Vulnerability Management Product Owner
AXA
il y a 7 heures
Date de publicationil y a 7 heures
S/O
Niveau d'expérienceS/O
Temps pleinType de contrat
Temps pleinGestion de projet / produitCatégorie d'emploi
Gestion de projet / produitAbout AXA
As a world-leading insurance company, we act for human progress by protecting what matters. With 153,000 employees in 54 countries working for 105 million customers, we've created a truly dynamic and vibrant community. Inclusion and diversity link closely with our values, and together we're nurturing a culture of respect, for each other, for our customers and the communities around us. Join AXA and you'll feel like you belong, are included and can thrive. You'll be able to shape the way you work and truly grow your potential as you seek out new opportunities, push boundaries and benefit people in critical moments of their lives. This is your chance to build the tomorrow you want. Know you can.
About the entity
AXA is becoming a sustainable tech-led company and at AXA Group Operations we are one of the major catalysts for this transformation.
We set the tone by triggering and empowering the evolution of our insurance business model through technology and innovation, driving its concrete implementation globally at speed, with a high quality of advisory and execution.
We are present across 17 countries with committed, highly qualified teams. We leverage technology, data, sourcing, security and investment allocation in a global way, but also achieve economies of scale and synergies when necessary.
At AXA Group Operations, we want to be recognized in three fields of action:
Where will you be in the organization?
Throughout AXA, the security community represents 1000 security professionals, working daily to protect our employees, customers, operations and brand. Our operating model gathers the three security disciplines Information Security, Operational Resilience and Physical Security & Safety. Our security mission is to ensure that AXA is safe, secure and resilient.
AXA Group Security, as part of AXA GO, defines the security strategy, standards and provides assurance to the Group on the security maturity of all entities across AXA. In its role, it also supports our professional family in entities in maintaining their security posture and respond and coordinate responses to crisis.
This is accomplished through four strategic levers:
Safe : It is about our people, have them ready to face security challenges including third parties, health professionals
Secure: Secure the business of today and tomorrow, by increasing security effectiveness on a risk-based approach for all entities.
Resilient: Enhance anticipation, detection and reaction capabilities in case of events & Security by design
Simple: Simplify, converge and automate our services and activities
The Cyberdefense Product and project team is responsible for creating and updating the tactical product roadmap, managing the operations of the security products, in addition to enhancing product capabilities to execute the strategy defined by Group Security and deliver Cyber products to the AXA entities.
The Cyberdefense Product team oversees:
Our missions are to:
Our goals are to:
About the job
As a key member of the Cyberdefense Product team, the Product Owner (PO) will lead a team of technical subject matter experts to define and deliver a clear product vision aligned with AXA's security and compliance objectives. The PO acts as the primary liaison between stakeholders, security teams, and the Product Manager to ensure the product roadmap is executed effectively, delivering maximum value to AXA's security operations and organizational goals.
Cyberdefense Product Owner will
Team structure: The team is led by one Product manager, and 4 people (FTE) for the LOA (run) activity and about 3-6 people part of the team on dedicated strategic project.
We are looking for a team member that will support Cyberdefense Product manager as Product owner role.
One of our target is to stay at the "state of art" of security while helping the team to be more agile.
Expected skills & experience
We are looking for someone with the following experience and skills:
Skills and Experience
Education
Certification
Overall work experience in the fields
Language
What we offer
We bring together the expertise, cultural diversity and creativity of over 8,000 employees worldwide and we're committed to equal opportunities in all aspects of employment (gender, LGBT+, disabled persons, or people of different origins) and to promoting Diversity & Inclusion by creating a work environment where all employees are treated with dignity and respect, and where individual differences are valued.
As a world-leading insurance company, we act for human progress by protecting what matters. With 153,000 employees in 54 countries working for 105 million customers, we've created a truly dynamic and vibrant community. Inclusion and diversity link closely with our values, and together we're nurturing a culture of respect, for each other, for our customers and the communities around us. Join AXA and you'll feel like you belong, are included and can thrive. You'll be able to shape the way you work and truly grow your potential as you seek out new opportunities, push boundaries and benefit people in critical moments of their lives. This is your chance to build the tomorrow you want. Know you can.
About the entity
AXA is becoming a sustainable tech-led company and at AXA Group Operations we are one of the major catalysts for this transformation.
We set the tone by triggering and empowering the evolution of our insurance business model through technology and innovation, driving its concrete implementation globally at speed, with a high quality of advisory and execution.
We are present across 17 countries with committed, highly qualified teams. We leverage technology, data, sourcing, security and investment allocation in a global way, but also achieve economies of scale and synergies when necessary.
At AXA Group Operations, we want to be recognized in three fields of action:
- State-of-the-art Data Technology to drive customer experience
- State-of-the-art Procurement & Sourcing to drive efficiency and better manage risks
- High-Performing Global Team for stronger partnerships with AXA entities
Where will you be in the organization?
Throughout AXA, the security community represents 1000 security professionals, working daily to protect our employees, customers, operations and brand. Our operating model gathers the three security disciplines Information Security, Operational Resilience and Physical Security & Safety. Our security mission is to ensure that AXA is safe, secure and resilient.
AXA Group Security, as part of AXA GO, defines the security strategy, standards and provides assurance to the Group on the security maturity of all entities across AXA. In its role, it also supports our professional family in entities in maintaining their security posture and respond and coordinate responses to crisis.
This is accomplished through four strategic levers:
Safe : It is about our people, have them ready to face security challenges including third parties, health professionals
Secure: Secure the business of today and tomorrow, by increasing security effectiveness on a risk-based approach for all entities.
Resilient: Enhance anticipation, detection and reaction capabilities in case of events & Security by design
Simple: Simplify, converge and automate our services and activities
The Cyberdefense Product and project team is responsible for creating and updating the tactical product roadmap, managing the operations of the security products, in addition to enhancing product capabilities to execute the strategy defined by Group Security and deliver Cyber products to the AXA entities.
The Cyberdefense Product team oversees:
- The management and the evolution of existing class 1 (mandatory) products named Vulnerability Management and Compliance Management.
- A product is the combination of a Team, supporting information security Processes, operating a technology (Vulnerability and compliance scanning technology) and tools.
Our missions are to:
- support our business strategy and digital transformation, AXA is setting up a new information security practice to ensure a coordinated response to the increasing threat of cybersecurity in Cloud environment (Public and Private)
- The team performs and scheduling compliance and vulnerability scans on AXA network activity and infrastructure and generating reports to different teams (such as server admins, network administrators in order to mitigate scanned vulnerabilities).
Our goals are to:
- Deliver Security compliance measurement to AXA group
- Improve remediation activities using automation and technology
- Deliver high quality services to AXA group
About the job
As a key member of the Cyberdefense Product team, the Product Owner (PO) will lead a team of technical subject matter experts to define and deliver a clear product vision aligned with AXA's security and compliance objectives. The PO acts as the primary liaison between stakeholders, security teams, and the Product Manager to ensure the product roadmap is executed effectively, delivering maximum value to AXA's security operations and organizational goals.
Cyberdefense Product Owner will
- Develop and refine the product vision and strategyin collaboration with the Product Manager, stakeholders, and end-users to ensure alignment with AXA's security priorities.
- Own and manage the product backlog, prioritizing features, improvements, and technical debt based on business value, risk, and compliance requirements.
- Engage with stakeholders across security, IT, compliance, and business units to gather requirements, feedback, and ensure their needs are reflected in the product backlog.
- Lead Agile ceremonies(daily standup, sprint planning, reviews, retrospectives) to facilitate team understanding of priorities and deliverables with the support for the SCRUM master
- Define clear acceptance criteria for deliverables and validate outputs against business needs, compliance standards, and security requirements.
- Support the Product Manager by translating strategic goals into actionable backlog items and ensuring their timely delivery.
- Promote transparency by providing regular updates on progress, risks, and dependencies to all relevant stakeholders.
- Foster team collaboration and motivate a team of technical SMEs to deliver high-quality outputs, removing blockers and facilitating continuous improvement.
- Enhance product understanding within the team and stakeholders to ensure technical and security considerations are incorporated into prioritization decisions.
- Measure and analyze product performance using KPIs, trends, and feedback to inform ongoing improvements.
- Advocate for the productinternally and externally, promoting its value and outlining future roadmap initiatives.
Team structure: The team is led by one Product manager, and 4 people (FTE) for the LOA (run) activity and about 3-6 people part of the team on dedicated strategic project.
We are looking for a team member that will support Cyberdefense Product manager as Product owner role.
One of our target is to stay at the "state of art" of security while helping the team to be more agile.
Expected skills & experience
We are looking for someone with the following experience and skills:
Skills and Experience
- Proven experience in cybersecurity, especially vulnerability management and security operations.
- Demonstrable experience working as a Product Owner or in a similar Agile role, managing product backlogs and executing roadmaps.
- Ability to understand technical security concepts sufficiently to prioritize features and communicate effectively with technical teams.
- Strong stakeholder engagement and communication skills, with a proven ability to translate business needs into technical priorities.
- Leadership qualities to guide and motivate a team of technical SMEs in a fast-paced environment.
- Familiarity with security tools (e.g. Kenna, Tenable, Qualys, Vulcan, Hackuity etc.), frameworks, and industry standards (CIS benchmarks, NIST, NIS2) relevant to vulnerability management is advantageous
- Agile certifications (e.g., PSPO, CSPO) are highly desirable.
- Fluency in English is required; additional language skills are a plus.
Education
- Post-graduate degree in IT or a closely-related subject to IS Security.
Certification
- AGILE certifications are highly desirable (Product Owner, or other SCRUM/SAFE certifications)
- ISC² CISSP (Certified Information Systems Security Professional) or CCSP (Certified Cloud Security Professional) is recommended
Overall work experience in the fields
- Experience in AGILE hands-on experience (required)
- Experience in Team leadership (required)
- Experience in Security > 3 years (strongly recommended)
Language
- Fluency in English is required; additional language skills are a plus.
What we offer
We bring together the expertise, cultural diversity and creativity of over 8,000 employees worldwide and we're committed to equal opportunities in all aspects of employment (gender, LGBT+, disabled persons, or people of different origins) and to promoting Diversity & Inclusion by creating a work environment where all employees are treated with dignity and respect, and where individual differences are valued.
RÉSUMÉ DE L' OFFRE
Vulnerability Management Product Owner
AXA
Paris
il y a 7 heures
S/O
Temps plein
Vulnerability Management Product Owner