The Information Systems Security Manager (ISSM) defines, implements and oversees Capago’s information security policy.
Ensures the protection of information assets, management of cyber risks, regulatory compliance and continuous improvement of the security posture in a multi-site, international environment.
Define and lead the cybersecurity strategy in alignment with business priorities and the IT roadmap;
Develop, maintain and monitor the medium-term security roadmap;
Define, formalize and enforce security policies, procedures and standards;
Provide regular reporting on the security posture to senior management.
Identify, assess and prioritize information system-related risks;
Define and manage risk treatment plans;
Contribute to the implementation and maintenance of an ISMS (Information Security Management System);
Monitor compliance requirements, notably in relation to the GDPR, ISO 27001 and internal or external audits;
Define and oversee the implementation of technical and organizational security measures: access control, MFA, encryption, hardening, logging, backups, etc.
Requirements
Master’s degree (Bac+5) in Computer Science, Cybersecurity or Risk Management;
Significant experience in cybersecurity, with exposure to governance, compliance or risk management topics;
Experience in implementing, managing or improving an ISMS is a plus;
Experience in an international or multi-site environment is an advantage;
Certifications appreciated: ISO 27001 Lead Implementer, ISO 27001 Lead Auditor, CISSP, CISM or equivalent.
Benefits
Hybrid working arrangement; occasional travel depending on scope;
Occasional on-call duty may be required in the event of a major incident.