- Company Name
- Talan - France
- Job Title
- Adjoint RSSI / CISO - H/F
- Job Description
-
**Job title**
Adjoint RSSI / CISO - H/F
**Role Summary**
Deputy CISO tasked with defining, implementing, and steering cybersecurity strategy for application, cloud, data, and AI domains within large client accounts and internal teams.
**Expactations**
- Deliver a robust, evolving cyber‑security strategy aligned with business objectives.
- Maintain governance, policies, and standards across all technology stacks.
- Lead risk assessments, threat modeling, and compliance reviews.
- Oversee vulnerability management, code reviews, security audits, and targeted testing.
- Ensure secure cloud environments and protection of sensitive data and AI models.
- Support incident response and remediation coordination.
- Communicate risks, outcomes, and recommendations to senior leadership.
- Act as operational reference for the RSSI/CISO.
**Key Responsibilities**
- Define and evolve the cyber‑security strategy for applications, cloud, data, and AI.
- Establish and maintain security policies, standards, and frameworks (OWASP, CWE, ISO 27001/27034, NIST CSF).
- Conduct risk analyses, architecture reviews, and threat‑modeling exercises.
- Drive application and cloud security programs: vulnerability management, secure code review, security audits, and penetration testing.
- Govern cloud security and safeguard sensitive data and AI models: architecture design, access controls, and best practices.
- Collaborate with IT, data, AI, and architecture teams to embed security requirements.
- Participate in company cyber programs, aligning local initiatives with global strategy.
- Manage incident response and coordinate remediation actions.
- Present security metrics, risks, and results to executive committees and stakeholders.
**Required Skills**
- 8–10+ years of cybersecurity experience, with depth in application, cloud, data, and AI security.
- Proven knowledge of web, API, microservices, and distributed architecture security.
- Advanced expertise with at least one public cloud (Azure, AWS, or GCP).
- Strong understanding of data protection, anonymization, access controls, and AI governance.
- Experience in security governance, audit, risk management, and program oversight.
- Familiarity with OWASP, CWE, ISO 27001/27034, NIST CSF, and cloud/data/AI best‑practice frameworks.
- Excellent communication with business leaders, technical teams, and external partners.
- Leadership, decisive judgment, strategic vision, and analytical rigor.
**Required Education & Certifications**
- Bachelor’s degree or higher in Computer Science, Information Security, or related field.
- Preferred certifications: CISSP, CISM, CCSP, CSSLP, or equivalent.
- Knowledge of DORA, NIS2, crisis management, regulatory compliance, or multi‑team cyber program management is an asset.
---