InFreelancing

Offre D'Emploi Consultant Cybersécurité - Min 5 Ans D'Expérience Anglais Courant

ENTREPRISE

MISSION

xxx is launching a program to become compliant with the DORA (Digital Operational Resilience Act) regulation.
DORA introduces a five-pillar framework of ICT Risk Management, Incident Reporting, Operational Resilience Testing, Third-Party Risk Management (TPRM) and information-sharing, ensuring a consistent provision of services across the entire digital value chain.
In order to respond to these requirements, we require temporary external support, We are seeking an experienced Cybersecurity consultant with expertise in DORA compliance to support Axepta in meeting regulatory requirements.
This role involves assessing, advising, and implementing cybersecurity and operational resilience strategies to ensure compliance with DORA and related regulations.
The resource will be working together with the IT team of xxx and will be reporting to the Head of IT., * DORA Compliance Advisory: Provide expert guidance on aligning cybersecurity frameworks, IT risk management, and operational resilience strategies with DORA requirements.
* Gap Analysis & Risk Assessment: Conduct assessments to identify gaps in existing cybersecurity and ICT risk management practices.
* Policy & Framework Development: Assist in developing ICT risk management, incident reporting, third-party risk management, and business continuity frameworks.
* Incident Response & Crisis Management: Support in establishing incident reporting mechanisms aligned with DORA mandates.
* Testing & Simulation: Work together with third-party suppliers to ensure penetration testing, vulnerability assessments, and operational resilience testing to meet regulatory standards.
* Regulatory Reporting & Documentation: Prepare compliance reports and ensure proper documentation for audits and regulatory scrutiny.

PROFIL RECHERCHÉ

* Proven technical and hands-on experience in cybersecurity, vulnerability assessment, monitoring tools, logging tools, access management tools.
* Strong knowledge of cloud security, third-party risk management, and penetration testing methodologies.
* IT risk management, or operational resilience within financial services.
* Strong knowledge of DORA (Digital Operational Resilience Act) and other relevant regulations such as NIS2, GDPR, EBA/ECB ICT risk guidelines, and ISO 27001/27005.
* Experience with cyber risk assessments, business continuity planning (BCP), disaster recovery (DR), and incident response.
* Familiarity with cybersecurity frameworks (NIST, CIS, ISO 27001, MITRE ATT&CK).
* Ability to engage with regulators, auditors, and senior stakeholders to explain compliance strategies.

Preferable :
* Knowledge and experience with Azure infrastructure tenant solution and setup is a plus.
* Experience with usage of ServiceNow is a plus.
* Experience working with European financial regulators or internal audit teams on DORA-related projects.

Business experience :
* Proven experience in developing and writing clear information security processes and (work) procedures (customizing from xxx policies and procedures for Axepta).
* Experience in working together with third-party suppliers.
* Good communication skills - both written and orally, and adapted to the audience.
* Good presentation skills to bring the messages across in a simple and understandable manner (PPT, oral, ...)

Soft skills :
* Team player
* Ability to work in a dynamic and multi-cultural environment
* Quick self-starter, pro-active attitude
* Good analytical and synthesis skills
* Quality Minded and eye for detail
* Goal oriented, reactive, able to face projects pressure and work with deadlines
* Autonomy, commitment and perseverance

DÉTAIL DE L’OFFRE

SECTEUR D'ACTIVITÉ Conseil en systèmes et logiciels informatiques
LIEU Paris
DURÉE Plein temps (> 32 heures)
DATE DE DÉBUT 29 March 2025
MODE DE TRAVAIL Freelance
Enregistrer

MISSIONS SIMILAIRES

Offre D'Emploi Chef De Projet - Centre D'Appel

Envie de piloter des projets où vous êtes écouté.e, responsabilisé.e, et entouré.e d'experts motivés ?, Un client en pleine refonte de son environnement centre d'appel (basé sur AVAYA), avec un gros e...
Rhône-Alpes Lyon Temps partiel (≤ 32 heures)

Formateur Sur Les Appels D'Offres

* Formateur ayant un statut lui permettant de facturer ses prestations. * Formateurs expérimentés ayant un minimum de 5 ans d'expériences dans la formation et la réponse à des appels d'offres, de...
Île-de-France Champs-sur-Marne Plein temps (> 32 heures)

Offre D'Emploi Data Engineer

The Senior Data Engineer, with the help of the other members of the team, will work on the integration of data. Based on the requirements, he will transpose the business needs to solid and integrated ...
Île-de-France Paris Plein temps (> 32 heures)
Retour à la page nos dernières missions