Security Risk Assessment Expert
il y a 7 heures
You will support the Head of GO Security Engineering COE in integrating security into all projects, products, and services through governance, processes, and methodologies. It involves developing security frameworks, conducting risk analyses, and ensuring security by design across projects and stakeholder interactions. The position also focuses on enhancing security assurance and aligning various functions to maintain robust security standards within AXA GO. About AXA As a world‑leading insurance company, we act for human progress by protecting what matters. With 153,000 employees in 54 countries working for 105 million customers, we’ve created a truly dynamic and vibrant community. Inclusion and diversity link closely with our values, and together we’re nurturing a culture of respect, for each other, for our customers and the communities around us. Join AXA and you’ll feel like you belong, are included and can thrive. You’ll be able to shape the way you work and truly grow your potential as you seek out new opportunities, push boundaries and benefit people in critical moments of their lives. This is your chance to build the tomorrow you want. Know you can. About the entity AXA is becoming a sustainable tech‑led company and at AXA Group Operations we are one of the major catalysts for this transformation. We set the tone by triggering and empowering the evolution of our insurance business model through technology and innovation, driving its concrete implementation globally at speed, with a high quality of advisory and execution. We are present across 17 countries with committed, highly qualified teams. We leverage technology, data, sourcing, security and investment allocation in a global way, but also achieve economies of scale and synergies when necessary. At AXA Group Operations, we want to be recognized in three fields of action: State‑of‑the‑art Data Technology to drive customer experience State‑of‑the‑art Procurement & Sourcing to drive efficiency and better manage risks High‑Performing Global Team for stronger partnerships with AXA entities About the job Job Purpose Your responsibilities include: Support Head of GO Security Engineering COE in ensuring that security is implemented by design in all projects, products, and services of GO: Security in IT Governance, Process and Methodologies and Roadmap, Oversight AXA GO Product to validate security integration. Participate to the development and implementation of a consistent approach to all security topics within the scope, including Information Security, Operational Resilience, PS, H&S: merging security topics into security project management including in Agile frameworks. Support the Communication and advisory to the different stakeholders of the projects regarding Security by design approach. Support the Project team in the implementation of the cyber risk analysis and security assurance plan for projects or products evolution. Contribute in the GO Security Engineering COE team in the design enhancement of the framework to support project and product owner in meeting the security requirements: Integration and support of security into Project Management Framework and SDLC. Contribute in delivering the security oversight in products and projects in GO. Interact with all relevant stakeholders of the projects or customers of GO to provide visibility on the level of security of GO Products. Support alignment/coordination between the different line functions involve in the review of Products & Project oversight (Data Privacy, Internal Control, Operational risk, Legal…) as well other Security Stakeholders (Group Security, Cyberdefense, etc.). Main Missions Your missions as a SecurityRisk Analyst are to: Identify and analyze product/project risks, recommend appropriate mitigation options and document all components in clear, business‑intelligible language. Serve as an expert advisor in the GO Security COE team of GO in the implementation and maintenance of security assurance of the products including third parties review. Collaborate with and support the Group Security Practice and other stakeholders of GO Security as necessary to ensure that security within GO is relevant, cost‑effective and is delivered in accordance with the Group Security Strategy and Security by Design best practices. Support the implementation of continuous improvement processes and activities (e.g. good practices, reporting, problem resolution) to ensure quality and relevance of security services. Support the implementation of security strategy, policies, shared security services and action plans based on the Group Security Strategy. Contribute to the maintenance in understanding of emerging technology, risks and industry trends. Assess the impact on the business environment and recommend appropriate mitigation actions or the prioritization of projects and investments. Escalate the need to redirect any critical risk not properly addressed during the project lifecycle or suggest changes to the approach to mitigate critical risks and ensure legal, regulatory or commercial compliance. Promote a culture of security risk‑based mindset and raise awareness when relevant. Contribute to the continuous development and maintenance of a security assurance framework to enforce consistency and effectiveness in the security by design approach. Support the reporting process of information security, operational resilience and Physical Security & Safety for different levels of customers (top management, middle management and team). Provide technical security Assurance analysis on local security implementation of the products when required. Support the implementation of a coordinated responses to security audit and compliance issues. Contribute to the governance organization and management of projects within the team (planning, framework, staffing, purchasing, operations…). Expected skills & experience We are looking for someone with the following experience and skills: Experience Experience in cyberrisk threat analysis, security, Cloud Architecture and projects, IT auditor related area, Agile or DevSecOps, > 7 years Previous experience in managing projects preferred in an international context Previous experience as interim or acting Security in projects manager, Information Security Officer, Physical Security Officer, Operational Resilience Officer, or extensive experience in reporting to a CSO, CISO, CORO, PSO or other 2nd line cybersecurity expert in an international organization. Security Risk analysis methodology Information Security and /or Information Technology industry certification (CISSP, CISSP-ISSAP, CISM, ISO 27001 Lead Auditor, GIAC or equivalent) Business Continuity Industry certification (MBCI, DRII…) Physical security certification (CPP, PSP, BTEC…) Cloud services or security architecture (CCSK, CCSP, …) Technical skills Ability to develop networking, foster team collaboration to seek collective achievements while supporting the projects, product evolution or security assurance review. Communication skills: Effectively communicates (oral and written) the security by design framework & the benefits in achieving the same. Ability to apply analytical rigor to understand complex business and IT scenarios. Positive mindset to support the security analysis and eagerness to learn and grow on new technological areas or frameworks (Agile, AI, …) Capacity to interact with different level of stakeholders from business to technical. Results oriented, project and budget management. Good sense of organization and adaptability. Flexibility on working hours. Fluent in English. What we offer We bring together the expertise, cultural diversity and creativity of over 8,000 employees worldwide and we’re committed to equal opportunities in all aspects of employment (gender, LGBT+, disabled persons, or people of different origins) and to promoting Diversity & Inclusion by creating a work environment where all employees are treated with dignity and respect, and where individual differences are valued. #J-18808-Ljbffr
-
Security Risk Assessment Expert
il y a 9 heures
Paris, France AXA Group Operations Temps pleinJoin to apply for the Security Risk Assessment Expert role at AXA Group Operations You will support the Head of GO Security Engineering COE in integrating security into all projects, products, and services through governance, processes, and methodologies. It involves developing security frameworks, conducting risk analyses, and ensuring security by design...
-
Risk Assesment
il y a 6 jours
Paris, France CyberMaker Temps plein**1/Context**: Group Operations Security / Information Security / Assurance Plan - Risk Assessment We are the oversight of Group Operations Security, using Security Assurance principle to improve security coverage an drive individual and global Security Assurance Plan and Remediation. A team of 12 people, across three different...
-
Risk Assesment
il y a 6 jours
Paris, France CyberMaker Temps plein**À propos de nous**: CyberMaker est une société spécialisée dans le conseil et l'audit en Cyber sécurité. Nos services se concentrent autour de l’accompagnement à la cyber sécurité, l’accompagnement à la sécurisation, la conformité et la supervision de la sécurité des systèmes d’information. Nous collaborons avec des organisations de...
-
Security Assurance
il y a 3 heures
Paris, France AXA Group Operations Temps pleinA global insurance company is seeking a Security Risk Assessment Expert to support the Head of GO Security Engineering. This role involves implementing security processes and methodologies, analyzing risks, and ensuring compliance with security standards. The ideal candidate will have over 7 years of experience in cyber risk analysis and possess relevant...
-
Security Analyst
il y a 5 heures
Paris, France Arcus Search Temps pleinYou must be based in France to be considered for this role, candidates not living in France will not be considered. Job type: Freelance contract (self employed) Location: Paris (hybrid 6-8 days peer month onsite) Duration: 12 months (scope for extension) Role Overview We are seeking an experienced Security Analyst to support a banking organisation in Belgium...
-
Freelance Security Analyst – Banking Risk
il y a 5 heures
Paris, France Arcus Search Temps pleinA recruitment agency is seeking a Security Analyst to support a banking organization in Belgium on a freelance basis. The role involves conducting hands-on risk and threat assessments, analyzing systems, and directly contributing to the bank's security posture. Candidates must have proven experience in similar roles within the banking or financial services...
-
Physical Security
il y a 4 heures
Paris, France AXA Group Operations Temps pleinJoin to apply for the Physical Security & Safety Expert role at AXA Group Operations. Responsibilities Support the GO Security Oversight Executive Manager & the GO Security Oversight Physical Security & Safety Officer Lead Expert in aligning all Governance & Reporting (G&R), Site – Travel - Event protection measures & Incident response planning,...
-
Third-party Security Risk Analyst
il y a 4 jours
Paris, France Ledger Temps pleinWe’re the forever innovators. On a mission that goes beyond business. Securing digital ownership in a changing world. Unlocking true freedom. We’re revolutionaries. Looking beyond today. Bridging excellence and pragmatism, with ambition and conviction, to push the limits of what’s possible. That’s what you’ll do here, in this playground of...
-
DigiTribe - Cybersecurity Expert
il y a 4 heures
Paris, France DigiTribe Temps pleinOverviewDigiTribe - Cybersecurity Expert DigiTribe•Paris, Brussel, BelgiumWe are looking for experienced professionals to join our Cyber & Information Security team. You will work on risk assessments for a wide range of IT security projects, related to access management, network security, application security, cloud security, amongst other...
-
Security Experts
il y a 22 heures
Paris, France P1 Security S.A.S. Temps plein**About P1 Security**: P1 Security is a vendor independent, technology pioneer and worldwide leader in the Telecom Security market (Network and Telecom Core Network Security, Intrusion Detection and Vulnerability Assessment solutions) with patent pending technology backed by 10 years of engineering research. We are a lean startup, engaged aggressively in...