Operational Security Manager (M/F)

Forums Talents HandicapGirondeEURESpublished 07/22/2026
Must-have:CloudSecurityLead
Machine translation — original language: French.Show original

Within the Cybersecurity & Compliance Department, the Operational Security Manager (OSM) carries the "run" dimension of cybersecurity: they guarantee the daily security of the internal IS (IT) and the Offer infrastructures. This newly created position with an international dimension orchestrates security incident detection and response, management through indicators, and the security assessment of tools and vendors.

Objective: to guarantee a homogeneous, measurable, and resilient level of security across the group, while respecting local specificities.

Main Responsibilities

Security Incident Management and Response

Manage the qualification, prioritization, and treatment of incidents affecting the internal IS (in coordination with the Lead SecOps IT) and the Offer infrastructures; manage the incident lifecycle through to the post-mortem and the follow-up of action plans Maintain detection and response procedures (playbooks, runbooks) Prepare and lead cyber crisis management (exercises, coordination with the cyber team and external authorities and partners)

SOC Supervision and Internal Detection Management

Define the SOC strategy and manage its overall performance (SLA, detection quality, response time), relying on the Lead SecOps IT as the operational relay for the IT perimeter Evolve detection use cases and integrate Threat Intelligence Continuously evaluate detection coverage against threats

Management by Indicators and Reporting

Define and monitor operational security indicators (incidents, SOC alerts, detection and remediation times, coverage, security debt) Produce operational reporting for the Cybersecurity Manager and the COMEX summary, and feed the operational component of compliance

Security Assessment of Tools and Vendors

Participate in security assessments of IT tools (acquisition and lifecycle) and evaluate the risk of critical vendors and third parties Carry security requirements into procurement and contracting processes and follow up on vendor remediation plans

Cyber Framework, Cross-functional Animation, and Client Support

Define and disseminate a cyber framework and guidelines adapted to each perimeter (service desk, internal IT, Offer infrastructure), co-constructed with the CISO Act as support for client requests (security questionnaires, audits, incidents)

Profile

Master's degree (engineering school, master's in cybersecurity or equivalent) Minimum 5 years of experience in operational security, SOC, incident response, or secure infrastructures, including experience in cross-functional management Comfort in an international and cross-functional environment Certifications preferred: CISSP, CISM, ISO 27001, cloud certifications Fluent English

Technical Skills

Incident response and investigation (CSIRT / CERT logic) Security supervision: SOC, detection and Threat Intelligence, KPI, SLA Hybrid infrastructure security: cloud infrastructures, systems and networks, hardening and vulnerability management Management by indicators and reporting (operational, executive, regulatory)

Behavioral Skills

Cross-functional leadership: uniting and managing without direct hierarchical links, and internationally Ability to simplify and disseminate a security culture to non-specialist teams Rigor, analytical mindset, autonomy