Red Team Analyst

AXA Group

Paris

Sur place

EUR 65 000 - 95 000

Plein temps

14 jours+

Recevez plus de réponses des employeurs

Envoyez un CV adapté au poste en quelques minutes.

Résumé du poste

AXA Group Operations in France is building a new Group Information Security Practice to ensure a coordinated response to cyber threats, enable risk decisions, and embed sustainable security capabilities across AXA entities.

You will join the Group Security division, perform red team operations, adversary emulation, and penetration testing, and collaborate with blue teams and SOCs to improve detection and response.

Qualifications

  • Experience in assurance testing/red team/penetration testing activities > 3 years
  • Experience with project management & coordination < 3 years
  • Experience with Information Security controls and vulnerability databases > 3 years
  • Experience in network/firewall engineering, administration, design & implementation including information security practices < 3 years

Responsabilités

  • Plan, coordinate, and execute red team operations to simulate cyber threats
  • Mimic attacker TTPs to identify weaknesses in defenses
  • Conduct comprehensive penetration tests of networks, applications and physical security
  • Identify vulnerabilities and provide actionable remediation guidance
  • Develop and customize tools to support red team operations
  • Document findings and provide priorities for remediation to stakeholders
  • Collaborate with blue teams, incident responders and SOCs; mentor juniors
  • Stay updated with cybersecurity threats and defensive strategies

Connaissances

Red team operations
Penetration testing
Adversary emulation
Vulnerability research
Tool development
Reporting
Collaboration
Fluent in English

Description du poste

About AXA

As a world-leading insurance company, we act for human progress by protecting what matters. With 153,000 employees in 54 countries working for 105 million customers, we’ve created a truly dynamic and vibrant community. Inclusion and diversity link closely with our values, and together we’re nurturing a culture of respect, for each other, for our customers and the communities around us. Join AXA and you’ll feel like you belong, are included and can thrive. You’ll be able to shape the way you work and truly grow your potential as you seek out new opportunities, push boundaries and benefit people in critical moments of their lives. This is your chance to build the tomorrow you want. Know you can.

About the entity

AXA is becoming a sustainable tech-led company and at AXA Group Operations we are one of the major catalysts for this transformation.

We set the tone by triggering and empowering the evolution of our insurance business model through technology and innovation, driving its concrete implementation globally at speed, with a high quality of advisory and execution.

We are present across 17 countries with committed, highly qualified teams. We leverage technology, data, sourcing, security and investment allocation in a global way, but also achieve economies of scale and synergies when necessary.

At AXA Group Operations, we want to be recognized in three fields of action:

  • State-of-the-art Data Technology to drive customer experience
  • State-of-the-art Procurement & Sourcing to drive efficiency and better manage risks
  • High-Performing Global Team for stronger partnerships with AXA entities
Job position pitch

To support our business strategy and digital transformation, AXA is building a new Group Information Security Practice to ensure a coordinated response to the increasing cyber security threat, enable risk decisions to be made consistently across the organization and establish sustainable security capabilities that are integrated with the business. Our vision for Information Security is to ‘protect our stakeholders by securing our information assets, managing our cyber risk and enabling business strategies in an efficient and effective way, fully supported by executive leadership and underpinned by all AXA employees’

Where will you be in the organization?
The division

You will join the Group Security division, defining the security standards to be applied by AXA entities, overseeing the overall security posture across the Group and providing centralized services to support entities (Crisis Management, Security Operations Centre, etc.).

Throughout AXA Group, the security community represents composed of 1000 security professionals, working daily to protect our customers, operations, brand and people. To achieve this, we have gathered our three security disciplines: Information Security, Physical Security and Operational Resilience.

Our main missions:

  • Monitor the Security Threat Landscape
  • Define and oversee Security Standards and Strategy implementation across the Group
  • Drive local security objectives with C-Level executive (COO, CIO, CTO, CFO…) of AXA entities
  • Ensure the security of Group Operations as an entity
  • Provide centralized security services and products to AXA entities

AXA Group Security is divided in 4 main blocks :

  • Corporate functions (Group Mandate) : Security Advisory and Standards, Security Governance, Security Risk & Assurance, Security Strategy and Awareness
  • CyberDefense (Group security services and products provider)
  • Group Operations Security (Security of the hosting entity)
  • Corporate Chief Security Officers (Oversight of entities’ security) : Corporate Centre, European Markets, International Markets
About the job
Main missions
  • Red Team Operations: Plan, coordinate, and execute red team operations to simulate advanced cyber threats targeting our organization’s assets, infrastructure, and personnel.
  • Adversary Emulation: Mimic the tactics, techniques, and procedures (TTPs) of sophisticated threat actors to identify weaknesses in our security defenses and response capabilities.
  • Penetration Testing: Conduct comprehensive penetration tests to assess the effectiveness of security controls, including network, application, and physical security measures.
  • Vulnerability Research: Identify and exploit vulnerabilities in systems, applications, and devices to demonstrate potential attack vectors and provide actionable recommendations for mitigation.
  • Tool Development: Develop and customize tools, scripts, and exploits to support red team operations and enhance the efficiency and effectiveness of simulated attacks.
  • Reporting and Documentation: Document findings, including identified vulnerabilities, successful attack paths, and recommendations for remediation, in clear and concise reports for stakeholders, provide guidance and priorities for correcting and remediating activities
  • Collaboration and Training: Collaborate with cross-functional teams, including blue teams, incident responders, and security operations centers (SOCs), to improve detection and response capabilities. Provide training and mentorship to junior team members.
  • Continuous Learning: Stay up-to-date with the latest cybersecurity threats, attack techniques, and defensive strategies. Participate in training, conferences, and research activities to enhance skills and knowledge.Test and assess effectiveness of information security controls across the organization

Test and assess effectiveness of information security controls across the organization

Expected skills & experience

We are looking for someone with the following experience and skills:

Experience
Overall work experience in the field
  • Experience in assurance testing/red team/penetration testing activities > 3 years
  • Experience with project management and coordination < 3 years
  • Experience of working with specific Information Security Controls and Vulnerability Databases > 3 years
  • Experience in network and/or firewall engineering, administration, design and implementation including experience in applying methodologies and principles for all levels of Information Security< 3 years
  • Experience with technologies, tools and process controls to minimize risk and data exposure < 3 years
Skills / abilities
  • Ability to function effectively in a matrix structure
  • Good facilitation, negotiation and conflict resolution skills
  • Good networking skills
  • Team player
  • Apply analytical rigor to understand complex business scenarios
  • Fluent in English
  • Ability to organize
What we offer

We bring together the expertise, cultural diversity and creativity of over 8,000 employees worldwide and we’re committed to equal opportunities in all aspects of employment (gender, LGBT+, disabled persons, or people of different origins) and to promoting Diversity & Inclusion by creating a work environment where all employees are treated with dignity and respect, and where individual differences are valued.

Obtenez votre examen gratuit et confidentiel de votre CV.
ou faites glisser et déposez votre fichier ici.
Similar jobs

Postes similaires à comparer

Security Risk Assessment Analyst
Security Risk Assessment Analyst

AXA Group • Paris

Sur place
EUR 90 000 - 120 000
Security Risk Assessment Analyst
Security Risk Assessment Analyst

AXA Group Operations • Paris

Sur place
EUR 50 000 - 70 000
Equal opportunities and promotion of Diversity & Inclusion
Dynamic work environment with a global team
Opportunities for professional growth
Physical Security & Safety Expert
Physical Security & Safety Expert

AXA Group • Paris

Sur place
EUR 90 000 - 120 000
WAAP Security Expert
WAAP Security Expert

AXA Group Operations • Paris

Sur place
EUR 70 000 - 90 000
Equal opportunity workplace
Diversity and Inclusion programs
Security Risk Assessment Expert
Security Risk Assessment Expert

AXA Group • Paris

Sur place
EUR 90 000 - 130 000
Security Risk Assessment Expert
Security Risk Assessment Expert

AXA Group Operations • Paris

Sur place
EUR 60 000 - 80 000
Security Risk Assessment Expert
Security Risk Assessment Expert

AXA Group Operations • Paris

Sur place
EUR 70 000 - 90 000
Diversity and Inclusion initiatives
Professional development opportunities
Security Strategy Lead
Security Strategy Lead

AXA Group Operations • Paris

Sur place
EUR 70 000 - 100 000
Opportunités de développement professionnel
Environnement de travail inclusif
E-mail Security Expert
E-mail Security Expert

AXA Group Operations • Paris

Sur place
EUR 50 000 - 75 000
Diversity & Inclusion initiatives
Equal opportunities in employment
Collaborative work environment
Modern Device Transversal Lead Expert
Modern Device Transversal Lead Expert

AXA Group • Paris

Sur place
EUR 90 000 - 135 000