Cybersecurity Officer M/F

Agence de services et de paiementLimogesJob.bopublished 09/21/2026
Must-have:CloudDevOpsAgileSecurity
Machine translation — original language: French.Show original

_______________________ Field: Digital Job Nature: Permanent Status: Civil Servant Cat A - open to contractors Corps: AAE / IAE RIFSEEP Rating: G4 Professional Path Rating: 1

For contractors Legal basis of the contract: L 332-1 Education level: Bac +3 or higher Contract duration: up to 3 years

Job vacancy date: Immediate Application deadline: 21/10/2026

________________________

Professional Environment The Agence de services et de paiement (ASP) is an administrative public establishment under the dual supervision of the ministries in charge of Agriculture and Employment. As the leading European paying body for agricultural aid under the Common Agricultural Policy, ASP possesses recognized expertise in administrative engineering, processing, control, payment, and assistance to users of numerous public aid schemes. You will join the Direction du numérique et des systèmes d’information (DNSI). It is responsible for the construction, administration, operation, and operational maintenance of ASP's information system. This directorate supports the digital transformation of ASP (dematerialization, agility, DevOps, API, mobility, data science, cloud, cybersecurity). Within the sous-direction des Chapitres (services and technical competence center), the Cybersécurité, Conformité & Réseaux service is responsible for the operational security of information systems, compliance with various regulations in force within the Agency, as well as the operation and administration of network and TOIP infrastructures.

Objectives You will participate in the definition and implementation of application and logical security rules in response to the requirements set by ISO 27001, NIS2 standards, and the NIST security framework. You will participate in the analysis, expertise, and processing of Cyber incidents and risks, as well as the definition and implementation of remediation plans. You will participate in the management of service providers responsible for the operational maintenance and security of the Agency's information system by providing your knowledge of the context and the tools in place. You will participate in the drafting of operational and administration documentation for security tools.

Missions Detect, analyze, and qualify Cyber incidents, threats, and attacks.

Promote security culture and the implementation of security measures to Product teams.

Guide technical teams regarding security patches or workarounds to be implemented.

Actively contribute to the evolution of the detection posture by continuously optimizing SOC rules.

Participate in the management of MCO, MCS & SOC service contracts.

Maintain and enrich correlation rules (SIEM, EDR).

Maintain permanent monitoring of current threats and cyber defense.

Document knowledge bases and processing procedures.

Participate in maintaining the security condition of the Agency's information systems.

Implement Cybersecurity solutions and ensure change management.

Identify, propose, and implement technical tools and solutions meeting the application of the PSSI.

Be a source of proposals in process optimization and resource management.

Evolve transversally and in interaction with all DNSI services and Product Lines.

Raise awareness within the working community regarding Cybersecurity risks.

Participation in Cybermoi/s events.

Relational Field You will work in close collaboration with: The various work units, Headquarters with business and support directorates, External partners involved in the various projects of the directorate, Suppliers and service providers in the field of Cybersecurity.

Knowledge Mastery of IT production processes and information systems.

Knowledge of DevSecOps tools.

Mastery of technical and software IT architectures.

Good knowledge of the data lifecycle and its security.

Knowledge of current standards: ISO 27001, NIST, RGPD.

Management of external service providers and monitoring compliance with contractual commitments (SLA) as well as the quality of deliverables.

Knowledge of IT security detection and response platforms (EDR/SIEM).

Knowledge of Open Source operating systems, databases, server and storage virtualization, and Cloud technologies.

Knowledge of Agile practices.

Knowledge of Jira and Confluence tools.

Technical English.

Skills / Soft Skills Teamwork, technical team leadership, and meeting facilitation.

Management of priorities, multiple activities, and ability to handle high reactivity requirements.

Conducting projects with full autonomy and confidentiality.

Activity planning, resource allocation.

Production of dashboards.

Capacity for rigor and respect for standards and procedures.

Transversal cooperation.

Ability to develop and draft project files to argue a technical position.

Availability, ability to meet deadlines.

Special working conditions None ________________________ Contacts for any information Sandrine NARAIN, Chargée d’action RH de proximité sandrine.narain@asp.gouv.fr