Information and Communications Technology (ICT) Officer (Security Operating Center Analyst) (C)

International Organization for Migration (10000000)

Valencia

Presencial

EUR 80.000 - 120.000

Jornada completa

Hace 3 días
Sé de los primeros/as/es en solicitar esta vacante
Generador de candidaturas

Una candidatura hecha para este puesto de trabajo — un currículum y una carta de presentación adaptados que responden directamente a la oferta.

Supera los filtros ATS

Descripción de la vacante

IOM seeks a Security Operations Center Analyst to monitor threats and respond to incidents using SIEM, EDR/XDR, and other security tools. You will provide 24/7 coverage, collaborate with diverse teams, and generate detailed incident reports and dashboards.

The role targets individuals with strong security monitoring skills, experience in cyber threat detection, and proficiency with Microsoft Sentinel, Defender, Power BI, and cloud security controls.

Formación

  • Master’s or equivalent degree with 4+ years of relevant experience, or a bachelor’s with 6+ years.
  • Essential security certifications: CompTIA Security+, CISSP, CISM, CISA or equivalents.
  • Desirable: NIST CSF Practitioner, ISO 27001 Lead, CIS Controls.

Responsabilidades

  • Monitor security alerts from SIEM and threat intel; respond to incidents via ticketing system.
  • Provide 24x7 incident response coverage and maintain continuous security vigilance.
  • Collaborate with diverse IOM teams to ensure coordinated incident response and information sharing.
  • Maintain and update the Global CSIRT site with relevant information and resources.
  • Prepare comprehensive incident reports covering all lifecycle stages with technical detail.
  • Conduct internal log analysis across AD, web proxy, and audit logs.
  • Create dashboards using Microsoft Sentinel and Power BI for security metrics.
  • Integrate and optimize cybersecurity tools (Microsoft suite, Purview, Rapid) for operations.
  • Manage asset inventories for endpoints and applications to support vulnerability tracking.
  • Collaborate on projects like DLP, AI applications, Purview, and app development to strengthen security.
  • Support audits related to compliance and internal infrastructure.
  • Review security policies against ISO/NIST/CIS standards; update controls as needed.
  • Perform vulnerability assessments and coordinate remediation with local offices.
  • Organize tabletop exercises and training across IOM regions to improve readiness.

Conocimientos

SIEM & security monitoring
MS Sentinel
Power BI
Incident response
Threat intelligence
Communication
Security policies
Cloud security

Educación

Master’s degree in Computer Science/IT/Cybersecurity
Security certifications (CompTIA Security+, CISSP/CISM/CISA)

Herramientas

Microsoft Defender for Vulnerability Management
Azure/AWS security controls
SIEM tools

Descripción del empleo

Introduction

Established in 1951, IOM is a Related Organization of the United Nations and the leading UN agency in the field of migration. Working closely with governmental, intergovernmental and non-governmental partners, IOM promotes humane and orderly migration for the benefit of all. It saves lives and protects people on the move, drives solutions to displacement, and facilitates pathways for regular migration, while providing services and advice to governments and migrants.

IOM is committed to fostering a respectful, inclusive and supportive workplace where all employees can thrive professionally and feel valued. By creating such an environment, IOM aims to better harness the full potential of migration and strengthen its support to people on the move.

IOM invites candidates from diverse backgrounds to apply and provides reasonable accommodation throughout the recruitment process when required. Learn more about IOM’s workplace culture at IOM workplace culture | International Organization for Migration

Organizational Department / Unit to which the Consultant is contributing

Under the overall supervison of the Senior Information Security Officer (SISO), the Security Operating Center (SOC) Analyst shall ensure cybersecurity threats are monitored, detected, analyzed, escalated, and responded to in a timely and effective manner. Key responsibilities include continuous Security Monitoring via SIEM, EDR/XDR, IDS/IPS, and other security tool alerts, effective alert triage, incident detection. response and containment, threat hunting and threat Intelligence, log management and visibility, documentation and reporting, documentation and reporting, compliance with processes and SLA, collaboration and communication, and proactive contineous improvement and collaborating with business units to maintain security requirements throughout system lifecycles.

This position reports to the Information Security Officer within the Information Security & Risk Management Unit, All IOM staff must perform duties according to job descriptions, delegated authorities, UN and IOM rules, and uphold IOM’s values of professionalism, integrity, and respect for diversity.

Tasks to be performed under this contract
  • 1.Review, handle cybersecurity alerts from SIEM and other threat intelligence source and respond to incidents as they arise through the ticketing system.
  • 2.Provide 24x7 incident response coverage to maintain continuous security vigilance.
  • 3.Collaborate and communicate with a wide range of IOM staff, including end users, the legal team, social media team, infrastructure team, Office 365 team, regional officers and local ICT officers, to ensure coordinated incident response and information sharing.
  • 4.Maintain and update the Global CSIRT website to provide relevant information and resources.
  • 5.Prepare comprehensive incident reports that cover all stages of the incident lifecycle, backed by technical expertise.
  • 6.Conduct internal log analysis, including audit logs, Active Directory logs, and web proxy logs, to detect and investigate potential security issues.
  • 7.Create dashboards using Microsoft Sentinel and Power BI to visualise and track security metrics and incidents.
  • 8.Manage, integrate, and optimise cybersecurity tools such as Microsoft suite e.g. SIEM, VM, Purview, and Rapid to enhance security operations.
  • 9.Collect and maintain information on endpoint and application inventories to support asset management and vulnerability tracking.
  • 10.Collaborating on project initiatives, including data loss prevention (DLP), artificial intelligence applications, Purview, and application development, to strengthen organisational security.
  • 11.Supporting audits related to compliance, beneficiary requirements, and internal infrastructure.
  • 12.Reviewing internal security policies and controls against recognised standards such as ISO, NIST, CIS, MITRE to ensure best practices are followed.
  • 13.Conducting vulnerability assessments and follow-up activities for local offices to mitigate risks.
  • 14.Organising and conducting tabletop exercises and training sessions for all IOM regions and staff, including general users, local ICT personnel, and senior management, to improve incident preparedness and response capabilities.
Key Technical Responsibilities
  • 15.Monitor and analyses security incidents and respond to breaches or vulnerabilities.
  • 16.Respond to security breaches and vulnerabilities.
  • 17.Perform hands‑on security monitoring and risk assessments.
  • 18.Support penetration testing and vulnerability management activities.
  • 19.Oversee the security of systems, data, and infrastructure.
  • 20.Conduct comprehensive security assessments of on‑premises and cloud environments, and manage third‑party penetration testing engagements, including drafting terms of reference and performing quality assurance on deliverables.
Required Qualifications and Experience
Education
  • Master’s degree in Computer Science, Information Technology, Cybersecurity or a related field from an accredited academic institution with four years of relevant experience; or,
  • University degree in the above fields with six years of relevant experience.
  • Essential: CompTIA Security+, CISSP, CISM, CISA or equivalent information security certifications.
  • Desirable: NIST Cybersecurity Framework Practitioner, ISO 27001 Lead, CIS Controls.
Experience
  • Experience with security technologies such as SIEM, Email Security Gateway, Insider Risk Management, DLP, Web Application Firewall, IAM, endpoint protection, encryption, and cloud security controls (Azure, AWS, etc.);
  • Experience working collaboratively with business partners and technical teams to translate business needs into secure applications and data solutions; and,
  • Experience operating in humanitarian, development, or United Nations organizations.
Skills
  • Ability to collaborate and clearly communicate cybersecurity scenarios to both technical and non-technical staff;
  • Advanced experience with Microsoft Sentinel (dashboard creation, source management, log analysis);
  • Expertise with Microsoft Defender for Vulnerability Management (vulnerability hunting, dashboard creation, remediation follow‑up);
  • Power BI integration and report creation skills;
  • Knowledge of artificial intelligence applications in cybersecurity;
  • Proven cybersecurity incident response team CSIRT experience, including incident handling, playbook development, incident report writing, and conducting lessons learned;
  • Knowledge of the NIST 800‑61, ISO‑27035 framework for managing the incident response lifecycle;
  • Cross‑Cultural collaboration, able to work in different time zones, respect for diversity;
  • Ability to develop solution documentation, security policies, and user training materials using industry‑standard methods and tools;
  • Proven track record in risk assessments, security audits, and incident response for applications and enterprise systems;
  • Excellent communication skills for articulating complex technical concepts to technical and non‑technical audiences;
  • Demonstrated analytical, conceptual, and problem-solving skills;
  • Knowledge of IOM/UN‑specific ICT processes and technologies;
  • Working knowledge of any other official UN language;
  • Excellent interpersonal skills;
  • Solid organization and document, project management;
  • Excellent investigative skills;
  • Demonstrated ability to continue to learn and grow;
  • Basic knowledge of reporting tools (e.g., MS Excel, Power BI, Power BI Report Builder);
  • Ability to translate technical security vulnerabilities into business risk/impact to applications;
  • Demonstrated skill in creating security policies and procedures based on ISO27035, NIST 800‑53 and Computer Information System (CIS) controls;
  • Proven analytical and problem‑solving skills and proactive thinking skills;
  • Able to articulate complex, technical concepts to non‑technical audiences; and,
  • Excellent English oral and written communications skills.
Languages

For this consultancy, fluency in English is required (oral and written). Working knowledge of Spanish and another official UN language (Arabic, Chinese, French and Russian) is an advantage.

Proficiency of language(s) required will be specifically evaluated during the selection process, which may include written and/or oral assessments.

Required Competencies

IOM’s competency framework can be found at this link. Competencies will be assessed during the selection process.

Values
  • Inclusion and respect for diversity: Respects and promotes individual and cultural differences. Encourages diversity and inclusion.
  • Integrity and transparency: Maintains high ethical standards and acts in a manner consistent with organizational principles/rules and standards of conduct.
  • Professionalism: Demonstrates ability to work in a composed, competent and committed manner and exercises careful judgment in meeting day‑to‑day challenges.
  • Courage: Demonstrates willingness to take a stand on issues of importance.
  • Empathy: Shows compassion for others, makes people feel safe, respected and fairly treated.
Core Competencies - behavioural indicators
  • Teamwork: Develops and promotes effective collaboration within and across units to achieve shared goals and optimize results.
  • Delivering results: Produces and delivers quality results in a service‑oriented and timely manner. Is action oriented and committed to achieving agreed outcomes.
  • Managing and sharing knowledge: Continuously seeks to learn, share knowledge and innovate.
  • Accountability: Takes ownership for achieving the Organization’s priorities and assumes responsibility for own actions and delegated work.
  • Communication: Encourages and contributes to clear and open communication. Explains complex matters in an informative, inspiring and motivational way.
Notes

IOM covers Consultants against occupational accidents and illnesses under the Compensation Plan (CP), free of charge, for the duration of the consultancy. IOM does not provide evacuation or medical insurance for reasons related to non-occupational accidents and illnesses. Consultants are responsible for their own medical insurance for non‑occupational accident or illness and will be required to provide written proof of such coverage before commencing work.

Any offer made to the candidate in relation to this vacancy notice is subject to funding confirmation.

Appointment will be subject to certification that the candidate is medically fit for appointment, accreditation, any residency or visa requirements, security clearances.

IOM has a zero‑tolerance policy on conduct that is incompatible with the aims and objectives of the United Nations and IOM, including sexual exploitation and abuse, sexual harassment, abuse of authority and discrimination based on gender, nationality, age, race, sexual orientation, religious or ethnic background or disabilities.

IOM does not charge a fee at any stage of its recruitment process (application, interview, processing, training or other fee). IOM does not request any information related to bank accounts.

IOM only accepts duly completed applications submitted through the IOM e‑Recruitment system(for internal candidates linkhere). The online tool also allows candidates to track the status of their application.

No late applications will be accepted. Only shortlisted candidates will be contacted.

For further information and other job postings, you are welcome to visit our website:IOM Careers and Job Vacancies

Consigue la evaluación confidencial y gratuita de tu currículum.

o arrastra y suelta tu archivo aquí

Similar jobs

Puestos de trabajo similares que vale la pena comparar

Information and Communications Technology (ICT) Officer (Security Operating Center Analyst) (C)
Information and Communications Technology (ICT) Officer (Security Operating Center Analyst) (C)

International Organization for Migration • Valencia

Presencial
EUR 40.000 - 60.000
Information and Communications Technology (ICT) Officer (Security Operating Center Analyst) (C), Valencia, Spain
Information and Communications Technology (ICT) Officer (Security Operating Center Analyst) (C), Valencia, Spain

International Organization for Migration • Valencia

Presencial
EUR 36.000 - 54.000
Information and Communications Technology (ICT) Officer (Security Operating Center Analyst) (C)
Information and Communications Technology (ICT) Officer (Security Operating Center Analyst) (C)

IOM • Valencia

Presencial
EUR 55.000 - 75.000
CFA - Artificial Intelligence and Health Informatics Specialist (P)
CFA - Artificial Intelligence and Health Informatics Specialist (P)

International Organization for Migration (10000000) • Valencia

Presencial
EUR 50.000 - 70.000
CFA - Information and Communication Technology (ICT) Officer (Product Management – Knowledge Ma[...]
CFA - Information and Communication Technology (ICT) Officer (Product Management – Knowledge Ma[...]

International Organization for Migration (10000000) • Valencia

Presencial
EUR 65.000 - 95.000
Oracle Financial Functional Stream Lead (F2M) (P), Valencia, Spain
Oracle Financial Functional Stream Lead (F2M) (P), Valencia, Spain

IOM - International Organization for Migration • Valencia

Presencial
EUR 70.000 - 95.000
Encargado/a del equipo de Protección _ CEUTA
Encargado/a del equipo de Protección _ CEUTA

International Organization for Migration (10000000) • Madrid

Presencial
EUR 45.000 - 60.000
Asistente de Proyecto (Integración) _ Ceuta
Asistente de Proyecto (Integración) _ Ceuta

International Organization for Migration (10000000) • Madrid

Presencial
EUR 30.000 - 42.000
Asistente de Proyecto (Protección) _ Ceuta
Asistente de Proyecto (Protección) _ Ceuta

International Organization for Migration (10000000) • Madrid

Presencial
EUR 32.000 - 42.000
Asistente de Proyecto (Mediador/a Cultural)_ Ceuta
Asistente de Proyecto (Mediador/a Cultural)_ Ceuta

IOM - UN Migration • Madrid

Presencial
EUR 21.000 - 26.000