Cyber GRC Specialist

Sonepar Canada, Inc.

Paris

Hybride

EUR 65 000 - 90 000

Plein temps

Il y a 9 jours

Recevez plus de réponses des employeurs

Envoyez un CV adapté au poste en quelques minutes.

Résumé du poste

Sonepar is seeking a Cyber GRC Specialist to strengthen governance, risk & compliance. You will contribute to the documentation framework, run risk assessments, and work with Group Cyber teams across regions to translate risks into actionable actions for business decisions.

You will operate in an international, English-speaking environment, partnering with Legal, Internal Control and Audit teams to ensure effective cyber risk management and awareness initiatives.

Qualifications

  • Experience in drafting or maintaining policies, standards, requirements, controls or evidence requirements.
  • Practical experience in cyber risk assessments and the monitoring of risk treatment plans.
  • Ability to produce clear, structured deliverables and reports tailored to their intended audience.

Responsabilités

  • Develop and maintain Cyber GRC framework and documentation.
  • Conduct cyber risk assessments and translate findings into actionable recommendations.
  • Collaborate with global, regional and local teams in a matrix environment.
  • Explain cyber risks in business terms and support decision-making.
  • Support awareness initiatives and risk-based audits.

Connaissances

Governance, Risk & Compliance
NIST CSF
NIST 800-53
ISO 27001/27002/27005
Policy drafting
Risk assessments
Deliverables & reports
Stakeholder management
French & English (Fluent)

Description du poste

Select how often (in days) to receive an alert:

Sonepar is an independent family-owned group and a world leader in the distribution of electrical equipment, solutions and related services to the trade. In 2025, Sonepar generated a turnover of €33.6 billion. With a presence in 40 countries and an extensive network of retail outlets, the Group is undertaking an ambitious transformation to make life easier for its customers by offering them an omnichannel experience and a range of sustainable solutions for the industrial, construction and energy sectors. Our 46,000 employees are committed to the electrification of the world and united by a shared Purpose: "Power Progress for Future Generations."

How will you shape our tomorrow

As part of the strengthening of the Group’s cybersecurity governance, we are looking for a Cyber GRC Specialist with relevant initial experience in Governance, Risk & Compliance. Versatile, rigorous and proactive, you will contribute to a broad range of topics, including the cybersecurity documentation framework, risk assessments, controls, compliance, TPRM and awareness.

Reporting to the Cyber GRC Director within Sonepar Digital’s Cybersecurity & Infrastructure team, you will operate in an international, English-speaking environment. You will work with Group Cyber teams, the Regional Directors for the Americas, APAC and Europe, cross-functional teams including Enterprise Risk Management, Internal Control, Internal Audit and Legal, as well as Group entities.

Your role will be to contribute to the operational implementation of the Cyber GRC strategy and make cybersecurity requirements and risks clear and actionable. You will engage with Business teams, understand their constraints and support their decision-making by providing a clear view of risk.

You will progressively take ownership of end-to-end topics with a good level of autonomy, while receiving support from the Cyber GRC Director whenever needed.

What success looks like?
  • The Group Cyber GRC documentation framework is developed and maintained in collaboration with Domain and Regional Directors when required.
  • Cyber risk assessments are completed, clearly presented and translated into actionable recommendations for decision-makers.
  • Cybersecurity assessments of solutions and third parties provide a clear view of risks and required remediation actions.
  • The implementation of Cyber requirements is effectively assessed with the relevant support functions, and identified gaps are appropriately followed up.
  • Awareness initiatives are designed and delivered to strengthen the understanding of cyber risks and expected practices across the Group.
  • Risk-based audit campaigns are defined and coordinated with the Cyber GRC Director, with clear findings and remediation priorities.
Profile

You are an experienced cybersecurity professional with a focus on Governance, Risk & Compliance. You have already contributed to several GRC topics and are looking to progressively broaden your scope in an international and evolving environment.

You are comfortable working with technical, Corporate and Business stakeholders. You can formalize a need, analyze a risk, propose an approach and produce clear deliverables.You know when to seek guidance, support or a decision.

You are comfortable translating a framework into operational implementation and explaining cyber issues in terms of business impacts and decisions.

The experience you bring
Technical Skills
  • Good understanding of key cybersecurity and risk management frameworks, including NIST CSF, NIST 800-53 and ISO 27001/27002/27005.
  • Experience in drafting or maintaining policies, standards, requirements, controls or evidence requirements.
  • Practical experience in cyber risk assessments and the monitoring of risk treatment plans.
  • Ability to produce clear, structured deliverables and reports tailored to their intended audience.
  • Ability to work with global, regional and local teams in a matrix environment.
  • Fluent French and English, both written and spoken.
Soft skills
  • Autonomy and a proactive mindset, with the ability to seek support or escalation when required.
  • Clear communication and the ability to adapt your message to technical, Business and management audiences.
  • Analytical thinking, rigor and the ability to structure complex topics.
  • Pragmatism and the ability to prioritize based on risk and operational considerations.
  • Curiosity and adaptability in a transforming environment.
Work
Obtenez votre examen gratuit et confidentiel de votre CV.
ou faites glisser et déposez votre fichier ici.
Similar jobs

Postes similaires à comparer

Global Cyber GRC Specialist: Risk & Compliance
Global Cyber GRC Specialist: Risk & Compliance

Sonepar Canada, Inc. • Paris

Hybride
EUR 65 000 - 90 000
Consultant GRC F/H
Consultant GRC F/H

Constellation • Saint-Cloud

Sur place
EUR 50 000 - 70 000
Cyber Security Consultant - GRC
Cyber Security Consultant - GRC

Adeptis Group • Paris

Sur place
EUR 50 000 - 90 000
Career Development Funding
Commission on New Business
Flexible Working Hours
+2
Consultant GRC – Responsable SSI & Risques Technologiques H/F - (KSC/PSC/042026)
Consultant GRC – Responsable SSI & Risques Technologiques H/F - (KSC/PSC/042026)

SERMA Safety and Security • Île-de-France

Sur place
EUR 50 000 - 70 000
Cybersecurity Apprentice - Cybersecurity Posture & Governance (M/F/X)
Cybersecurity Apprentice - Cybersecurity Posture & Governance (M/F/X)

EQUANS SERVICES LIMITED • France

Sur place
EUR 24 000 - 30 000
Practical cybersecurity experience
Collaborative international environment
Cybersécurité GRC - Senior
Cybersécurité GRC - Senior

TMC • Avignon

Sur place
EUR 70 000 - 90 000
Security Awareness & Training Specialist
Security Awareness & Training Specialist

Asenium Consulting • Île-de-France

Sur place
EUR 40 000 - 60 000
Senior Security Analyst - GRC
Senior Security Analyst - GRC

Dormont Manufacturing Co • Massy

Sur place
EUR 45 000 - 65 000
GRC Cybersecurity Specialist
GRC Cybersecurity Specialist

Pernod Ricard • Paris

Sur place
EUR 60 000 - 80 000
Remote work options up to 2 days a week
Comprehensive mutual insurance
Attractive compensation including profit-sharing
+2
GRC Project Manager (H/F)
GRC Project Manager (H/F)

Horizon Trading Solutions • Paris

Sur place
EUR 80 000 - 110 000