About the Role
We are seeking a Responsable de la Sécurité des Systèmes d'Information (RSSI) to engage on a strategic project within a major player in the telecommunications sector in Monaco. You will join a demanding technological environment at the heart of an organization equipped with critical infrastructures and complex information systems. This role is central to defining, steering, and implementing the company's cybersecurity strategy.
Ready to apply for roles like this?
Unlock the company name and direct application link. Subscribers get instant access to fresh jobs across Dubai, Abu Dhabi and Riyadh, many with visa support.
Unlock employer & apply directly
In close collaboration with top management, the IT Department, business directions, and various partners, you will be responsible for managing cyber risks, ensuring regulatory and normative compliance, and maintaining the resilience of information systems and networks.
Key Responsibilities
As a RSSI, you will play a key role in defining and driving the digital security strategy. Your responsibilities will include:
Strategy and Governance
- Define, evolve, and pilot the information systems security policy, aligning it with business challenges, identified risks, and regulatory requirements.
- Build and monitor the cybersecurity roadmap, ensuring its implementation.
- Produce security reports, risk and performance indicators, and lead security committees.
- Regularly present the cyber risk level and the accepted residual risk level to top management.
- Oversee OPEX / CAPEX commitments related to security activities.
Risk Management and Compliance
- Conduct and maintain up-to-date digital risk analyses and define associated remediation plans.
- Manage audits, compliance efforts, and remediation plans.
- Maintain relationships with regulatory authorities and internal/external auditors.
- Contribute to the protection of personal data in coordination with relevant stakeholders.
- Assess third-party risks and ensure the security of access for service providers, partners, and suppliers.
Project and Infrastructure Security
- Ensure the integration of cybersecurity requirements from design to production of infrastructures, systems, and applications.
- Conduct formal security assessments on projects and escalate any deviations to top management.
- Provide security expertise on technical projects and manage the operational implementation of security measures.
- Maintain continuous vigilance on vulnerabilities, threats, and technological innovations to propose appropriate solutions.
Detection, Incidents, and Resilience
- Define and manage systems to prevent and detect cybersecurity risks.
- Organize detection, qualification, and management of security incidents.
- Lead cyber crisis management and coordinate internal and external stakeholders.
- Define and maintain PCA / PRA systems and contribute to the overall resilience of the organization.
- Regularly organize crisis and continuity exercises.
- Develop awareness, training, and knowledge transfer initiatives for employees.
Your Profile
We are looking for an experienced RSSI capable of thriving in a complex and highly technological environment.
- You possess excellent strategic insight into cybersecurity challenges while maintaining a solid understanding of technical and operational issues.
- You can translate technical risks into business risks, effectively communicate with both technical contacts and top management, and uphold security positions when necessary.
Education
- Engineering degree or equivalent Bac+5 in IT, telecommunications, or a related field.
- Specialization in cybersecurity is appreciated.
Experience
- Minimum 10 years of experience in information systems security.
- Experience in engineering and operational security: architecture, security device operation, vulnerability management, incident response.
- Minimum 4 years of experience in an individual RSSI role, including developing a security policy, managing a budget and a roadmap, and reporting to a management committee.
Technical Skills
- Mastery of information systems: networks, systems, databases, Cloud, and hybrid environments.
- Good knowledge of telecom architectures and operators: IP and transport networks, mobile core network, virtualization, interconnections, and partner access.
- Mastery of security solutions: Firewall, Bastion, EDR, IDS/IPS, SIEM, IAM, and vulnerability management.
- Strong knowledge in cryptography and infrastructure security.
- A good understanding of key threats and attack methodologies: phishing, ransomware, supply chain compromise, DDoS, telecom fraud, etc.
- Mastery of security frameworks and standards: ISO 27001, ISO 27005, GDPR, EBIOS Risk Manager.
- Familiarity with security standards applicable to telecom operators and critical infrastructures.
Governance and Risk Management Skills
- Ability to evolve a security policy based on risks and business challenges.
- Ability to translate technical risk into financial, operational, reputational, or regulatory risk.
- Mastery of compliance management, audits, and remediation plans.
- Ability to build and manage a cybersecurity roadmap and associated budget.
- Ability to gain buy-in from the IT Department, business directions, and suppliers.
- Capability to make and assume security-related decisions, including when necessary to refuse requests.
Crisis Management
- Solid experience in cyber risk analysis and management.
- Ability to lead a cyber crisis unit and coordinate various internal and external actors.
- Capacity to respond in emergency situations, potentially outside business hours.
- Excellent communication skills and the ability to remain calm and precise under pressure.
Benefits of Joining
Joining us means being part of a company specialized in supporting technology and digital transformation projects, mainly through skills delegation (providing experts to clients for a specific project or mission, with clear objectives and added value).
- Mission and project-based recruitment, not just based on profile.
- Engaging with diverse, demanding organizations with significant IT challenges.
- Personalized support and close monitoring throughout your mission.
- Continuous skills development through modern and stimulating technical environments.
- A culture focused on expertise, performance, and project commitment.
Contract Type: CDI
Location: Monaco
Languages: Fluent French, professional English (good oral and written level)