Chief Information Security Officer (CISO)
You will be responsible for defining and implementing the security measures necessary to guarantee the protection of systems, data, and processes, while ensuring their alignment with regulatory requirements and industry best practices.
- Lead security governance, manage ISS risks, and ensure regulatory compliance.
- Develop, maintain, and evolve the information systems security policy (PSSI).
- Lead the business unit security committee.
- Contribute to risk analyses and define associated treatment plans.
- Coordinate internal and external security audits (clients, authorities, certifications).
- Supervise vulnerability and penetration testing campaigns.
- Monitor security indicators and implement continuous improvement plans.
- Control the application of security rules, particularly regarding access, roles, and privilege management.
You will work in close coordination with the group security management, R&D, as well as the security teams of the Cloud department.
You hold a higher education degree (Bac +4/5) in cybersecurity, computer science, or risk governance, with approximately 10 years of experience in a similar position. A good level of technical English is required.
Expected Skills You master the fundamental principles of information systems security (confidentiality, integrity, availability, traceability), as well as the main technical mechanisms: network security, vulnerability management, encryption, access protection.
You have excellent knowledge of the ISO/IEC 27001 standard, its operational implementation, and the management of an information security management system (ISMS). You know how to conduct risk analyses and lead the associated actions.
You understand modern application architectures (API, containers, microservices) and are sensitive to DevSecOps challenges. You have a good command of cloud environments (notably Google Cloud) and SaaS/PaaS/IaaS models.
You are comfortable with requirements related to GDPR, particularly regarding security aspects (logging, breach notification, contractual clauses).
Personal Qualities You demonstrate leadership, interpersonal skills, and the ability to educate to raise awareness among teams. You have a sense of analysis, rigor, and a good ability to structure and prioritize actions in a complex environment.