Talent.com
Ingenico Group
Head of Security Risk ManagementIngenico Group • Courbevoie, France
Les candidatures ne sont plus acceptées
Head of Security Risk Management

Head of Security Risk Management

Ingenico Group • Courbevoie, France
Il y a 18 jours
Type de contrat
  • Temps plein
Description de poste

Company: Ingenico

Location: Courbevoie, FR, 92400

Head of Security Risk Management

Ingenico is the global leader in payments acceptance solutions. As the trusted technology partner for merchants, banks, acquirers, ISVs, payment aggregators and fintech customers, our world‑class terminals, solutions and services enable the global ecosystem of payments acceptance. With 40 years of experience, innovation is integral to Ingenico’s approach and culture, inspiring our large and diverse community of experts who anticipate and help shape the evolution of commerce worldwide. At Ingenico, trust and sustainability are at the heart of everything we do.

The Head of Security Risk Management is the organisation’s senior leader responsible for defining, governing, and continuously improving the enterprise security risk framework. While operational security services are delivered by a Managed Security Service Provider (MSSP/MSP), this role ensures that risks are identified, assessed, prioritised, and managed in alignment with business objectives, regulatory requirements, and the organisation’s security strategy.

This is a strategic leadership role focused on risk governance, assurance, third‑party oversight, compliance alignment, and business engagement, ensuring the CISO has a clear, auditable, data‑driven view of the organisation’s security posture.

Key Results Areas

1. Enterprise Security Risk Leadership

Own and evolve the organisation’s Security Risk Management Framework, ensuring alignment with ISO 27001, NIST CSF, and relevant regulatory requirements. Lead the identification, assessment, mitigation advisory and prioritisation of security risks across all business units, technology domains, and critical assets. Maintain the enterprise security risk register, ensuring risks are accurately documented, scored, and tracked through remediation. Provide clear, actionable risk insights and recommendations to the CISO, executive leadership, and Board committees.

2. Governance, Policy, and Assurance

Own the security policy framework, ensuring policies are current, risk‑based, and effectively implemented across the organisation. Lead security assurance activities, including internal control testing, risk assessments, maturity assessments, and audit readiness. Oversee policy adoption and control effectiveness across IT, technology, and physical security domains. Oversee security risk mitigation plans and ensure accountable stakeholders deliver agreed improvements on time. Drive continuous improvement of governance processes, assurance metrics, and risk reporting.

3. Security Management Plan (SMP) Accountability – MSP Compliance

Act as the senior point of accountability for Managed Service Provider (MSP) performance in relation to risk reduction and control effectiveness. Ensure MSP services align with the organisation’s risk appetite, regulatory obligations, and security strategy. Review and challenge MSP outputs, including incident reports, threat intelligence, vulnerability findings, and control monitoring results. Ensure operational risks identified by the MSP are translated into enterprise risk language and integrated into the security risk register.

4. Third Party and Supply Chain Risk

Lead the Third Party Security Risk Management programme, including supplier tiering, due diligence, onboarding assessments, and ongoing monitoring. Work with Procurement, Legal, and business owners to ensure contracts include appropriate security controls and obligations. Oversee security risk assessments for critical suppliers, cloud providers, and technology partners.

5. Regulatory, Audit, and Compliance Alignment

Ensure security risk practices support compliance with applicable regulations and standards (e.g. GDPR, NIS2, DORA, PCI DSS, ISO 27001). Act as the primary security risk contact for internal and external audits, regulatory reviews, and assurance activities. Coordinate with relevant functions to provide evidence, documentation, and leadership during audits, certifications, and regulatory engagements.

6. Physical Security Risk & Assurance

Provide governance and assurance over physical security risks, including offices, data centres, and critical facilities. Ensure physical security controls, assessments, and incident lessons learned are captured and integrated into the enterprise security risk framework. Align physical security assurance activities with broader cyber and information security risk practices.

7. Customer Audit Support & Assurance Response

Act as the senior security risk focal point for customer audits, due diligence requests, and security assurance reviews. Coordinate consistent, high quality responses that accurately represent the organisation’s security posture. Manage customer audit outcomes and findings through to resolution, preserving trust and contractual commitments.

8. Business Engagement & Leadership

Build strong relationships with business and technology leaders to embed security risk considerations into decision making. Provide expert guidance on risk treatment options, control selection, and security architecture decisions. Lead and develop a team of security risk, compliance, and assurance professionals, fostering a culture of accountability and continuous improvement. Deliver clear, concise security risk reporting to senior stakeholders, including the CISO, CIO, COO, and Board.

Candidate Requirements

Skills & Experience – Essential

Extensive experience in security risk management, governance, or assurance leadership roles.

Strong understanding of security frameworks (ISO 27001/27005, NIST CSF, NIST 800‑53, CIS Controls).

Demonstrated ability to operate at senior leadership level and influence executive stakeholders.

Experience overseeing or working with managed security service providers.

Strong understanding of regulatory requirements relevant to the organisation’s sector.

Proven ability to translate technical risks into business‑aligned language. Excellent communication, analytical, and decision‑making skills.

Professional certifications such as CISSP, CISM, CRISC, ISO 27001 Lead Auditor/Implementer, or CCSK/CCSP.

Experience in risk management within complex, multi‑vendor environments.

Background in audit, compliance, or security architecture.

As part of our values, we embrace diversity and inclusion at Ingenico. We are an equal opportunity employer and do not discriminate on the basis of an individual’s race, national origin, color, gender, gender identity, gender expression, sexual orientation, religion, age, disability, marital status or any other protected characteristic under applicable law, whether actual or perceived.

Ingenico welcomes and encourages applications from people with disabilities. Accommodations are available on request for candidates taking part in all aspects of the selection process.

#J-18808-Ljbffr
Créer une alerte emploi pour cette recherche

Head of Security Risk Management • Courbevoie, France

Offres similaires

Head of Front Office and Risk - Client Services H/F

Crédit Agricole GroupParis, Île-de-France, France
Temps plein

Amundi Technology's CS team is the main point of contact for our customers (asset managers, financial institutions, family offices, asset servicers).Its objective is to increase Customer Satisfacti... Voir plus

 • Offre sponsorisée

Head Of Digital Architecture - €10.511 A Month

OecdParis, France, FR
Temps plein

The Executive Directorate (EXD) is the steward of OECD resources on behalf of the Secretary‑General.Our focus is on people and their wellbeing; the effective andefficient management of the budget... Voir plus

 • Offre sponsorisée

Head Of Engineering

Actual TalentParis, France, FR
Temps plein

Ce poste de Responsable Ingénierie F/H consiste à piloter et développer un périmètre dédié à l'étude et la conception de projets pluridisciplinaires.Il s'agit d'encadrer des équipes, d&... Voir plus

 • Offre sponsorisée

Head Of Security Risk Management

Ingenico GroupCourbevoie, France, FR
Temps plein

Company: IngenicoLocation: Courbevoie, FR, 92400Head of Security Risk ManagementIngenico is the global leader in payments acceptance solutions.As the trusted technology partner for merchants, banks... Voir plus

 • Offre sponsorisée

Head Of Revenue Management For 6 Hotels | Growth & Strategy

Groupe TF1Paris, France, FR
Temps plein

Le Groupe TF1 recherche un leader en gestion des revenus pour optimiser le chiffre d'affaires payant de TF1+.Ce rôle stratégique implique la définition des offres, segments et prix en collabora... Voir plus

 • Offre sponsorisée

Director, Proactive Cloud and AI Security Consulting

Palo Alto NetworksParis, Île-de-France, France
Temps plein

A leading cybersecurity company is seeking a Consulting Director to lead a team in delivering threat-led consulting services.The ideal candidate will have over 10 years of experience in cybersecuri... Voir plus

 • Offre sponsorisée

Global Infrastructure Lead - Iso 27001, Security & Ai

SiVIEWParis, France, FR
Temps plein

Ce poste consiste à piloter la conception, le déploiement et l'exploitation des infrastructures informatiques pour assurer la disponibilité, la performance et la sécurité des systèmes d'inf... Voir plus

 • Offre sponsorisée

Risk Management

ConsultysParis, France, FR
Temps plein

Ce poste de gestion des risques, en CDI, consiste à élaborer et maintenir le plan de gestion des risques, réaliser diverses analyses et piloter la surveillance post-commercialisation. Voir plus

 • Offre sponsorisée

Manager Risk Management H/F

TNP ConsultantsLevallois-Perret, France, FR
Temps plein

Créé en 2007, TNP Consultants est un cabinet de conseil européen spécialisé dans les transformations stratégiques, opérationnelles, digitales et réglementaires des entreprises.TNP a fait de l’accél... Voir plus

 • Offre sponsorisée

Head Of Ai & Innovation Lab

ALTHEAIssy-Les-Moulineaux, France, FR
Temps plein

Descriptif du poste :Vous n’allez pas rejoindre un Lab IA.Chez ALTHEA, nous accompagnons les grandes transformations métiers et SI de nos clients sur des sujets stratégiques : SIRH, Finance, Achats... Voir plus

 • Offre sponsorisée

Head Of Security - €100.000 - €150.000 A Year

AploParis, France, FR
Temps plein

Seeking a Head of Security with technical and governance skills to build and manage a security program protecting platform, data, and assets, ensuring regulatory readiness.Hands-on role reporting t... Voir plus

 • Offre sponsorisée

Manager / Head Of International Compliance

AllucioParis, France, FR
Temps plein

Our client, a leading international service organisation operating across multiple European markets, is seeking a Head of International Compliance & Data Privacy to join its Group Legal functio... Voir plus

 • Offre sponsorisée

Incident Manager It H/F

DSI GroupBruyères-Le-Châtel, France, FR
Temps plein

DSI Group recherche un Incident Manager IT H/F pour notre client basé en Ile de France.Véritable chef d'orchestre de la gestion des incidents, vous garantissez le rétablissement rapide des serv... Voir plus

 • Offre sponsorisée

Consultant Risk Manager - 2033 - Freelance - €400 - €550 Par Jour

Collective.workParis, France, FR
Temps plein

Le consultant en gestion des risques doit identifier, évaluer et gérer les risques de sécurité, particulièrement en cybersécurité, et assurer le suivi des projets. Voir plus

 • Offre sponsorisée

Global Mobility Compliance Leader

StellantisParis, France, FR
Temps plein

Lead international mobility compliance and operational excellence across EMEA and APAC, partnering with HR, Finance, Tax, and Payroll to ensure programs are compliant and future-ready.Drive governa... Voir plus

 • Offre sponsorisée

Head Of Engineering - €140.000 - €180.000 A Year

LagoParis, France, FR
Temps plein

The Head of Engineering will lead and scale the engineering organization, architect systems, and build a high-performing team. Voir plus

 • Offre sponsorisée

Head Of Compliance - €110.000 - €150.000 A Year

FinaryParis, France, FR
Temps plein

What is Finary?At Finary, our mission is to change how money can work for you.We are building a one-stop shop for investing that gives powers back to investors.Finary allows its users to track thei... Voir plus

 • Offre sponsorisée

Consultant Risk Manager - Freelance - €400 - €550 Par Jour

Constructeur aéronautiqueParis, France, FR
Temps plein

Gestion des risques cybernétiques, incluant l'évaluation, la gestion et l'intégration de la cybersécurité dans la conception de projets aéronautiques. Voir plus

 • Offre sponsorisée

Director Of Hardware Design & Verification Engineering.

RequireTech Resources LtdParis, France, FR
Temps plein

RequireTech Resources is seeking for one of its leading clients a Director of Hardware Design & Verification Engineering.You will lead hardware design and verification activities for advanced S... Voir plus

 • Offre sponsorisée

Consultant Sécurité Senior Iam & Siem

C&C Solutions LTDMontrouge, France, FR
Temps plein

Mission basée 100% à Montrouge sans télétravail possibleSenior Security Engineer – IAM & SIEMNous recherchons un Senior Security Engineer spécialisé en Identity & Access Management (IAM) et... Voir plus