Information Security Officer

il y a 2 jours


Paris, France AXA Temps plein

**Job Description**:
Why AXA? Every day, we work together for human progress by protecting what matters. A mission that puts a smile on your face and makes you want to get up in the morning

One of the world's leading insurers in the protection of property, people and assets, AXA is 145,000 employees and contributors who are committed to our customers on a daily basis, 51 countries in which we distribute our products and services and more than 90 million customers who place their trust in us worldwide. As a responsible corporate citizen, AXA is committed to social and environmental causes on a daily basis. We are committed to an inclusive policy that recognizes and values individual differences. Do these ambitions speak to you? Then come and change the world with us

**YOUR WORK ENVIRONMENT**:
**Within the Group,** **you will join the Security department,** which covers the three components of Security: Information security, Operational Resilience and Physical Security & Safety.

**Within this Department,** you will be part of the **Information Security team.**You will play a key role in the operational security by developing and implementing an overall information security program to protect the organization’s data company against security breaches and vulnerability issues.

**YOUR ROLE AND RESPONSABILITIES**:
**Managing security threat incident /vulnerabilities and security alerts**
- The main objective is to ensure an efficient response to the increasing cyber security threat:

- Handle security incidents alerts and events: tracks, assess, notifies, contains, investigate, remediate
- Learn from previous threat experience to improve infrastructure component protection strategies and cyber incident handling procedures to prevent a cyber incident
- Proactively investigate new threats to the business and propose solutions to address them.
- Work with AXA SOC /SIRT teams to coordinate
- incident response
- Perform advanced analysis such as forensic hardware seizures, malware triage, dynamic analysis, and determining the scope of compromise during an incident
- Manage patch and vulnerability management with the coordination of AXA GO teams
- Analyze and process security alerts from the security tools (DLP tools, SEP, EDR, AIP, QUEST )

**Define implement and improve security controls & policies**:

- Detect and analyze inputs to monitor security threat
- Improve/adapt the existing security policies/controls or create new ones.
- Develop specific controls and policies to increase the level of protection of sensitive data and reduce data leakage risks.
- Contribute to the definition of the control plan to reduce the risk
- Implement controls defined and handle related anomalies with involved stakeholders.

**Management of end-user Information Security requests & exceptions**

- Handle end-user security requests (installation of unqualified software, specific access rights, security exception (Admin right, transfer data, USB, proxy exception
- Analyzing compliance of the requests compared to the Security guidelines and provide positions/advice/ derogations.
- Provide Information security positions and guidelines (technical architecture review, security risk analysis, etc.) on IT projects with a risk-oriented approach.

**Supporting the implementation of local & Group Security initiatives and project**
- Supports Group Security by designing, implementing and managing IS Strategy & policies components across AXA to ensure that Group Information Security goals are met.
- Contribute to the projects launch to make evolve the security tools (upgrade, new module acquisition, new policies) in coordination with Group Security and AXA Services teams.

**Governance/Compliance & Reporting**
- Contribute /formalize the documentation related to the security operations: define or redefine guidelines, user guide, process, procedures, for the security tools managed in the team
- Helping & ensuring the organization follows the regulatory requirements related to information security (ISO 27000 standard, RGPD, DORA )
- Update the Information Security Management System (ISMS) in place in accordance with the ISO 2700 standard (policies, procedures, etc.)
- Implement continuous improvement processes and activities (e.g. good practices, reporting, problem resolution) to ensure quality and relevance of security services
- Drive cultural and organizational change and help to implement a sustainable information security awareness practice
- Collect/monitor security KPIs and prepare security reporting to group security/risk committee/steering committee
- Regularly update the CSO to contribute your expertise & insight to strengthen the GIE AXA strategy and governance

**YOUR PROFILE**:
Take a look at this handy list to help you decide if you’ve got the right skills and experience for this role. We’re looking for someone with:

- Master’s degree in business or engineering (IT, Security, Management, Risk Management)
- Professional certificat



  • Paris, France un emploi de Security Expert Temps plein

    Notre équipe Cybersécurité recherche un·e Security Officer Senior basé·e à Lille ou Paris. L'équipe Cybersécurité Decathlon assure la protection et la sécurisation de l’ensemble du groupe : elle pilote la stratégie de gouvernance et les processus de gestion du risque, s’assure de la conformité de nos systèmes d’information, définit les...


  • Paris, France AXA Temps plein

    Join to apply for the Information Security Project Officer role at AXA1 month ago Be among the first 25 applicantsJoin to apply for the Information Security Project Officer role at AXAWould you like to wake up every day driven and inspired by our noble mission and to work together as one global team to empower people to live a better life?Here at AXA we...


  • Paris, France Barclays Temps plein

    Join **Barclays** as a **Business Information Security Officer**, where you’ll lead the evolution of our digital landscape, driving innovation and operational excellence. In this role, you will support the Markets Europe CISO, taking responsibility for managing and overseeing the markets’ cyber risk posture, providing cyber incident support, offering...


  • Paris, France AXA Temps plein

    **Job Description**: Would you like to wake up every day driven and inspired by our noble mission and to work together as one global team to empower people to live a better life? Here at AXA we strive to lead the transformation of our industry. We are looking for talented individuals who come from varied backgrounds, think differently and want to be part of...


  • Paris, France Blue Search Conseil Temps plein

    Chief Information Security Officer AAH/3750 CDI Poste basé à Paris En forte croissance, une prestigieuse maison du secteur du luxe renforce significativement sa gouvernance et ses capacités de cybersécurité. Dans le cadre d’une réorganisation stratégique de sa DSI, nous accompagnons notre client dans la recherche d’un Chief Information Security...


  • Paris, Île-de-France Decathlon Digital Temps plein

    Notre équipe Cybersécurité recherche un e Security Officer Senior basé e à Lille ou Paris.L'équipe Cybersécurité Decathlon assure la protection et la sécurisation de l'ensemble du groupe : elle pilote la stratégie de gouvernance et les processus de gestion du risque, s'assure de la conformité de nos systèmes d'information, définit les moyens...


  • Paris, Île-de-France DECATHLON Temps plein

    Notre équipe Cybersécurité recherche un·e Security Officer Senior basé·e à Lille ou Paris.L'équipe Cybersécurité Decathlon assure la protection et la sécurisation de l'ensemble du groupe : elle pilote la stratégie de gouvernance et les processus de gestion du risque, s'assure de la conformité de nos systèmes d'information, définit les moyens...


  • Paris, France Decathlon Temps plein

    Notre équipe Cybersécurité recherche un·e Security Officer Senior basé·e à Lille ou Paris. L'équipe Cybersécurité Decathlon assure la protection et la sécurisation de l’ensemble du groupe : elle pilote la stratégie de gouvernance et les processus de gestion du risque, s’assure de la conformité de nos systèmes d’information, définit les...


  • Paris, Île-de-France BAO Temps plein

    The company is a fast-growing fintech / digital assets platform operating in a highly regulated environment, building a Crypto-as-a-Service (CaaS) solution for financial institutions.The platform is rebuilt from scratch and supported by a large, international engineering organization.AsCISO, you own theglobal information security and GRC strategy. You'll...


  • Paris, France AquisIT Temps plein

    **MISSION** Nous recherchons un **Chief Information Security Officer** expérimenté avec une solide expertise en conformité réglementaire et en audit interne, en particulier sur les normes ISO 27001 et SOC2 Type 2. Le Chief Information Security Officer piloterait notamment les efforts du groupe pour rendre ses produits aussi sûrs et fiables que...