- Company Name
- Liebherr Group
- Job Title
- Responsable sécurité des systèmes d'information F/H
- Job Description
-
**Job title**
Information Security Manager (F/M)
**Role Summary**
Oversee the strategic and operational implementation of an Information Security Management System (ISMS) in alignment with corporate and division cybersecurity roadmaps. Act as the primary liaison between IT, business units, external regulators, suppliers, and auditors to ensure compliance, risk mitigation, and continuous improvement of security controls.
**Expectations**
- Minimum 5 years in cybersecurity project management or risk analysis.
- Advanced professional English proficiency.
- Ability to obtain security clearance for defense‑related information.
- Strong cross‑functional leadership, communication, and representation skills.
- Proven track record of managing budgets, resources, and stakeholder coordination.
**Key Responsibilities**
1. Lead cybersecurity projects and coordinate the SSI community within the IT Service.
2. Deploy security initiatives in line with group strategy, adapting roadmaps to existing IT environments and resource constraints.
3. Define budgets, allocate resources, and coordinate stakeholders to ensure project delivery.
4. Conduct risk assessment, develop mitigation plans, maintain risk register and monitoring.
5. Implement and monitor the ISMS, ensuring adherence to ISO 27001, PART‑IS, defense regulations (e.g., EASA), and group policies.
6. Coordinate deployment of ISMS controls, monitor compliance gaps, and report findings.
7. Serve as main external point of contact for regulators, clients, and suppliers.
8. Manage internal, client, and group audits; support contract reviews to embed security requirements.
9. Deliver security awareness and training programmes to staff.
10. Monitor regulatory and technological developments, anticipate emerging risks, and adjust protections accordingly.
**Required Skills**
- Cybersecurity project management
- Information security risk analysis (ISO 27001, PART‑IS, defense frameworks)
- ISMS implementation & monitoring
- Strategic planning & budget management
- Stakeholder engagement & communication
- Cross‑functional teamwork & leadership
- Regulatory compliance (EASA, defense, data protection)
- Advanced written and spoken English
- Familiarity with audit processes and contract security reviews
**Required Education & Certifications**
- Bachelor’s degree (BAC‑+5) or equivalent from an engineering school, computer science, or business school.
- Professional certifications preferred: ISO 27001 Lead Implementer, ISO 27005, CISSP, or equivalent.
- Security clearance capability (defense‑specific) may be required.