- Company Name
- TOHTEM
- Job Title
- Consultant GRC H/F
- Job Description
-
Job Title: GRC Consultant
Role Summary: Provide expertise in cyber‑risk management and IT governance to industrial clients. Conduct risk analyses using EBIOS RM, define and track cyber‑risk treatment plans, and ensure compliance with ISO 27001, ISO 27002, NIST, RGPD, and NIS v2. Deliver clear documentation, dashboards, and facilitate workshops with technical and business teams.
Expactations: Demonstrate strong analytical rigor, methodical project management, and the ability to operate autonomously. Engage collaboratively with security leaders, technical staff, and business units to align GRC initiatives with operational objectives.
Key Responsibilities:
- Lead risk assessments following the EBIOS RM methodology.
- Define, implement, and monitor cyber‑risk treatment plans.
- Ensure application of ISO 27001, ISO 27002, and NIST standards.
- Support regulatory compliance for RGPD and NIS v2.
- Track vulnerabilities and security indicators.
- Produce formal deliverables: meeting minutes, dashboards, monitoring reports.
- Facilitate workshops for technical and functional stakeholders.
- Work across network, server, web, and cloud (AWS, Azure) environments, applying knowledge of WAF, SIEM, EDR, bastion hosts.
Required Skills:
- Proven experience (3–5 years) in IT project management or cyber‑security.
- Deep understanding of cyber‑risk management and GRC frameworks.
- Expertise in ISO 27001/27002, NIST, and EBIOS RM.
- Knowledge of GDPR and NIS v2 regulatory frameworks.
- Ability to manage projects using V‑model, Agile, or Scrum.
- Strong written communication and documentation skills.
- Excellent interpersonal skills, facilitation, and stakeholder management.
- Technical comprehension of network, cloud, and security solutions.
Required Education & Certifications:
- Master’s level (Bac +5) in Information Technology, Cyber‑Security, or related field.
- Relevant certifications preferred: ISO 27001 Lead Implementer/Lead Auditor, CISSP, CISA, or equivalent.