Emplois
>
Lille

    DevSecOps Remediation Manager - Lille, France - Neotrust

    Neotrust
    Neotrust Lille, France

    il y a 2 semaines

    Default job background
    Description

    About the Job

    Neotrust is a security innovation company that helps Executives, CISO, CIO and CTO to successfully complete their security transformation and integrate cyber innovation into their long-term security strategy.

    A large customer with international footprint, is looking for a DevSecOps Remediation Manager.

    THE ROLE - JOB PURPOSE

    The DevSecOps Remediation Manager is responsible for managing and supporting business teams in remediating application vulnerabilities (AppSec) in a context where Cybersecurity is named as a mandatory component of the information system.

    As a consequence, the Customer Cybersecurity team composed of 30 people:

    • Maintains the international cybersecurity framework (the rules)
    • Delivers operational cybersecurity services (e.g. vulnerability scanner, EDR, SOC), mainly as a service center
    • Monitors and report global cybersecurity posture
    • Operates the cybersecurity of the international components technically under responsibility.

    YOUR PROFILE

    As a confirmed DevSecOps consultant (M/F), you will join the Cybersecurity department, a multidisciplinary, caring and human-sized team.

    Coming from a Bac+5 level training, you have at least 3 to 5 years of experience in a similar position, and you have a strong interest in DevOps/DevSecOps technologies and culture. Your previous experiences have allowed you to develop the following skills and knowledge:

    In-depth knowledge of DevSecOps principles and practices, and how they apply in a customer-facing context:

    • Knowledge of JavaScript, Java, Python, dotnet, Shell and Go languages, and of the following IDEs: VSCode, JetBrains, Android Studio, IntelliJ IDEA
    • Knowledge of "Infrastructures as Code (IaC)" technologies: Terraform
    • Application security (OWASP TOP 10, secrets management, MITRE , etc.)
    • Cloud (GCP, Azure, OCI) and DevOps culture (CI/CD, containerization, etc.)
    • Proficient in DevSecOps tools like Kubernetes, Dockerfile, Ansible, Helm, GitHub, etc., for continuous integration and delivery.
    • Previous experience & expertise with AppSec solution (preferably Checkmarx and Qualys) would be valuable.
    • Mastery of workstation operating systems, development and security tools.
    • Ability to work closely with development, operations and security teams.
    • Ability to analyze complex security issues and find effective solutions.
    • Understanding of different technological environments and platforms.
    • Ability to understand and anticipate customer needs and respond effectively.
    • Constantly stay informed of the latest trends and threats in new technologies and security to offer the best solutions to customers.

    Furthermore, you have good organizational and rigorous qualities. You have excellent interpersonal and listening skills which allow you to work in a team and independently. Curious, you are also proactive and fully involved in your projects. Your qualities of analysis, synthesis, your ability to act on problem solving, as well as confirmed technical mastery are your assets to take charge of this position. A good level of English is desired.

    Beyond your technical skills, you want to continue to progress, learn and demonstrate curiosity about new developments around cybersecurity and DevSecOps. You know how to rise to the occasion and challenge what exists. You like to share your knowledge and discoveries with your team.

    Your good interpersonal skills and sense of communication (both written and oral) allow you to build a relationship of trust with your colleagues and customers.

    YOUR MISSION

    The Remediation Manager will be in charge of at DevOps / AppSec level to:

    • Contribute to the design of the application architecture (cybersecurity expert)
    • Onboard and animate product teams on security tests
    • Support clients to integrate security from the start into their projects
    • Design and delivery of awareness/training sessions dedicated to cybersecurity topics
    • Train and raise awareness among development teams and end users about security best practices (Cyber by Design)
    • Identify, assess and remediate application vulnerabilities
    • Support for remediating vulnerabilities and helping with capitalization at the company level
    • Contribute to the continuous improvement of the DevSecOps offer and implementation of new DevSecOps activities
    • Support and collaborate with product teams to define good development practices, and Review User Stories, and to carry out the risk analysis of the product
    • Empower product teams to trigger security audits with available tools for the product team and associated procedures (SAST, DAST, SCA, repository scan, etc.), and Impacts evaluation of remediation action on the product
    • Track progress status on previous security action plan and priorities
    • Deployment, functional configuration, fine tuning of tools, automation, centralization of results
    • Definition of cybersecurity indicators (prerequisite: fine tuning)
    • Significantly lead to improvement of those indicators to demonstrate the value of the approach from a security perspective

    YOUR SKILLS

    You are recognized for your leadership, your sense of customer service, and your ability to unite and lead teams. You have excellent interpersonal skills and enjoy working in a complex organization with strong interdependence.

    You are curious, and constantly on the lookout for the latest developments in the world of databases. You are used to working in an international context and you speak English fluently

    As you probably understood in the previous "missions" paragraph, here are the main skills that are expected from the candidate:

    CYBERSECURITY SKILLS

    Automation

    • Formally describe infrastructure automation, and Able to generate KPI

    Collaboration

    • Able to formally describe tasks and definition of done, and able to estimate time and complexity of efforts Architecture and security
    • Understand application architecture, and know in depth security controls
    • Understand complementarity of each security test

    Security technology (secret management, secret scanning, SAST, DAST, SCA, IAC Security)

    • Able to give feedback on technology to cover needs
    • Share technological knowledge to promote self service approach
    • Optional: have been part of security deployment project

    SOFT SKILLS

    Leadership: Trust, Support collaboration and Communication

    Human skills: Open minded, Motivated, and Autonomous

    Transformation: Adapt and learn, and Embody innovation

    Languages

    • French speaking & writing
    • English speaking & writing

    Work experience:

    • You have at least 3 to 5 years of experience in operational information security management with efficiency and ability to make things change.

    Minimum education level:

    • You own a master degree in IT, or have significant experience in a similar job position ?

    You are a funny man/woman and want to work with a team of security professionals in a large French company with international journey ?

    Contact



  • LFB Arras, France

    POURQUOI FAIRE PARTIE DE L'AVENTURE LFB ?_ · - En rejoignant nos équipes, vous trouverez :_- une mission essentielle à la vie des patients, qui nous anime et donne du sens à nos métiers_- le développement et la fabrication de médicaments spécifiques qui demandent une expertise et ...


  • GSK Saint-Amand-les-Eaux, France

    **Site Name**: France - Saint-Amand-les-Eaux · **Posted Date**: Aug · Are you energized by an opportunity to work with the latest manufacturing technology in a highly technical production environment? If so, this Operational Excellence role could be an ideal opportunity to explo ...


  • LCL Lille, France

    Filiale du Groupe Crédit Agricole depuis 2003, LCL est une banque nationale avec plus de 1600 implantations, qui accompagne 6 millions de clients particuliers, professionnels ou privés. Elle est la banque d'une entreprise sur 3. LCL poursuit son ambition de devenir la banque assu ...

  • Source Technology

    DevSecOps Manager

    il y a 2 semaines


    Source Technology Lille, France

    DevSecOps Manager · 12 month contract · Hybrid · Rates DOE · The DevSecOps Manager is responsible for managing and supporting business teams in remediating application vulnerabilities (AppSec) in a context where Cybersecurity is named as a mandatory component of the informati ...

  • LFB

    Data Integrity Specialist

    il y a 2 semaines


    LFB Lille, France À temps plein

    QUELLES MISSIONS VOUS SERONT CONFIEES ? · Directement rattaché.e à la Direction Qualité du site industriel de Lille, vous êtes garant.e de la politique Data Integrity (DI) et de la bonne mise en œuvre de la réglementation associée sur le site. Vous êtes responsable du suivi du ...


  • Anywr Lille, France

    Chez Anywr, « talent is borderless ». · Nous sommes des du recrutement et de la mobilité internationale qui, depuis 10 ans, accompagnent des Talents dans leur nouvelle aventure professionnelle. · C'est un groupe animé par la curiosité de ses métier capables de répondre aux be ...


  • Laboratoires Anios Lille, France

    Ecolab Healthcare is looking for a Regulatory Affairs Manager to join the Healthcare RA Leadership Team for Europe. · The Manager leads a Regulatory Affairs team dedicated to the preparation, maintenance of technical files as well as of innovations and is a key member of the EU ...


  • Keolis Lille, France CDI

    Chargé de mission planification et production transport F/H · Exploitation · Inspirer et mettre en mouvement une mobilité responsable. · KISIO Services et Consulting offre aux collectivités, aux opérateurs de transports et aux entreprises une approche experte, multidisciplinai ...


  • Allistic Lille, France CDI

    Consultant Cybersécurité Gouvernance confirmé - CDI - F/H · Partager :Publié par Allistic | 31/08/ mois CDI Selon profil 3-5 ans Hybride Allistic est un pure player de la cybersécurité pour les entreprises et collectivités : nous sommes spécialisés dans la sécurité des données ...

  • Ecolab

    Healthcare Regulatory Manager

    il y a 2 semaines


    Ecolab Lille, France À temps plein

    JOB DESCRIPTION Ecolab Healthcare is looking for a Regulatory Affairs Manager to join the Healthcare RA Leadership Team for Europe. · The Manager leads a Regulatory Affairs team dedicated to the preparation, maintenance of technical files as well as of innovations and is a key ...

  • Allistic

    Ingénieur Cloud et Sécurité

    il y a 2 semaines


    Allistic Lille, France CDI

    Ingénieur Cloud et Sécurité - CDI - F/H · Partager :Publié par Allistic | 31/08/ mois CDI Selon profil 3-5 ans Hybride Allistic est un pure player de la cybersécurité pour les entreprises et collectivités : nous sommes spécialisés dans la sécurité des données et des systèmes d' ...

  • Groupe iliad

    Site Reliability Engineer

    il y a 2 semaines


    Groupe iliad Lille, France CDI

    Le poste · Fondée en 1999, Scaleway est la filiale cloud du groupe Iliad, l'un des leaders des télécommunications en Europe. Notre mission est de favoriser une industrie numérique plus responsable en aidant les développeurs et les entreprises à créer, déployer et adapter des app ...


  • Turner & Townsend Lille, France À temps plein

    Company Description · Turner & Townsend have been at the forefront of hi-tech Industrial developments in Europe, delivering multi-billion Euros of construction each year globally. We have had tremendous success and are market leaders in the battery sector. · With our global foot ...


  • Ansys Lille, France

    Requisition #: 14265 · Our Mission: Powering Innovation That Drives Human Advancement · When visionary companies need to know how their world-changing ideas will perform, they close the gap between design and reality with Ansys simulation. For more than 50 years, Ansys softwa ...

  • Coriom Conseil

    Expert cybersécurité

    il y a 2 semaines


    Coriom Conseil Nord, France Freelance

    identify, assess and remediate application vulnerabilities · Contribute to the continuous improvement of the DevSecOps offer and implementation of new DevSecOps activities · Deployment, functional configuration, fine tuning of tools, automation, centralization of results · Compét ...


  • Axepta SA Lille, France

    My client is a global healthcare company continuously growing with offices all around the world. · Due to continuous growth, my client is looking for EU Regulatory Affairs Manager to lead a Regulatory Affairs team dedicated to the preparation, maintenance of technical files as we ...

  • Pharmadiem

    QA Opérationnel H/F

    il y a 2 semaines


    Pharmadiem Loos, France CDI

    Présentation de l'entreprise · La société Pharmadiem, spécialisée en management et ingénierie des grands projets, recrute des QA OPERATIONNELS H/F pour le compte d'un de ses clients en France. · Description du poste · Vous avez pour mission : · De réaliser des analyses sur les ...


  • Ansys Lomme, France

    Requisition #: 14265 · Our Mission: Powering Innovation That Drives Human Advancement · When visionary companies need to know how their world-changing ideas will perform, they close the gap between design and reality with Ansys simulation. For more than 50 years, Ansys softwar ...

  • Crédit Mutuel

    Responsable d'équipe pupitre

    il y a 2 semaines


    Crédit Mutuel Verlinghem, France CDI

    Qui sommes-nous ? · Euro-Information, filiale technologique de Crédit Mutuel Alliance Fédérale, conçoit, réalise, maintient et exploite un système d'information commun utilisé par le Groupe. · Les activités de développement et de production informatique au niveau national et int ...

  • Crédit Mutuel

    Analyste Sécurité SOC

    il y a 2 semaines


    Crédit Mutuel Verlinghem, France

    Qui sommes-nous ? · Euro-Information, filiale technologique de Crédit Mutuel Alliance Fédérale, conçoit, réalise, maintient et exploite un système d'information commun utilisé par le Groupe. · Les activités de développement et de production informatique au niveau national et int ...