Cloud Security Architect - Cybersecurity - Ile-de-France (M/F)
Company Description
About Sopra Steria
Sopra Steria, a major player in Tech in Europe, with 51,000 employees in nearly 30 countries, is recognized for its consulting, services, and digital solutions activities. It helps its clients lead their digital transformation and achieve concrete and sustainable benefits. The Group provides a global response to the competitiveness challenges of large companies and organizations, by combining deep knowledge of business sectors and technologies with a collaborative approach. Sopra Steria places people at the heart of its actions and is committed to its clients to make the most of digital technology to build a positive future. In 2025, the Group achieved a turnover of 5.6 billion euros.
The world is how we shape it
Sopra Steria Infrastructure & Security Services is the Sopra Steria subsidiary dedicated to infrastructure, cloud, and cybersecurity activities. It is a key player in Sopra Steria's end-to-end offering. With its 3,000 employees, Sopra Steria I2S distinguishes itself through the flexibility of its delivery model, which combines client proximity through our 8 agencies and the advanced industrial capabilities of our off-shore service centers.
Ready to take on the challenge with us?
Job Description
Your future working environment: Within the Cyber Division, you will join the Value Center Protect By design. You will operate in an international environment and perform strategic tasks for our Key Accounts clients.
Your roles and tasks:
As a Cloud Security Architect, you play a key role in the design and securing of hybrid and multi-cloud architectures (Azure, AWS, GCP, etc.) for critical environments. You intervene at the crossroads of strategy, governance, and technical integration in order to guarantee the compliance, resilience, and security of clients' information systems.
Cloud security strategy and governance:
You develop and maintain cloud security policies (Zero Trust and conditional access, IAM/PAM and privilege management, data protection policies, segmentation policy, flow inspection, and filtering). You contribute to the definition and deployment of compliance strategies (ISO 27001, NIST, CIS, RGPD, SecNumCloud, NIS2).
Architecture and integration:
You design secure hybrid architectures integrating cloud security tools (CASB, DLP, CNAPP, CSPM, EDR, etc.). You guarantee consistency between on-premise, public cloud, and managed services environments.
DevSecOps and CI/CD Vision:
You integrate security principles into CI/CD chains and automation pipelines, working with engineering teams from the design stage to create By Design models.
Compliance and risk management:
You identify risks in Cloud architectures, lead audits, and define remediation plans adapted to risks and threats.
Consulting and support:
You support clients in their secure transformation towards the cloud and participate in validation, governance, and certification committees.
What we offer you:
- A teleworking agreement to work from home up to 2 days per week depending on your tasks.
- An attractive benefits package: health insurance, CSE, meal vouchers, profit-sharing, holiday bonuses, and referral bonuses.
- Multiple career opportunities: more than 30 job families, as many gateways to imagine together.
- Hundreds of training courses to develop your skills and evolve within the Group.
- Self-paced training platforms to prepare for your certifications and support your personal development.
- The possibility to get involved with our foundation or our partner "Vendredi".
- The opportunity to join the Tech'Me UP collective (training, conferences, monitoring, and much more).
Qualifications
Your profile
A graduate of an engineering school or equivalent, you have at least 5 years of experience in cloud architecture and cybersecurity.
You have solid knowledge of Azure, AWS, and GCP environments, as well as delivery models (IaaS, PaaS, SaaS), and know how to design secure architectures.
You have a good understanding of the main cybersecurity frameworks (risks and threats) and Zero Trust principles.
You master the challenges of governance and compliance in hybrid environments.
You are able to intervene transversally between IT, security, and business teams.
You are proficient in writing architecture documents and presentation materials.
You are proficient in English, both written and