TAS-I Cyber Security Authority
Thales · Roma, TX · 4 wk ago
HybridEducationFull-time
Responsibilities
- Contribute to the definition of the cybersecurity technical policy of its scope of responsibility and the associated roadmap
- Report to Head of Cybersecurity the TAS-I cybersecurity risks and KPI regarding Bids and Cyber Security compliance on a regular basis
- Share with TAS-I Centers of Competences the security status and costs of their supplies for projects during Bid and before going into service
- Fill in and validate the cybersecurity maturity dashboard of TAS-I, including the Group Cybersecurity fundamentals compliance level and KPI regarding Bids
- Alert CPSO / Head of Cybersecurity TAS-I when major deviations are identified and assist in defining the relevant remediation action plans
- Raise cybersecurity alerts to TAS-I Technical Director and Head of Cybersecurity TAS-I
- Eventually initiate and support all audits and checks of solutions security activities to ensure compliance with the Organization, regional and national cybersecurity rules, and compliance with Thales Group Policy and TAS Security Instructions
- Check consistency of the cybersecurity technical roadmap of TAS-I with TAS technical strategy (existing technical roadmaps, R&T plan, and Technical Innovation Strategic Plan (TISP)), and also with applicable regulations and standards
- Provide feedback to the Engineering Managers on the applicability, application, and effectiveness of the cybersecurity engineering policy in TAS-I
- Challenge, support, and approve cybersecurity organizations, strategies, and Cyber quotations in bids and solutions
- And also validate the Target security level identified during bid or solution orientation phase (in particular, assess if a pentest is needed)
- Ensure corresponding cost of the implementation of the target security level is identified and included in the solution budget
- Support the Purchasing team to evaluate suppliers’ cybersecurity maturity
- Support legal and contracts teams for cybersecurity-specific contractual articles analysis and check to ensure Thales liability
- Participate in key technical reviews for all bids and projects (the SOR in particular) within the operating entity upon PDA request and at least for A2/B2, and verify the cybersecurity section in the DVa
- Validate the security status of the solution, before going into service
Qualifications
- Engineer or Master's Degree education
- A minimum of 5 years of relevant experiences made in firms specialized in consulting, technology services, digital transformation, Cybersecurity and industry in IT/OT security, risk and crisis management
- Confirmed relevant experiences in Defence and Aerospace Industry within one or more domains of Thales Alenia Space like Navigation, Telecommunication, Earth Observation or Space Exploration is expected