Job Description
Roles & Responsibilities
Responsibilities
Vulnerability Management
- Aggregates, analyzes, and prioritizes vulnerabilities identified from multiple sources, including Application security testing, Infrastructure and network vulnerability scans, External attack surface monitoring and threat intelligence feeds.
- Performs risk-based triage of vulnerabilities considering exploitability, business impact, and threat context.
- Coordinates remediation activities with IT, infrastructure, and application owners.
- Tracks remediation progress and validate closure of vulnerabilities.
- Maintains vulnerability of metrics, dashboards, and regular status reports.
Incident Handling & Response
- Actively supports SOC operations in the detection, analysis, containment, and remediation of security incidents as per the followings:
- Monitors SIEM, EDR, and security tools in real time; triages and classifies incoming alerts as true or false positives.
- Executes predefined playbooks and standard operating procedures (SOPs) for common alert types (phishing, malware, brute force).
- Performs basic IOC lookups using threat intelligence platforms and open-source tools.
- Documents all incidents in the ticketing system with accurate severity, context, and initial findings.
- Escalates confirmed or complex incidents to Tier 2 with complete supporting evidence.
- Report recurring false positives and log ingestion gaps to support detection tuning.
Governance & Continuous Improvement
- Ensure alignment of vulnerability and incident management activities with internal security policies and risk management practices.
- Identifies systemic weaknesses and recurring issues and proposes pragmatic improvement actions.
- Provides regular reporting to security leadership on vulnerability trends, incident insights, and risk exposure.
- Provides active support during security incidents and events that affect organizational assets, including intellectual property, sensitive data, and the organization s reputation.
- Provides strategic risk guidance for IT projects, including the evaluation and recommendation of technical controls.
- Ensures that security programs comply with relevant rules, regulations, policies and standards to minimize or eliminate risks and audit findings.
- Monitors the external threat environment for emerging threats and advises relevant stakeholders on the appropriate courses of action.
- Performs technical security assessments and develops strategies for remediating vulnerabilities and risks identified.
- Provides active support to users for daily security requests including SASE requests, web flittering, firewall requests.
Competencies
UN Core Values of Integrity, Professionalism and Respect for Diversity, and Core Competencies of Communication, Working with People and Drive for Results apply by default.
- Following Instructions and Procedures.
- Strong analytical skills and creativity.
- Applying Technical Expertise.
- Service oriented and ability to establish and maintain effective working relations.
- Commitment to continuous learning, willingness to keep abreast of new developments in the field of information technology.
- Problem solving skills.
Desired Candidate Profile
Education
Advanced university degree (master's or equivalent) from an accredited educational institution in Information Technology or related field.
Job - Specific Qualification
Not available.
Work Experience
Advanced university degree (master's or equivalent) from an accredited educational institution in Information Technology or related field is required.
Minimum six (6) years of relevant professional experience is required.
Demonstrated expertise in vulnerability management is required.
Experience in Security Operations Center (SOC), systems and infrastructure management, and/or application security is required.
Excellent command of English and Arabic (both spoken and written) is required.
Professional cybersecurity certifications related to vulnerability management, such as Certified Ethical Hacker (CEH), CompTIA Security+ / PenTest+, GIAC certifications, or Offensive Security Certified Professional (OSCP) is desirable.
Knowledge of Palestine refugees and/or humanitarian response and development in the Middle East context is desirable.