Consultant IT risk & cybersecurity - Freelance (M/F)
Daily rate (TJM): Max TJM excl. VAT 527 € (excluding any mission expenses, to be discussed with the client)
Team Mission:
The mission is part of a Security Department in charge of the second line of defense regarding IT and cyber risks on a financial group scale.
The framework notably covers the following areas:
- IT governance and strategy
- IT developments and projects
- IT production
- Cybersecurity
- IT disaster recovery plan
The objective is to define and deploy risk management models and processes across the various entities of the Group.
- Definition and maintenance of risk management processes
- The mission will contribute to defining and maintaining the processes associated with the TRM risk management model.
- It must ensure the consistency and sustainability of the IT and cyber risk management framework.
- Deployment of processes to entities
- The mission must ensure the application of the defined processes across all concerned entities.
- It will support the various stakeholders in their understanding and ownership of the framework.
- IT and cyber risk assessment
- The mission will intervene in the analysis and assessment of IT risks, with particular attention paid to cybersecurity issues.
- Steering and support
- The mission requires the ability to lead cross-functional projects and to support different stakeholders with pedagogy and conviction.
Requested services:
- Define and maintain the processes of the TRM risk management model
- Ensure their application within the different entities
- Assess IT and cyber risks
- Lead projects associated with risk management frameworks
- Support stakeholders in the application of processes
Industry sector: Bank / Financial services
Schedule: from 10/08/2026 to 31/12/2026
Expertise: IT risk management, Cybersecurity, Risk assessment, Risk governance, TRM process management, Project management
Sectors: Bank / Financial services
Roles: Consultant IT Risk, Consultant Cyber Risk, Consultant IT Risks
Functional scope: IT and cyber risk governance, Definition and maintenance of risk management processes, Risk assessment, Cross-functional deployment of processes, Project management
Methods / frameworks:
- EBIOS, certification appreciated
- ISO 27005, certification appreciated
Intervention modality: hybrid, 2 days of teleworking
Location: Eastern Paris
English: professional proficiency in writing and speaking