As a member of the cybersecurity team, you will play a critical role in strengthening the security posture of this solution throughout its entire lifecycle-from definition to deployment. This role requires close collaboration with software development, DevOps, and Integration & Test (I&T) teams. Broad knowledge across software, hardware, and IT infrastructure security is highly beneficial. There may also be opportunities to participate in shipboard deployment of the solution.
Essential Functions:
- Evaluate and implement cybersecurity and IT technologies within the IPMS solution.
- Support cross-functional teams by simplifying complex cybersecurity concepts, providing guidance, and helping prioritize security efforts.
- Identify and remediate security vulnerabilities, prioritizing based on risk and impact.
- Develop automation tools, scripts, and code to enhance cybersecurity operations.
- Define software requirements to ensure alignment with cybersecurity best practices.
- Deploy cybersecurity solutions to improve the overall security posture of the system.
Qualifications:
- At least 10 years of experience in cybersecurity, either as an IT SysAdmin or in product development (on-premise solutions or embedded systems).
- Strong expertise in at least two of the following three domains:
- Linux and Windows System Administration - Extensive experience with the technologies and infrastructure outlined above.
- Endpoint Security Technologies - Ability to recommend best practices, support implementation, and perform analysis (e.g., SIEM).
- Secure Software Development - Familiarity with OWASP Top Ten, secure coding practices, penetration testing, threat modeling, and tools such as SAST, DAST, and SCA.
- Broad knowledge across various cybersecurity fields, with understanding in areas such as:
- Identity and Access Management
- Cryptography
- Vulnerability Management
- Software Configuration Management
- Virtualization and Containerization
- Virtual Networking
- Experience in automation and scripting (e.g., PowerShell, Bash, Python).
- Proven ability to assess and improve a product's security architecture and reduce its attack surface.
- Strong communication skills with the ability to explain technical concepts to development teams and guide security implementations.
- Strong analytical and decision-making capabilities.
- Fluent in English; French is a plus.
Preferred Additional Skills:
- Experience in DevOps and SecDevOps environments.
- Cybersecurity certifications (e.g., CISSP, CEH, OSCP).
- Familiarity with Atlassian tools.
- Experience working in Agile and Scrum teams.