AI Jobs Map

Test Yantra · Paris, Île-de-France, France

Information Security Manager

seniorcontractPosted 25 days ago
Apply on LinkedInLinkedInOpens the original posting. AI Jobs Map never asks for your details.

Stack mentioned

cybersecurityiso-27001identity-and-access-managementapplication-securityincident-responsevulnerability-management

Role Purpose

The Information Security Manager is responsible for protecting the organization's information assets by providing both technical security leadership and effective security governance. The role acts as a trusted advisor to business and technology stakeholders, ensuring that cyber risks are identified, assessed, challenged, and managed in alignment with business objectives, regulatory requirements, and enterprise security standards.

This position requires a strong technical foundation across infrastructure, cloud, networking, identity, applications, and cybersecurity operations, combined with the ability to drive governance, influence decision-making, and translate technical risks into clear business outcomes. The Information Security Manager is expected to be equally comfortable reviewing a technical architecture, challenging a security design, discussing vulnerability remediation with engineers, or presenting cyber risk exposure to senior leadership.

Key Responsibilities

Security Governance & Risk Management

• Lead security risk assessments across applications, infrastructure, cloud services, third parties, and business initiatives.

• Ensure risks are documented, tracked, remediated, or formally accepted through appropriate governance processes.

• Drive compliance with corporate security policies, standards, regulatory requirements, and industry frameworks such as ISO 27001, NIST, and CIS.

• Challenge exceptions, compensating controls, and risk acceptance requests to ensure decisions are informed and risk-based.

• Support audits, control effectiveness reviews, and security maturity initiatives.

• Technical Security Leadership

• Provide technical oversight and guidance on infrastructure, cloud, endpoint, network, IAM, application security, and data protection initiatives.

• Review solution architectures and technical designs to identify security risks and ensure alignment with enterprise security requirements.

• Partner with engineering, architecture, and operations teams to drive remediation of vulnerabilities, security deficiencies, and technical debt.

• Act as a senior technical escalation point for complex security issues and strategic technology decisions.

• Evaluate trade-offs between security, business value, cost, and delivery timelines.

• Business Engagement & Security Advisory

• Serve as the primary security advisor for assigned business units, projects, or geographic regions.

• Embed security early in strategic initiatives, digital transformations, acquisitions, and technology deployments.

• Translate technical vulnerabilities and cyber threats into business impact and decision-ready recommendations.

• Balance risk reduction with business enablement, ensuring security supports rather than obstructs organizational objectives.

• Security Program Execution

• Drive the implementation and adoption of enterprise security capabilities, controls, and standards.

• Monitor remediation plans, action items, and security improvement initiatives to ensure sustained progress.

• Contribute to incident response, resilience, continuity, and vulnerability management programs.

• Promote secure-by-design and privacy-by-design principles across technology initiatives.

• Leadership & Stakeholder Management

• Build strong relationships with business leaders, IT leadership, architects, engineers, risk teams, and auditors.

• Provide constructive challenge when security risks are not adequately understood or addressed.

• Drive cybersecurity awareness and foster a culture of accountability and shared responsibility.

• Mentor team members and promote the development of technical and governance capabilities within the security organization.

• Expected Profile

• The ideal Information Security Manager is not a policy administrator or compliance coordinator. The role is fundamentally a security leadership position with a strong technical backbone.

Successful candidates should demonstrate:

• Deep understanding of enterprise IT environments.

• Strong knowledge of cloud, network, endpoint, IAM, application security, and data protection.

• Ability to assess architectures and identify security weaknesses.

• Hands-on understanding of cybersecurity operations and vulnerability management.

• Experience with risk management, security frameworks, and regulatory environments.

• Strong communication skills capable of influencing technical teams and executive stakeholders alike.

• The confidence to challenge decisions when security risks are not being adequately addressed.

Philosophy of the Role

• An Information Security Manager should be able to understand the technology, challenge the design, assess the risk, influence the decision, and drive the remediation.

• Governance without technical depth is ineffective, and technical expertise without governance influence creates limited business value. The role requires both

More jobs at Test Yantra

  • Test Yantra · London Area, United Kingdom

    3 days ago

    Adobe Enterprise Architect

    seniorflutterreactrest-apigenerative-aiLinkedIn
  • Test Yantra · Sheffield, England, United Kingdom

    16 days ago

    Service Architect - PAM

    Hybridsenioridentity-and-access-managementLinkedIn
  • Test Yantra · Cambridge, England, United Kingdom

    17 days ago

    Senior Network Engineer

    seniornetwork-securitypythonansiblerest-api+4LinkedIn
  • Test Yantra · Sheffield, England, United Kingdom

    20 days ago

    DevOps Engineer - GCP

    devopsgcpterraformkubernetes+4LinkedIn
  • Test Yantra · Sheffield, England, United Kingdom

    20 days ago

    Tester - IAM

    sqlidentity-and-access-managementapi-testingLinkedIn
Information Security Manager at Test Yantra (Paris, Île-de-France, France) | AI Jobs Map