Professional Services, Consulting, AuditIndustries
Requirements
Bac+4/5 level from a grande école (business or engineering) or university
At least 3 years of experience in risk management or related field
Responsibilities
Respond to consultations from clients, including audits, across all business lines on information security, in close collaboration with stakeholders (security/privacy teams, legal, operational teams)
Conduct confidentiality risk analysis on new tools/applications for the firm in France, DCE (Deloitte Continental Europe), and the Deloitte network (data by design)
Implement, monitor, and improve the internal Confidential Information Program (CIP), including audits of teams to limit confidentiality risks
Improve the overall internal control framework for confidentiality/data protection and ensure compliance with the regulatory environment
Prepare for audits, independent reviews, and certifications related to information protection
Define and implement adapted policies and procedures for information security in an ISO27001 and ISO22301 certified environment
Manage confidentiality incidents
Perform operational and strategic reporting by establishing statistics from data extracted from systems
Organize and deliver awareness and training sessions
Participate in projects/activities and annual campaigns related to data archiving/destruction, access reviews, etc