E T Consultant
Full Description
Do you want to build a career that is truly worthwhile? Working at the World Bank Group provides a unique opportunity for you to help our clients solve their greatest development challenges. The World Bank Group is one of the largest sources of funding and knowledge for developing countries; a unique global partnership of five institutions dedicated to ending extreme poverty, increasing shared prosperity and promoting sustainable development. With 189 member countries and more than 130 offices worldwide, we work with public and private sector partners, investing in groundbreaking projects and using data, research, and technology to develop solutions to the most urgent global challenges.
For more information, visit www.worldbank.org ITS Vice Presidency Context The Information and Technology Solutions (ITS) Vice Presidential Unit (VPU) enables the World Bank Group to achieve its mission of ending extreme poverty and boost shared prosperity on a livable planet by delivering transformative information and technologies to its staff working in over 150+ locations. For more information on ITS, see this video: https://www.youtube.com/watch?reload=9 v=VTFGffa1Y7w Unit Context The ITS Information Security and Risk Management (ITSSR) unit, headed by the Chief Information Security Officer (CISO), is responsible for providing leadership in managing the functions and activities of information security and risk across the World Bank Group, enabling the achievement of WBG’s business objectives. ITSSR enables and facilitates a risk aware culture, ensures that WBG information assets are protected in an effective, efficient, and balanced manner; and IT security and risk management efforts throughout the World Bank Group are coordinated and aligned to the Bank's business and IT strategy. ITSSR establishes and maintains the World Bank Group's IT and InfoSec policies and standards; develops and engineers the WBG’s information security plans and solutions; responds to security incidents; and ensures that the information risks are identified, assessed, and managed in consistent with the overall risk management approach and with the established appetite and tolerance.
Duties and Accountabilities: ITSIS is seeking to fill the position of ET Consultant within ISOC. The ET Consultant serves across all areas of threat intelligence to help inform and defend the business and protect brand reputation. As a trusted member of the cybersecurity team and industry community, the analyst works closely with internal technical teams, business units and external entities aligned with the business, including private intelligence-sharing groups, law enforcement, government agencies and public affiliation peers. The IT Analyst is responsible for conducting in-depth research, documenting threats, understanding the risk to the business, and sharing information with those who need to know.
The analyst will also distill threat intelligence so technical and non-technical contacts can understand it and make educated decisions about next-step actions. In addition to applied experience, the individual will bring excellent problem solving, communication and teamwork skills, along with agile ways of working, strong business insight, an inclusive leadership attitude and a continuous learning focus. Scope of Work • Research current and emerging threats facing the business and industry sector. • Lead production and delivery of recurring threat intelligence reports, summarizing relevant cyber threats to WBG infrastructure. •Conduct and publish in-depth risk assessments to evaluate and categorize the risk posture of detected cyber threats while supporting development and refinement of risk assessment methodologies and tools used for threat categorization • Maintain a current understanding of advanced persistent threats (APTs), threat actor tactics, techniques, and procedures (TTPs), and cyber threat trends. • Collaborate with internal and external stakeholders, to gather and share relevant threat intelligence. • Develop and maintain threat profiles and reports to enhance detection and response capabilities. • Continuously update and refine existing threat intelligence processes and methodologies to ensure the organization remains at the forefront of cyber defense. • Centralize multiple threat sources (premium, industry-shared, open-source, dark web), correlate indicators and threats, and distill actionable intelligence. • Use automation to efficiently streamline and de-duplicate threats for playbooks, but use human analysis for actionable decision-making. • Document threats into contextual reports outlining severity, urgency and impact, and ensure they can be understood by both management and technical teams. • Serve as a trusted advisor to establish credibility with business unit leadership and technical teams. • Use and assign indicator severity and impact ratings to determine appropriate plans of action. • Evaluate and implement deception techniques designed to
Sign up free to get the apply link, save to pipeline, and set email alerts.
Sign up free →Professional Plan
7-day free trialUnlock the Opportunity Portal
You're browsing for free. Upgrade to Professional to get email alerts, application tracking and AI-powered CV matching.
$9.99 / month
- 🔔Email alerts for new matching jobs
- 📋Track applications in your dashboard
- 📄Upload CV for AI-powered matching
- 📌Save searches with one click
- 🌍Access to 10,000+ live vacancies