Senior Information Security Compliance Officer

Il y a 16 minutes


Greater Paris Metropolitan Region, France Sodexo Temps plein

Founded in Marseille in 1966 by Pierre Bellon, Sodexo is the global leader in sustainable food and valued experiences at every moment in life: learn, work, heal and play. Operating in 45 countries, our 430,000 employees serve 100 million consumers each day. The Sodexo Group stands out for its independence and its founding family shareholding, its responsible business model and its portfolio of activities including Food Services, Facilities Management Services and Employee Benefit Solutions.Our mission: to improve the quality of life of our employees and those we serve, and contribute to the economic, social and environmental progress in the communities where we operate.For Sodexo, growth and social commitment go hand in hand.Our purpose is to create a better every day for everyone to build a better life for all. We are looking for a Senior Information Security Compliance expert to join our Global Cybersecurity team and play a key role in ensuring that risk management processes are properly followed across the TDDI function and among business stakeholders. Your main assignments will be :Build an annual consolidated Information Security Compliance Programme that provides the business, IT visibility of internal and external Audit & Assurance activity to allow appropriate demand & resource planningDeliver effective Security Compliance reporting to inform Risk & Issue reporting to the CISO, IT & Business Senior LeadershipEnsure Audit & Assurance actions are managed, tracked, and reported through to mitigationISO27001Ensure the ISMS is managed and maintained in alignment with the Statement of Applicability and ISO27001/2 frameworkDefine requirements for the ISMS, document and implement security policies to develop and maintain the ISMSManage and maintain the ISMS documentationConduct and supervise Sodexo Group’s regular audits and review the implemented controls covered by the ISMS scope to align to the business needDevelop a plan to scale up ISO27001 practices to a wider scope to improve overall security maturityExplore opportunities for consolidation of ISMS where practical and appropriateManage ISO22301 compliance improvements and coordinate annual testing requirementsBuild and maintain IT business continuity and the disaster recovery plan aligned to business needsEnsure annual recovery testing coordination of IT environment and revise requirements for critical recovery strategy aligns with business requirementsInformation Security Third Party AssuranceManage and maintain questionnaires within the Third Party Risk Management platform used by internal and external stakeholders, enhancing the product and supporting processes where applicable.Conduct risk-based information security due diligence activities against vendors to provide appropriate levels of assurance to key stakeholdersEnhance Information Security Third Party Assurance processes and engagement activities across IS&T,transversal functions and the wider businessPCI DSS, NIS2, AI Act and relevant regulationsCoordinate and report on PCI-DSS, NIS2, AI Act compliance programmes to provide direction and assurance of operational controls and meet Sodexo’s compliance requirements⚒️ Your profile and competencies :6+ years of experience in Information Security and related fieldsExpert knowledge and practical experience of ISO27001 certification requirements and ISMSdocumentationExpert knowledge and practical experience in implementing compliance action plans regarding applicableregulations (i.e: NIS2, AI Act, PCI-DSS etc)Experience of leading and performing internal or external IT auditsExperience of dealing with third party supplier auditsExperience of negotiating with stakeholders in designing relevant action plansExperience of comprehensive IT internal audit program design and developmentGeneral knowledge of IT environments and technologiesGeneral Knowledge of Security Architecture or Enterprise ArchitectureDesirable Certifications: CISA, CRISC, QSA, ISO27001 LI, ISO27001 LA.Ability to communicate effectively in French and in English, both written and verballyAnalytical and problem-solving capabilitiesStrong mindedRigorous and organisedAbility to gain Government Security Clearance What we offer : Competitive employee benefits: 13th month salary, works council (CSE), health insurance, 50% reimbursement of public transport subscription, additional leave for family events (wedding, birth, etc.), PERECO Position based in Issy-les-Moulineaux, easily accessible via Tram T2 and RER Cif you are interested, do not hesitate to apply


  • Information Security Officer

    Il y a 17 minutes


    Paris, France La Fosse Temps plein

    Information Security Officer - GRCI’m currently working with a huge global business who are undergoing a significant tech and cyber transformation, and they’re looking for an Info Security GRC Officer to be a senior member of the team and help drive their Information Security transformation. This is a well-rounded role and perfect for someone who likes a...


  • Paris, France Criteo Temps plein

    What You'll Do:Joining the Trust & Compliance team means stepping into the engine room of security strategy at a fast-moving tech company.A front-row seat to how security drives innovation in a data and AI-driven company.A strong cross-functional culture: you'll work with security engineers, architects, product managers, legal, compliance, and ops.A real...

  • IT Security Compliance Manager

    il y a 2 semaines


    Paris, France Glopal Temps plein

    **IT Security Compliance Manager** Glopal connects millions of buyers and merchants around the world to unlock cross-border trade. Glopal provides advanced international marketing solutions for ecommerce retailers and brands seeking to grow their businesses' globally. Using a suite of automated localization tools, merchants can quickly launch their stores on...

  • Chief Trust

    il y a 5 jours


    Paris, France griddable.io Temps plein

    A leading technology company is seeking a VP Customer Security Officer to lead Trust, Security, and Governance efforts in France. This senior leadership role requires over 15 years in cybersecurity, experience in executive roles, and the ability to interact with CxO-level customers. The successful candidate will own security governance, manage strategic...


  • Paris, France UNIQLO Temps plein

    UNIQLO is a leading brand of the Fast Retailing Group, one of the largest apparel retailers in the world. UNIQLO respects the individuality and lifestyle of all customers and takes pride in creating high quality, long-lasting, innovative clothing at an affordable price. We are currently recruiting for an Information Security Specialist (Business Analyst and...


  • Paris, France Allego Temps plein

    **This is Allego** Allego provides reliable charging solutions to cities, companies, and consumers. We deliver charging facilities that can be used by all electric cars and every EV driver, providing a seamless charging experience. Our goal is to contribute to zero emission mobility and see to it that EV drivers can charge at the right location with the...

  • Chief Trust

    il y a 7 jours


    Paris, France Salesforce, Inc.. Temps plein

    A leading cloud computing company is seeking a VP Customer Security Officer in France. This individual will be responsible for orchestrating Trust, Security, and Governance in the French market. Key responsibilities include acting as the executive authority on security and data protection, engaging with CxO-level customers, and overseeing compliance with...


  • Paris 10e, France swan.io Temps plein

    **About**: Swan, a European fintech company, is the easiest way to add banking features to your product. This can be called “Banking-as-a-Service” or “Embedded finance”. We built Swan so that anyone can start embedding banking features within just minutes of visiting our website. Swan is truly fast and easy to use. Swan already has 60 customers...

  • Senior Compliance Officer

    il y a 2 semaines


    Paris, France Skillspark AB Temps plein

    **Start** *** **ASAP** **Duration** *** **1-3 months** emagine is looking for a Senior Compliance Officer with strong experience of France regulatory Tax Reporting **About The Job** Would you like to be part of an ambitious compliance team where you will play an important role in supporting the business meeting regulatory requirements in a dynamic and...


  • Paris, France Salesforce, Inc.. Temps plein

    We are seeking a high-impact VP Customer Security Officer to own and orchestrate Trust, Security, and Governance for the French market. This role is critical to reinforcing customer trust, enabling growth in regulated industries, and positioning security as a business and go-to-market differentiator. It sits at the intersection of technology, regulation,...