The Cybersecurity Operations Manager leads the operational management of ITU’s cybersecurity infrastructure, security services, and projects. The role involves managing the 24/7 Security Operations Center, overseeing security technologies, and ensuring alignment with ITU’s digital transformation and international cybersecurity frameworks. Responsibilities Manage the full lifecycle of complex cybersecurity projects and security infrastructure, including SIEM platforms, IPS/IDS, NGFW, Secure Web Gateways, and Endpoint Protection/EDR platforms. Oversee network security solutions across LAN/WAN, physical, virtual, on-premises, hybrid and multi-cloud environments ensuring integration across Unix, Windows and Linux operating environments. Prepare technical documentation, security assessments, bid evaluations, and support contract administration including calls for bids and vendor performance monitoring. Serve as ITU’s primary technical interface with the external Managed Security Service Provider (MSSP) operating the 24/7 SOC and threat detection. Lead SLA validation and manage detection gap resolution, direct SIEM use-case development and tuning, and drive SOC modernization with automation and AI/ML-based threat detection. Manage ITU’s internal incident response workflow and develop incident response playbooks, disaster recovery procedures, and cyber-drill scenarios. Operate and maintain security infrastructure and cloud security, delivering hands‑on oversight of security stack and managing multi-cloud security. Lead organization-wide cybersecurity awareness and training, update content for evolving threats, design and execute phishing simulations, and coordinate cyber drills. Assess security risks of disruptive technologies including AI/ML, LLMs, and agentic AI systems, implement technical security controls, and oversee responsible AI governance frameworks. Direct vulnerability identification, security alert triage, and threat analysis programs ensuring timely remediation. Support the Head of ICT Security in managing the enterprise cybersecurity risk management program including risk identification, assessment, and mitigation planning. Manage the technical implementation of cybersecurity policies, standards, and regulatory requirements, prepare KPIs, compliance dashboards, and reports for ITU Council and working groups. Requirements Advanced university degree in Computer Science, Information Security, Cybersecurity, Information Systems or a related field OR education from a reputed college of advanced education with a diploma of equivalent standard to that of an advanced university degree in one of the fields above. For internal candidates, a first university degree in one of the fields above in combination with ten years of qualifying experience may be accepted in lieu of an advanced university degree for promotion or rotation purposes. Certified Information Systems Security Professional (CISSP) and Certified Information Security Manager (CISM) are strongly preferred. GIAC Certified Incident Handler (GCIH), GIAC Certified Forensic Analyst (GCFA), Certified Ethical Hacker (CEH), GIAC Security Essentials (GSEC), and Certified Information Systems Auditor (CISA), are desired. Certified Cloud Security Professional (CCSP), Amazon Web Services (AWS) Certified Security – Specialty, Microsoft Certified: Azure Security Engineer Associate, and Google Professional Cloud Security Engineer, are desired. At least seven years of progressively responsible experience in cybersecurity operations and security management, including at least three at the international level. Experience in SIEM, IPS/IDS, NGFW, EPP/EDR, network security; SOC/MSSP oversight with SLA management. Experience in incident response, digital forensics, large‑scale ICT security (DR, business continuity). Experience with multi‑cloud security (SaaS/IaaS/PaaS) and security assessments of AI/ML and LLM systems. Experience in vulnerability management, threat intelligence, and cybersecurity project delivery (procurement, implementation, vendor management). Knowledge of one of the six official languages of the Union (Arabic, Chinese, English, French, Russian, Spanish) at advanced level and knowledge of a second official language at intermediate level. Knowledge of a third official language would be an advantage. Skills Cybersecurity Operations Security Management Incident Response Digital Forensics SIEM IPS/IDS Next-Generation Firewalls Endpoint Protection Platform Network Detection and Response Network Security SOC Oversight MSSP Oversight SLA Management Disaster Recovery Business Continuity Multi-Cloud Security Security Assessments Vulnerability Management Threat Intelligence Cybersecurity Project Delivery Procurement Management Vendor Management Certified Information Security Manager GIAC Certified Intrusion Analyst GIAC Certified Forensic Analyst Certified Ethical Hacker GIAC Security Expert Certified Internal Auditor Certified Cloud Security Professional AWS Certified Security Specialty Azure Security Engineer Google Professional Cloud Security Engineer Languages English, French #J-18808-Ljbffr
Cybersecurity Operations Manager in Genève Arbeitgeber: Global Roles
Als Arbeitgeber in der Genfer Region bietet unser Unternehmen eine dynamische und unterstützende Arbeitsumgebung, die sich auf die Förderung von Menschenrechten und internationalem Recht konzentriert. Wir legen großen Wert auf die berufliche Weiterentwicklung unserer Mitarbeiter und bieten zahlreiche Schulungs- und Aufstiegsmöglichkeiten. Unsere offene Unternehmenskultur fördert den Austausch von Ideen und die Zusammenarbeit, was zu einem erfüllenden und sinnstiftenden Arbeitsumfeld führt.