Cloud & Core IT Cybersecurity Architect

Sodexo Business Services (SBS) is currently looking for a self-driven Cloud & Core IT Cybersecurity Architect, to join its growing team.
A day in the life of a Cloud & Core IT CyberSecurity Architect
ln the context of Sodexo’s global digital transformation and within the Global Information Cyber Security team, you can analyze and understand security challenges in the Cloud and Core IT. You can devise a relevant approach to maintain and keep secure our Azure and Core ecosystems, and you can also issue security requirements for IT projects, especially those aimed at creating Digital Service Data/AI Platform.
Your day-to-day
- Define technical and functional security pre-requisites in main cloud projects, in line with IT and information security strategies, notably regarding digital identities, cloud integration and data technical platform
- Architect Azure Entra ID and on-premise Active Directory environments using Zero Trust principles.
Secure Exchange Online, SharePoint, OneDrive, and Teams environments. Design Data Loss Prevention (DLP) policies, sensitivity labels, and retention policies. - Lead security architecture for Microsoft Intune and Microsoft 365 Endpoint Management. Design compliance policies, configuration profiles, and app protection policies (APP) for iOS, Android, Windows, and macOS.
- Secure Windows 11 and Linux endpoints in enterprise environments.
- Design secure on-premises infrastructure (servers, virtualization, storage, backup).
- Contribute to the definition, drafting and roll-out of security policies, directives, and guidelines
- Manage cloud security projects (identification and formalization of requirements, testing and selection of solutions, contract negotiation, implementation)
- Support entities in deploying security solutions taking into account business requirements (internal business owners, clients, BU CIOs, group internal control, group internal audit, external auditors, …)
- Assess security risks and define appropriate security measures and processes in main business projects to protect data and systems prior go-live and roll-out
- Analyze business and IT requests impacting information and systems security in the Sodexo public cloud, and propose mitigating measures
Requirement/Qualifications
- BS in Computer Science or Information Security, MS in Computer Science or Information Security is preferred.
- 3 to 6+ years of experience in Information Security (consulting, audit, architecture)
- At least 2 years of experience with public cloud (Azure preferred)
- Strong technical background (network, system, database, application)
- Experience and knowledge in risk assessment methodologies (ISO27005, eBIOS, etc.)
- Cloud certifications/trainings are preferred (e.g. MS AZ-500, AZ-30x, SANS SEC545)
- Information Security Certification is a plus: ISO 27001, CISSP or CISM or other equivalent
What you´ll need to succeed:
- Strong interpersonal and communication skills
- Ability to convince, and interact with people at all levels of the IS&T organization
- Fluent in English, with excellent writing skills
Benefits
- Hybrid working model;
- Flexible working hours;
- Health & Life Insurance;
- Attractive Meal allowance paid in Meal Card;
- Additional Days off: extra vacation day, employee’s birthday, volunteering day;
- More than 6000 free online courses;
- Opportunity to grow professionally inside the Company;
- Possibility to participate in multicultural projects;
- Several internal activities aiming to promote our team´s wellbeing
If you want to be part of our team, please send us your resume to the email: Recruitment.SBS.Portugal@sodexo.com
Don´t forget to put on the subject the role you´re applying for.