Technical Advisor(s) – Information Security Management

Paris, France
negotiable Expires in 2 months

JOB DETAIL

Company Description

The Organisation for Economic Co-operation and Development (OECD) is an international organisation comprised of 38 member countries, that works to build better policies for better lives. Our mission is to promote policies that will improve the economic and social well-being of people around the world. Together with governments, policy makers and citizens, we work on establishing evidence-based international standards, and finding solutions to a range of social, economic and environmental challenges. From improving economic performance and creating jobs to fostering strong education and fighting international tax evasion, we provide a unique forum and knowledge hub for data and analysis, exchange of experiences, best-practice sharing, and advice on public policies and international standard-setting.

The Global Forum on Transparency and Exchange of Information for Tax Purposes (the Global Forum) has played a key role in the development and acceptance of international standards on transparency and effective exchange of information (EOI) for tax purposes and in monitoring progress in implementing these standards. It has played a critical role in the international community’s efforts over the past ten years to counter international tax avoidance and evasion. The Global Forum currently over 170 members on an equal footing, a list of whom can be found on the Global Forum website www.oecd.org/tax/transparency.

The Global Forum Secretariat is based in the OECD’s Centre for Tax Policy and Administration (CTPA), which is the focal point for the OECD’s work on all taxation issues, both international and domestic.

The Global Forum’s primary focus is to oversee the implementation of the standards. The main part of the Global Forum’s work is to prepare peer review reports which assess a jurisdictions’ legal framework for exchange of information as well its practices. The Global Forum peer review work includes monitoring and reviewing jurisdictions’ implementation of the international standards on Automatic Exchange of Information (AEOI). This includes reviewing and preparing peer review reports on member tax administrations’ Information Security Management (ISM) arrangements and their safeguarding of data exchanged under international exchange of information (EOI) agreements to seek to ensure that these are aligned with internationally recognised information and cyber-security standards (i.e. also known as ‘confidentiality and data safeguards’ peer reviews). The Global Forum also provides capacity‑building services and technical assistance to member jurisdictions, particularly developing country tax administrations, to help them implement the standards in the area of ISM in order to participate and benefit from AEOI and the environment of tax transparency and EOI.

The Global Forum is looking for Information Security Management (ISM) experts (in particular, Cyber Security experts), who will work with jurisdictions participating in AEOI as part of their preparation and participation in a peer review with respect to ISM issues. S/he will report to the Global Forum’s Heads of Unit for AEOI and Capacity Building and Outreach (CBO).

Availability and willingness to undertake international travel is required.

The vacancy is open to nationals of OECD member countries and jurisdictions of the Global Forum.

Job Description

Main Responsibilities

ISM peer reviews and technical assistance

  • Participate in the peer reviews of ISM arrangements of member jurisdictions, including onsite visits, in conjunction with a team of ISM experts, and draft and provide technical input into the reports of findings.
  • Review and provide technical input on ISM-related information and materials provided by members’ tax administrations.
  • Working with other ISM experts, develop assessment principles across the various ISM assessment topics, especially Cyber Security.
  • Prepare or compile model ISM-related policies, procedures and other materials destined for jurisdictions receiving technical assistance.
  • Develop knowledge-building tools (toolkits, e-learning, etc.) and training courses on ISM-related topics.
  • Advise and coach member jurisdictions on ISM-related issues and prepare responses in relation to members’ ISM-related technical queries.
  • Advise the Secretariat on the development and application of its processes for dealing with data breaches.
  • Develop guidance and advice for member tax administrations on ISM aspects for the procurement and implementation of IT solutions for international EOI, including AEOI.
  • Contribute to the development and maintenance of effective processes (including internal work methods and tools) for the ISM peer reviews, and the technical assistance projects on ISM.
  • Support the Secretariat’s policy proposals and discussions in the Global Forum meetings regarding ISM issues.
  • Monitor relevant international developments related to ISM and Cyber Security and advise the Secretariat accordingly.

Qualifications

Ideal Candidate Profile

Academic Background

  • An advanced university degree in computer science or computer engineering, information security management, or a related field.

Professional Background

  • A minimum of eight years of experience, in private and/or public sector organisations, in information security management, ICT and Cyber Security, Software and Security Architecture, or Network and Systems Security.
  • Familiarity with the principles and practice of ISM, including relevant international standards such as the ISO/IEC 27000-series.
  • Comprehensive knowledge of the standards which govern the security of ICT systems within organisations.
  • Experience working in the domain of Cyber Security and the application of Cyber security measures, such as: Standard Operating System baseline security controls; Web and Database Server Controls; Network Infrastructure; Audit and Logging Infrastructure.
  • Knowledge of ISM governance processes such as: information security management policies; institutional and information security risk management; vulnerability management; physical and logical access management; data lifecycle management; logging, monitoring and audit; security incident and data breach management; internal/external audit.
  • Experience in discussing and advising various information security measures and action plans with fellow information security professionals.
  • Professional experience working with or within a tax administration on cyber‑security issues would be an advantage.

Additional Information

Core Competencies

  • OECD staff are expected to demonstrate behaviours aligned to six core competencies which will be assessed as part of this hiring processes: Vision and Strategy (Level 3); Enable People (Level 2); Ethics and Integrity (Level 2); Collaboration and Horizontality (Level 3); Achieve Results (Level 3); Innovate and Embrace Change (Level 3).
  • To learn more about the definitions for each competency for levels 1-3, please refer to OECD Core Competencies.

Languages

  • Fluency in one of the two OECD official languages (English and French) and knowledge of the other, with a commitment to reach a good working level.
  • Knowledge of Spanish would be an asset.

Contract Duration

Two-year fixed term appointment, with the possibility of renewal.

Closing Date

  • This vacancy will be filled as soon as possible, and applications should reach us no later than 23h59 3 November 2024 (Paris time).

What the OECD offers

  • Depending on level of experience, monthly salary starts at 9 349 EUR, plus allowances based on eligibility, exempt of French income tax.
  • Click here to learn more about what we offer and why the OECD is a great place to work.
  • Click here to browse our People Management Guidebook and learn more about all aspects relating to people at the OECD, our workplace environment and many other policies supporting staff in their daily life.
  • Please note that the appointment may be made at one grade lower in the specified job family, based on the qualifications and professional experience of the selected applicant.

The OECD is an equal opportunity employer and welcomes the applications of all qualified candidates who are nationals of OECD member countries and jurisdictions of the Global Forum, irrespective of their racial or ethnic origin, opinions or beliefs, gender, sexual orientation, health or disabilities.

Paris, France

location