- Company Name
- LGS, an IBM Company
- Job Title
- Analyste de la sécurité des produits
- Job Description
-
**Job Title**
Product Security Analyst (Information Security Officer – Projects)
**Role Summary**
Provide security expertise across the full project lifecycle for large‑scale digital transformation initiatives. Act as the designated Information Security Officer for projects (RSIP), ensuring security best‑practice integration in design, implementation, and deployment of new systems, primarily within Microsoft Azure and Power Platform environments. Contract: 02 Feb 2025 – 31 Dec 2026, 35 h/week, hybrid (4 remote / 1 on‑site).
**Expectations**
- Deliver security guidance that aligns with organizational policies, business needs, and technical constraints.
- Conduct risk analyses, identify gaps, and define remediation plans.
- Communicate security risks and recommendations clearly to technical and non‑technical stakeholders.
- Work autonomously while collaborating closely with architects, developers, and agile teams.
- Exhibit leadership, rigor, and methodological approach throughout project engagements.
**Key Responsibilities**
- Support architects in designing secure solutions for Power BI, Databricks, Power Platform, Fabric, and Azure services.
- Perform security and gap analyses; develop remediation and mitigation plans.
- Assess and document project‑specific security risks; propose technical and organizational controls.
- Advise on security aspects of agile projects and ensure integration of security controls into sprint cycles.
- Contribute to the creation and maintenance of security procedures, standards, and governance artifacts.
- Evaluate the implementation of security controls (e.g., Azure AD, identity governance, data protection).
- Review and advise on the use of Purview, Power Automate, Azure DevOps, and related Microsoft services.
- Present risk findings and recommendations to project leadership and management.
**Required Skills**
- In‑depth knowledge of security, identity, and governance for Power BI, Databricks, Fabric, and the broader Power Platform suite.
- Strong experience securing Microsoft Azure environments (network, IAM, data protection).
- Proven ability to assess and remediate security controls in cloud‑based BI/analytics projects.
- Familiarity with Azure DevOps pipelines and CI/CD security considerations.
- Agile project experience with capacity to raise and manage security risk treatment plans.
- Excellent communication skills; able to simplify complex security concepts for diverse audiences.
- Team‑oriented mindset, leadership capability, and a self‑driven, methodical work style.
**Required Education & Certifications**
- Bachelor’s degree in Computer Science, Information Security, Cybersecurity, or related field (or equivalent experience).
- Preferred certifications: CISSP, CISM, Azure Security Engineer Associate, or equivalent.
- Eligibility to work on export‑controlled technologies (Canadian permanent resident or citizen preferred).