ppA Joint Venture between Thales (67%) and Leonardo (33%), Thales Alenia Space is a global space manufacturer delivering, for more than 40 years, high-tech solutions for telecommunications, navigation, Earth Observation, environmental management, exploration, science and orbital infrastructures. Thanks to our diversity of skills, talents and cultures, our customers (governments, institutions, space agencies, telecommunications operators), therefore have Space to Connect, Secure Defend, Observe Protect, Explore, Travel Navigate. /p pAs a major player in the space sector, cybersecurity is a prerequisite for Thales Alenia Space. It affects all of our areas of activity (Navigation, Telecommunications, Observation, Exploration) and concerns our information systems, our development and production environments as well as the systems and products we design and deliver to our customers. Because our systems and products can nevertheless be vulnerable to advanced attacks or can attract the attention of cybercriminals and states related threats, TAS-I Cyber Security Authority (CSA) role have been created as part of the Head of Cybersecurity TAS-I Department. The CSA interacts with all Thales Alenia Space's cybersecurity and engineering players, in TAS-I projects across the board (Countries, Domains, transversal functions). The CSA combines strong technical skills, in-depth security understanding, and skills to manage different teams in the organization, which do not report directly to him/her. CSA's tasks represent a high responsibility to Thales Alenia Space commercial success and requires to be up-to-date about new developments in cyber technologies, standards, and competitive offerings. Overall, CSA becomes a key asset for the success of Thales Alenia Space and TAS-I missions. The CSA is responsible for monitoring and mastering cybersecurity risks of Products, Projects and Services during early capture, bid and development phases through the following missions: /p ul liContribute to the definition the cybersecurity technical policy of its scope of responsibility and the associated roadmap /li liReport to Head of Cybersecurity the TAS-I cybersecurity risks and KPI regarding Bids and Cyber Security compliance on a regular basis /li liShare with TAS-I Centers of Competences the security status and costs of their supplies for projects during Bid and before going into service /li liFill in and validate the cybersecurity maturity dashboard of TAS-I,
including the Group Cybersecurity fundamentals compliance level and KPI regarding Bids. /li liAlert CPSO / Head of Cybersecurity TAS-I when major deviation is identified and assist in defining the relevant remediation action plans /li liRaise cybersecurity alert to TAS-I Technical Director and Head of Cybersecurity TAS-I /li liEventually initiate and support all audits and checks of solutions security activities to ensure compliance with the Organization, regional and national cybersecurity rules, and compliance with Thales Group Policy and TAS Security Instructions /li liCheck consistency of the cybersecurity technical roadmap of TAS-I with TAS technical strategy (existing technical roadmaps, RT plan, and Technical Innovation Strategic Plan (TISP)), and also with applicable regulations and standards /li liProvide feedback to the Engineering Managers on the applicability, application, and effectiveness of the cybersecurity engineering policy in TAS-I /li liChallenge, support, and approve cybersecurity organizations, strategies and Cyber quotations in bids and solutions. And also validate the Target security level identified during bid or solution orientation phase (in particular, assess if a pentest is needed) /li liEnsure corresponding cost of the implementation of the target security level is identified and included in the solution budget /li liSupport the Purchasing team to evaluate suppliers’ cybersecurity maturity /li liSupport legal and contracts teams for cybersecurity-specific contractual articles analysis and check to ensure Thales liability /li liParticipate in key technical reviews for all bids and projects (the SOR in particular) within the operating entity upon PDA request and at least for A2/B2, and verifies the cybersecurity section in the DVa. /li liValidate the security status of the solution, before going into service /li /ul h3Level of Knowledge /h3 pProvide the education requirements (Level, field, etc.) and the minimum length of experience required for the position /p ul liEngineer or Master's Degree education, the position needs a minimum of 5 years of relevant experiences made in firms specialized in consulting,
technology services, digital transformation, Cybersecurity and industry in IT/OT security, risk and crisis management. /li liConfirmed relevant experiences in Defence and Aerospace Industry within one or more domains of Thales Alenia Space like Navigation, Telecommunication, Earth Observation or Space Exploration is expected. /li /ul h3Skills Requirements /h3 pNecessary skills and competencies to perform the position /p pTechnical Skills: Soft Skills: /p ul liProduct management and product life cycle expertise with a proven track record of delivering next generation solutions /li liInformation and Operational Technologies (IT/OT) and Internet of Things (IoT) Architectures fundamentals /li liInformation Security Management System (ISMS - ISO/IEC 2700x series) /li liRisk management frameworks such as ISO 31000, ISO 27005, EBIOS Risk Manager /li liSecurity Accreditation processes /li liCryptography /li liCyber security expertise in audits, vulnerability management, penetrations tests in hardware, infrastructure and software environments /li liNational, European and US security regulations Expertise /li liDefine, develop and lead a culture of crisis policy adapted to industrial constraints /li liCloud native and virtualisation technologies /li liDEVSECOPS /li liSupply Chain Security /li /ul ul liSoftware development /li liAutonomy, /li liManagerial capacities, /li liGood communicant, /li liAbility to negociate with industrial and institutional partners, /li liAdaptability, /li liManaging complexity /li /ul ul li- Ability to lead and manage in a matrix organization achieving on-time, on-budget, and compliant delivery with a history of outpacing market performance. /li li- Strength of proposal, communication, ability to synthesize on complex issues. /li /ul ul liCritical thinking to promote innovation and creativity /li liTeam spirit, leadership and animation of small teams /li liJudgment and decision making /li liSense of service /li liFlexibility /liliExperience in driving enterprise cultural changes into Product and Engineering teams. /li liStrong entrepreneurial skills with a keen sense for problem solving and agility. /li /ul pbLR09 /b /p pType of contract: Permanent /p pExperience: 10 - 16 Years /p pCCNL Met/Ind - A1 Category /p p€ 48.785,46 - € 61.244,40 /p ul liVC Target Rate up to 10% /li liCIPI up to 2.186€ /li liPerformance Premio (PDR): up to 4.550€ /li /ul /p #J-18808-Ljbffr
📌 Tas-I Cyber Security Authority (Torino)
🏢 Thales
📍 Torino