Chief Information Systems Security Officer, Geneva

Closing date: Thursday, 4 December 2014

Remuneration: Corresponding annual salary 109,704 Swiss Frs. (CHF)

Salary and allowances are generally tax-free. In addition, the Global Fund operates a tax equalisation policy.

Benefits: The Global Fund offers a comprehensive package of benefits. Click here to see more details.

Vacancy Number: IRC1824

Closing Date: 04 December 2014

Contract Type: Open

Reporting to: Technical Infrastructure, Maintenance and Support Manager

Work Division or Department

Finance, IT, Sourcing and Administration Division

Role Summary

Within the Infrastructure and Technology Team, this expert is setting standards (policy), architectures (technical standards) and monitoring controls and risks (management framework) for all IT systems, information and data of the Global Fund.

Responsibilities

As an expert in Information Security:

  • Lead the definition, implementation, administration, and monitoring of the logical access control systems to prevent unauthorized access to Global Fund systems and data;
  • Manage information security incidents, handling and coordinating computer forensic actions;
  • Provide supervision to Global Fund staff assigned to information security positions, coordinate internal and external security audits and assessment studies, including performing vulnerability assessment and recommend corrective action, provide follow up to determine if vulnerabilities have been corrected;
  • Analyze networking and security products, and provide recommendations to business leaders; evaluate software and hardware for potential security risks and compliance with the Global Fund's Information Security Policies, support for E-mail relays, SPAM filters, web-filters, anti-virus scanning gateways and the firewall systems;
  • Lead the development and implementation of information security policies, standards and procedures for the Global Fund and our partners. Undertake contingency planning within IT, ensuring the effective governance of an Information Security Program, liaise with all relevant stakeholders for establishing and adoption of processes;
  • Actively participate in the development of all IT projects identifying their risk profile and security requirements, and assist the implementation of adequate security controls as an integral part of the final product;
  • Establish a risk framework for IT at the Global Fund to support adaptation to the changing organization, and its application and infrastructure;
  • Track industry trends in IT Risk and Information Security standards and security products, as well as developments in the area of computer crime and evolving information security threats. Bring those trends to the attention of the relevant IT and Business managers.

Subject to change by the Executive Director at any time at his sole discretion.

Qualifications

Essential

  • Advanced University Degree in information systems management, computer, engineering or a related field.

Desirable

  • Accreditation in CISSP or similar standard strongly preferred
  • Accreditation in ITIL strongly preferred

Accreditation in a recognized project management methodology such as PMI is an advantage.

Experience

Essential

  • At least seven years' experience in Information Security related fields, such as secure network design, risk analysis, applications and operating systems security, solid experience in information security policy writing and implementation
  • Two to three years of experience in computer forensic investigations and remediation planning

Desirable

Work in multi-cultural international organization. Exposure to business theory, governance processes, general management, budgeting, administrative and financial management.

Competencies

Languages

  • An excellent knowledge of English and preferably a good working knowledge of French or one of the following: Arabic, Chinese, Russian, and Spanish.
  • Knowledge of other languages would be an asset.

Technical Competencies

  • Excellent knowledge of risk management methodologies and experience in applying them for risk mitigation;
  • Fully versed in Information Security industry standards and best practices;
  • Proven skills in Internet services (web, DNS, SMTP, etc.), host-based operating systems administration, audit compliance background, domain name services, messaging, application security and Internet firewalls;
  • Knowledge and understanding of theories, concepts and approaches relevant to investigation;
  • Knowledge and experience with the following operating systems Windows, Linux and DOS as well as a thorough understanding of computer forensic tools;
  • Understanding of information systems security; network architecture; general database concepts; document management; hardware and software troubleshooting; electronic mail systems;
  • Ability to drive toward decisions and resolutions under ambiguous circumstances and tight timeframes; skilled in deconstructing complex requests to determine impacts of changes on the environment;
  • Ability to exhibit and maintain calm, even during stressful situations; ability to maintain confidentiality;
  • Knowledge of computer forensic tools, methodologies and protocols.

Core Competencies

  • Personal Effectiveness
  • Working with Others
  • Core Expertise
  • People Leadership
  • Global Fund Mind-set

About the Global Fund

The Global Fund is an international financing institution that fights AIDS, tuberculosis and malaria with a 21st century approach: partnership, transparency, constant learning and results-based funding.

Whether it be the distribution of bed nets to protect families from malaria in Honduras, training youth peer counsellors who will help other teens diagnosed as HIV-positive in South Africa, or providing equipment for the diagnosis of tuberculosis to clinics in Kazakhstan, country-driven programs to fight the pandemics receive funding through the Global Fund.

The Global Fund to Fight AIDS, Tuberculosis and Malaria was created in 2002 to dramatically increase resources to support the fight against the three pandemics. A partnership between government, civil society, the private sector and communities living with the diseases, the Global Fund is an innovative model of health funding. As an international financing institution, the Global Fund does not manage or implement programs on the ground, relying instead on local expertise. The Global Fund works with partners to ensure that funding serves the men, women and children affected by these diseases with maximum efficiency and value for money.

Mandatory cover letter

Please ensure your application is supported by a one-page cover letter. In your letter please explain clearly the skills, experiences and characteristics that make you especially suited to the advertised role.

Application information: http://www.theglobalfund.org/en/employment/vacancies/Chief_Information_Systems_Security_Officer_Grade_Level_D/