Job offers, find your job, job ads in the World | Page - cinfo
Principal, Quality Eng:, IT Security (London, GB)
Requisition ID 36870 Office Country United Kingdom Office City London Division Information Technology Contract Type Fixed Term Contract Length 3 years Posting End Date 22/07/2026 Purpose of Job The Principal, Quality Engineering leads the quality engineering strategy for a business-aligned capability or a technology-aligned practice, including tooling, resourcing, CoP engagement, operational resilience, automation and ensuring security standards are maintained for the capability which helps in ensuring and maintaining the quality of EBRD's platforms and technology solutions. The Principal acts as the quality authority to multi-disciplinary platform or software engineering capabilities, with direct responsibility for setting the overall quality direction and design approaches for one or more squads, ensuring adherence to best practices, EBRD standards, and quality requirements. This position provides leadership and direction for a team of internal and external Quality Engineering professionals, ensuring the effective governance, assurance, and delivery of quality outcomes across EBRD enterprise platform programmes. The role drives quality standards, test strategy, automation, assurance, and continuous improvement to support the secure, resilient, and successful delivery of business-critical technology solutions. They will manage the quality activities for multiple assigned projects or programs, responsible for the strategic guidance of quality and the associated quality planning activities and ensuring that key stakeholders are engaged and informed with accurate, targeted, and timely information. They will work closely with the project resourcing managers in order to effectively manage project resourcing plans in an efficient and lean group. Accountabilities and Responsibilities - Requirements and Analysis - Collaborates with Cyber Security Architects, Product Owners, and Business Analysts to ensure security considerations are embedded in user stories and acceptance criteria. This includes authentication flows, data encryption requirements, and regulatory compliance. - Conducts and oversees comprehensive risk assessments to identify potential security threats ? both functional (e.g. role-based access issues) and non-functional (e.g. performance under attack simulations). Prioritises risk mitigation and remediation activities accordingly. - Test Planning and Strategy - Defines and owns the security testing strategy for products or domains under the cyber security capability, ensuring alignment with organisational risk appetite. Incorporates both functional security tests (e.g. role-based access checks) and non-functional security tests (e.g. penetration testing, threat modelling). - Oversees and coordinates integration of security testing into CI/CD pipelines. This includes static and dynamic code analysis, dependency checks, and container scanning, ensuring teams catch vulnerabilities early. - Test Design and Execution - Participates in solution design discussions with cyber architects and senior engineers to ensure secure coding standards, encryption protocols, and identity management solutions are testable and robust. - Drives adoption and standardisation of security testing frameworks ? covering areas like penetration testing, vulnerability scanning, and threat simulation ? across squads within the cyber security remit. - Identifies and champions automation projects that detect vulnerabilities in near real-time (e.g. automated vulnerability scanning, container integrity checks), reducing attack surfaces and accelerating feedback loops. - Collaboration and Agile Ceremonies - Advocates for the inclusion of explicit security acceptance criteria in sprint planning and backlog refinement. Ensures squads incorporate security-related user stories, threat models, and test cases. - Works with security governance, risk and compliance teams, as well as broader IT stakeholders, to align on security standards, share best practices, and coordinates enterprise-wide security initiatives. - Defect Management - Implements structured processes for categorising and prioritising security vulnerabilities (e.g. CVSS scoring, regulatory compliance impact). Ensures timely fixes for high-severity issues, balancing business priorities with risk exposure. - Facilitates post-incident reviews for security breaches or near-miss events, driving remediation and systemic improvements (e.g. adopting stricter encryption, improving logging or monitoring). - Continuous Improvement and Quality Advocacy - Serves as the primary advocate for secure engineering practices across the cyber security domain. Promote ?shift-left? security testing, encouraging developers to adopt secure coding and testing practices from inception. - Leads initiatives that incorporate frameworks such as ISO 27001, NIST, PCI-DSS, or OWASP into everyday engineering processes. Ensures compliance while driving continuous improvements to security posture. - Data Analysis and Reporting - Develops and presents metrics on security-related coverage (e.g. vulnerability detection rates, patch compliance), application defects, and real-time threat intelligence to senior leadership. - Champions advanced tools for anomaly detection (e.g. SIEM solutions, machine learning-driven threat hunting) that anticipate security risks before they escalate. - Technical and Domain Expertise - Maintains deep domain knowledge of cyber threats, secure coding patterns, and regulatory landscapes. Guides teams in designing secure solutions that meet both functional user needs and non-functional resilience standards. - Researches and recommends new technologies ? such as next-generation firewalls, zero-trust frameworks, or AI-driven threat detection ? to enhance the organisation's security toolkit. - Mentorship and Knowledge Sharing - Mentors and coaches security-focused Quality Engineers, sharing expertise on vulnerability analysis, secure code reviews, and automated security testing. Provides structured learning paths for emerging threats and tools. - Establishes and leads security guilds or working groups, ensuring consistent security testing approaches and effective communication of threats, remediations, and lessons learnt across squads. - ITSM and Service Continuity - Aligns security testing with service continuity strategies, ensuring plans include resilience against cyber-attacks (e.g. DDoS defense) and compliance with ITSCM (IT Service Continuity Management) requirements. - Takes a lead role in responding to critical security incidents (e.g. data breaches, ransomware attacks). Coordinates cross-functional efforts, communicates status to senior management, and validates that recovery efforts meet compliance and business continuity standards. Knowledge, Skills, Experience and Qualifications - Holds ISTQB Advanced Test Manager or an equivalent recognised certification in test management, or demonstrable experience. - May hold ISTQB Advanced Security Tester, CISM, CISSP, GIAC GSEC. - Qualification in IT Service Management, such as ITIL v3 or v4 Foundation or equivalent. - Demonstrates comprehensive QA leadership across advanced automation, performance, shift-left, or shift-right testing. - Integrates Agile or DevOps at scale, possibly merges with ITIL v4 for QA?Ops synergy. - Demonstrable experience in Quality Engineering management and operations within an agile, product focused IT department, ideally within a financial institution - Experience in code branching strategies (GitFlow, BitBucket, ADO, etc.) and integration of quality into CI/CD pipelines. - Experienced in advanced AI/ML approaches for improving quality efficiency and effectiveness, analytics, defect identification, understanding how AI can enhance quality processes. - Provides expert security testing via MITRE ATT&CK, advanced vulnerability management, DevSecOps. - Familiar with PCI-DSS, ISO 27001, NIST frameworks, large-scale compliance audits. - Applies chaos engineering (Gremlin, Chaos Mesh) for failover or resilience. What is it like to work at the EBRD? / About EBRD Our agile and innovative approach is what makes life at the EBRD a unique experience! You will be part of a pioneering and diverse international organisation, and use your talents to make a real difference to people's lives and help shape the future of the regions we invest in. At EBRD, our Values ? Inclusiveness, Innovation, Trust, and Responsibility ? are at the heart of how we work. We bring these to life through our Workplace Behaviours: listening well and speaking up, collaborating smartly, acting decisively with full commitment, and simplifying to amplify our impact. These principles shape our culture and define our success. We seek individuals who not only share these values but are also committed to embedding them in their daily work, fostering a positive and high-performing environment. The EBRD environment provides you with: - Varied, stimulating and engaging work that gives you an opportunity to interact with a wide range of experts in the financial, political, public and private sectors across the regions we invest in. - A working culture that embraces inclusion and celebrates diversity. Our workforce reflects a broad range of backgrounds, perspectives, and experiences, bringing fresh ideas, energy, and innovation and enhancing our ability to serve our clients, shareholders, and counterparties effectively. - A hybrid workplace that offers flexibility to teams and individuals; that is based on trust, flexibility and connectedness. - An environment that places sustainability, equality and digital transformation at the heart of what we do. - A workplace that prioritises employee wellbeing and provides a comprehensive suite of competitive benefits. Diversity is one of the Bank's core values which are at the heart of everything it does. As such, the EBRD seeks to ensure that everyone is treated with respect and given equal opportunities and works in an inclusive environment. The EBRD encourages all qualified candidates who are nationals of the EBRD member countries to apply regardless of their racial, ethnic, religious and cultural background, gender, gender identity, sexual orientation, age, socio-economic background or disability. Please note, that due to the high volume of applications received, we regret to inform you that we are unable to provide detailed feedback to candidates who have not been shortlisted (for further consideration).
Digital Transformation and ICT Officer
Eirene Suisse is a secular NGO that has been active in development cooperation since 1963. In the countries where we are active, our objective is to strengthen and enhance local dynamics in favor of the promotion of peace and human rights. We specialize in cooperation through the exchange of people sending qualified professionals from Switzerland to support the development projects of our local partners in our three main areas of intervention: Central America (Nicaragua, El Salvador), Quisqueya (Haiti) and the African Great Lakes region (Rwanda, Uganda, DRC). These professionals have the status of "volunteers". Local partner FIDA-Uganda is one of the leading women's rights organizations in Uganda and the pioneer in the field of legal aid and public legal education in sub-Saharan Africa. Established in 1974, FIDA-Uganda has a proven track record in promoting and defending human rights, with a particular focus on women's rights. Specifically, the partner seeks to promote human rights as set out in international, regional and national legal documents. The organization uses a feminist and rights-based approach to address the underlying causes of abuse, including patriarchy, injustice, and exclusion. As a feminist organization, FIDA-Uganda uses multiple strategies to advance law and policy reform for the protection of women, including women's advocacy development, public interest dispute resolution and various other forms of public engagement. Through the establishment and strengthening of sustainable and effective legal and structural mechanisms, FIDA-Uganda also supports and analyses the action of the Ugandan government, a key player in the protection and promotion of women's rights. To reduce injustices against women, FIDA-Uganda assesses the functioning of the justice system in Uganda and its adherence to international human rights standards. Finally, FIDA-Uganda has observer status with the African Commission on Human and Peoples' Rights (ACHPR). Job purpose Main objective To strengthen FIDA-Uganda's institutional digital systems and inclusive learning infrastructure to expand access to gender justice, legal empowerment, human rights education, and peacebuilding opportunities for women, youth, and marginalized communities. Secondary objectives - Improved institutional ICT systems and digital learning infrastructure - Strengthened staff and beneficiary digital literacy and capacity - Strengthening institutional knowledge management, reporting, and sustainability systems The volunteer will support the implementation and long-term sustainability of FIDA-Uganda's integrated digital learning and knowledge management initiative, including: - the establishment of an inclusive Learning Management System (LMS); - the strengthening of the Integrated Information Management System (IIMS); - the operationalization of the Kampala Studio Learning Lab; - the expansion of regional Gender Justice Innovation Hubs (Gen JIHUBs); - and the training of the staff and beneficiaries to ensure institutional ownership and sustainability. Activities and tasks - Support the design, setup, customization, and administration of the FIDA-Uganda LMS; - Support establishment of the Kampala Studio Learning Lab; • Provide technical support for strengthening and expansion of regional Gender Justice Innovation Hubs; - Strengthen functionality and reporting systems within the IIMS; - Support hardware and software configuration and maintenance; - Support integration of digital learning systems and online course delivery; - Train staff, Community Legal Volunteers (CLVs), and beneficiaries in digital literacy and use of online learning tools; - Develop ICT procedures, manuals, and system documentation; - Strengthen cybersecurity, backup systems, and digital data protection practices; - Support integration of multimedia learning content and online engagement tools - Provide day-to-day ICT troubleshooting and technical assistance; - Support digital accessibility and low-bandwidth learning solutions; - Mentor designated staff members for long-term sustainability and knowledge transfer. Position specifics Only applications from Swiss nationals or individuals with strong ties to Switzerland (residence, years of study/work, etc.) will be considered. A volunteer commitment involves receiving a living allowance rather than a salary. An associative engagement is expected, particularly in terms of information work and fundraising in Switzerland (including the facilitation of a support group). Terms of employment - Coverage of round-trip travel expenses. - Coverage of living expenses on site. - Payment of Swiss social insurance contributions during the assignment (pension/AVS, unemployment, health, repatriation, etc.). - On-site support from a regional coordinator during the mission. - Work certificate and end-of-assignment allowance upon completion of the mission. To apply Eirene Suisse has not set a deadline for applications for this position; recruitment will remain open until the position is filled. However, we encourage you to apply as soon as possible Please send the usual application documents (cover letter, CV, and copies of diplomas/certificates) by email to: Olaya LAVILLA, Eirene Suisse emploi@eirenesuisse.ch. +41 22 321 85 56 Given the high number of applications we receive, only candidates who strictly meet the stated criteria will be contacted. Thank you for your understanding. For more information, you can visit our website www.eirenesuisse.ch Your profile - Swiss national or strong ties to Switzerland (resident, study, work, etc.); - Degree in Computer Science; Information technology; Information Systems; Digital Education or any another relevant field; • Strong experience in ICT system development; in building, management and configuration of LMS and IIMS; - Knowledge of IT infrastructure management, including hardware/software configuration, troubleshooting, cloud-based tools, and system maintenance; - Knowledge of cybersecurity principles, data protection practices, backup procedures, and secure management of digital information; - Minimum of two years' professional experience in the relevant field; - Good command of English or willingness to learn it; - Experience education and training of people; creating user guides and technical materials; - Strong interpersonal and communication skills, - Ability to communicate, autonomy, teamwork and open-mindedness; - Adaptability, initiative and stress management skills; - Ability to accept local living conditions and to integrate into a human-centered project in a complex context; - Willingness to actively contribute to the Southern partner's initiatives; - Clean criminal records at the time of departure.
Advisor ICT, Digitalization and Project Management
The Ministry of Education, Innovation, Youth, Sports Arts and Culture (MEIYSAC) Namibia is a longstanding partner organization of Comundo and is committed to delivering a fair and inclusive education for all children and youth. In addition, the Ministry promotes Namibian sports, arts and culture in favor of national unity and in consideration of its diversity. The Comundo Country Programme Namibia contributes significantly to a better education for all children and youth. To achieve this goal, we collaborate with the Ministry of Education, the regional Directorates of Education, and different NGOs. The Partner Organisation for this assignment is the Directorate of Education Zambezi, which is a regional Directorate under the Ministry of Education, in the Zambezi Region in the north-east of Namibia. Your activities / tasks The DEIYSAC Zambezi is committed to delivering fair and inclusive education to all children. However, the region faces challenges in ICT infrastructure, digitalization and project management. As an ICT, Digitalization and Project Management Advisor, you will play a critical role in supporting the DEIYSAC to improve access to quality education by advancing the digital infrastructure and fostering ICT skills in schools and the regional government office. Among others, you will conduct the following tasks: - ICT Infrastructure Development: Assist in planning, upgrading, and optimizing ICT resources in schools and the regional office. - Project and Change Management: Support various projects of the Directorate and support with change management - Capacity Building: Provide training in MS Office, ICT skills, and project management to the Computer Technician, Education Officers, teachers, and management staff. - Process Optimization: Support the long-term planning, maintenance, and execution of digital projects, ensuring better operational efficiency in ICT. - Networking: Facilitate collaboration between the ICT and General Service sub-divisions and other stakeholders within the education sector, promoting best practices and innovation. Your profile - Degree in Business Administration, IT, System Administration, or a related field - Professional experience in ICT development and transformation - Experience in training adults, workshop facilitation, and capacity building - Experience in networking and best practices sharing - Experience in working with government institutions welcome General requirements - Completed vocational or tertiary education - At least 5 years of professional experience - Between 30 and 60 years old - Resident in Switzerland or Swiss citizenship - Professional Working Proficiency - Intercultural competencies and the ability to act in diverse contexts - Good physical and mental health - Basic knowledge in project management, institutional development, and adult education welcome - Ability to work independently and in a team - High social and communication skills and intercultural sensitivity - You are motivated to live a simple lifestyle - You are prepared to contribute to public relations and fundraising for Comundo