Employer Active
Job Alert
You will be updated with latest job alerts via emailJob Alert
You will be updated with latest job alerts via emailAs part of the Agile transformation of the IT department we are looking for a skilled Information Security specialist who will be in charge of addressing security continuity and IT Risk topics within the perimeter of a tribe. A tribe being a team of up to 100 members organized in agile and who design develop test and maintain a portfolio of business software applications.
Main missions :
Analyze software designs and implementations from a security and continuity perspective and contributes to identifying and to resolving development issues with the help of the security champion.
Evaluate the compliance of the products against the security and continuity policies.
Ensure that IT risks are identified and maintained at an acceptable level for the organization.
Report on the security level of the perimeter
Considered as a local CISO for the perimeter he/she is in charge of the Tribe Security Officer will have the following main activities:
Ensure deployment of the Arval security and continuity policies in the tribe.
Influence business decisions in a manner that is consistent with security goals and objectives.
Ensure applications are onboarded in security tools when eligible (SAST AVS PENTESTS SCA ANON)
Promote security by design and by default principles and contribute to software designs and architectures
Occasionnally assist the team in troubleshooting and debugging security issues that arise and lead transversal vulnerability remediation taskforces.
Contributes to the agile events (Sprint Planning and Backlog Review) anytime a strong focus on security is required
Provide a reporting on the security level / vulnerabilities of software applications in his/her perimeter to the CoE IT Risk and Cyber Security
Share best practices with the IT Risk & Cyber security central team and with other tribe security officers
Followup continuity tests and exercises.
Support the team for evaluating / formalizing the IT risks and the measures to mitigate them
Followup identified remediation plans
Provide reporting on IT risks to the tribe and escalate risks according to their level.
Assemble evidences for internal control plan and audits
Qualifications :
Vous avez au moins 5 ans minimum dexprience dans ce domaine et une apptence pour la cyberscurit ce poste vous permettra de continuer monter en comptence sur le management mais aussi sur lenvironnement cyberscurit.
Informations supplmentaires :
Ce que nous vous apportons :
Les avantages classiques :
Et nos spcificits :
Tous nos postes sont ouverts aux personnes en situation de handicap
Remote Work :
Yes
Employment Type :
Fulltime
Remote