- Company Name
- Secure-IC
- Job Title
- Responsable de la Sécurité des Systèmes d'Information (RSSI) (H/F)
- Job Description
-
**Job title:** Information Security Manager (ISM)
**Role Summary:**
- Define, implement, and manage the company’s information security strategy, policies, risk management, incident response, and business continuity planning.
- Ensure compliance with legal and regulatory requirements (e.g., GDPR, ISO 27001) while aligning security initiatives with business objectives.
- Coordinate closely with IT, business units, and stakeholders to embed security controls and promote secure practices across the organization.
**Expectations:**
- Minimum 5 years’ experience as a security manager or similar role, preferably in an international environment.
- Proven ability to analyze risks, develop mitigation plans, and oversee their execution.
- Strong communication and teaching skills to conduct security awareness training.
- Highly organized, methodical, and capable of prioritising under pressure.
- Professional fluency in English; additional languages welcome.
**Key Responsibilities:**
- Draft, update, and enforce the Information Security Policy (PSSI) and IT Charter.
- Monitor legislative changes to ensure ongoing legal compliance (GDPR, etc.).
- Conduct cybersecurity risk assessments; define and track risk treatment plans.
- Select, integrate, and rationalise security tools and solutions aligned with business needs.
- Lead security project implementation, ensuring adherence to relevant standards (ISO 27001, etc.).
- Perform continuous monitoring, internal audits, and identify security gaps.
- Manage security incident response and crisis management activities.
- Develop and maintain the Business Continuity (PCA) and Recovery (PRA) plans for IT.
- Deliver security awareness and training programs to staff.
**Required Skills:**
- Deep knowledge of cybersecurity standards, methods, and frameworks (ISO 27001, NIST, etc.).
- Expertise in risk analysis, threat modelling, and mitigation strategy design.
- Experience with incident handling, crisis management, and recovery planning.
- Proficiency in security tool evaluation and lifecycle management.
- Strong analytical, communication, and stakeholder‑management abilities.
- Self‑starter with rigorous methodology and organisational acumen.
**Required Education & Certifications:**
- Bachelor’s degree or higher (Bac +5) in Computer Science, Information Systems Security, or related field.
- Professional certifications such as CISSP, CISM, ISO 27001 Lead Implementer preferred.
---