Cyber Risk and Compliance Engineer
Paris / Lille
IT – Cyber Governance, Risk & Compliance (GRC) /
Full-time (long term) /
Hybrid
Scaleway, a subsidiary of the Iliad group, is a leading player in European cloud computing, and has been since 1999. We offer our more than 25,000 customers a diversified catalog of 80 products dedicated to the creation, deployment and scaling of cutting-edge applications.
With a dynamic team of nearly 600 employees from all walks of life, our company offers a stimulating, international working environment where creativity, innovation and technical excellence come together.
Located in Paris and Lille, our offices are unique exchange hubs, fostering daily cooperation between our Scalers. Together, we share a common vision: to contribute to the creation of a more responsible digital industry.
About the job
- The cybersecurity engineer's role is to ensure that information systems comply with current regulations and the company's security policies. He or she will work closely with the IT, SOC-CSIRT, legal and engineering teams to identify, assess and mitigate cybersecurity risks and support them in implementing action plans and developing projects.
Responsibilities
- Based on Scaleway’s strategy and legal requirements, manage compliance with cybersecurity-related standards, legal and regulatory frameworks and participate in independent reviews to assess it
- Contribute to the development of Scaleway’s cybersecurity strategy and policy
- Contribute to the application and improvement of the Information Security Management System (ISMS) of Scaleway
- Help engineering teams to implement compliance requirements
- Ensure that cybersecurity-related risks remain at an acceptable level for Scaleway by proposing the most appropriate risk treatment options
- Contribution to obtain new certifications (ISO 27001, SecNumCloud) and extend the scope of existing ones
Preferred qualifications
- Knowledge of security tools (firewalls, IDS/IPS, SIEM, etc.)
- Knowledge of security and compliance standards (ISO 27001, SOC2-Type 2, SecNumCloud)
- Knowledge in technical architectures
- Experience or interest in project management
- Experience with Public Cloud and Hosting Technologies, as well as IT Service Provisioning
- Excellent oral and written communication skills in both French and English, including the ability to summarize effectively and teaching skills on the subjects
- Working collaboratively with different stakeholders (sales, engineering, HR)
Location
- This position is based in our offices in Paris or Lille (France)