- Company Name
- uVu Group
- Job Title
- RSSI expérimenté audit et conformité (F/H)
- Job Description
-
**Job Title**
Senior CSO – Audit & Compliance
**Role Summary**
Lead the security governance, risk management, audit, compliance, and incident response functions for a national French company protecting critical digital assets. Own the security policy framework, oversee security indicators, conduct internal audits, enforce regulatory compliance (PVID, eIDAS, NIS 2, DORA), and drive a security‑aware culture across the organization.
**Expections**
- Proven experience as a CSO, CISO, or equivalent security lead in a complex environment.
- Strong grasp of French and EU regulatory requirements (e.g., CNIL, PVI, eIDAS, NIS 2, DORA).
- Ability to manage cross‑functional teams, mediate crisis meetings, and influence senior executives.
- Excellent written and oral communication in French (English competency is a plus).
**Key Responsibilities**
- Define and chair cybersecurity steering bodies, ensuring alignment with business strategy.
- Develop, implement, and monitor security policies, procedures, and controls.
- Conduct regular internal security audits, assess findings, and drive remediation plans.
- Manage the risk‑mapping process in collaboration with Audit & Risk functions.
- Deploy fraud prevention and detection tools; oversee incident handling and post‑incident reviews.
- Produce transparent, reliable security reporting for board and regulatory bodies.
- Educate and train staff on security best practices, fostering a security‑first mindset.
**Required Skills**
- Expertise in cybersecurity governance, risk, and compliance frameworks.
- Knowledge of audit principles and the ability to lead audit activities.
- Incident response, threat hunting, and forensic capabilities.
- Project management, stakeholder coordination, and crisis management.
- Strong analytical, problem‑solving, and communication skills.
**Required Education & Certifications**
- Bachelor’s or Master’s degree in Computer Science, Information Security, or a related field.
- Professional security certifications: CISSP, CISM, ISO 27001 Lead Auditor, or equivalent.
- Experience with French regulatory standards (CNIL, PVID), EU directives (NIS 2, DORA, eIDAS).