Senior Cybersecurity GRC

il y a 19 heures


Paris, France TuneCore, Inc. Temps plein

What you’ll do Risk management that drives decisions: Run lightweight, continuous risk assessment and threat modelings with teams (not once-a-year rituals). Translate risk into clear options: impact, likelihood, tradeoffs, and recommended actions. Track remediation plans and provide visibility through simple reporting. Build practical governance: Maintain and improve security policies/standards so they’re short, actionable, and adopted. Create control objectives that fit real engineering workflows (CI/CD, cloud, SaaS, identity). Compliance, without the theater: Support audits and evidence collection with a focus on efficiency and reusability. Help align our program with recognized frameworks (e.g., NIST) in a pragmatic way. Develop “compliance-as-code” habits where possible (automated checks, continuous evidence). Third-party risk (vendors, partners): Drive assessments, follow-ups, and risk treatment with procurement and stakeholders. Push for scalable vendor processes (tiering, standard questionnaires, measurable requirements). Security enablement: Create playbooks, templates, and self-service material that teams can use without heavy guidance. Coach teams to understand risk and make better security choices early in delivery. Qualifications Experience in GRC / risk / compliance in a tech environment (security, cloud, SaaS, engineering orgs). Strong understanding of security fundamentals: identity, access, logging, incident response, cloud shared responsibility, secure SDLC (at a practical level). Ability to write simple, clear policies/standards and translate requirements into engineering-friendly controls. Comfort with ambiguity and agility: you can iterate, prioritize, and deliver incremental improvements. Excellent stakeholder skills: you can influence without authority, challenge respectfully, and get things done. Experience aligning programs to frameworks (NIST CSF, ISO 27001, SOC 2, etc.). Experience with vendor risk platforms or automation (workflows, evidence collection, dashboards). Familiarity with “compliance as code” concepts, continuous controls monitoring, or security tooling. Experience partnering with product/engineering teams on secure-by-design practices. How we work We value ownership, transparency, and pragmatism. We prefer automation and repeatability over manual processes. We challenge “the old way” when it’s slow, fragile, or meaningless. We aim to be a security team that teams want to work with. Additional Information Working at Believe means having individual and collective impact in a fast-growing company At all stages of their careers, Believers are an important part of what we are doing: shaping the future of the music industry. We need teams that truly reflect the diversity of our clients: our international presence is an inspiring and enriching work environment for each one of us, with daily opportunities to connect with our colleagues all over the world. We have two hearts at Believe – our People and our Artists. We believe in THE POWER OF OUR PEOPLE, who grow every day to develop their potential… We aim to provide our Believers with the best environment to thrive. ROCK THE JOB Tailor-made training and coaching program A wellness program “Pauses” with many activities and animations in-house Access to Eutelmed, a digital mental health and well-being platform that allows you to speak with an experienced psychologist A healthy and eco-responsible company restaurant Individual or family health insurance A rooftop A gym with free classes SING IN HARMONY Ambassador program: an employee volunteering initiative dedicated to all Believers interested in having a positive impact on Diversity, Equity & Inclusion (DEI), wellbeing and the planet. Implementation of the sustainable mobility package “Forfait mobilité durable” => Reimbursement of up to 600€ for public transport/low carbon footprint 5 calendar days 2nd parent leave with 100% pay (in addition to the legal paternity or adoption leave) We are committed to having a workforce that is representative of the community it serves at all levels of the organisation. We, therefore, welcome applications from all backgrounds and all sections of the community regardless of age, disability, gender, race, religion and sexual orientation. #J-18808-Ljbffr


  • Senior GRC

    il y a 21 heures


    Paris, France La Fosse Temps plein

    A global technology firm in Paris is seeking an experienced Info Security GRC Officer to lead their Information Security transformation. The ideal candidate will have extensive GRC knowledge, focusing on Supply Chain Risk Management and regulatory compliance programs. Key responsibilities include implementing a new GRC tool and collaborating with a...

  • Senior Cybersecurity GRC

    il y a 1 semaine


    Paris, Île-de-France Believe Temps plein

    Company DescriptionBelieve is a global artist development company. We empower local artists, labels andpublishers to grow their audiences at each stage of their careers with expertise, respect,fairness and transparency.Operating in 50+ countries, with more than 2,000 employees, Believe oCers a full rangeof services including audience development, publishing,...

  • Senior Cybersecurity GRC

    il y a 2 semaines


    Paris, Île-de-France Believe Temps plein

    Company Description Believe is a global artist development company. We empower local artists, labels and publishers to grow their audiences at each stage of their careers with expertise, respect, fairness and transparency.Operating in 50+ countries, with more than 2,000 employees, Believe oCers a full range of services including audience development,...

  • Senior Cybersecurity GRC

    il y a 1 semaine


    Paris, Île-de-France Believe Temps plein

    Company Description Believe is a global artist development company. We empower local artists, labels and publishers to grow their audiences at each stage of their careers with expertise, respect, fairness and transparency.Operating in 50+ countries, with more than 2,000 employees, Believe oCers a full range of services including audience development,...


  • Paris, France TuneCore, Inc. Temps plein

    A tech company in the music industry is seeking a risk management professional to oversee compliance and security standards. The ideal candidate will have experience in GRC/risk in a tech environment, excellent stakeholder skills, and an ability to create clear policies. This role involves running continuous risk assessments, maintaining security policies,...


  • Paris, France Collective Temps plein

    Une société de conseil en cybersécurité recherche un(e) freelance Cyber GRC senior à Paris. Le candidat idéal doit avoir plus de 10 ans d'expérience en Cyber GRC dans des environnements sensibles comme le nucléaire et être capable de produire des documents actionnables. La maîtrise de la classification des données et la souveraineté des données...


  • Paris, France Gravity Conseil Temps plein

    A consulting firm in cybersecurity is seeking a Senior Technical Writer to develop and maintain high-quality documentation for their cybersecurity and governance practices. This hybrid role demands at least 5 years of experience in technical writing or business analysis, a strong knowledge of cybersecurity frameworks, and excellent communication skills. The...

  • Senior TAM

    il y a 19 heures


    Paris, France Hyperproof Temps plein

    A leading cybersecurity company in Paris is seeking a Senior Technical Account Manager to ensure the technical success of clients from implementation to long-term optimization. The role involves leading platform implementations, providing technical support, and building the TAM function. Applicants should have 5+ years of cybersecurity experience,...


  • Paris, France CybelAngel Temps plein

    A leading cybersecurity firm is seeking a Senior Enterprise Account Executive in Paris. This role involves developing new business opportunities within large enterprises and managing the entire sales cycle. The ideal candidate will have over 5 years of B2B sales experience in cybersecurity, a great command of French, and a strong track record of exceeding...


  • Paris, France Gravity Conseil Temps plein

    A leading consulting firm in France is seeking a Senior Technical Writer who specializes in cybersecurity, IT, and governance. This hybrid role involves developing comprehensive documentation and collaborating with experts to enhance cybersecurity practices. Candidates should have over 5 years of experience and a relevant bachelor's degree. The position...