Senior Security Analyst

il y a 1 jour


Massy, Île-de-France Ivalua Temps plein

Senior Security Analyst - GRC

(Massy - France)

Founded in 2000, Ivalua is a leading global provider of cloud-based procurement solutions.

COMPANY OVERVIEW

At Ivalua we are a global community of exceptional professionals, who believe that digital transformation revolutionizes supply chain sustainability and resiliency to unlock the power of supplier collaboration. We achieve this through our leading cloud-based spend management platform that empowers hundreds of the world's most admired brands to effectively manage all categories of spend and all suppliers to increase profitability, improve ESG (environmental, social, and corporate governance) performance, lower risk, and improve productivity. Driven by our passions and fueled by our shared ambitions, we empower and challenge each other to create meaningful experiences for our colleagues, customers, partners, and communities. 

Learn more at Follow us on LinkedIn 

THE OPPORTUNITY

CONTEXT:

You will be part of the InfoSec team with a mission to build, maintain, and continuously improve our Information Security program, providing peace of mind and assurance of protection and safety to our customers. Our team is hands-on, with a strong problem-solving mindset, capable of thinking holistically about implementation and providing solutions to address our customers' long-term challenges. We work hard and play hard, enjoying various indoor and outdoor activities organized by the company, allowing you to focus, collaborate, and unleash your creativity.

ROLE: 

We are looking for a Senior Security Analyst to join our InfoSec team. This role will help drive various GRC activities which include supporting prospect and customer security questions, maintaining security policies, supporting security audits and assessments and driving new security certifications/compliance initiatives. 

WHAT YOU WILL DO WITH US 

  • Lead and support compliance initiatives across global and regional frameworks including SOC 1/SOC 2, ISO 27001, IRAP, PCI-DSS, SecNumCloud, Cyber Essentials Plus (CE+), BSI C5, NIST 800-53
  • Evaluate technical controls across the technology stack, including all layers of the TCP/IP model (e.g. network segmentation, firewall rulesets, TLS/SSL configuration, IDS/IPS, access controls, application security, encryption in transit/at rest, cloud security configurations), and translate security requirements into actionable guidance for engineering and infrastructure teams.
  • Drive and manage customer security audits, security questionnaires, and contract reviews with a primary focus on the EMEA region. Participate in the negotiation and review of French contracts to ensure alignment with security and compliance obligations.
  • Attend prospect and customer meetings and effectively present Ivalua's security architecture and control information to them. 
  • Lead or support internal and third party security risk management processes, including risk identification, analysis, scoring, treatment planning, and ongoing monitoring. 
  • Support continuous compliance monitoring activities using manual and automation and GRC tooling to maintain control effectiveness, generate evidence, and ensure audit readiness.
  • Own execution and coordination of key security and availability controls such as Business Impact Analysis (BIA), Disaster Recovery testing, security incident response exercises, access reviews, etc. 

YOUR PROFILE

If you have the below experience and strengths this role could be for you:

Skills and Experience:

  • At least 4 years of experience as Security Analyst GRC 
  • Strong working knowledge of security, risk, and compliance frameworks (e.g. NIST CSF & 800-53, ISO 27001, SOC, HITRUST, HIPAA, PCI-DSS, GDPR)
  • Direct experience managing audits, self-assessments, or risk assessments against one or more InfoSec frameworks listed above
  • Experience performing or supporting security risk management processes (risk assessments, risk registers, business impact analysis)
  • Familiarity with continuous compliance and monitoring platforms
  • Good understanding of cloud platforms (Azure, AWS, GCP) and ability to discuss security architecture and control implementation with technical teams
  • Knowledge and experience working with IT and security personnel as well as security concepts across all layers of technology (network, infrastructure, web applications, cloud environments)
  • Knowledge of risk and security industry literature and knowledge bases (e.g. OWASP, MITRE ATT&CK, NIST
  • Relevant audit and/or Information Security certifications (e.g. CISSP, CISA, CISM, Azure Cloud Security) are desired
  • Prior experience at a Big 4 firm or in a security/compliance function in a cloud/SaaS environment is a plus 

Soft Skills:

  • Excellent interpersonal, communication, and organizational skills. Ability to communicate efficiently and professionally in both French and English, including in contractual, regulatory, and technical contexts
  • Demonstrated ability to work across geographically distributed teams and with external vendors, auditors, or regulators.
  • Strong organizational skills and attention to detail; able to manage multiple competing priorities in a fast-paced environment
  • High degree of initiative, self-motivation, and ability to work independently with limited supervision

WHAT HAPPENS NEXT

If your application fits this specific position's needs, our skilled Talent team will reach out to schedule an initial screening call. Get one step closer to achieving your goals – apply today 

Our Talent team will guide you through every step of the interview process - from preparation to completion. They're here to support you 

Our recruitment process is designed to assess your competencies through a series of personalized interviews with internal stakeholders relevant to the role. 

Interviews will be conducted virtually via video or on-site with face-to-face meetings.

LIFE AT IVALUA

  • Hybrid working model (3 days in the office per week)
  • We're a team dedicated to pushing the boundaries of product innovation and technology
  • Sustainable Growth, Privately Held
  • A stable and cash-flow positive Company since 10 years
  • Snacks and weekly lunches in the office
  • Feel empowered to pursue your goals with improved team collaboration and increased creativity/productivity
  • Unlock and unleash your full professional potential with our exceptional training and career development program
  • Join a dynamic and international team of top-notch professionals who are experts in their respective fields
  • Collaborate with like-minded individuals who are deeply passionate and highly motivated about their work
  • Experience a truly diverse and inclusive work environment where your unique contributions are highly valued
  • Regular social events, competitive outings, team running events, and musical activities
  • Comparably recognized Ivalua for the following ): 

Powered by People - Powered by You

United by our values we embrace diversity and equity in the broadest possible sense to create an inclusive workplace. To help our customers make supply chains more efficient, sustainable and resilient, we rely on a global team with a variety of backgrounds, skills and views. We believe in equal opportunity and in diversity as a driver of innovation that cultivates a spirit of inclusiveness, creates a productive and fun place to work, and provides fulfilling career opportunities for all Ivaluans.

Experience life at Ivalua - check out our captivating video Gain insight into our unique company culture and get a glimpse of what it's like to work with us.

#LI-MV1

#LI-HYBRID


  • Senior Security Analyst

    il y a 2 jours


    Massy, Île-de-France Ivalua Temps plein

    (Massy - France)Founded in 2000, Ivalua is a leading global provider of cloud-based procurement solutions.Company OverviewAt Ivalua we are a global community of exceptional professionals, who believe that digital transformation revolutionizes supply chain sustainability and resiliency to unlock the power of supplier collaboration. We achieve this through our...


  • Massy, Île-de-France SOC Temps plein

    Analyste Sécurité Senior (SOC) - F/H(Massy - France)Créée en 2000, Ivalua est un leader mondial dans l'édition de solutions cloud de gestion des achats.NOTRE ENTREPRISEChez Ivalua, nous sommes une communauté mondiale d'experts convaincus que la transformation numérique rend les chaînes d'approvisionnement plus durables et résilientes, tout en...


  • Massy, Île-de-France Collective Temps plein

    Budget: 600Chef de projet senior Data / Automatisation & IAContexteNous recherchons unChef de projet seniorayant une forte cultureData / Business Analysis, pour intervenir au sein duservice e-commcerce.La mission s'inscrit dans une démarche detransformation digitale, avec un accent sur l'automatisationdes processus,la création et l'intégration de...


  • Massy, Île-de-France Carrefour France Temps plein

    A propos de l'offre :Créateur de l'hypermarché, Carrefour reste fidèle à ses racines tout en se réinventant pour permettre à chacun de mieux manger : plus sain, plus local, plus responsable.Leader mondial de la distribution, nous sommes engagés pour la diversité, la RSE et la transformation digitale, tout en créant un environnement de travail...


  • Massy, Île-de-France Crédit Agricole Temps plein

    Informations générales Entité Crédit Agricole Personal Finance & Mobility, filiale à 100% du Groupe Crédit Agricole, est un leader du financement personnel et un fournisseur d'accès à toutes les solutions de mobilités en Europe. Il distribue ces solutions en direct auprès des particuliers, sur les lieux de vente ou sur les plateformes e-commerce...

  • Group Financial Reporting

    il y a 3 jours


    Massy, Île-de-France Viridien Temps plein

    Viridien ( ) is an advanced technology, digital and Earth data company that pushes the boundaries of science for a more prosperous and sustainable future. With our ingenuity, drive and deep curiosity we discover new insights, innovations, and solutions that efficiently and responsibly resolve complex natural resource, digital, energy transition and...

  • Senior Security Analyst

    il y a 3 jours


    Massy, France Ivalua Temps plein

    Senior Security Analyst - GRC(Massy - France)Founded in 2000, Ivalua is a leading global provider of cloud-based procurement solutions.OverviewAt Ivalua we are a global community of professionals who believe that digital transformation can unlock the power of supplier collaboration and drive ESG performance, lower risk, and improve productivity through our...

  • Senior Security Analyst

    il y a 3 jours


    Massy, France Ivalua Temps plein

    Founded in 2000, Ivalua is a leading global provider of cloud-based procurement solutions.COMPANY OVERVIEWAt Ivalua we are a global community of exceptional professionals, who believe that digital transformation revolutionizes supply chain sustainability and resiliency to unlock the power of supplier collaboration. We achieve this through our leading...


  • Massy, France CGG Temps plein

    Company Description **Job Description**: Reporting to Senior Tax Manager in charge of Transfer Pricing, the Senior Transfer Pricing Analyst will support the Transfer Pricing function for the CGG Group. The Senior Transfer Pricing Analyst will assist and support the Senior Tax Manager for the following: - Manage Group transfer pricing compliance globally...


  • Massy, France Ivalua Temps plein

    Analyste Sécurité Senior (SOC) - F/H (Massy - France) Créée en 2000, Ivalua est un leader mondial dans l’édition de solutions cloud de gestion des achats. NOTRE ENTREPRISE Chez Ivalua, nous sommes une communauté mondiale d'experts convaincus que la transformation numérique rend les chaînes d'approvisionnement plus durables et résilientes, tout en...

  • Senior Data Analyst

    il y a 1 semaine


    Massy, France JobiJoba FR S2 Temps plein

    L’utilisation de la data et le développement des capacités analytiques sont un axe majeur du plan stratégique du Groupe Carrefour à horizon 2027. Directement rattachée au COMEX France, l’Analytics Factory de Carrefour France est le pilier de cette transformation analytique, au service de l’ensemble des équipes métier de Carrefour France –...

  • Web Analyst Business Senior

    il y a 2 semaines


    Massy, France Carrefour Temps plein

    Carrefour, leader de la transition alimentaire pour tous, tend à devenir une Digital Retail Company et place ainsi au cœur de sa stratégie le digital et la Data. Notre objectif ? Proposer des produits de qualité et des services diversifiés en ligne. Afin de répondre aux attentes de nos clients, nous poursuivons notre stratégie de transformation...

  • Senior Data Analyst

    il y a 1 semaine


    Massy, France JobiJoba FR S2 Temps plein

    Le Groupe Carrefour est le leader de la grande distribution en Europe avec plus de 115 000 collaborateurs en France et une forte présence à l’international. Avec plus de 300 métiers, Carrefour trouve son dynamisme à travers la richesse et la diversité de ses équipes. L’utilisation de la data et le développement des capacités analytiques sont un...


  • Massy, France JobiJoba FR S2 Temps plein

    Carrefour, leader de la transition alimentaire pour tous, tend à devenir une Digital Retail Company et place ainsi au cœur de sa stratégie le digital et la Data. Notre objectif ? Proposer des produits de qualité et des services diversifiés en ligne. Afin de répondre aux attentes de nos clients, nous poursuivons notre stratégie de transformation...

  • Senior Audit Analyst

    il y a 1 semaine


    Massy, France Euro London Appointments Temps plein

    Avez-vous une expérience en audit, contrôle interne, contrôle de gestion, comptabilité ou achats ?Etes-vous trilingue français, allemand, anglais ?Notre client, acteur international reconnu dans le domaine de l’audit et de l’analyse des dépenses, accompagne de grandes entreprises dans l’optimisation de leurs processus achats et la détection...


  • Massy, France Brain Power Temps plein

    #!# AVANTAGES DU POSTE #!# - Environnement international à la pointe de l'innovation - Forte polyvalence sur des sujets sécurité, R&D et DevSecOps - Cadre de travail flexible, dynamique et collaboratif #!# #!# #!# DESCRIPTION DU POSTE #!# Dans le cadre de son développement, notre Client, acteur de référence dans le domaine des télécoms et réseaux,...