Security Architect Specialist
il y a 5 jours
Strasbourg
Our client is a prestigious European Agency, located in Strasbourg. They are responsible for running the EU’s core security, migration, and border‑management databases and for building the next generation of interoperable systems. Our client is now looking for a Security Architect Specialist to join their organisation and support their mission. Contract type: Freelancer agreement, or employment contract through a partner company located in Strasbourg. With an initial contract duration of 100 days, with the possibility for renewal based on performance. Workplace type: On-site from the office of the institution in Strasbourg Key Responsibilities: • Support the Agency's Security Officers in developing and maintaining the security architecture of the agency in collaboration with the Enterprise Architect;, • Create and manage security standards, design patterns and reference architectures;, • Analyse and define Solution security requirements for networks, corporate applications / systems, end user computing, mobile devices and applications and data centre technologies and solutions;, • Develop and maintain the organizational security technology framework;, • Ensure that IT Security controls implementations meet the requirements of all regulatory requirements or contractual requirements;, • Work with the Security Officer and IT teams to ensure that implemented security technologies are integrated and fully utilized as intended in the protection of agency information systems;, • Monitor and analyse trends in IT Security;, • Develop strategic and detailed technical roadmaps of the enterprise security environments and the associated technologies required to deliver these solutions on a global basis;, • Develop the business, information and technical artifacts that constitute the enterprise information security architecture and solutions; • Research, evaluate, design, test, recommend and plan the implementation of new or updated information security technologies. Education Requirements • Minimum 4 years of relevant education (master degree or equivalent), after the secondary school. Qualifications, Knowledge and Skills • Minimum 6 years of relevant professional experience in IT security, of which:, • Minimum 4 years of professional experience in security architecture., • Advanced knowledge of core domains of IT Infrastructure, such as Data Networks, Server and Desktop hardware and Operating Systems, Messaging, Collaboration, Storage and Backups, and related monitoring and management systems;, • Security-specific architecture methodology, e.g. SABSA;, • Security architecture models, security strategy development, and compliance management;, • Mobile Architecture, Network and Application Security and/or Data protection; Page 1 of 2 Service Description, • Secure development processes;, • Application Security Vulnerabilities such as OWASP Top 10, CWE/SANS Top 25 and remediation approaches;, • Cybersecurity control good practice such as the SANS Top 20 Critical Controls;, • IT audit/assessment frameworks: ISO-standards; NIST, CobiT and industry standard application development methodologies;, • Enterprise authentication authorization and identity management schemes (Active Directory, LDAP, etc.);, • Technical security controls such as firewalls, IDS/IPS, vulnerability management, web application firewalls, security gateways, WiFi, mobile security, DLP, public key infrastructure, encryption and authentication techniques,, • Relational databases, middleware applications, collaboration and document management solutions; • Cloud native security technologies;, • XML, Web Services and SOAP protocols, both in client and server, as well as dynamic languages such as Objective-C, VBScript, JavaScript;, • Network and web related security protocols (TCP/IP, UDP, IPSEC, HTTP, HTTPS, SMTP, SNMP, ICAP, etc.)., • Certified Information Systems Security Professional with Information Systems Security Architecture Professional concentration (CISSP-ISSAP);, • Certified Information Security Manager (CISM);, • Certified Information Systems Auditor (CISA);, • TOGAF certification; Eligibility and willingness to undergo a Security Clearence at EU-LEVEL SECRET is required for this role