About the job
At NEORIS, we are a digital accelerator with over 20 years of experience partnering with some of the largest companies worldwide to guide them into the future. With a multicultural startup culture and more than 4,000 professionals across 11 countries, we foster innovation and continuous learning to create high-value solutions for our clients.
We are seeking a Senior Security Expert to spearhead the governance and security architecture of our strategic CRM program. This pivotal role goes beyond traditional operational responsibilities; it is essential for shaping the future of security in a hybrid cloud environment, utilizing APIs and microservices.
Role Summary As a Senior Security Expert, you will serve as the technical guardian of the CRM program. Your mission involves defining guidelines, auditing designs, and ensuring the implementation of modern principles (Zero Trust, IAM, API Protection) within a complex, multi-provider ecosystem. You will act as a critical technical counterbalance to global integrators, validating decisions to mitigate operational and compliance risks before they impact operations.
Key Responsibilities
- Zero Trust Architecture: Lead the adoption of continuous validation, network segmentation, and risk-based access policies for microservices and containers.
- API Security and IAM: Define policies for TMF and internal APIs (OAuth2, JWT, Rate Limiting) and ensure the principle of least privilege for both human and service identities.
- Auditing and Vulnerabilities: Conduct technical reviews of configurations in clusters, containers, and critical components, identifying and mitigating security gaps.
- Supplier Governance: Be the expert technical voice against global integrators and development factories, challenging decisions and ensuring compliance with standards (NIST, CIS, OWASP).
- Security by Design: Ensure that the entire CRM architecture adheres to security standards from conception.

