hero

Find Your Dream Job Today

Security Risk Analyst with French

Societe Generale

Societe Generale

IT
Bucharest, Romania
Posted on Sep 18, 2025

Responsibilities

Societe Generale Global Solution Centre (SG GSC) acts as a business solutions center for Société Générale, one of the largest European financial groups. We provide high quality professional services in over 35 countries in various business areas - Finance & Accounting, HR, IT and Corporate Operations. Our mission is to be a partner of choice, valued for owning, transforming and innovating with best-in-class talent.

Project Description:

SG GSC is looking for a French-speaking Security Risk Analyst who will be part of the team responsible for the security governance o whose activity concerns the fields of insurance (property and personal insurance)


RESPONSABILITIES

The mission mainly consists of contributing to:

· Security support for business projects using risk analysis by identifying business issues, security requirements, associated action plans, and assessing residual risks for internal and third-party projects

· Perform application security assessment for new and existing applications

· Review/negotiate security contractual clauses for various ASSU outsourcings

· Analyze and validate security exceptions requests

· Create and present to the business owners the results of various security tests in case vulnerabilities are found


And to a lesser extent:

· Actions to control the security level of applications.

· Support the deployment of the security framework for France/International projects.

· Managing IT operational risks (IT risks) at Société Générale Assurances:

o Maintaining and updating the ASSU referential

o Development and maintenance of dashboards to monitor the progress of initiatives.

What you will do:

· Security files (and intermediate deliverables such as safety classification, expression of project safety needs, residual risk assessment for business managers);

· Managerial presentation supports (IT and business) on projects;

· Interviews with IT, business owners and other stakeholders to determine applications sensitivity levels.