699,089open jobs
41,455companies
98,822added this week
Browse all
Salary
$52k – $113k per year (Estimated)
Location
In office (Tubize)
Seniority
Senior · 5+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Everience is a French technology services company that provides service desk, digital workplace and infrastructure support to large organisations across Europe. Its work covers user support in multiple languages, endpoint and application management, identity and access operations, and increasingly automation and artificial intelligence applied to reduce the volume of tickets reaching human agents. Headquartered near Paris and operating from delivery centres across Europe and North Africa, the company positions itself around measured employee experience rather than only ticket resolution times, and it recruits continuously for multilingual support and infrastructure roles.

Everience is an international consulting group delivering AI-augmented digital services and placing people at the heart of the AI revolution.

With a presence in Europe, Africa, Asia and America, Everience offers its 4,000-strong workforce the most demanding and stimulating environment in which to transform and develop their skills, learning about new AI-based roles and building their future employability.

Through its Symbiotic Academy the group offers a unique hub for training, practical application and exchange where everyone can experiment, learn, and progress in the fields of artificial intelligence and data.

In accordance with its core purpose of orchestrating the symbiotic relationship between humans and AI in the workplace, Everience is making the augmented employee the driving force of a “symbiotic age”, where AI enhances talents and opens up new career opportunities.

Le/la Data & Risk Management Specialist est responsable du cadre de gestion des risques cyber de l'organisation. Il/elle assure l'identification, l'évaluation, le traitement et le suivi des risques conformément aux exigences NIS2 et au Risk Management Framework de l'entreprise (ISO27005).

Principales responsabilités:

  • Définir et maintenir le Cybersecurity Risk Management Framework.
  • Définir les méthodologies d'identification et d'évaluation des risques cyber.
  • Maintenir la taxonomie des risques de cybersécurité.
  • Organiser et coordonner les Cyber Risk Assessments.
  • Consolider les risques provenant des différentes équipes de cybersécurité.
  • Assurer le suivi des plans de mitigation.
  • Maintenir le Cyber Risk Register.
  • Définir et suivre les seuils d'appétence et de tolérance au risque.
  • Identifier les risques résiduels et préparer les dossiers d'acceptation de risque.
  • Challenger les plans de traitement proposés par les équipes techniques.
  • Intégrer les risques liés aux fournisseurs et aux tiers.
  • Contribuer à la gestion des risques liés aux projets et transformations IT.
  • Produire les KPI/KRI et les dashboards destinés au CISO et au Risk Committee.
  • Préparer les éléments de reporting pour le management et les instances de gouvernance.
  • Assurer l'alignement avec NIS2, ISO 27001, NIST et les politiques internes.
  • Contribuer aux audits et aux contrôles réglementaires.
  • Contribution à la mise en œuvre et au maintien du NIS2 Cybersecurity Framework.
  • Mapping des contrôles avec les exigences NIS2.
  • Participation aux NIS2 gap assessments.
  • Définition et maintenance des politiques, standards et procédures.
  • Suivi des exceptions et risques acceptés.
  • Définition des KPI/KRI.
  • Reporting régulier au CISO.
  • Coordination avec IT, Infrastructure, Cloud, Engineering, Risk, Legal, Compliance et Internal Audit.
  • Gestion des plans de remédiation.
  • Préparation et maintien des preuves d'audit.
  • Contribution aux exercices de résilience et de gestion de crise.
  • Veille réglementaire et adaptation du framework aux nouvelles exigences.
  • 5+ ans d'expérience en IT Risk, Cyber Risk ou Information Security Governance.
  • Solide expérience en gestion des risques dans de grandes organisations.
  • Très bonne connaissance des méthodologies de risk assessment.
  • Connaissance de NIS2, ISO 27001, ISO 27005 est un plus.
  • Expérience avec des outils GRC.
  • Capacité à challenger des interlocuteurs techniques.
  • Très bonnes capacités analytiques et rédactionnelles.
  • Capacité à présenter des risques à des audiences non techniques.

Certifications appréciées:

  • CRISC
  • CISM
  • CISSP
  • ISO 27001 Lead Implementer
  • ISO 27005
  • FAIR certification
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
699,089 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Tubize
In office
SQL
Cybersecurity
ISO 27001
Analytics
Power BI
Alteryx
Apply
$90k – $168k per year (Estimated) • Remote/Hybrid • Full-Time • London
Python
Go
TypeScript
Databases
PostgreSQL
DevOps
Terraform
GCP
Helm
GitHub Actions
Azure
CI/CD
AWS
Docker
Kubernetes
FinOps
Cybersecurity
ISO 27001
SOC 2
Analytics
ETL/ELT
Apply
$22k – $54k per year (Estimated) • Remote • Master's Degree
Cybersecurity
ISO 27001
PCI DSS
SOC 2
GDPR
HIPAA
Apply
$76k – $171k per year (Estimated) • In office • Full-Time • Bachelor's Degree
Python
PowerShell
DevOps
Terraform
GCP
CloudFormation
Azure
CI/CD
AWS
Kubernetes
Service Mesh
IAM
VPN
Cybersecurity
FortiGate
ISO 27001
CIS Benchmarks
SOC 2
GDPR
Zero Trust
SIEM
DLP
Apply
$13k – $31k per year (Estimated) • In office • Full-Time • Astana
DevOps
TCP/IP
Cybersecurity
ISO 27001
SIEM
Apply
$63k – $142k per year (Estimated) • In office • Full-Time • 5+ years exp • Tubize
DevOps
Azure
IAM
Cybersecurity
CyberArk
ISO 27001
Zero Trust
Least Privilege
Microsoft Entra ID
BeyondTrust
Delinea
LDAP
Apply
Monteur (m/w/d) 3 days ago
$35k – $61k per year (Estimated) • In office • Full-Time • Amsterdam
Apply
$24k – $29k per year • In office • Full-Time • Milan
AI/ML
DALL-E
DevOps
Windows
DNS
DHCP
Cybersecurity
Active Directory
Management
Jira
Outlook
ITSM
Microsoft Office
Apply
$50k – $107k per year (Estimated) • Remote/Hybrid • Full-Time • 3+ years exp • Brussels
Apply
$27k – $60k per year (Estimated) • In office • Contractor • 3+ years exp • Brussels
DevOps
Windows
Management
Microsoft Teams
ITIL
Apply
$63k – $142k per year (Estimated) • In office • Full-Time • 5+ years exp • Tubize
DevOps
Azure
IAM
Cybersecurity
CyberArk
ISO 27001
Zero Trust
Least Privilege
Microsoft Entra ID
BeyondTrust
Delinea
LDAP
Apply
$42k – $107k per year (Estimated) • Remote/Hybrid • Full-Time • Master's Degree • Tubize
Management
Intercom
Apply
Component Engineer 19 days ago
$42k – $89k per year (Estimated) • In office • Full-Time • 3+ years exp • Tubize
Analytics
Microsoft Excel
Management
Intercom
Microsoft Office
Apply
$24k – $53k per year (Estimated) • In office • Full-Time • 3+ years exp • Tubize
Management
Intercom
Apply
In office • Full-Time • Tubize
Management
Intercom
Apply
See all jobs
This is one of many
699,089 more open roles from verified company boards, updated every day.