Match score not available

Security Engineer

Remote: 
Full Remote
Work from: 

Offer summary

Qualifications:

5+ years as an Information Security Officer/Engineer, Undergraduate degree in Computer Science or related field, Relevant certifications like ISO27001, CISSP, CISM, or PCI DSS are desirable, Strong background in security incident management and risk assessments.

Key responsabilities:

  • Manage security incidents and conduct risk assessments
  • Implement and enforce security controls and policies
Worldline logo
Worldline Financial Services http://worldline.com
10001 Employees
See all jobs

Job description

Job Description

Security Engineer

At Worldline Transport & Mobility, we tackle the persistent challenges faced by both business-to-business and business-to-consumer sectors. Our innovative digital software-as-a-service products are designed to foster sustainable economic growth while reinforcing trust and security within our societies. If you are a highly skilled IT Security Engineer or looking to advance your career from a Solution, Cloud, or Full-Stack Engineering background, we invite you to join our team!

We pride ourselves on our dedicated and hardworking colleagues who are eager to collaborate with you. Our commitment to continuous improvement drives us to seek innovative solutions that enhance quality, reduce costs, and elevate customer satisfaction.

Position Overview

We are looking for a talented IT Security Engineer to join our dynamic team within the Transport & Mobility (T&M) CTO function. The successful candidate will be responsible for managing security incidents, conducting risk assessments, and ensuring the effective implementation of security controls and policies. This role demands a proactive approach to enhancing our Global Information Security Management System (ISMS) and supporting the Group Security strategy at the local level. The IT Security Engineer will also engage with stakeholders, oversee security approvals, and conduct audits to ensure compliance with ISO27001 standards.

This is a Fully remote role with adhoc site visits.

Key Responsibilities

  • Security Controls Implementation: Ensure the effective implementation and enforcement of security controls and policies in new services and modifications to existing services, maintaining compliance with organizational standards.
  • Local Security Strategy: Maintain and align the security standards and strategy at the local T&M level with the overarching group strategy.
  • Cloud and Infrastructure Assessment: Evaluate the security implications of the latest Common Vulnerabilities and Exposures (CVEs) and their potential impact on our solutions, particularly in Google Cloud, AWS, and existing on-premise infrastructure.
  • Risk Assessments: Support the global security teams performing security risk assessments and provide expert guidance to solution architects and development teams regarding the Global ISMS for both new and existing solutions
  • ISMS Improvement: Support the ongoing enhancement of the Global ISMS and assist in implementing the Group Security strategy within the local region.
  • Dashboard Production: Support the global teams in the creation and maintenance of security incident and risk dashboards to provide visibility into the organisation’s security posture.
  • Stakeholder Liaison: Collaborate with counterparts in customer and supplier organisations, fostering strong relationships to facilitate effective communication and collaboration.
  • Audits and Compliance: Support the global security teams in conducting external and internal information security audits to support ISO27001 certification, ensuring all processes and controls meet required standards.

Day-to-Day Activities

  • Proactive security risk mitigation tasks - implementing controls with the various T&M teams.
    • Ensure security best practices are integrated into new designs.
    • Advise product teams on assessments and mitigations related to CVEs.
    • Evaluate the business impact of technical choices in a security context.
    • Work with Worldline’s DevOps teams, guiding them in delivering projects and products using Agile and Waterfall methodologies, progressing towards a SecDevOps model.
  • Monitor security alerts and incidents, responding promptly to mitigate risks.
  • Engage with the Delivery teams with customers and suppliers to address security concerns and requirements.
  • Conduct regular security risk assessments and document findings.
  • Collaborate with a diverse range of professionals, including solution and cloud architects, developers, application support, project managers, and business specialists.
  • Review and update security policies and controls as necessary.
  • Prepare and present security reports and dashboards to management and stakeholders.
  • Collaborate with third-party suppliers and systems as part of security solution design.
  • Work with Worldline security and compliance teams to ensure systems meet security and data protection standards.
  • Stay informed about the latest security threats, vulnerabilities, and trends, particularly in cloud environments.
  • Drive the resolution of security issues as they arise.
  • Maintain up-to-date knowledge of company standards and policies, as well as a broader understanding of industry best practices to ensure our services and products are best-in-class.
    • Keep abreast of current and emerging technologies, proposing changes as needed.
    • Undertake training as required to develop and maintain your skills in line with Worldline's technical strategy.
  • Knowledge of other European (especially French) or international languages is advantageous, given our international business scope.
  • Travel to business and customer locations, both nationally and internationally, as required.
Qualifications And Skills We’d Like

  • Experience: 5+ years as an Information Security Officer/Engineer, with a strong background in security incident management and risk assessments, particularly in multi-cloud and on-premise solutions and security controls.
  • Education: An undergraduate degree in Computer Science, Information Security, or a related field. Relevant certifications such as ISO27001, CISSP, CISM, or PCI DSS are highly desirable.
  • Communication Skills: Strong ability to communicate information security concepts at a business level, demonstrating a structured and rigorous approach to problem-solving.

Team Culture

Within the CTO team, we foster an open, honest, and collaborative environment. We strive to create a high-trust and supportive culture, encouraging team members to support one another. Every team member contributes ideas and experiences to shape our services and strategy. We prioritize people over processes and technology, working together to guide our technology portfolio and maintain our services. Our creative environment values the input of each team member in developing solutions tailored to our product requirements.

More Reasons To Join Us

In addition to joining a global leader in digital transformation, you can also expect an excellent range of benefits. These include: a rewarding salary, generous annual leave, private medical insurance, an attractive pension scheme plus many more. We also operate a flexible benefits scheme, allowing you to purchase discounted products and services.

What’s more, we really value Innovation, Cooperation, Excellence and Empowerment. These values are reflected on our daily work. This is the core of our organization. At Worldline our top priority is to engage, encourage and develop you to help you improve your potential. In fact, we have comprehensive training and development programs in place demonstrating our dedication to developing your career.

Our success comes from strong skills, new insights, diverse points of view and the energy of all Worldliners. Not only do they represent the Heart and Face of our company, they are also key players in our success. We make leading our talents a major asset in the success of our business.

Worldline is proud to be an Equal Opportunity employer. We do not discriminate based upon race, religion, colour, national origin, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, age, status as an individual with a disability, or other applicable legally protected characteristics

Join us at Worldline and be part of a team that is dedicated to making a difference in the Transport & Mobility sector!

Required profile

Experience

Industry :
Financial Services
Spoken language(s):
English
Check out the description to know which languages are mandatory.

Other Skills

  • Collaboration
  • Communication
  • Problem Solving

Security Engineer Related jobs