Recrutement Veolia Environnement

Cloud Architect - Zero Trust & Cyberlab Lead M - F H/F - Veolia Environnement

  • Aubervilliers - 93
  • CDI
  • Veolia Environnement
Publié le 18 septembre 2026
Postuler sur le site du recruteur

Les missions du poste

Do you want to join a Group whose Purpose resonates with your own values of a world where resources and people are at the heart of daily concerns?

A Group whose ambition is to participate in the transformations we are experiencing?

Are you looking for a meaningful experience in Is&T functions that will allow you to combine these ambitions and bring your expertise to them? Then this job offer is for you!

Veolia aims to become the reference company in ecological transformation. Our mission to "Resource the world" also reflects the commitment of our 220,000 employees to have a positive impact on our planet.

At Veolia Headquarters, we are committed to empowering our employees by giving them the means to be useful and have a real impact. We are looking for employees who share our commitment.

Become an actor in ecological transformation by joining us!

1. The Hook & Strategic Vision

"The future of modern Information System and Data protection is being built right here, at the crossroads of Cloud, Web applications, and Artificial Intelligence."

The traditional "moat-and-castle" security model of the past has been rendered obsolete. With a mature, public cloud-native and SaaS-first strategy, Veolia Group DB&T is driving a shift to Zero Trust that unleashes the cloud's full potential: rather than relying on heavy perimetric network overlays, we secure each component of the digital chain: Identity, Devices, Transport, Applications, and Data Access.

We are looking for a visionary Cloud Architect to lead this transition and support the global Zero Trust roadmap for a world leader in ecological transformation.

2. The Value Proposition

  • Global Impact: Directly protect the digital ecosystem enabling Veolia's ecological transformation. By aligning security with strategic business stakes, you will make digital trust an accelerator of ecological solutions and safeguard the water, waste, and energy solutions of tomorrow.

  • Architectural Agility: Design custom, adaptive security postures that match the actual maturity and criticality of each environment-leveraging modern browser-level Zero Trust for high-speed cloud business, while pragmatically securing legacy and OT scopes. Orchestrate safe growth, instead of enforcing static checklists.

  • Synergy and rationalisation: Rationalize and simplify our global protection stack-reducing architectural complexity, eliminating redundant tools, and co-designing elegant, unified standards-by federating and animating a vibrant international community of Zero Trust contributors and experts across our Business Units. Turn our technical diversity into a streamlined strength!


3. The Core Missions

Strategy Definition & Secure-by-Design Architecture

Act as the senior technical referee. You will define, validate, and promote the Zero Trust architecture blueprint across Group teams and global BUs. You will steer technical choices away from legacy, network-dependent constraints and advocate for modern identity-centric, browser-enforced, and resource-level controls.

Cyberlab Leadership & Prototyping

Lead the technology watch and build practical proof-of-concepts (PoCs) within our Cyberlab. This involves validating advanced solutions and determining their fit for Veolia's maturity and scopes criticality.

For instance, you will have to consider the protection of AI components (LLMs, generative AI, and autonomous agents) as well as develop specific integration models (such as SASE/ZTNA) designed exclusively to securely integrate legacy software and OT/SCADA environments into our trust framework.

Global Support for Business Units (BUs)

Democratize Zero Trust and native protection of our assets. You will build and publish reusable "blueprints", starter kits, and architectural templates to facilitate easy migration paths for local teams.

When local BUs face unique architectural hurdles, you will use your pragmatism and expertise to design secure workarounds, ensuring security acts as an enabler to business delivery rather than a blocker.

The Design & Legal Assessment (DLA)

Contribute as an expert to the DLA process to support DLA team in evaluating and auditing newly introduced or renewed Group solutions (SaaS, PaaS, Mobile, and complex multi-cloud deployments).

Le profil recherché

4. The Technical Playground & Profile

  • Cloud & Web Ecosystems: Public Clouds (GCP, AWS, Azure), Web-Oriented Architecture (WOA), REST APIs, Internet Standards, Web application delivery pipelines.
  • Transition & Hybrid Stack: SASE, ZTNA, CASB, SSPM/CSPM, Proxies, and perimeter simulation tools (strictly utilized for legacy/OT network containment).
  • Zero Trust & IAM: Managed/Secure Enterprise Browsers as Zero Trust foundation based on Managed Chrome and Context-Aware Access (CAA) and Chrome Enterprise Premium (CEP) for identity and data enhanced protection. Microsoft Entra ID, Identity & Access Governance (IAG), Conditional Access, Endpoint Management.
  • Industrial & Operational (OT): SCADA systems, operational industrial environments, and basic OT cybersecurity principles.
  • DevSecOps & Code Culture: CI/CD integration, automation concepts, and development best practices.
  • Artificial Intelligence (AI): Artificial Intelligence principles, securing LLM workloads, GenAI, and Agentic AI workflow protections.
  • Cybersecurity Frameworks: NIST CSF, OWASP, Secure-by-Design architecture methodologies, Security Information & Risk Management (Risk-based approach)

5. The Professional DNA (Soft Skills)

  • The Pedagogical Evangelist: Advanced ability to popularize highly complex technical concepts. You represent security not as an obstacle but as an enabler, building clear educational content and hosting workshops to win hearts and minds.

  • The Federator: Strong team spirit and diplomacy. You represent your team with "one team, one voice," bringing international BUs together to make secure architectural decisions by consensus.

  • Rigorous & Autonomous: Excellent self-direction and ability to make calculated architectural decisions with the right level of reporting. You hold high technical standards and ensure clean implementation.

  • Appetite for Continuous Learning and Innovation: A natural curiosity for operational processes and a drive to experiment with new security tooling and market trends within the Cyberlab.

6. Key Details

  • Contract Type: CDI
  • Location: Aubervilliers, France (Hybrid-friendly environment)
  • Experience Requirements: Typically 5+ years of experience in enterprise systems design and modern cloud security architectures.
  • Language Requirements: Fluent English (written & spoken) is an operational requirement for international BU collaboration.
Postuler sur le site du recruteur

Parcourir plus d'offres d'emploi