CDI - HQ IT Security Manager

Rexel France
Paris, France
29 days ago
Apply on fr.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Languages
English
Job source

Tech stack

Microsoft Azure Cyber Security Identity and Access Management PCI Data Security Standards Systems Development Life Cycle Software Vulnerability Management Information Security Management System Software Security Information Technology

Job description

The role coordinates and is responsible for IT Security activities within Rexel’s Group IT department and HQ / Shared Services, based in Paris, France. Key aspects of the mission include:

  • Overseeing the operation of the enterprise’s security solutions through the management of the organization’s and third-party contract security analysts.
  • Ensuring the confidentiality, integrity and availability of the organization’s assets.
  • Maintaining an enterprise security stance through policy, architecture and training processes.
  • Participating in the selection of appropriate security solutions and overseeing vulnerability audits and assessments.

Main Responsibilities & Accountabilities

Here are the main responsibilities and obligations related to the position (non-exhaustive list):

Information Security

  • Ensure and promote confidentiality, integrity and availability.
  • Assurance, privacy and regulatory compliance.
  • Information risk management and cybersecurity.
  • Information technology systems controls.
  • Identity and access management.

Governance, Operations & Delivery

  • Lead the implementation of ISMS policies and coordinate PCI DSS compliance for HQ.
  • Document and explain deviations from security standards.
  • Relay any suitable information security awareness, training and educational activities.
  • Manage continuous monitoring of network, system and application security controls effectiveness.
  • Manage security alerts and vulnerability management for HQ and Shared Services.
  • Oversee operational security and Azure security for HQ and Shared Services.
  • Drive remediation follow-up and operational security KPI reporting.
  • Organize and facilitate interdepartmental communication to identify and resolve security issues.

Critical Success Factors

  • Work closely and collaboratively with the relevant HQ and Shared Services IT teams, and drive continuous improvement in IT Security within those organizations.
  • Maintain current knowledge of relevant information security threats and technologies.

Current Context (Place of the Role in the Organization)

  • The role reports directly to the CISO and is a member of the Group IT department.
  • It interfaces with peers in the Infrastructure and Application departments, and with HQ business unit leaders, to share the corporate security vision

Critical Path & Key Challenges

  • Promote IT Security within the defined areas of responsibility - not only within the IT teams, but also across the end-user community.
  • Drive continuous IT Security improvements in Infrastructure and Applications.
  • Work with the various HQ departments that play key roles in IT Security (for example Legal, Audit & Compliance, HR and Communications).

Requirements

  • Bachelor’s degree required in Computer Science, Information Technology or a related field.
  • A minimum of 5 years’ experience in the ICT field, including security-related experience.
  • Security certifications such as CISSP, CISM or CISSP-ISSMP are desired.
  • English - fluent (required).

Competencies & Technical Skills

The profile of the role requires the following:

  • Experience in both in-house and outsourced environments.
  • IT infrastructure and Systems Development Life Cycle (SDLC) experience.
  • A proven ability to manage security in large environments.
  • Excellent communication skills.
  • Experience working in cross-functional project teams and within hybrid internal and outsourced environments.
  • The ability to manage multiple priorities and build effective delivery schedules based on business needs and technical requirements.
  • Strong analytical and problem-solving skills.
  • Experience delivering cross-functional security projects.
  • Knowledge of a wide range of security systems in use at the organization
  • Solid knowledge of PCI DSS and other IT security standards.
  • Familiarity with ISO frameworks, as well as NIST standards.
  • Demonstrated knowledge of common information technology platforms and standards.

About the company

Rexel. Electrifying solutions that make a sustainable future possible.

Rexel, a global expert in the multi-channel distribution of electrical products and services for the energy sector, serves three main markets: residential, commercial, and industrial. Passionate, dedicated, and highly skilled, our employees contribute to delivering innovative electrification solutions on the ground and making the energy transition possible. We believe in bringing positive energy to everything we do!

Join our dynamic teams and be part of this extraordinary journey! Joining the Rexel teams offers an exciting and dynamic environment, where you can make a tangible difference, work on innovative projects, collaborate with diverse teams, and develop professionally and personally.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on fr.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:06 min

Outline of free tools for Microsoft Azure

Radu Vunvulea Radu Vunvulea · World Congress 2022

1:30 min

The universal and shared team responsibility of software security

Julia Wilson Julia Wilson +1 · World Congress 2025

3:02 min

Navigating DORA compliance and executive liability in security

Michele Zuccala Michele Zuccala +4 · World Congress 2026 Europe

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all