WFP
Senior Cybersecurity Specialist - Network Security
Organizational Context
The World Food Programme (WFP) is the world's largest humanitarian organization, dedicated to saving lives in emergencies and building pathways to peace and prosperity. WFP operates in diverse, challenging environments, utilizing food assistance to support recovery from conflict, disasters, and climate change impacts. The organization values integrity, collaboration, commitment, humanity, and inclusion.
Job Purpose
The Senior Cybersecurity Specialist - Network Security will play a critical hands-on role in monitoring, investigating, and responding to cyber threats across WFP’s global environment. This position focuses on driving effective day-to-day security operations, with strong ownership of incident investigation, threat detection, and response activities across WFP’s infrastructure and network. The incumbent will collaborate with other cybersecurity teams to enhance detection capabilities, improve security telemetry quality, and expand monitoring coverage, ensuring stronger visibility, faster triage, and more reliable response outcomes. A key objective is to strengthen the consistency and reliability of security monitoring data and detection signals, thereby enhancing the organization’s ability to detect, investigate, and respond to threats in a timely and auditable manner, while also owning operational network security remediation activities.
Responsibilities
The Senior Cybersecurity Specialist - Network Security role at the World Food Programme (WFP) involves a hands-on approach to monitoring, investigating, and responding to cyber threats across WFP's global infrastructure. Key responsibilities include daily security operations, with a strong focus on incident investigation, threat detection, and response. The specialist will collaborate with other cybersecurity teams to enhance detection capabilities, improve the quality of security telemetry, and expand monitoring coverage, thereby increasing visibility and enabling faster, more reliable responses. This role also entails operational ownership of network security remediation, translating identified risks into concrete actions to reduce enterprise-wide vulnerabilities. A primary objective is to ensure the consistency and reliability of security monitoring data and detection signals, bolstering the organization's capacity for timely and auditable threat detection, investigation, and response. This includes improving monitoring coverage, reducing blind spots, ensuring compliance with logging requirements, and maintaining visibility over data loss prevention (DLP) events. The specialist will also provide Tier 2/3 investigation and analysis for potential cyber incidents, including DLP incidents, producing clear reports with technical findings and recommended remediation actions. Furthermore, they will assist with vulnerability management and network security initiatives, acting as a senior technical point of contact for remediation efforts and control improvements. The role also involves evaluating and implementing new tools or services to enhance incident detection and response capabilities, contributing to SOAR (Security Orchestration, Automation, and Response) development, and coordinating remediation actions for network security exposures and incidents.
Work Experience
Requires 6-8 years of relevant experience in SIEM, Incident Management, Network Security, and/or Security Platforms/Tools administration. Must have strong practical experience in cybersecurity operations, including incident response, investigation, and threat analysis. Proficiency with modern security platforms and telemetry (SIEM, endpoint, identity, cloud signals) is essential. A solid understanding of detection engineering concepts and query-based analytics (e.g., KQL) is also required.
Skills
Cybersecurity Operations, Incident Response, Threat Detection, Network Security, SIEM, Security Platforms Administration, Vulnerability Management, SOAR, Scripting (PowerShell, Python), Detection Engineering, KQL Querying, Cloud Security, Endpoint Security, Identity Security, DLP Incident Analysis, Technical Documentation, Risk Management, Team Collaboration, Cross-functional Communication, Problem-Solving
Required Languages
English, Arabic, Chinese (Mandarin), French, Russian, Spanish, Portuguese
Desired Languages
English, Arabic, Chinese (Mandarin), French, Russian, Spanish, Portuguese
Summary based on official posting. Please verify all details on the official website.Official Posting ↗
Explore related opportunities