Operational Security Manager (M/F)
Within the Cybersecurity & Compliance Department, the Operational Security Manager (OSM) carries the "run" dimension of cybersecurity: they guarantee the daily security of the internal IS (IT) and the Offer infrastructures. This newly created position with an international dimension orchestrates security incident detection and response, management through indicators, and the security assessment of tools and vendors.
Objective: to guarantee a homogeneous, measurable, and resilient level of security across the group, while respecting local specificities.
Main Responsibilities
Security Incident Management and Response
Manage the qualification, prioritization, and treatment of incidents affecting the internal IS (in coordination with the Lead SecOps IT) and the Offer infrastructures; manage the incident lifecycle through to the post-mortem and the follow-up of action plans Maintain detection and response procedures (playbooks, runbooks) Prepare and lead cyber crisis management (exercises, coordination with the cyber team and external authorities and partners)
SOC Supervision and Internal Detection Management
Define the SOC strategy and manage its overall performance (SLA, detection quality, response time), relying on the Lead SecOps IT as the operational relay for the IT perimeter Evolve detection use cases and integrate Threat Intelligence Continuously evaluate detection coverage against threats
Management by Indicators and Reporting
Define and monitor operational security indicators (incidents, SOC alerts, detection and remediation times, coverage, security debt) Produce operational reporting for the Cybersecurity Manager and the COMEX summary, and feed the operational component of compliance
Security Assessment of Tools and Vendors
Participate in security assessments of IT tools (acquisition and lifecycle) and evaluate the risk of critical vendors and third parties Carry security requirements into procurement and contracting processes and follow up on vendor remediation plans
Cyber Framework, Cross-functional Animation, and Client Support
Define and disseminate a cyber framework and guidelines adapted to each perimeter (service desk, internal IT, Offer infrastructure), co-constructed with the CISO Act as support for client requests (security questionnaires, audits, incidents)
Profile
Master's degree (engineering school, master's in cybersecurity or equivalent) Minimum 5 years of experience in operational security, SOC, incident response, or secure infrastructures, including experience in cross-functional management Comfort in an international and cross-functional environment Certifications preferred: CISSP, CISM, ISO 27001, cloud certifications Fluent English
Technical Skills
Incident response and investigation (CSIRT / CERT logic) Security supervision: SOC, detection and Threat Intelligence, KPI, SLA Hybrid infrastructure security: cloud infrastructures, systems and networks, hardening and vulnerability management Management by indicators and reporting (operational, executive, regulatory)
Behavioral Skills
Cross-functional leadership: uniting and managing without direct hierarchical links, and internationally Ability to simplify and disseminate a security culture to non-specialist teams Rigor, analytical mindset, autonomy