Security Risks Expert
Company Overview
Second largest banking group in France, Groupe BPCE is a robust, socially committed cooperative banking group. Drawing on the strength of the roots we have developed in local communities, we serve a total of 30 million clients globally, including 9 million cooperative shareholders who own 100% of the capital of the Banques Populaires and Caisses d’Epargne via their cooperative shares. At BPCE Equipment Solutions we are proud to accompany the big and small transformations that shape significant industries. With approximately 1,600 employees and our presence in 14 countries, we are a leader in Europe and the second‑largest player in the world in equipment financing.
Job Description
You join the Security team of BPCE ES Holding, composed of 5 people, as a Security Risks Expert . The role contributes to improving IT and security risk management by leading actions and projects and bringing expertise to other departments and entities worldwide. You are responsible for monitoring and controlling the implementation of the IT risk management and security framework defined by the group.
Responsibilities
- Governance of the business line: participate in the assessment and management of security risks.
- Support to entities: cooperate with entity security correspondents to exchange best practices, security solutions and risk coverage solutions; participate in monitoring committees to formalise the follow‑up of the deployment of the BPCE ES action plan; provide security support and expertise to BPCE ES entities.
- Security risk management: define level of exposure to threats and risks likely to affect the commercial activity of all BU entities; review each year the TRM risk mapping of BPCE ES; manage security controls (TRM, BCM, data protection, SSPP, external fraud) LoD2 in Archer DRIVE and Priscop for all entities; assist the Global DPO and Global RCM regarding LoD2 controls.
- Security and safety of persons and property: manage projects and monitor recurring controls in accordance with the control plan; implement and monitor reporting tools; lead the safety and security of people and goods sector; lead monthly committees; conduct incident analyses; participate in defining control plans; propose corrective measures and monitor their implementation; monitor regulations and information.
Qualifications
- 3 to 5 years of experience in Technology Risk Management.
- Experience controlling risks related to information systems and mastering related regulations.
- Engineering degree or equivalent.
- Analytical mindset, rigor, results‑oriented, cooperative spirit, adaptability in an international context.
- Proficient in English.
Benefits
- Part of a successful international team.
- Work closely with the Global Chief Security Officer.
- Active role in the new security target business model.
- Support to build an international career.
- Flexible working hours and part‑time telework.
- Long‑term career opportunities.