Information Security Manager
About the Role
You will identify and analyze information security risks and define the group's security policy. You will implement and monitor technical and organizational security measures, run audits and tests, manage incidents and backups, and operate the business continuity and recovery plans. You will produce security reporting, deliver training and communication on security rules, perform regulatory and technological watch, and manage security engineers and external suppliers to maintain compliance and robustness of the information system.
Requirements
- Knowledge of information system architecture and urbanization
- Experience with firewalls, antivirus, cryptography and authentication servers
- Experience with penetration testing and PKI
- Knowledge of backup and recovery practices
- Familiarity with risk assessment methods such as MEHARI
- Familiarity with security methodologies such as OSSTMM and OWASP
- Knowledge of data protection law and security regulations
- Knowledge of ISO standards and PCI requirements
- Strong knowledge of networks and systems
- Fluent English for technical documentation
- Experience managing security teams and budgets
Responsibilities
- Conduct security audits
- Analyze risks and define security policy
- Establish and maintain business continuity and disaster recovery plans
- Define and deploy technical security measures
- Manage access control and authorizations
- Implement and enforce security standards and tools
- Manage security infrastructure projects
- Monitor security incidents and maintain incident dashboards
- Oversee backups and verify backup programs
- Coordinate incident response and restore services
- Test security measures and remediate weaknesses
- Audit vendor and subcontractor security compliance
- Develop and deliver security training and communications
- Perform regulatory and technological security monitoring
- Manage and lead the security team and related correspondents
- Control security budget and participate in vendor selection
- Report security incidents and estimate financial impact
Benefits
- Hybrid work (Sophia-Antipolis or Paris or Remote)
- Flexible working hours and telework
- Access to offices in Sophia Antipolis
- Swile meal card
- 50% employer contribution to health insurance (Alan)
- 50% contribution to public transport subscriptions
- Access to internal weekly conferences and company library
- Participation in company extra-curricular activities (sports, events)
