Chief Information Security Officer

ESRF - The European Synchrotron

Grenoble

Sur place

EUR 120 000 - 180 000

Plein temps

Il y a 4 jours
Soyez parmi les premiers à postuler

Recevez plus de réponses des employeurs

Envoyez un CV adapté au poste en quelques minutes.

Avantages offerts par ce poste

Relocation support
Competitive compensation

Résumé du poste

The ESRF - The European Synchrotron, based in Grenoble, France, seeks an experienced Chief Information Security Officer to define and drive the organisation's cybersecurity strategy across divisions. You will provide strategic leadership, coordinate initiatives, and foster a strong security culture while ensuring alignment with governance and regulatory requirements.

With extensive IT and cybersecurity experience, you will lead risk assessment, oversee security controls, and report security

Qualifications

  • The candidate should have a Master’s degree in Computer Science, Cybersecurity, Information Systems, or a related field.
  • 10–15 years of professional IT experience with at least 3 years in cybersecurity.
  • Ability to influence multidisciplinary teams and coordinate cybersecurity initiatives across departments.
  • Proven leadership or strong potential to lead a small team and communicate at senior levels.
  • Excellent written and spoken English and interpersonal communication skills.

Responsabilités

  • Develop, maintain, and improve the ESRF cybersecurity policies, standards, and governance.
  • Define the cybersecurity roadmap, priorities, and implement strategic action plans.
  • Coordinate cybersecurity activities across ESRF divisions for a unified security posture.
  • Maintain risk assessment processes, identify emerging risks, and initiate audits.
  • Oversee security controls, ensure policy compliance, and validate remediation actions.
  • Monitor vulnerability alerts, coordinate remediation, and communicate threats to IT teams.
  • Design and coordinate cybersecurity awareness and training programs.
  • Define KPIs, monitor security metrics, and report risks to senior management.

Formation

Master's degree in Computer Science, Cybersecurity, Information Systems, or related discipline

Description du poste

Context & Job Description

The ESRF is a world-class research facility that produces extremely intense X-ray beams to enable scientists to explore matter at the nanoscale. Information Technology systems and services are essential to the successful operation of all ESRF Divisions. Ensuring that the ESRF's digital infrastructure, scientific computing environment, and software solutions are effectively protected against cyber threats is therefore of critical importance.


The ESRF's infrastructure, the software solutions and services are developed and operated by several IT teams across the Experiments Division, the Instrumentation Services and Development Division, and the Technical Infrastructure Division, but also the Accelerator and Source Division and the Administration Division.


As Chief Information Security Officer (CISO), you will define and drive the ESRF's cybersecurity strategy while fostering a strong security culture across the organisation. Although the role has no direct line management responsibility over the IT teams, you will provide strategic leadership, coordinate cybersecurity initiatives across divisions, and build consensus among multiple stakeholders.


Key Responsibilities


  • Develop, maintain, and continuously improve the ESRF's cybersecurity policies, standards, and governance framework.

  • Define the cybersecurity roadmap, establish priorities, and oversee the implementation of strategic action plans.

  • Coordinate cybersecurity activities across all ESRF divisions to ensure a consistent and effective security posture.

  • Maintain the organization's cybersecurity risk assessment process, identify emerging risks, and initiate internal or external security audits where appropriate.

  • Oversee the implementation of security controls by the IT teams and ensure compliance with cybersecurity policies and best practices.

  • Monitor vulnerability alerts, coordinate vulnerability management activities, and validate remediation actions.

  • Keep IT teams informed of emerging cyber threats, vulnerabilities, and appropriate mitigation strategies.

  • Design, launch, and coordinate cybersecurity awareness and training programmes for ESRF staff.

  • Define cybersecurity Key Performance Indicators (KPIs), monitor security metrics, and regularly report on cybersecurity risks and performance to senior management.


Expected profile

The successful candidate should possess the following qualifications and experience:



  • A Master's degree (or equivalent) in Computer Science, Cybersecurity, Information Systems, or a related discipline.

  • At least 10 to 15 years of professional experience in Information Technology, including a minimum of 3 years in cybersecurity.

  • Demonstrated ability to influence multidisciplinary teams and coordinate cybersecurity initiatives across multiple departments.

  • Proven leadership skills or strong potential to lead a small team.

  • Excellent communication and interpersonal skills, with the ability to interact effectively with technical specialists, researchers, and senior management.

  • Excellent written and spoken English.


Technical Skills

The ideal candidate will have:



  • Strong knowledge of cybersecurity governance and risk management frameworks, including ISO/IEC 2700X, NIST Cybersecurity Framework, CIS Controls or EBIOS.

  • Good technical knowledge in Linux and Windows environments, and network.

  • Experience with vulnerability management, security monitoring technologies, and incident response.

  • Good understanding of cloud security, virtualization technologies, and modern IT infrastructures security practices.

  • Knowledge of GDPR, the NIS2 Directive, and cybersecurity compliance requirements.


Experience securing large-scale scientific IT environments would be a strong advantage.


Desirable Qualifications

The following certifications would be considered an asset:



  • CISSP (Certified Information Systems Security Professional)

  • CISM (Certified Information Security Manager)

  • ISO/IEC 27001 Lead Implementer or Lead Auditor


Previous experience in an international scientific or research environment would also be considered an advantage.


Working conditions

Permanent contract.


The salary will be calculated on the basis of relevant qualifications and professional experience.


What Makes The ESRF Experience Unique…


  • Join an innovative international research institute, with a workforce from 38 different countries

  • Collaborate with global experts to advance science and address societal challenges

  • Come and live in a vibrant city, in the heart of the Alps, and Europe's Green Capital 2022

  • Enjoy a workplace designed to support your quality of life

  • Benefit from our competitive compensation and allowances package, including financial support for your relocation to Grenoble


Company Description

The European Synchrotron, the ESRF, is an international research centre based in Grenoble, France.


Through its innovative engineering, pioneering scientific vision and a strong commitment from its 700 staff members, the ESRF is recognised as one of the top research facilities worldwide. Its particle accelerator produces intense X-ray beams that are used by thousands of scientists each year for experiments in diverse fields such as biology, medicine, environmental sciences, cultural heritage, materials science, and physics.


The ESRF is an equal opportunity employer and encourages applications from disabled persons.


Supported by 19 countries, the ESRF is an equal opportunity employer and encourages diversity.

Obtenez votre examen gratuit et confidentiel de votre CV.
ou faites glisser et déposez votre fichier ici.
Similar jobs

Postes similaires à comparer

Chief Information Security Officer
Chief Information Security Officer

EURAXESS Ireland • Grenoble

Hybride
EUR 120 000 - 180 000
Relocation support
Competitive compensation
Chief Information Security Officer
Chief Information Security Officer

Euraxess • Grenoble

Hybride
EUR 120 000 - 180 000
Relocation assistance
International environment
Competitive compensation
Chief Information Security Officer
Chief Information Security Officer

EURAXESS Czech Republic • Grenoble

Hybride
EUR 90 000 - 130 000
Competitive compensation
Relocation allowances
Vibrant Grenoble location
Chief Information Security Officer
Chief Information Security Officer

ESRF - The European Synchrotron Radiation Facility • Grenoble

Hybride
EUR 120 000 - 180 000
Relocation assistance
Competitive compensation package
Beamline scientist at ID09 beamline
Beamline scientist at ID09 beamline

ESRF - The European Synchrotron • Grenoble

Sur place
EUR 60 000 - 90 000
Relocation assistance
Competitive compensation package
Electronics Engineer F/M
Electronics Engineer F/M

EURAXESS Ireland • Grenoble

Hybride
EUR 60 000 - 90 000
Relocation assistance
International work environment
Competitive compensation
Electronics Engineer F/M
Electronics Engineer F/M

EURAXESS Czech Republic • Grenoble

Hybride
EUR 60 000 - 80 000
Relocation to Grenoble provided
Competitive compensation package
International research environment
Electronics Engineer F/M
Electronics Engineer F/M

Euraxess • Grenoble

Hybride
EUR 55 000 - 75 000
Relocation support
International environment
Competitive compensation and package
Instrumentation Vacuum Technician
Instrumentation Vacuum Technician

ESRF - The European Synchrotron • Grenoble

Sur place
EUR 45 000 - 58 000
Relocation support
Competitive compensation package
Dynamic and international work environment
Mechanical Engineer for Scientific Instrumentation F/M
Mechanical Engineer for Scientific Instrumentation F/M

ESRF - The European Synchrotron Radiation Facility • Grenoble

Sur place
EUR 40 000 - 60 000
Relocation financial support
Innovative international research institute
Collaborate with global experts
+2