This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
The objective of Egis' cybersecurity team is to control cybersecurity risks and threats to transport infrastructure. Our value proposition is based on 4 principles: Optimize cybersecurity strategy, policies, and procedures; Evaluate cybersecurity measures against regulations, standards, and best practices; Implement cybersecurity countermeasures to reduce cyber risk; Maximize cyber resilience and ensure business continuity.
Job Responsibility:
Involvement in existing cybersecurity projects with the incumbents on a projects throughout the Egis C&O business line: Development of cybersecurity and information security requirements in line with standards and regulatory drivers
Mapping between existing business practices and cyber evaluation frameworks such as UK NCSC CAF, NIST CSF, Eurocontrol Cyber Maturity Model, etc.
Design and roadmap development for the implementation of security practices and processes through a range of existing organisations
Design & Establishment of risk registers, risk assessments, Information Security Management Systems and Risk Management frameworks
Ad hoc support for the production of cybersecurity technical studies (detailed analysis of data and systems, identification of risks, collection of additional data, interpretation of data and formulation of recommendations for improvement, validation of cybersecurity documents and processes)
Occasional support for the drafting and/or costing of certain cybersecurity offers
Requirements:
Cybersecurity Academic qualifications, or hands on practical experience in cybersecurity, information security and/or information governance & risk management
Knowledge and understanding of cybersecurity standards and standards such as: European NIS2 directive, NIST CSF, IEC 62443, ISO 27xxx, GDPR awareness is necessary
Masters or degree in relevant subject area, Engineering, Cybersecuriity, Business Risk Management etc.
Organisational and prioritisation skills
Strong research and analytic skills
Excellent written and verbal communication skills
Computer literate with advanced skills in Microsoft Office suite (Word, PowerPoint, Excel)
Experience with professional services business environments preferred
Nice to have:
Knowledge of the OT and safety critical/highly regulated industries is an asset
Any cybersecurity certifications and professional qualifications are beneficial