OmDev Logo
GetYourJob
0
Publié il y a 119 jours

Global Cybersecurity Governance and Awareness Lead

Entreprise
L'Oréal GroupeRecrute en direct
Localisation
Saint-Ouen, France
Sur site
Type de contrat
CDI
Niveau
Senior

Salaire du marché

Médiane du marché
53k€
Estimation
45k€fourchette habituelle63k€

Cette offre n'affiche pas de salaire. D'après 63 offres pour ce poste (Senior, France), le marché se situe autour de 53k€ (45k€–63k€).

0vues
0clics

Description du poste

✨ L'Oréal: Pioneering the Future of BeautyTech ✨
L'Oréal, a global leader in beauty with a presence in 130 countries, is embarking on an ambitious journey to become the #1 BeautyTech company. With over 2500 tech positions and continuous growth, we are seeking innovative and passionate minds to join our diverse tech teams in areas like Data, Digital, Cloud, Cyber Security, IT Architecture, DevOps, Applications, and Infrastructure.


🚀 A Day in the Life: Cybersecurity Governance & Awareness Lead 🚀

Reporting to the Head of Governance, Risk & Compliance, you will be instrumental in shaping and executing our global Cybersecurity Governance and Awareness initiatives.
Your Responsibilities will include:
* Project Execution: Leading all Governance and Awareness related projects.
* Program Management: Managing the cybersecurity awareness & education program.
* Framework Development: Defining and maintaining the L'Oréal Group Cybersecurity Framework and communicating its requirements.
This is a leadership role demanding strong GRC knowledge, excellent communication skills for engaging with leadership, and the ability to collaborate with diverse global teams to align cybersecurity priorities with IT and business objectives through a risk-based approach.

🎯 Main Missions 🎯

* Design and maintain the Cybersecurity Framework (policies, standards, and guidelines) to ensure it remains current with evolving threats and L'Oréal's needs.
* Ensure the framework's applicability by making policies realistic, technically feasible, and tailored to operational constraints.
* Align the cybersecurity framework with operational security activities and other cross-functional workstreams.
* Collaborate with the compliance team to design and implement effective security policy deployment strategies across Zones and Platforms.
* Assist cybersecurity managers in understanding and implementing framework requirements within their specific contexts.
* Provide guidance and support in tracking the resolution of non-compliance issues or audit findings to ensure long-term improvement.
* Ensure the Cybersecurity Framework is well-known and understood by the team.
* Report on Key Performance Indicators (KPIs).

Awareness Program

* Lead the definition of the Global cyber awareness strategy, its worldwide deployment, and coordination of local champions.
* Identify and evaluate top human risks to the organization and behaviors to strengthen security culture and mitigate these risks.
* Design, deploy, and maintain a comprehensive global security awareness program that ensures regulatory compliance and addresses identified human risks.
* Partner with internal communication and Learning teams to ensure Group, Zone, and Market Cybersecurity awareness initiatives are properly deployed to all populations.
* Tailor communication and training plans to diverse internal audiences, ensuring content is relevant to specific roles and risk profiles.
* Enhance the cybersecurity e-learning catalog with high-quality, engaging, and up-to-date content.
* Create and manage metrics to effectively measure the overall effectiveness of the Cybersecurity awareness program.
* Consolidate and analyze global and local awareness data to provide a unified view of performance and identify areas for continuous improvement.

💡 We Are Looking For 💡

Professional Experience

* A successful track record of at least 5 years in GRC (primarily awareness and/or Governance activities) within a consultancy firm or a Fortune 500 company.

Technical Skills

* Strong Cybersecurity knowledge, ideally supported by a worldwide certification (e.g., CISSP, CISM, ISO 27001 LI/LA).
* Solid understanding of governance frameworks (e.g., COSO, or COBIT for IT governance).
* Good grasp of regulatory requirements like GDPR, NIS2, and CRA.
* Familiarity with GRC platforms (e.g., ServiceNow) and Security Awareness tools.

Management Skills

* Ability to manage consultancy teams.
* Capacity to communicate complex ideas effectively, in English and French, with international stakeholders and within the Group's Cybersecurity teams.

Interpersonal Skills

* A strong desire to learn and develop new hard and soft skills.
* Ability to navigate within a fast-moving environment.
* Sharp analytical skills.
* Proficiency in leading workshops.
* Fluency in English is essential.
Position based at St-Ouen (93) with regular meetings within the Paris area and rare business trips abroad.

🌟 What's In It For You 🌟

* Growth Beyond Limits: A place where you can step out of your comfort zone and grow beyond your potential, encouraged to try new things and take risks.
* Real Impact: Genuine responsibility from day one – no sitting on the sidelines at L'Oréal.
* Inclusive Environment: An environment where people of every ethnicity, social background, age, religion, gender, sexual orientation, and those with disabilities are accepted, can speak up, thrive, and are celebrated.
* Purposeful Contribution: A place where you can contribute to something bigger, with many of our brands championing societal and environmental causes for concrete change.

Exigences du poste

Stack technique :

Management d'équipe

Plan d'action

Un plan personnalisé pour postuler intelligemment à cette offre.

À propos de l'entreprise

L'Oréal GroupeRecrute en direct
Voir toutes les offres de L'Oréal Groupe

Publié par

Recruteur
Recruteur

Intéressé par cette offre ?

Cliquez sur "Postuler" pour accéder à l'offre.