Job Description
In this role, you will analyze security challenges across the company client's Cloud and Core IT environments, defining clear security requirements for IT initiatives, especially their cutting-edge digital, data, and AI platforms. Collaborating closely with engineering, operations, and governance teams, you will champion a "security by design" approach to ensure a threat-resistant, scalable, and fully compliant global digital ecosystem.
Key Responsibilities
- Security Architecture & Design: Define technical and functional security prerequisites for cloud projects, focusing on digital identities, cloud integration, and data platforms using Zero Trust principles.
- Microsoft Ecosystem Hardening: Secure Azure Entra ID, on-premise Active Directory, Microsoft 365 (Exchange, SharePoint, OneDrive, Teams), and Endpoint Management (Intune) across Windows, macOS, iOS, and Android.
- Governance & Risk Assessment: Assess security risks for business projects prior to go-live, and contribute to drafting and rolling out global security policies, Data Loss Prevention (DLP) rules, and compliance profiles.
- Project Management: Manage cloud security projects from requirement formalization and solution testing to implementation, while supporting internal business owners and global business units.
- Stakeholder Collaboration: Act as a bridge across the IS&T organization, translating business requirements into secure architectures and managing relationships with stakeholders at all organizational levels.
Requirements
- Education: BS in Computer Science or Information Security (Master's degree preferred).
- Experience: 3 to 6+ years in Information Security (consulting, audit, or architecture) with at least 2 years of hands-on experience in public cloud environments (Azure heavily preferred).
- Technical Knowledge: Strong foundation in network, system, database, and application security, alongside familiarity with risk assessment methodologies (e.g., ISO27005, EBIOS).
- Certifications: Cloud certifications (e.g., MS AZ-500, AZ-30x, SANS SEC545) or Information Security credentials (CISSP, CISM, or ISO 27001) are a significant plus.
- Languages: Fluency in both English and French (written and spoken) is required, backed by excellent writing and communication skills.