Review and keep up to date the cybersecurity chapters in the Safety and Security Management SOPs
    • Participate in intersectional groups and network related to cybersecurity
    • Assess the level of ICT security both of HQ and of the different countries of interventions and their projectsby performing audits and evaluations and formulate concrete steps to address any shortcomings
    • Work closely with the entities/people in charge of security in general (Operations (OPS) and finance Risk Management Units) or data protection (DPO – Data Protection Officer) to ensure consistency of policies and procedures and share information in relation to potential or detected incidents
    • Promote and enable a security-aware mindset:
    • within the ICT unit, by giving technical guidance and facilitating trainings
    • among the staff responsible for ICT in the countries of interventions and their projects, by creating the needed documentation, policies and guidelines and by giving trainings to increase the awareness of and knowledge about the subject of ICT security
    • within OCB as a whole, by presenting and motivating the importance of the topic to different stakeholders within the organization

    REQUIREMENTS

    Education & Experience

    • Master’s degree in computer science, Information System Management, Engineering, Business administration, or related areas, or equivalent by demonstrated experience
    • Minimum 4 years’ experience in securing ICT infrastructure (both Cloud and on premise)
    • Experience with both software development and IT operations
    • Experience in performing risk, business impact, and vulnerability assessments, and in defining and implementing the appropriate safeguards to address the identified risks is mandatory
    • Experience in designing and implementing security-related projects
    • Experience in Change management
    • Experience with Central of Internet Security (CIS) Controls or other security frameworks is an asset
    • CISSP Certification is an asset
    • International MSF experience or with another international NGO is an asset
    • Experience in the area of medical data protection is an asset

    Competencies

    • Excellent understanding of information security concepts, protocols, industry best practices and strategies
    • Excellent understanding of modern IT operations:
    • Networking
    • Different operating systems, including at least Linux and Windows
    • Virtualisation
    • Containerisation
    • Cloud computing
    • Configuration management
    • Excellent understanding of modern software development methodologies and tools and their security implications. including a good understanding of the software development lifecycle
    • Excellent knowledge of different aspects of (web) application security
    • Understanding of GDPR and other legal frameworks concerning data privacy and IT security
    • Sense of urgency; Immediate attention to security incidents
    • Ability to work autonomously with limited managerial supervision and be able to establish strong relationships with remote stakeholders
    • Team player; understanding of needs and constraints of different teams
    • Ability to take initiative

    Languages

    • Strong oral and written communication skills in English
    • Proficiency in French is an asset

    Deadline for applications: 1st of January 2024

    Please, send your CV and cover letter to Recruit-HQ-DG@brussels.msf.org and mention “ICT Cybersecurity Officer” in the subject of your email.

    Method of Application

    Send your application to Recruit-HQ-DG@brussels.msf.org

    Build your CV for free. Download in different templates.

  • Send your application

    View All Vacancies at Medecins Sans Frontieres (MSF) Back To Home

Subscribe to Job Alert

 

Join our happy subscribers

 
 
Send your application through

GmailGmail YahoomailYahoomail