Job offer
Senior Cybersecurity and Infrastructure Auditor
Société Générale is seeking an experienced IT security auditor (Bac+5, 5–7 years of experience) who specializes in the operational implementation of security measures in systems, networks, and cloud environments. The role involves conducting security audits, ensuring compliance with standards such as ISO 27001, and working closely with technical teams within the Systems and Network Services department.
Daily Missions
- As a Security Engineer and member of a technical team within the Systems & Networks Services (SSR) Division, you will be responsible for tasks related to the operational implementation of the security approach for the systems, networks, and services provided by the Systems & Networks Services Division.
- Help manage security architectures and security aspects of information systems (application and infrastructure systems).
- Operational implementation of network and system security for the Group and its consolidated entities.
- Define the security and compliance requirements for services and systems and verify them in the field.
- Collaborate with other teams (architects, network engineers, system administrators) to incorporate security requirements.
- Foster a culture of safety within the organization.
Qualifications & Experience
- Engineering degree or a 5-year degree in computer science, cybersecurity, or a related scientific field.
- 5 to 7 years of experience in cybersecurity, including at least 3 years in the banking or financial sector.
- In-depth expertise in security standards and frameworks (ISO 27001, NIST CSF, PCI-DSS, GDPR, etc.).
- Proficiency in cloud technologies (AWS, Azure, GCP) and virtualized environments.
- Skills in SIEM, SOAR, EDR/XDR, and IAM platforms, as well as scripting (Python, Bash, PowerShell).
- Ability to conduct security audits, impact assessments, and vulnerability analyses.
- Knowledge of current threats (ransomware, social engineering, supply chain attacks).
- Recognized certifications (CISSP, CISA, CISM, SANS, ISO 27001 Lead Auditor, etc.) are preferred.
- Fluency in written and spoken English (for international work and documentation).
Organizational Environment
- Level C auditor in Europe, within the Technical Unit of the DGSE.
- A group of 10 to 15 students.
- Sole supervisor: Senior Auditor.
- Regular interaction with the Group's major entities.
- Access to a wide range of testing tools.
- Liaise with technical teams, risk management, compliance, and business units.
- Appreciate the agile environment and collaborate with the various teams to improve the group's security.
- Excellent communication and reporting skills, including the ability to draft audit reports.
Compensation and Benefits
- Variable compensation based on profile.
- Mutuelle.
- Ticket.
- Company cafeteria.
- Reimbursement for public transportation.
Job details