1 / Context : Cyber Defense is driving a project to establish and monitor a security single source of truth. The goal is to define one single source of truth of assets to protect and remediate what matters the most.
Align the needs of security around asset management with IT programs to contribute to reduce our attack surface.
Manage our vulnerabilities centrally in a global platform.
2 / Service :
The service will be accountable for the success of the program.
The service will apply project management expertise and drive the program following the standard best practices and also AXA GO methodology.
The Service will be required to ensure the program is On Time, On Budget, On Scope.
The Service will be required to manage stakeholders.
The Service will be required to apply the AXA GO Cyber Defense governance and methodology.
The Service will present the solution to entities.
The Service will be required to deploy and implement the service to the entities in scope.
The Service will be required to organize and transfer the service to the BAU team.
Control the attack surface: Process to decommission unneeded assets or mitigate non-remediable ones implemented; Inventories of assets and 3rd parties maintained and monitored including security requirements.
Vulnerability management: Officialise the product as Class1; Start the rollout of the solution to entities and incrementing data sources including new class 1 tools.
Security risks view : Run a PoC on the tool selected, define an inclusive approach to link risks with assets / 3rd parties and vulnerabilities, define an implementation roadmap, implement the global remediation process.
Detailed plans with Group Security.
Configuration and entities communication.
The Service will deliver Sign off from the BAU.
The Service will deliver Project plan, communication plan, Planning Steering committees / Project committees packs and minutes.
The Service will ensure to store and update on mandatory documents requested by AXA GO Internal controls including: Term Of Reference, meeting packs, minutes, Risk logs, Change management logs, Action logs, Financial actuals / forecast, KPI, Deliverables list & status.
If you applied for this position, the Controller of your personal data will be ALTER SOLUTIONS France with its registered office at 6 avenue du Gnral de Gaulle 78000 Versailles. The personal data provided by you will be processed for the purpose of the recruitment process and for future recruitment processes.
You have the right to access the content of your data, request their rectification, erasure, restriction of processing, the right to data portability, the right to object to the processing of your data, and the right to lodge a complaint to the DPO.
Remote Work: Key Skills