Agile Security Risk Consultant

il y a 2 semaines


Paris, Île-de-France AXA Group Operations Temps plein

About AXAAs a world-leading insurance company, we act for human progress by protecting what matters. With 153,000 employees in 54 countries working for 105 million customers, we've created a truly dynamic and vibrant community. Inclusion and diversity link closely with our values, and together we're nurturing a culture of respect, for each other, for our customers and the communities around us. Join AXA and you'll feel like you belong, are included and can thrive. You'll be able to shape the way you work and truly grow your potential as you seek out new opportunities, push boundaries and benefit people in critical moments of their lives. This is your chance to build the tomorrow you want. Know you can.About The EntityAXA is becoming a sustainable tech-led company and at AXA Group Operations we are one of the major catalysts for this transformation.We set the tone by triggering and empowering the evolution of our insurance business model through technology and innovation, driving its concrete implementation globally at speed, with a high quality of advisory and execution.We are present across 17 countries with committed, highly qualified teams. We leverage technology, data, sourcing, security and investment allocation in a global way, but also achieve economies of scale and synergies when necessary.At AXA Group Operations, we want to be recognized in three fields of action:State-of-the-art Data Technology to drive customer experienceState-of-the-art Procurement & Sourcing to drive efficiency and better manage risksHigh-Performing Global Team for stronger partnerships with AXA entitiesWhere will you be in the organization?The divisionYou will join the Group Security division, defining the security standards to be applied by AXA entities, overseeing the overall security posture across the Group and providing centralized services to support entities (Crisis Management, Security Operations Centre, etc.).Throughout AXA Group, the security community represents composed of 1000 security professionals, working daily to protect our customers, operations, brand and people. To achieve this, we have gathered our three security disciplines: Information Security, Physical Security and Operational Resilience.Our Main MissionsMonitor the Security Threat LandscapeDefine and oversee Security Standards and Strategy implementation across the GroupDrive local security objectives with C-Level executive (COO, CIO, CTO, CFO…) of AXA entitiesEnsure the security of Group Operations as an entityProvide centralized security services and products to AXA entitiesAXA Group Security is divided in 4 main blocks :Corporate functions (Group Mandate) : Security Advisory and Standards, Security Governance, Security Risk & Assurance, Security Strategy and AwarenessCyberDefense (Group security services and products provider)Group Operations Security (Security of the hosting entity)Corporate Chief Security Officers (Oversight of entities' security) : Corporate Centre, European Markets, International MarketsAbout The JobJob purposeThe Purpose Of The Role Is ToSupport Head of GO Security Engineering COE in ensuring that security is implemented by design in all projects, products, and services of GO: Security in IT Governance, Process and Methodologies and Roadmap, Oversight AXA GO Product to validate security integrationParticipate to the development and implementation of a consistent approach to all security topics within the scope, including Information Security, Operational Resilience, PS, H&S: merging security topics into security project management including in Agile frameworksSupport the Communication and advisory to the different stakeholders of the projects regarding Security by design approachSupport the Project team in the implementation of the cyber risk analysis and security assurance plan for projects or products evolutionContribute in the GO Security Engineering COE team in the design enhancement of the framework to support project and product owner in meeting the security requirements: Integration and support of security into Project Management Framework and SDLCContribute in delivering the security oversight in products and projects in GOInteract with all relevant stakeholders of the projects or customers of GO to provide visibility on the level of security of GO ProductsSupport alignment/coordination between the different line functions involve in the review of Products & Project oversight (Data Privacy, Internal Control, Operational risk, Legal…) as well other Security Stakeholders (Group Security, Cyberdefense, etc.)Main missionsYour missions as an Agile Security Risk Consultant are to :Identify and analyze product/project risks, recommend appropriate mitigation options and document all components in clear, business-intelligible languageServe as an expert advisor in the GO Security COE team of GO in the implementation and maintenance of securityCollaborate with and support the Group Security Practice and other stakeholders as necessary to ensure that security within GO is relevant, cost-effective and is delivered in accordance with the Group Security Strategy and Security by Design best practicesSupport the implementation of continuous improvement processes and activities (e.g. good practices, reporting, problem resolution) to ensure quality and relevance of security servicesSupport the implementation of security strategy, policies, shared security services and action plans based on the Group Security StrategyContribute to the maintenance in understanding of emerging technology, risks and industry trends. Assess the impact on the business environment and recommend appropriate mitigation actions or the prioritization of projects and investmentsEscalate the need to redirect any critical risk not properly addressed during the project lifecycle or suggest changes to the approach to mitigate critical risks and ensure legal, regulatory or commercial compliancePromote a culture of security and raise awarenessContribute to the continuous development and maintenance of an assurance framework to enforce consistency and effectiveness in the security by design approachSupport the reporting process of information security, operational resilience and Physical Security & Safety for different levels of customers (top management, middle management and team)Provide Quality Assurance work on local security implementationSupport the implementation of a coordinated responses to security audit and compliance issuesContribute to the governance organization and management of projects within the team (planning, framework, staffing, purchasing, operations, ..)Expected Skills & ExperienceWe are looking for someone with the following experience and skills:ExperienceOverall work experience in the fieldExperience in cyber risk threat analysis, security, Cloud Architecture and projects, IT audit or related area, DevSecOps, > 7 yearsPrevious experience in managing projects preferred in an international contextPrevious experience as interim or acting Security in projects manager, Information Security Officer, Physical Security Officer, Operational Resilience Officer, or extensive experience in reporting to a CSO, CISO, CORO, PSO or other 2nd line cybersecurity expert in an international organization.SkillsAbility to develop networking, foster team collaboration to seek collective achievements while supporting the projects or product evolutionCommunication skills: Effectively communicates ( oral and written) the security by design framework & the benefits in achieving the sameAbility to apply analytical rigour to understand complex business et IT scenariosPositive mindset to support the security analysis and eager to learn and grow on new technological areas or frameworks (Agile, AI, ..)Capacity to interact with different level of stakeholders from business to technicalResults oriented, project and budget managementGood sense of organisationFlexibility on working hoursFluent in EnglishWhat We OfferWe bring together the expertise, cultural diversity and creativity of over 8,000 employees worldwide and we're committed to equal opportunities in all aspects of employment (gender, LGBT+, disabled persons, or people of different origins) and to promoting Diversity & Inclusion by creating a work environment where all employees are treated with dignity and respect, and where individual differences are valued.


  • Agile Security Risk Consultant

    il y a 2 semaines


    Paris, Île-de-France AXA France Temps plein

    Job Description:About AXAAs a world-leading insurance company, we act for human progress by protecting what matters. With 153,000 employees in 54 countries working for 105 million customers, we've created a truly dynamic and vibrant community. Inclusion and diversity link closely with our values, and together we're nurturing a culture of respect, for each...


  • Paris, Île-de-France AXA France Temps plein

    Job Description:You will support the Head of GO Security Engineering COE in integrating security into all projects, products, and services through governance, processes, and methodologies. It involves developing security frameworks, conducting risk analyses, and ensuring security by design across projects and stakeholder interactions. The position also...


  • Paris, Île-de-France AXA France Temps plein

    Job Description:This role focuses on defining and supporting security risk management processes, monitoring key risks, and advising the business on risk-driven decisions. It involves developing a comprehensive security risk framework, providing training, and promoting a risk-aware culture across the Group. Daily collaboration across entities is essential to...


  • Paris, Île-de-France Believe Temps plein

    Company Description Believe is one of the world's leading digital music companies. Believe's mission is to develop local artists and labels in the digital ecosystem by providing them the solutions they need to grow their audience at each stage of their career and development.Its 2,020 employees in more than 50 countries aim to support local artists and...

  • Senior Security

    il y a 1 semaine


    Paris, Île-de-France Criteo Temps plein

    What You'll Do:Joining the Trust & Compliance team means stepping into the engine room of security strategy at a fast-moving tech company.A front-row seat to how security drives innovation in a data and AI-driven company.A strong cross-functional culture: you'll work with security engineers, architects, product managers, legal, compliance, and ops.A real...


  • Paris, Île-de-France Integrity360 Temps plein

    About UsIntegrity360 is the largest independent cyber security provider in Europe, with a growing international presence spanning the UK, Ireland, mainland Europe, Africa and the Caribbean. With over 700 employees, across 12 locations, and six Security Operations Centres (SOCs)—including locations in Dublin, Sofia, Stockholm, Madrid, Rome, Naples and Cape...

  • Security Manager

    il y a 6 jours


    Paris, Île-de-France IOTA GROUP Temps plein

    Job Description Place of Performance:Initial Phase (Development):Based primarily in Paris or Dubai.Regular travel to the project site in Libya (approx. twice per month).Duration: 10 months until October 2026.Construction Phase (Post-FID):Services may be extended upon mutual agreement.Position will be primarily based in Libya, subject to project...


  • Paris, Île-de-France Capgemini Temps plein

    Job Description With over 6,000 cyber security consultants within the Capgemini Group, including more than 1,000 consultants in France, and leveraging over 30 years of proven expertise in cybersecurity (IT, Embedded, Industrial, and Telecom), Capgemini positions itself as an active player in the cyber security market. The Cybersecurity practice within...


  • Paris, Île-de-France AXIAN Telecom Temps plein

    Job Title: Group Physical Security ManagerLocation: Based in one of AT's OpCo or regional hubReporting To: Director – Resilience, Business Continuity & Crisis ManagementROLE SUMMARYThe Group Physical Security Manager is responsible for defining and overseeing AXIAN Group's physical security strategy and operations across all operating countries. The role...

  • Security Architect

    il y a 3 jours


    Paris, Île-de-France OneSource Consulting Temps plein

    Job Title:Data Security ArchitectLanguages:French (Mandatory)DescriptionSeniority:Experienced Data Security / DLP ArchitectMission:• Contribute to the definition, analysis, and implementation of theData Loss Prevention (DLP)model within the GO-CIO Technology Office.• Analyze data architectures with a focus ondata leakage risks.• Define and formalize...