Digital Risk Analyst - Infra Cloud (f/m/d)

CDI
Paris
Salaire : Non spécifié
Télétravail fréquent
Postuler

Decathlon Digital
Decathlon Digital

Cette offre vous tente ?

Postuler
jobs.faq.title

Le poste

Descriptif du poste

Our Cloud Platform Engineering (CPE) team is looking for a new Digital Risk Analyst, based in Paris or Lille.

The CPE is a cross-functional team spanning all Decathlon domains and countries. It consists of teams focused on Developer Experience, providing technical solutions to accelerate development and ensure the stability and scalability of our applications, Networks, Observability, and FinOps. The main objectives are to streamline the catalog of technical products referenced within the group and provide turnkey services for application teams, allowing them to focus on developing value-added features. Currently, the CPE is a domain of nearly 200 people who continue to strengthen and work hand in hand with teams from each domain.

Your Future Contribution

Your scope will cover the following domains in terms of Cloud security:

  • Networks:
    • Internal IT (LAN/WLAN/NAC, SDWAN/Backbones, DNS)
    • Application Publication (Cloud Proxy, WAF, filtering, DNS, Certificates)
    • Remote Access/Privileged Access (PAM, VPN)
  • Infrastructure: Compute (Virtual Machines, Kubernetes Clusters), Storage, Databases, PaaS Services, Secret Management, Monitoring, APIs
  • Cloud IAM: Cloud services portal, cloud account factories, user and workload identity management, FinOps tools.

In collaboration with the CPE domain Security Officer, the United Security team, and the CPE teams responsible for various scopes, you will:

  • Define the risk analysis strategy for our infrastructure components
  • Support CPE Security Engineers in conducting risk analyses based on Ebios RM (defining the approach, including deliverables and necessary workshops, risk analysis templates, remediation plans)
  • Propose a solution for defining a risk heat map for the CPE Domain based on risk analyses, audits, and penetration tests
  • Define the DRP strategy for our infrastructure components (outline steps for a global DRP, implementation roadmap, DRP and DRP test templates)
  • Support CPE Security Engineers in conducting risk analyses
  • Lead the quarterly planning of the domain to identify all remediation actions for each team
  • Develop and conduct a crisis management exercise for the CPE domain
  • Lead the definition and communication of security policies at Decathlon
  • Propose and manage a security incident management process
  • Oversee security action follow-ups
  • Promote security awareness, risk, and compliance within your scope, and foster best practices within the security collective of your BU

What You Bring

  • Knowledge of AWS and GCP Cloud Providers
  • Expertise in defining security governance, risk management (Ebios RM), and resilience management
  • Ability to manage projects autonomously while escalating blocking points
  • Ability to challenge habits and propose innovative technical solutions
  • Fluency in English and French to operate in an international environment
  • Ability to mobilize teams towards common goals and work collaboratively
  • Autonomy, rigor, and organizational skills
  • Proactive approach
  • Client-oriented and risk-based approach
  • Capability to work with technical experts, developers, suppliers, and end-users
  • Ability to define, implement, and monitor risk management practices via KPIs and KRIs
  • Familiarity with key cybersecurity and audit frameworks and standards (ISO 27001/27002, NIST, etc.)
  • At least 3 years of experience in Cybersecurity with a successful initial experience in digital risk management

It's a Plus If:

  • You have worked in a 100% cloud environment
  • You are certified in ISO 27005 and/or EBIOS RM

What We Offer

  • 2 days of remote work per week
  • Option to work in one of Decathlon Digital's offices in Lille, Paris, or Amsterdam
  • Equipment provided in line with your missions and our societal commitments (Mac, Windows, or Chromebooks)
  • A local project team within a global network (international career opportunities)
  • Skill development and support (diversity of projects, technical certifications in the first year, internal and external training, etc.)
  • Compensation package (employee participation in company shares, monthly/quarterly bonuses)

DECATHLON DIGITAL

Imagine if technology could push boundaries and offer unprecedented sports experiences. That's precisely our ambition at Decathlon Digital! We are a team of over 5,000 experts in software engineering, product management, data, cloud, and cybersecurity, based in Paris, Lille, and Amsterdam. Together, we create the largest digital sports platform, leveraging technological innovations to optimize the value chain, design connected experiences, and give our products a second life.

Let's make a difference for good. Our passion for sports guides us, and we want it to last. That's why we are committed to building a more sustainable technological model, reducing our direct environmental impact, and creating a safe and inclusive space to learn and thrive together. Join the team and shape the future of sport.

DECATHLON DIGITAL CONTEXT

What if technology allowed us to push the boundaries and take sports experiences to new levels? That's exactly our goal at Decathlon Digital! We are a team of 5,000+ experts in software engineering, product management, data, cloud, and cybersecurity, distributed across Paris, Lille, and Amsterdam. Together, we are creating the largest digital sports platform, leveraging tech innovation from design to value chain optimization, connected experiences and product second life.

Changing the game for good. We are in this for the love of sports. And like everything we love, we want it to last. That’s why we are embarking on a journey to create a more sustainable tech model, reducing our direct environmental impact while maintaining a safe, diverse, and inclusive space for all our people to learn and thrive together. Team up with us to design the digital future of sports.

Envie d’en savoir plus ?

D’autres offres vous correspondent !

Ces entreprises recrutent aussi au poste de “Financial Planning and Analysis”.

Voir toutes les offres
Postuler