Cybersecurity Architect

Framatome is an international nuclear-energy company that supplies nuclear-plant components, fuel, instrumentation and control systems, and reactor services.

Courbevoie, France
About Framatome

Framatome designs, services, and installs components, fuel, and instrumentation and control systems for the global nuclear fleet. Its current corporate headquarters is in Courbevoie, France, and it is majority-owned by EDF.

View jobs by Framatome

Skills

Candidate Availability

Required and preferred rules are kept separate and reflect the wording in the original posting.

About the Role

You will assess and validate the security of projects, architecture dossiers, mergers and acquisitions, and accreditations. You will advise IT, OT, business, and technical stakeholders; define security requirements; review interfaces and data flows; participate in audits and governance; evolve security standards and policies; and monitor cybersecurity threats and practices.

Requirements

  • Master's degree in engineering, university studies, or equivalent
  • Significant experience in cybersecurity, information-systems architecture, or enterprise architecture
  • Experience in complex IT, OT, and cloud environments
  • Professional English
  • Security architecture assessment and cybersecurity validation skills
  • Risk analysis and mitigation-definition skills
  • Knowledge of IT, OT, and cloud environments
  • Technical documentation skills
  • Knowledge of AIEA, NSS#17, IEC 62443, ISO 2700X, and EBIOS
  • Azure knowledge preferred
  • Experience in regulated industries preferred

Responsibilities

  • Assess architecture security and validate cybersecurity for projects, architecture dossiers, mergers and acquisitions, and accreditations
  • Advise business, IT, OT, and business-unit stakeholders
  • Ensure compliance with security requirements
  • Define cybersecurity requirements for infrastructure and application changes
  • Provide expertise on APIs, partner interconnections, industrial flows, and cloud services
  • Participate in security audits and prioritize remediation actions
  • Participate in security governance and architecture committees
  • Define and evolve group security and architecture standards
  • Contribute to the cybersecurity roadmap
  • Maintain and evolve security policies and associated documentation
  • Monitor cybersecurity threats and best practices