1,336,187open jobs
78,338companies
214,727added this week
Browse all
Salary
≈ $72k – $166k per year (Estimated)
Location
Hybrid (Ebène, Mauritius)
Seniority
Senior · 5+ years exp
Employment
Full-Time

Confirmed on the employer's own hiring board on Oct 7, 2026. First seen by Alion on Oct 3, 2026.

Overview
Company
Impact
Profile match
Orange is the leading French telecommunications operator and one of the largest network groups in Europe and Africa. Beyond mobile and fibre access it runs enterprise IT and integration through Orange Business, cybersecurity through Orange Cyberdefense and mobile financial services through Orange Money. The company is partly owned by the French state and is headquartered in Issy-les-Moulineaux.

Publication date : Sep 11, 2026, 12:00AM

About us

Join us at Orange Business!

We are a network and digital integrator that understands the entire value chain of the digital world, freeing our customers to focus on the strategic initiatives that shape their business.

Every day, you will collaborate with a team dedicated to providing consistent, sustainable global solutions, no matter where our customers operate. With over 30,000 employees across Asia, the Americas, Africa, and Europe, we offer a dynamic environment to develop and perfect your skills in a field filled with exciting challenges and opportunities.

About the role

About the Role

Security is a strategic priority for Orange Business. Protecting our information assets, digital services and technology landscape is essential to maintaining customer trust, safeguarding the business and ensuring compliance with regulatory and internal security requirements.

The Global Policy Controls team is responsible for defining, coordinating and monitoring key cybersecurity governance processes across Orange Business. The team works closely with security stakeholders across the organisation to strengthen its security posture, enhance vulnerability management and drive continuous risk reduction.

As a Security Analyst and Auditor, you will conduct technical security assessments and audits, manage vulnerability and security posture activities, and support the continuous improvement of the organisation's cybersecurity controls. Working closely with infrastructure, application and security teams, you will identify and assess technical security risks, coordinate remediation activities, monitor external security exposure, and provide reporting that supports informed risk management and compliance with organisational security standards.

Key Responsibilities

Technical Security Assessments and Audits

  • Plan, coordinate and perform technical security assessments across infrastructure, applications, cloud environments and internet-facing services.
  • Conduct technical security audits, including configuration reviews, vulnerability assessments, architecture reviews and secure configuration validation.
  • Coordinate penetration testing, application security assessments and code reviews with internal teams and external providers where appropriate.
  • Validate assessment findings to eliminate false positives and ensure the accuracy of reported vulnerabilities.
  • Produce clear technical assessment reports detailing findings, risk levels and remediation recommendations.
  • Present findings to technical and business stakeholders and support the implementation of remediation plans.
  • Track remediation activities to ensure audit findings are resolved within agreed timelines.
  • Contribute to the continuous improvement of technical assessment methodologies and security standards.

Vulnerability Management

  • Assess newly disclosed vulnerabilities and determine their impact on the Orange Business’s technology landscape.
  • Coordinate remediation activities with infrastructure, application and security teams to ensure vulnerabilities are addressed within agreed service levels.
  • Validate vulnerabilities, assess exploitability and support risk-based prioritisation.
  • Monitor remediation progress and escalate critical or overdue vulnerabilities where necessary.
  • Produce vulnerability dashboards, compliance metrics and management reports.
  • Maintain vulnerability management procedures, documentation and operational standards.
  • Identify opportunities to improve vulnerability management processes through automation and continuous improvement initiatives.

External Attack Surface Management

  • Maintain an accurate inventory of internet-facing assets, domains, subdomains and public IP addresses.
  • Identify newly exposed assets and ensure they are incorporated into the organisation's security monitoring processes.
  • Perform regular external vulnerability assessments using approved security tools.
  • Validate discovered vulnerabilities and coordinate remediation with asset owners.
  • Ensure internet-facing assets comply with organisational security policies and remediation timelines.
  • Maintain documentation and procedures related to external asset discovery and monitoring.

Security Alerts and Risk Coordination

  • Monitor critical security advisories, vulnerability notifications and security alerts received from internal and external security sources.
  • Perform an initial assessment of security alerts to determine their potential impact on the organisation's technology landscape.
  • Coordinate impact assessments with infrastructure, application and security teams to identify affected assets and services.
  • Work closely with asset owners and technical teams to ensure appropriate remediation actions are implemented within agreed timelines.
  • Track remediation progress for critical vulnerabilities and provide regular status updates to management and security stakeholders.
  • Support the investigation of significant security issues by providing technical analysis, vulnerability expertise and risk assessment.
  • Maintain records of security alerts, impact assessments and remediation activities to support reporting and governance.
  • Contribute to the continuous improvement of security alert handling, vulnerability response and risk coordination processes.

Reporting and Continuous Improvement

  • Produce operational dashboards and management reports covering technical assessments, vulnerability management, security posture and remediation activities.
  • Develop and maintain technical procedures, standards and operational documentation.
  • Identify opportunities to automate repetitive activities through scripting and workflow improvements.
  • Analyse security metrics and trends to support informed decision-making and continuous improvement.
  • Contribute to the enhancement of cybersecurity governance processes, technical controls and operational practices.
  • Share knowledge and support the onboarding and development of team members.
About you

Key Requirements

Technical Skills

  • Strong understanding of vulnerability management and remediation processes.
  • Experience performing technical security assessments and security audits.
  • Knowledge of operating systems, networking, web technologies and cloud environments.
  • Familiarity with vulnerability scanning, attack surface management and security posture management platforms.
  • Understanding of penetration testing methodologies and secure configuration practices.
  • Knowledge of cybersecurity frameworks and standards such as ISO 27001, NIST and CIS Controls.
  • Ability to analyse technical findings and translate them into practical remediation recommendations.
  • Experience with scripting or automation (Python, PowerShell or similar) is desirable.
  • Experience producing dashboards, metrics and management reports.

Behavioural Competencies

  • Strong analytical and problem-solving skills.
  • Excellent written and verbal communication skills.
  • Ability to communicate technical concepts to both technical and non-technical audiences.
  • Strong organisational and stakeholder management skills.
  • Ability to manage multiple priorities and work independently.
  • Collaborative team player with a continuous improvement mindset.
  • High level of integrity and attention to detail.

Required Qualifications

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology or a related discipline.
  • Experience in cybersecurity, vulnerability management, technical security assessments or infrastructure security.
  • Experience working across multiple technical teams within a large enterprise environment is desirable.

Desired Certifications

One or more of the following:

  • CompTIA Security+
  • GIAC Security Essentials (GSEC)
  • Certified Ethical Hacker (CEH)
  • ISO/IEC 27001 Lead Implementer or Lead Auditor (desirable)
  • Microsoft Azure Security Engineer, AWS Security Specialty, or equivalent cloud security certification

Experience

At least 5 years of experience in cybersecurity, IT compliance, or related fields.

Languages

  • Fluent in English (written and spoken).
  • Proficiency in French is an advantage.

You bring rigor, passion for challenges, and determination. You seek the opportunity to expand your expertise, achieve your goals, and thrive.

What we offer

  • Global Opportunities: Work in multi-national teams with opportunity to collaborate with colleagues and customers from all over the world.

  • Flexible Work Environment: Flexible working hours and possibility to combine work from office and home (hybrid ways of working).

  • Professional Development: training programs and upskilling/re-skilling opportunities.

  • Career Growth: Internal growth and mobility opportunities within Orange.

  • Caring and Daring Culture: Health and well-being programs and benefits, diversity & inclusion initiatives, CSR and employee connect events.

  • Reward Programs: Employee Referral Program, Change Maker Awards.
Only your skills matterRegardless of your age, gender identity, race, ethnic origin, religion/belief, sexual orientation, marital status, neurotype, disability, veteran status or appearance, we encourage diversity within our teams because it is a strength for the collective and a vector of innovation. Orange Group is a disabled-friendly company and equal opportunity employer: don't hesitate to tell us about your specific needs.

At Orange, only your skills matter.

Regardless of your age, gender, background, origin, religion, sexual orientation, disability, neurodiversity, or appearance, we actively encourage diversity within our teams, as it is a collective strength and a driver of innovation.
Orange is a disability-inclusive employer: please feel free to let us know about any specific needs you may have.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
1,336,187 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
Ebène
Remote (Canada) • Full-Time
PowerShell
DevOps
Azure
Cybersecurity
Microsoft Defender
Least Privilege
Microsoft Defender for Cloud
Microsoft Entra ID
Active Directory
Apply
≈ $107k – $241k per year (Estimated) • Remote (United States) • Full-Time
Go
SQL
DevOps
Splunk
Kubernetes
eBPF
Linux
Cybersecurity
Falco
Cyber Kill Chain
Cilium Tetragon
SIEM
Apply
≈ $46k – $111k per year (Estimated) • In office • Full-Time • 3+ years exp • Bachelor's Degree • Hong Kong
Python
PowerShell
DevOps
Ansible
Akamai
Management
ITIL
Apply
$110k – $130k per year • Remote (likely United States) • 5+ years exp • Bachelor's Degree
Java
DevOps
IAM
Cybersecurity
Okta
Microsoft Entra ID
Active Directory
LDAP
Apply
$197k – $225k per year • In office • Full-Time • 7+ years exp • Bachelor's Degree • McLean • Richmond • New York • Plano
DevOps
Splunk
GCP
Azure
AWS
Cybersecurity
Crowdstrike
Qualys Cloud Platform
MITRE ATT&CK
NIST CSF
FedRAMP
Threat Modeling
Apply
In office • Minsk
Python
PowerShell
AI/ML
Machine Learning
DevOps
CI/CD
Management
Scrum
Kanban
Apply
≈ $40k – $110k per year (Estimated) • Remote (United States, United Kingdom) • Full-Time • United Kingdom
DevOps
Incident Management
Cybersecurity
ISO 27001
GDPR
Apply
≈ $20k – $49k per year (Estimated) • Hybrid • 2+ years exp • Bachelor's Degree • Bengaluru
Python
SQL
Databases
SAP HANA
Databricks
AI/ML
Embeddings
Scikit-learn
AI Agents
TensorFlow
PyTorch
LLM
RAG
Knowledge Graph
Multi-Agent Systems
Machine Learning
DevOps
GCP
Azure
AWS
Management
ServiceNow
Apply
In office • Full-Time • 4+ years exp • Chennai
Python
JavaScript
SQL
Python
Flask
Django
Databases
MySQL
PostgreSQL
Frontend
React.js
DevOps
CI/CD
Git
AWS
AWS Lambda
Amazon EC2
Amazon S3
Management
Agile
Scrum
Apply
Senior IT Manager 2 days ago
$88k – $95k per year • In office • Cambridge
Cybersecurity
ISO 27001
NIST CSF
GDPR
Apply
≈ $69k – $192k per year (Estimated) • Hybrid • Full-Time • Master's Degree • Ebène
DevOps
AWS
Incident Management
SLI/SLO/SLA
DNS
VPN
Cybersecurity
FortiGate
Zscaler
Management
Outlook
ITIL
Service Desk
Microsoft Office
Apply
≈ $30k – $70k per year (Estimated) • In office • Romania
Assembly
Management
Microsoft Office
Apply
≈ $53k – $127k per year (Estimated) • Hybrid • Full-Time • 3+ years exp • Bachelor's Degree • Cairo
DevOps
VPN
Cybersecurity
Wireshark
Prisma Cloud
Zscaler
PKI
Management
ITIL
Apply
≈ $53k – $126k per year (Estimated) • Hybrid • Full-Time • 3+ years exp • Bachelor's Degree • Cairo
DevOps
SLI/SLO/SLA
VPN
Cybersecurity
Wireshark
Prisma Cloud
Zscaler
PKI
Management
ITIL
Apply
≈ $39k – $106k per year (Estimated) • Hybrid • Full-Time • 2+ years exp • Bachelor's Degree • Cairo
DevOps
Azure
DNS
DHCP
VPN
Cybersecurity
Microsoft Defender
Trend Micro
SIEM
DLP
Management
ITIL
Apply
≈ $69k – $192k per year (Estimated) • Hybrid • Full-Time • Master's Degree • Ebène
DevOps
AWS
Incident Management
SLI/SLO/SLA
DNS
VPN
Cybersecurity
FortiGate
Zscaler
Management
Outlook
ITIL
Service Desk
Microsoft Office
Apply
≈ $73k – $169k per year (Estimated) • Hybrid • Full-Time • 5+ years exp • Master's Degree • Ebène
Apply
In office • 3+ years exp • Bachelor's Degree • Ebène
DevOps
Splunk
AWS
Amazon CloudWatch
Linux
Windows
Cybersecurity
Wazuh
SentinelOne
MITRE ATT&CK
SIEM
Apply
Executive Assistant 7 hours ago
≈ $27k – $52k per year (Estimated) • Hybrid • Full-Time • 2+ years exp • Ebène
Management
Google Workspace
Microsoft Office
Apply
Hybrid • Full-Time • Ebène
Management
Microsoft Office
Apply
See all jobs
This is one of many
1,336,187 more open roles from verified company boards, updated every day.