Job Summary
- Employer: The World Food Programme (WFP)
- Job Type: Contract
- Location: Harare, Zimbabwe
- Category: Cybersecurity
- Closing Date: 2026-09-21
Key Responsibilities
- Conduct comprehensive risk assessments and lead the Authorization to Operate (ATO) process for IT systems and services.
- Design, review and oversee security architecture for applications, platforms, cloud services and technology initiatives.
- Assess and strengthen identity and access management controls, including authentication, authorization, privileged access, access lifecycle management and periodic access reviews.
- Define and review endpoint protection requirements and security baselines for corporate endpoints, mobile devices and other managed devices.
- Provide security guidance on the integration of identity and endpoint controls, considering user identity, device security posture, privilege level and information sensitivity.
- Lead the development, implementation and continuous improvement of cybersecurity procedures, services, methodologies and governance frameworks.
- Research and propose innovative technologies, security capabilities and process improvements.
- Propose and maintain security standards, procedures and guidelines and conduct baseline and hardening reviews of WFP security solutions and technologies.
- Provide expert cybersecurity advisory services and technical guidance to Country Offices, Regional Bureaus and HQ divisions.
- Guide IT solution owners on security controls, information protection, secure software development lifecycle practices, security requirements and cybersecurity compliance.
- Advise stakeholders on cybersecurity risks associated with cloud services, artificial intelligence, SaaS, digital transformation and data-driven solutions.
- Maintain records of decisions taken and assessments performed.
- Identify and execute improvements to existing processes and solutions.
- Act as Subject Matter Expert (SME) for assigned technologies, platforms, business applications and cybersecurity domains.
- Prepare and present reports, risk assessments, executive briefings, architecture recommendations and management updates.
- Mentor, coach and provide technical leadership to junior team members.
- Represent the Cybersecurity Branch in meetings, working groups, steering committees, audits, assessments and enterprise initiatives.
- Perform additional duties and responsibilities in support of TECI Cybersecurity objectives.
Requirements
- Education: A degree in Computer Science, Engineering or related STEM disciplines, or equivalent working experience.
- Experience: At least 6 years of relevant work experience .
- Candidates should have: Solid IT security skills with academic and professional experience, Solid IT SDLC expertise, Strong knowledge of IAM technologies and concepts, Experience with endpoint protection technologies and security controls, including EDR, device compliance, configuration hardening and MDM, Ability to assess and design identity-centric and device-based security controls supporting Zero Trust, conditional access and risk-based access management, Understanding of IT architecture and design concepts, Ability to manage stakeholder relationships and align cybersecurity risk strategies with business objectives, Understanding of cybersecurity risk concepts, threats, vulnerabilities and mitigation strategies, Good project management skills, Experience in multinational organizations, IT Security and IT Audit certifications, Security architecture in the cloud, Understanding of AI security concepts and frameworks, Experience with ISO, NIST, HIPAA or PCI compliance processes
- Fluency in oral and written English is mandatory. Intermediate knowledge of another official UN language – Arabic, Chinese, French, Russian or Spanish – or Portuguese, one of WFP’s working languages, is desirable.
How to Apply
Apply online: wd3.myworkdaysite.comopenings/job/Rome-Italy/Consultant-Information-TechnologyJR126531?utm_source=chatgpt.com
REF Code: JR126531, JR126529
About the Company
The World Food Programme (WFP) supports vulnerable populations in Zimbabwe through lifesaving food and cash assistance, strengthened food systems, and other interventions. In Zimbabwe, WFP focuses on providing assistance to those who need it most, while also working to build resilience and improve food security. The programme operates across the country, including in rural and urban areas, to reach those affected by food insecurity and other challenges. Through its work in Zimbabwe, WFP aims to make a tangible difference in the lives of individuals and communities. WFP's efforts in Zimbabwe are part of its global mission to end hunger and achieve zero hunger by 2030.
Lifesaving food and cash assistance
Website: https://www.wfp.org/countries/zimbabwe
Frequently Asked Questions
What qualifications and certifications are required for a Cybersecurity Advisory Consultant role in Zimbabwe?
Candidates should hold a bachelor's degree in Computer Science, Information Security, or a related field, and many employers prefer certifications such as CISSP, CISM, or CompTIA Security+. Practical experience with identity and access management or endpoint protection tools is also highly valued.
What are the day-to-day responsibilities of a Cybersecurity Advisory Consultant (IAM & Endpoint Protection) / (AI Security & Secure by Design) at WFP?
Daily tasks include assessing and hardening IAM systems, configuring and monitoring endpoint protection solutions, and conducting vulnerability assessments. You’ll also collaborate with local IT teams to implement secure by design principles and respond to security incidents.
How does the work culture in Zimbabwe differ for cybersecurity roles, and what expectations should I prepare for?
Zimbabwean work culture values punctuality, respect for hierarchy, and a collaborative approach, especially in multinational NGOs. Expect regular team meetings, a mix of on-site and remote work, and a strong emphasis on continuous learning and knowledge sharing.
What career progression can I expect in this role, and how can I advance within the field?
Entry-level consultants can progress to senior advisory roles, then to security architecture or program management positions. Gaining additional certifications and leading projects will accelerate promotion and open opportunities for regional or global assignments.
What benefits and leave policies are typically offered to cybersecurity consultants in Zimbabwe, and how can I confirm them?
Benefits typically include paid annual leave, sick leave, and access to a medical aid scheme, often with a pension contribution. Confirm specifics with HR, as packages can vary between NGOs and private firms.
How should I apply for this role, and what do employers in Zimbabwe typically look for in a candidate?
Apply through the WFP careers portal, ensuring your CV highlights relevant certifications, project experience, and any local or international engagements. Employers in Zimbabwe look for strong technical skills, problem‑solving ability, and a demonstrated commitment to ethical practices.