Hiring.Camp

Cybersecurity Consultant - Threat Exposure & Vulnerability Management Specialist

Wfp

·

Today

Location
Rome, Italy
Workplace
Remote
Type
Full-time
Department
IT
Experience
5+ years
Closing date
Today
Source
Workday

Description

DEADLINE FOR APPLICATIONS

15 October 2026-23:59-GMT+01:00 Central European Time (Rome)

WFP celebrates and embraces diversity. It is committed to the principle of equal employment opportunity for all its employees and encourages qualified candidates to apply irrespective of race, colour, national origin, ethnic or social background, genetic information, gender, gender identity and/or expression, sexual orientation, religion or belief, HIV status or disability.


ABOUT WFP

The World Food Programme is the world’s largest humanitarian organization saving lives in emergencies and using food assistance to build a pathway to peace, stability and prosperity, for people recovering from conflict, disasters and the impact of extreme weather shocks.


At WFP, people are at the heart of everything we do and the vision of the future WFP workforce is one of diverse, committed, skilled, and high performing teams, selected on merit, operating in a healthy and inclusive work environment, living WFP's values (Integrity, Collaboration, Commitment, Humanity, and Inclusion) and working with partners to save and change the lives of those WFP serves.

To learn more about WFP, visit our website: https://www.wfp.org and follow us on social media to keep up with our latest news: YouTube, LinkedIn, Instagram, Facebook, Twitter, TikTok.


WHY JOIN WFP? 

  • WFP is a 2020 Nobel Peace Prize Laureate.
  • WFP offers a highly inclusive, diverse, and multicultural working environment.
  • WFP invests in the personal & professional development of its employees through a range of training, accreditation, coaching, mentorship, and other programs as well as through internal mobility opportunities.
  • A career path in WFP provides an exciting opportunity to work across the various country, regional and global offices around the world, and with passionate colleagues who work tirelessly to ensure that effective humanitarian assistance reaches millions of people across the globe.
  • We offer an attractive compensation package (please refer to the Terms and Conditions section of this vacancy announcement).




JOB TITLE: Cybersecurity Consultant - Threat Exposure & Vulnerability Management Specialist

TYPE OF CONTRACT: Regular Consultant (CST2)

UNIT/DIVISION: Technology Division, Information Security

DUTY STATION: Remote

DURATION: 11 months


BACKGROUND AND PURPOSE OF THE ASSIGNMENT:

 

Under the general supervision of the CISO, the incumbent will lead efforts to enhance the organization's threat exposure & vulnerability management practices. This includes coordinating adversarial validation initiatives - such as penetration testing, threat exposure assessments, red/purple teaming - to identify and assess exploitable vulnerabilities in IT infrastructure and systems. The role focuses on validating risks and gaps, prioritizing remediation and controls, and aligning efforts with business priorities.

The incumbent will collaborate with teams to integrate validation results into threat exposure and detection processes, while continuously monitoring, reporting, and refining adversarial validation practices to minimize organizational risk by addressing critical vulnerabilities and detection gaps.

 

ACCOUNTABILITIES/RESPONSIBILITIES:

Main responsibilities include, but not limited to:

  • Design and coordinate adversarial validation activities such as penetration tests, threat exposure assessments, and red/purple team exercises to identify detection gaps, exploitable weak points and assess their risk impact in real-world scenarios.
  • Validate findings to confirm exploitability, assess risk levels, and guide prioritization of remediation efforts, leveraging team input and expertise and guiding integration into WFP’s threat exposure management program.
  • Collaborate with relevant teams and provide technical direction to ensure timely mitigation of validated vulnerabilities or detection gaps.
  • Develop clear reports and dashboards that highlight key findings, including critical vulnerabilities, attack paths, and remediation progress for stakeholder visibility.
  • Communicate adversarial validation findings, risks, and remediation strategies effectively to senior leadership and stakeholders.
  • Continuously refine validation techniques based on emerging threat intelligence, vulnerabilities, and attack methods to maintain program relevance and effectiveness.
  • Prioritize vulnerabilities based on adversarial validation outcomes, focusing on those posing the highest risk to the organization’s operations, and coordinate team efforts accordingly.
  • Perform other cybersecurity related duties as assigned.

 

QUALIFICATIONS & EXPERIENCE REQUIRED:

Education: University Degree in Information Technology, Information Systems, Cybersecurity, or related fields or a combination of relevant education and experience.


Experience:At least 5-7 years of experience in cybersecurity, with focus on vulnerability management and threat exposure management.


Knowledge & Skills:

  • Sound IT Security skills, with both academic background and practical hands-on experience
  • In-depth understanding of vulnerability management frameworks, processes, and best practices.
  • Experience with vulnerability scanning processes, tools and remediation workflows.
  • Familiarity with security concepts such as threat modeling, asset classification, and risk-based decision-making.
  • Experience with penetration testing, and adversarial emulation activities that aid in identifying potential attack vectors and their impact.
  • Previous experience in international or UN environments is valued, but not essential.
  • IT Audit and/or PM certifications are desirable, though equivalent hands-on experience is equally appreciated.
  • Strong organisational and communication skills.

Languages: Fluency (level C) in English language. Intermediate knowledge (level B) of a second official UN language desirable: Arabic, Chinese, French, Russian, Spanish, and/or WFP’s working language, Portuguese

WFP LEADERSHIP FRAMEWORK

 

WFP Leadership Framework guides to the common standards of behavior that guide HOW we work together to accomplish our mission.

Click here to access WFP Leadership Framework

 

REASONABLE ACCOMMODATION

 

WFP is committed to supporting individuals with disabilities by providing reasonable accommodations throughout the recruitment process. If you require a reasonable accommodation, please contact:  [email protected]

NO FEE DISCLAIMER

 

The United Nations does not charge any application, processing, training, interviewing, testing or other fee in connection with the application or recruitment process. Should you receive a solicitation for the payment of a fee, please disregard it. Furthermore, please note that emblems, logos, names and addresses are easily copied and reproduced. Therefore, you are advised to apply particular care when submitting personal information on the web.

 

REMINDERS BEFORE YOU SUBMIT YOUR APPLICATION

  • All applications must be submitted exclusively through our online recruiting system. We do not consider CVs or applications sent by email, LinkedIn, or any other channel.

  • We strongly recommend that your Workday profile is accurate and complete, and that all sections are filled in, including your employment history, academic qualifications, language skills, and UN grade (if applicable). Once your profile is completed, please apply, and submit your application.

  • If you experience technical issues while submitting your application, you may contact us at [email protected]. Please note that this email is only for technical issues with an application - unsolicited applications or documents sent to this inbox will not receive a reply.

  • At the application stage, the only required documents are your CV and Cover Letter. Additional documents (passport, certificates, recommendation letters, etc.) may be requested later in the process.

  • Only shortlisted candidates will be contacted and invited to proceed to the next stage of the recruitment process.

All employment decisions are made on the basis of organizational needs, job requirements, merit, and individual qualifications. WFP is committed to providing an inclusive work environment free of sexual exploitation and abuse, all forms of discrimination, any kind of harassment, sexual harassment, and abuse of authority. Therefore, all selected candidates will undergo rigorous reference and background checks.


No appointment under any kind of contract will be offered to members of the UN Advisory Committee on Administrative and Budgetary Questions (ACABQ), International Civil Service Commission (ICSC), FAO Finance Committee, WFP External Auditor, WFP Audit Committee, Joint Inspection Unit (JIU) and other similar bodies within the United Nations system with oversight responsibilities over WFP, both during their service and within three years of ceasing that service.

Skills

WorkdayCybersecurityPenetration Testing

Similar Jobs

30

Cybersecurity - Consultant

Wavestone·Brussels, Brussels Hoofdstedelijk Gewest

1d ago

Cybersecurity Consultant

Guidehouse is·GH Office: Tysons Corner, VA +1

1w ago

Cybersecurity Consultant

Guidehouse is·GH Office: Tysons Corner, VA +1

1w ago

Consultant - Cybersecurity

SIA·Paris, IDF

1w ago

CyberSecurity Consultant

Ingrammicro·Kallang Bahru Office, Singapore·Remote, Onsite

2w ago

Cybersecurity consultant

Capco·Belgium - Brussels·Hybrid

1mo ago

Cybersecurity Consultant

PT ABeam Consulting Indonesia·Jakarta, DKI Jakarta

1mo ago

Cybersecurity Consultant

Grant Thornton·Makati City, Philippines·Hybrid

1mo ago

Cybersecurity Consultant

Connectyou·Apeldoorn

2mo ago

Cybersecurity Consultant

Pwc·Praha - Hvezdova 1734, 2c +1

5mo ago

CyberSecurity Consultant

Avertium·Remote, US·Remote

1y+ ago

Cybersecurity Consultant

Devoteam·Tunis, Tunisia·Remote

1y+ ago

Cybersecurity Consultant TVA

Nttlimited·Riyadh, Saudi Arabia·Onsite

1d ago

Cybersecurity Consultant II

Wipfli·Minneapolis, MN·Hybrid

1d ago

Cybersecurity Consultant II

Wipfli·Milwaukee, WI·Hybrid

1d ago

Associate Cybersecurity Consultant (Access & Identity)

Ensigninfosecurity·SG_Ensign_Kallang Place, L7

2d ago

Final Year Internship Consultant - Cybersecurity

SIA·Paris, IDF

5d ago

Principal Consultant, Cybersecurity

Capco·US - New York

6d ago

Senior Consultant, Cybersecurity

Capco·US - New York

1w ago

Cybersecurity Consultant (SOC | English Required)

Accenture·Sao Paulo, Torre Paineira +3

1w ago

Cybersecurity Consultant (SOAR) [JOB ID 20260922]

Phoenix Cyber·Reston, VA·Onsite

1w ago

Cybersecurity - Consultant Internship from 3 to 6 months

Wavestone·Brussels, Brussels Hoofdstedelijk Gewest

1w ago

Associate Managing Director, Principal Cybersecurity Consultant

Nardello·New York

1w ago

Snr Cybersecurity Consultant Engineer (Architecture, Infrastructure and Remediation)

LevelBlue LLC·US

1w ago

Junior Consultant - Cybersecurity

SIA·Paris, IDF

1w ago

Senior Consultant - Cybersecurity

SIA·Paris, IDF

1w ago

Pre-Sales Consultant - Cybersecurity

Ingrammicro·Aptec UAE Office - Dubai Inter, United Arab Emirates

2w ago

Senior Cybersecurity Consultant (IAM)

Ensigninfosecurity·SG_Ensign_Kallang Place, L7

2w ago

2027 Cybersecurity Consultant Intern

Plantemoran·Southfield, US +1

4w ago

New Business Consultant – Cybersecurity

Believe Resourcing·Cape Town, Western Cape

4w ago