Senior Information Security Compliance Officer

il y a 15 heures


Paris, France Sodexo Temps plein

🚀 Founded in Marseille in 1966 by Pierre Bellon, Sodexo is the global leader in sustainable food and valued experiences at every moment in life: learn, work, heal and play.🌍 Operating in 45 countries, our 430,000 employees serve 100 million consumers each day. The Sodexo Group stands out for its independence and its founding family shareholding, its responsible business model and its portfolio of activities including Food Services, Facilities Management Services and Employee Benefit Solutions.Our mission: to improve the quality of life of our employees and those we serve, and contribute to the economic, social and environmental progress in the communities where we operate.For Sodexo, growth and social commitment go hand in hand.Our purpose is to create a better every day for everyone to build a better life for all.We are looking for a Senior Information Security Compliance expert to join our Global Cybersecurity team and play a key role in ensuring that risk management processes are properly followed across the TDDI function and among business stakeholders.🔐 Your main assignments will be :Build an annual consolidated Information Security Compliance Programme that provides the business, IT visibility of internal and external Audit & Assurance activity to allow appropriate demand & resource planningDeliver effective Security Compliance reporting to inform Risk & Issue reporting to the CISO, IT & Business Senior LeadershipEnsure Audit & Assurance actions are managed, tracked, and reported through to mitigationISO27001Ensure the ISMS is managed and maintained in alignment with the Statement of Applicability and ISO27001/2 frameworkDefine requirements for the ISMS, document and implement security policies to develop and maintain the ISMSManage and maintain the ISMS documentationConduct and supervise Sodexo Group’s regular audits and review the implemented controls covered by the ISMS scope to align to the business needDevelop a plan to scale up ISO27001 practices to a wider scope to improve overall security maturityExplore opportunities for consolidation of ISMS where practical and appropriateManage ISO22301 compliance improvements and coordinate annual testing requirementsBuild and maintain IT business continuity and the disaster recovery plan aligned to business needsEnsure annual recovery testing coordination of IT environment and revise requirements for critical recovery strategy aligns with business requirementsInformation Security Third Party AssuranceManage and maintain questionnaires within the Third Party Risk Management platform used by internal and external stakeholders, enhancing the product and supporting processes where applicable.Conduct risk-based information security due diligence activities against vendors to provide appropriate levels of assurance to key stakeholdersEnhance Information Security Third Party Assurance processes and engagement activities across IS&T,transversal functions and the wider businessPCI DSS, NIS2, AI Act and relevant regulationsCoordinate and report on PCI-DSS, NIS2, AI Act compliance programmes to provide direction and assurance of operational controls and meet Sodexo’s compliance requirements⚒️ Your profile and competencies :6+ years of experience in Information Security and related fieldsExpert knowledge and practical experience of ISO27001 certification requirements and ISMSdocumentationExpert knowledge and practical experience in implementing compliance action plans regarding applicableExperience of leading and performing internal or external IT auditsExperience of dealing with third party supplier auditsExperience of negotiating with stakeholders in designing relevant action plansExperience of comprehensive IT internal audit program design and developmentGeneral knowledge of IT environments and technologiesGeneral Knowledge of Security Architecture or Enterprise ArchitectureDesirable Certifications: CISA, CRISC, QSA, ISO27001 LI, ISO27001 LA.Ability to communicate effectively in French and in English, both written and verballyAnalytical and problem-solving capabilitiesStrong mindedRigorous and organisedAbility to gain Government Security Clearance💯 What we offer :🎁 Competitive employee benefits: 13th month salary, works council (CSE), health insurance, 50% reimbursement of public transport subscription, additional leave for family events (wedding, birth, etc.), PERECO ...🚎 Position based in Issy-les-Moulineaux, easily accessible via Tram T2 and RER Cif you are interested, do not hesitate to apply 😀 #J-18808-Ljbffr


  • Information Security Officer

    il y a 19 heures


    Paris, France La Fosse Temps plein

    I’m currently working with a huge global business who are undergoing a significant tech and cyber transformation, and they’re looking for an Info Security GRC Officer to be a senior member of the team and help drive their Information Security transformation. This is a well-rounded role and perfect for someone who likes a broad remit where they can get...


  • Paris, Île-de-France La Fosse Temps plein

    Information Security Officer - GRCI'm currently working with a huge global business who are undergoing a significant tech and cyber transformation, and they're looking for an Info Security GRC Officer to be a senior member of the team and help drive their Information Security transformation. This is a well-rounded role and perfect for someone who likes a...

  • Senior Security

    il y a 2 jours


    Paris, France Criteo Temps plein

    What You'll Do:Joining the Trust & Compliance team means stepping into the engine room of security strategy at a fast-moving tech company.A front-row seat to how security drives innovation in a data and AI-driven company.A strong cross-functional culture: you'll work with security engineers, architects, product managers, legal, compliance, and ops.A real...


  • Paris, Île-de-France CyberInterim Temps plein

    Company DescriptionCyberInterim is one of the largest global networks of Information Security Experts. Dedicated to addressing complex cybersecurity challenges, CyberInterim provides expertise across industries to ensure an organization's digital security and resilience. The company is committed to delivering tailored solutions and maintaining the highest...

  • Information Security Officer

    il y a 16 heures


    Paris, France Goyard Temps plein

    Join to apply for the Information Security Officer role at GoyardA house of artisanal tradition, Goyard is a French leather goods manufacturer, trunk maker and luggage maker, which has always been keen to assert an identity combining craftsmanship and respect for traditions. A constantly reiterated desire for excellence, crowned by two centuries of...


  • Paris, France Shift Technology group Temps plein

    CISO - Chief Information Security Officer France - Paris Shift is the leading AI platform for insurance. Shift combines generative, agentic, and predictive AI to transform underwriting, claims, and fraud and risk - driving operational efficiency, exceptional customer experiences and measurable business impact. Trusted by the world's leading insurers, Shift...


  • Paris, France Ekkiden Temps plein

    **Le rôle**: Local Information Security Officer (F/M)**: **Responsabilités: ***: - You will assist the central CISO team in identifying, managing and mitigating information security risks - You will prepare information security reports requested by the CISO - You will be monitor and report on the progress in the execution of the corrective and preventive...


  • Paris, Île-de-France Natixis Temps plein

    Company DescriptionNatixis Corporate & Investment Banking is a leading global financial institution that provides advisory, investment banking, financing, corporate banking and capital markets services to corporations, financial institutions, financial sponsors and sovereign and supranational organizations worldwide.Our teams of experts in 30 countries...


  • Paris, Île-de-France Shift Technology Temps plein

    Shift is the leading AI platform for insurance.  Shift combines generative, agentic, and predictive AI to transform underwriting, claims, and fraud and risk - driving operational efficiency, exceptional customer experiences and measurable business impact.  Trusted by the world's leading insurers, Shift delivers AI when and where it matters most, at scale...


  • Paris, France Glopal Temps plein

    **IT Security Compliance Manager** Glopal connects millions of buyers and merchants around the world to unlock cross-border trade. Glopal provides advanced international marketing solutions for ecommerce retailers and brands seeking to grow their businesses' globally. Using a suite of automated localization tools, merchants can quickly launch their stores on...