Information Security Governance Consultant - FRANCE
Information Security Governance Consultant - FRANCE
We are seeking an Information Security Governance Consultant to support organizations in defining, structuring, and implementing their information security governance frameworks.
This role focuses on helping clients strengthen their security strategy, assess control maturity, manage risks, and ensure compliance with international standards and regulations.
Key Responsibilities
Define and structure organizational information security strategies
Establish governance frameworks, policies, and procedures
Conduct information security maturity assessments and audits
Identify, assess, and manage information security risks
Advise on risk treatment and control implementation
Support resilience initiatives (BCP, DRP, incident management, cyber crisis management)
Ensure cloud security governance alignment
Provide regulatory and standards compliance support (GDPR, ISO 27001, NIST CSF, CIS Controls, CSSF, SWIFT, etc.)
Contribute to governance activities in SCADA environments when applicable
Provide CISO advisory support or assume interim CISO responsibilities when required
Translate governance requirements into practical and business-aligned security measures
Requirements
Engineering degree or equivalent qualification
Strong understanding of governance-based security approaches
Familiarity with SCADA environments
Solid knowledge of security frameworks and standards (ISO 27001, NIST CSF, CIS Controls, SWIFT, etc.)
Structured risk management approach
Experience in implementing security controls
Certifications such as CISSP, CISM, ISO 27001 Lead Implementer/Auditor, ISO 27005 Risk Manager are a strong plus
French: Fluent (C1–C2 required)
Candidate Profile
Strong interest in Information Security Governance
Excellent communication skills with various stakeholders (Management, CISO, IT, Business teams)
Strong analytical and writing skills
Structured, organized, and pragmatic mindset
Strategic thinking with the ability to maintain a long-term perspective
Proactive, independent, and solution-oriented
Keen to stay updated on cybersecurity trends and emerging threats
#J-18808-Ljbffr