This role is responsible for providing risk evaluation, threat modeling and deep technical expertise on projects and technology products. This role will work closely with the CISO and Stakeholders of Threat and Vulnerability Management to identify , evaluate and prioritize potential weakness in Société Générale infrastructure using both manual and automated methods. This role is highly technical requiring at least 5-7 years of experience in formation security engineering roles.
Decision Making and prioritizing skills.
Ability to present risks and propose countermeasures to senior technology executives
Action oriented , results driven
Expertise and experience in securing operating systems and network infrastructure
Understanding of encryption fundamentals
Understanding of risk modeling concepts and frameworks
Understanding of common exploitation techniques and mitigations
Strong understanding of the attacker kill chain
Strong documentation skills
Experience implementing, managing and supporting a vulnerability management platform is a strong plus (ex Qualys )
Vulnerability assessment process and tools experience a plus
“We are committed to creating a diverse environment and are proud to be an equal opportunity employer. All qualified applicants receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, or veteran status”.
At Société Générale, we are convinced that people are drivers of change, and that the world of
tomorrow will be shaped by all their initiatives, from the smallest to the most ambitious.
Whether you’re joining us for a period of months, years or your entire career, together we can have
a positive impact on the future. Creating, daring, innovating and taking action are part of our DNA.
If you too want to be directly involved, grow in a stimulating and caring environment, feel useful on a
daily basis and develop or strengthen your expertise, you will feel right at home with us!
You should know that our employees can dedicate several days per year to solidarity actions during
their working hours, including sponsoring people struggling with their orientation or professional
integration, participating in the financial education of young apprentices and sharing their skills with
charities. There are many ways to get involved.