Expert GRC - Gouvernance, Risques et Conformité (H/F)
Core
Expert GRC professional advising clients on governance, risk analysis, and regulatory compliance (NIS2, DORA, RGPD) while collaborating with cloud and infrastructure architects to embed compliance into technical solutions.
Role type
Senior GRC Consultant (Cybersecurity)
Builds
Compliance frameworks, risk maps, remediation plans, and technical architecture recommendations for enterprise clients.
Domain
Cybersecurity, Regulatory Compliance, Cloud Infrastructure
Deliverable
client delivery
Required skills
Regulatory framework expertise (NIS2, DORA, ISO 27001, RGPD), Risk analysis (EBIOS RM, ISO 27005), Audit execution, Technical architecture understanding (Cloud, IAM, Network), Proposal writing, Stakeholder management
Preferred skills
ISO 27001 Lead Auditor/Implementer, EBIOS Risk Manager, CISM, CISSP, CRISC, Knowledge of CIS Benchmarks/CSA CCM
Technologies
EBIOS Risk Manager, ISO 27005, NIS2, DORA, RGPD, ISO 27001, SecNumCloud, HDS, PCI DSS
Responsibilities
Conduct risk assessments and build risk maps, Lead compliance audits and maturity evaluations, Translate regulatory requirements into architectural constraints, Contribute to technical landing zone design, Write technical proposals and present to C-level executives, Develop practice offerings and compliance accelerators
Seniority
Senior, hands-on IC with strategic contribution
