Senior Information Security Compliance Officer
il y a 18 heures
Founded in Marseille in 1966 by Pierre Bellon, Sodexo is the global leader in sustainable food and valued experiences at every moment in life: learn, work, heal and play. Operating in 45 countries, our 430,000 employees serve 100 million consumers each day. The Sodexo Group stands out for its independence and its founding family shareholding, its responsible business model and its portfolio of activities including Food Services, Facilities Management Services and Employee Benefit Solutions.Our mission: to improve the quality of life of our employees and those we serve, and contribute to the economic, social and environmental progress in the communities where we operate.For Sodexo, growth and social commitment go hand in hand.Our purpose is to create a better every day for everyone to build a better life for all. We are looking for a Senior Information Security Compliance expert to join our Global Cybersecurity team and play a key role in ensuring that risk management processes are properly followed across the TDDI function and among business stakeholders. Your main assignments will be :Build an annual consolidated Information Security Compliance Programme that provides the business, IT visibility of internal and external Audit & Assurance activity to allow appropriate demand & resource planningDeliver effective Security Compliance reporting to inform Risk & Issue reporting to the CISO, IT & Business Senior LeadershipEnsure Audit & Assurance actions are managed, tracked, and reported through to mitigationISO27001Ensure the ISMS is managed and maintained in alignment with the Statement of Applicability and ISO27001/2 frameworkDefine requirements for the ISMS, document and implement security policies to develop and maintain the ISMSManage and maintain the ISMS documentationConduct and supervise Sodexo Group’s regular audits and review the implemented controls covered by the ISMS scope to align to the business needDevelop a plan to scale up ISO27001 practices to a wider scope to improve overall security maturityExplore opportunities for consolidation of ISMS where practical and appropriateManage ISO22301 compliance improvements and coordinate annual testing requirementsBuild and maintain IT business continuity and the disaster recovery plan aligned to business needsEnsure annual recovery testing coordination of IT environment and revise requirements for critical recovery strategy aligns with business requirementsInformation Security Third Party AssuranceManage and maintain questionnaires within the Third Party Risk Management platform used by internal and external stakeholders, enhancing the product and supporting processes where applicable.Conduct risk-based information security due diligence activities against vendors to provide appropriate levels of assurance to key stakeholdersEnhance Information Security Third Party Assurance processes and engagement activities across IS&T,transversal functions and the wider businessPCI DSS, NIS2, AI Act and relevant regulationsCoordinate and report on PCI-DSS, NIS2, AI Act compliance programmes to provide direction and assurance of operational controls and meet Sodexo’s compliance requirements⚒️ Your profile and competencies :6+ years of experience in Information Security and related fieldsExpert knowledge and practical experience of ISO27001 certification requirements and ISMSdocumentationExpert knowledge and practical experience in implementing compliance action plans regarding applicableregulations (i.e: NIS2, AI Act, PCI-DSS etc)Experience of leading and performing internal or external IT auditsExperience of dealing with third party supplier auditsExperience of negotiating with stakeholders in designing relevant action plansExperience of comprehensive IT internal audit program design and developmentGeneral knowledge of IT environments and technologiesGeneral Knowledge of Security Architecture or Enterprise ArchitectureDesirable Certifications: CISA, CRISC, QSA, ISO27001 LI, ISO27001 LA.Ability to communicate effectively in French and in English, both written and verballyAnalytical and problem-solving capabilitiesStrong mindedRigorous and organisedAbility to gain Government Security Clearance What we offer : Competitive employee benefits: 13th month salary, works council (CSE), health insurance, 50% reimbursement of public transport subscription, additional leave for family events (wedding, birth, etc.), PERECO Position based in Issy-les-Moulineaux, easily accessible via Tram T2 and RER Cif you are interested, do not hesitate to apply
-
Chief Information Security Officer
il y a 1 semaine
France Revolut Ltd Temps pleinPeople deserve more from their money. More visibility, more control, and more freedom. Since 2015, Revolut has been on a mission to deliver just that. Our powerhouse of products — including spending, saving, investing, exchanging, travelling, and more — help our 55+ million customers get more from their money every day. As we continue our lightning-fast...
-
Cyber Security Compliance Specialist
il y a 2 semaines
France Glocomms Temps pleinJob Description: Cybersecurity Compliance SpecialistLocation: Remote (Europe)Contract: 6 months (renewable)Start Date: ASAPAbout the CompanyOur client is a leading global organization recognized for innovation and excellence in the sports and lifestyle sector. They operate across multiple regions and are committed to maintaining the highest standards of...
-
Cyber Security Compliance Specialist
il y a 2 semaines
France Glocomms Temps pleinJob Description: Cybersecurity Compliance SpecialistLocation: Remote (Europe)Contract: 6 months (renewable)Start Date: ASAPAbout the CompanyOur client is a leading global organization recognized for innovation and excellence in the sports and lifestyle sector. They operate across multiple regions and are committed to maintaining the highest standards of...
-
Senior Security Engineer France
il y a 6 jours
france Chronos Consulting Temps pleinJob Description Our client is a world-renowned US startup in the field of automation. This California unicorn is still a private enterprise experiencing hypergrowth. They are looking for an exceptional Senior Security Engineer to join their team as they build their defensive security capabilities. This is a full-time, permanent role. Hybrid or Remote....
-
Regulatory Compliance Officer – France
il y a 2 jours
France Remote - Cross Border Corpay Temps pleinYour roleWhat We NeedCorpay is currently looking to hire a Regulatory Compliance Officer & MLRO (France) within our Corpay Cross Border line of business.In this role, you will be responsible for ensuring Corpay's French operations are fully compliant with local regulatory requirements. You oversight with strategic regulatory advisory responsibilities,...
-
Cyber Security Internship
il y a 18 heures
France Willhire Temps pleinAbout WillhireWillhire is a staffing and talent acquisition platform dedicated to helping leading organisations connect with exceptional talent. As we expand into the cybersecurity, AI/ML, and cloud technology domains, we are inviting passionate and detail-oriented individuals to join our Cyber Security Internship Cohort.Role OverviewAs a Cyber Security...
-
Security Analyst
il y a 2 jours
Bd Poissonnière Paris, France Wiremind Temps pleinSince 2014, Wiremind has positioned itself as a technical company transforming the world of transport and events with a 360° approach combining UX, software, and AI.Our expertise lies primarily in optimizing and marketing our clients' capacity. We work on various projects such as ticket forecasting and pricing, 3D optimization of air freight or scraping...
-
Senior DevSecOps Engineer
il y a 3 semaines
France Neotrust Temps pleinJob Description — Senior DevSecOps Engineer (Offensive Security Focus)Location: Hybrid (Paris) or Remote (France/Europe)Department: Cybersecurity / DevSecOpsSeniority: Senior / ExpertDuration: 1 year (renewable)Contract: Full-time (Freelance)About the roleWe’re looking for a Senior DevSecOps Engineer with a strong Offensive Security mindset to elevate...
-
Senior DevSecOps Engineer
il y a 17 heures
France Neotrust Temps pleinJob Description — Senior DevSecOps Engineer (Offensive Security Focus)Location: Hybrid (Paris) or Remote (France/Europe)Department: Cybersecurity / DevSecOpsSeniority: Senior / ExpertDuration: 1 year (renewable)Contract: Full-time (Freelance)About the roleWe're looking for a Senior DevSecOps Engineer with a strong Offensive Security mindset to elevate our...
-
Senior Software Engineer – AI Compliance
il y a 2 semaines
France / Spain / Italy / Germany / Netherlands All Cares Temps pleinAbout the Company Cephalgo is a Strasbourg-based technology company founded in 2020, focused on developing AI solutions that ensure safety, compliance, and trust in human-AI interactions. Originally rooted in healthcare innovation, Cephalgo's platform helps organizations securely analyze and monitor voice and emotion data while meeting privacy, security, and...