The Security Technical Design Lead plays a critical role in bringing specialized expertise in Security architecture to GO Security teams (Product Security Office, Engineering Center). He or she ensure complex projects from AXA GO meet security standards, participating to the definition of compliance and security technical controls for products.
Throughout AXA Group, the security community represents composed of 1000 security professionals, working daily to protect our customers, operations, brand and people. Information Security, Physical Security and Operational Resilience.
Monitor the Security Threat Landscape
Drive local security objectives with C-Level executive (COO, CIO, CTO, CFO...) of AXA entities
Provide centralized security services and products to AXA entities
Corporate functions (Group Mandate) : Security Advisory and Standards, Security Governance, Security Risk & Assurance, Security Strategy and Awareness
CyberDefense (Group security services and products provider)
Corporate Chief Security Officers (Oversight of entities’ security) : Group Operation Security (GO Security) mandate, as part of AXA Group Security division, is to Secure AXA GO as an entity and secure GO Products delivered by AXA GO as a Service Provider to other entities of AXA.
Perform architecture security reviews for large and risky projects/products supporting GO Security teams, especially Product Security Office and GO Security Engineering Center team
Zero trust, network segregation, Public cloud (AWS & Azure), Containerization (Openshift), Identity and Access management services, API security, security services (A/V, EDR, SIEM...), Artificial Inteligence (AI) integration, Shadow cloud...
Evaluate the security design of the architecture and threat models, including network, application, and data security measures for complex projects and products;.
Define of new security controls for complex products in coordination with GO Security Engineering Center team and GO Cyber Defense teams; University degree in computer science, information security, systems architecture, or related field.
Strong experience in security architecture, including threat modeling, security kill chain or similar, infrastructure technologies, cloud
Familiarity with cloud technologies and services, as well as associated security tools.
Ability to define appropriate security controls for complex solutions and assess their effectiveness.
Fluency in English is a necessity (including Information Security English).
Fluency in French is an advantage.