Chief Information Security Officer
- Ente
- European Synchrotron Radiation Facility
- Paese
- Francia
- Campo di ricerca
- Technology
- Lingua dell’annuncio
- Inglese
- Tipo di contratto
- Permanent
- Profilo ricercato
- Responsabile della sicurezza informatica
- Titolo di studio
- Master Degree or equivalent
- Sede
- Grenoble, Francia
- Pubblicato il
- 19 agosto 2026
- Scadenza
- 18 settembre 2026
Descrizione
Sintesi in italiano (traduzione automatica)
L'ESRF, un'importante struttura di ricerca, cerca un Chief Information Security Officer (CISO) per proteggere la propria infrastruttura digitale e i sistemi informatici da minacce informatiche. Il CISO definirà e guiderà la strategia di cybersecurity dell'ESRF, coordinando le iniziative di sicurezza tra diverse divisioni. Le principali mansioni includono lo sviluppo e il miglioramento delle politiche di cybersecurity, la gestione dei rischi e la formazione del personale. È richiesta una laurea magistrale in Informatica, Cybersecurity o discipline correlate, insieme a 10-15 anni di esperienza nel settore IT, di cui almeno 3 in cybersecurity. Sono necessarie ottime capacità comunicative e di leadership, oltre a una buona conoscenza delle normative di sicurezza informatica.
Testo originale dell'annuncio (in inglese)
Context & Job description The ESRF is a world-class research facility that produces extremely intense X-ray beams to enable scientists to explore matter at the nanoscale. Information Technology systems and services are essential to the successful operation of all ESRF Divisions. Ensuring that the ESRF's digital infrastructure, scientific computing environment, and software solutions are effectively protected against cyber threats is therefore of critical importance. The ESRF's infrastructure, the software solutions and services are developed and operated by several IT teams across the Experiments Division, the Instrumentation Services and Development Division, and the Technical Infrastructure Division, but also the Accelerator and Source Division and the Administration Division. As Chief Information Security Officer (CISO), you will define and drive the ESRF's cybersecurity strategy while fostering a strong security culture across the organisation. Although the role has no direct line management responsibility over the IT teams, you will provide strategic leadership, coordinate cybersecurity initiatives across divisions, and build consensus among multiple stakeholders. Key Responsibilities Develop, maintain, and continuously improve the ESRF's cybersecurity policies, standards, and governance framework. Define the cybersecurity roadmap, establish priorities, and oversee the implementation of strategic action plans. Coordinate cybersecurity activities across all ESRF divisions to ensure a consistent and effective security posture. Maintain the organization's cybersecurity risk assessment process, identify emerging risks, and initiate internal or external security audits where appropriate. Oversee the implementation of security controls by the IT teams and ensure compliance with cybersecurity policies and best practices. Monitor vulnerability alerts, coordinate vulnerability management activities, and validate remediation actions. Keep IT teams informed of emerging cyber threats, vulnerabilities, and appropriate mitigation strategies. Design, launch, and coordinate cybersecurity awareness and training programmes for ESRF staff. Define cybersecurity Key Performance Indicators (KPIs), monitor security metrics, and regularly report on cybersecurity risks and performance to senior management. Expected profile The successful candidate should possess the following qualifications and experience: A Master's degree (or equivalent) in Computer Science, Cybersecurity, Information Systems, or a related discipline. At least 10 to 15 years of professional experience in Information Technology, including a minimum of 3 years in cybersecurity. Demonstrated ability to influence multidisciplinary teams and coordinate cybersecurity initiatives across multiple departments. Proven leadership skills or strong potential to lead a small team. Excellent communication and interpersonal skills, with the ability to interact effectively with technical specialists, researchers, and senior management. Excellent written and spoken English. Technical Skills The ideal candidate will have: Strong knowledge of cybersecurity governance and risk management frameworks, including ISO/IEC 2700X, NIST Cybersecurity Framework, CIS Controls or EBIOS. Good technical knowledge in Linux and Windows environments, and network. Experience with vulnerability management, security monitoring technologies, and incident response. Good understanding of cloud security, virtualization technologies, and modern IT infrastructures security practices. Knowledge of GDPR, the NIS2 Directive, and cybersecurity compliance requirements. Experience securing large-scale scientific IT environments would be a strong advantage. Desirable Qualifications The following certifications would be considered an asset: CISSP (Certified Information Systems Security Professional) CISM (Certified Information Security Manager) ISO/IEC 27001 Lead Implementer or Lead Auditor Previous experience in an international
Hai appena letto i requisiti: è il tuo CV a dire se li soddisfi. Caricalo e ti diciamo quali bandi aperti sono davvero compatibili con il tuo profilo — a partire da quelli come questo, con un avviso via email quando ne esce uno nuovo adatto a te.
Prova il match gratisNon c’è (ancora) quello giusto? Ti scriviamo noi quando escono posizioni in Francia: un’email solo quando c’è qualcosa di nuovo, senza bisogno del CV.
Avvisami via emailBandi simili aperti adesso
ATER-Sc. physicochim. et ingénierie appliquée à la santé (ex 39è)
UNIVERSITE DE MONTPELLIER MONTPELLIER CEDEX 2, Francia
Professore universitario
PROFESSEUR DES UNIVERSITES - Energétique, génie des procédés
UNIVERSITE TECHNOLOGIE COMPIEGNE Francia
Professore universitario
PROFESSEUR DES UNIVERSITES - Sociologie, démographie
UNIVERSITE TECHNOLOGIE COMPIEGNE Francia
Professore universitario
PROFESSEUR DES UNIVERSITES - Mécanique, génie mécanique, génie civil - Génie informatique, automatique et traitement du signal
UNIVERSITE TECHNOLOGIE COMPIEGNE Francia
Fonte: Euraxess (Commissione europea) · Servizio indipendente
Vai al bando ufficialeLe informazioni sono aggregate automaticamente da Euraxess (Commissione europea) e possono essere incomplete. Verifica sempre i requisiti e le modalità di candidatura sul bando ufficiale.