Job Description:Job Title: Security Analyst with FrenchHybrid model:
2 days/week in the office (Bucharest)We are looking for a
Security Analyst with French to join our partner team!
Responsibilities:- Analyze and validate security exception requests (e.g., route openings, non-standard software installations)
- Support IT teams in implementing Group security standards for new and existing applications/infrastructure
- Monitor the security level of ASSU assets
- Follow up on audit results (applications, third parties, partners, suppliers, sites), integrate vulnerabilities from risk analyses, and track remediation action plans
- Provide security support for business projects through risk analysis (business issues, requirements, action plans, residual risks)
- Contribute to managing IT operational risks at Société Générale Assurances:
- Maintain and update the ASSU referential
- Develop and maintain dashboards to track initiatives progress
- Produce deliverables such as:
- Security files and documentation (classification, project safety needs, risk assessment)
- Risk analysis and acceptance forms
- Security and risk dashboards, reports, and management presentations
Must Have:- Advanced knowledge of risk analysis methodologies and key security
- concepts (classification, AICT assessment, intrinsic/residual risks,
- scenarios)
- Knowledge of standards (ISO 2700x, ITIL, COBIT) and security governance principles
- Familiarity with IT security best practices (authorization, data anonymization, incident management, authentication, backup, archiving, patch management, antivirus, network partitioning, NAC, Wi-Fi)
- Understanding of security tool administration (firewalls, proxies, SIEM, DLP, IDS, IPS, vulnerability scanners such as Qualys, IAM systems)
- French proficiency (minimum B2, written and spoken)
- English proficiency (written and spoken)
- Good command of Excel and PowerPoint
Nice to Have:- Knowledge or experience in security architecture
- Understanding of security monitoring and major threats (malware, cybercrime, APTs, attack vectors)
- Experience in IT security audits
- Security certifications (e.g., CISSP, ISO 27001, ISO 27005, NIST).
Required Skills:• French
• Security