Senior Associate Security Risk and Compliance
Direct message the job poster from Publicis Re:Sources
Talent Acquisition Expert | Identifying & Engaging Top Talent to Drive Company Growth
About the Company
This position is an active member of the Global Security Office (GSO), the security organization of Publicis Groupe under Re:Sources, responsible for supporting security management and compliance activities globally to Groupe agencies. This position supports security requirements of Publicis Groupe, its agencies, and ensures the success of business by working collaboratively with internal and external stakeholders. This position also coordinates dependencies across the disciplines and organization to understand and address the ever‑changing security landscape and security‑related business requirements. This position reports into Manager/Senior Manager Information Security.
About the Role
This role involves working as an individual contributor in a global team to support the Global ISO 27001/ISMS program and ensuring compliance with security standards.
Responsibilities
- Support in the implementation of the ISO 27001 standard for new teams, functions and locations.
- Perform gap analysis, drive control implementation, risk assessments, security audits and other activities that are part of ISMS maintenance.
- Interface with corporate governance, internal and external auditors.
- Actively participate and contribute to continual improvement activities for the Security Certification, Risk and Compliance program.
- Serve as a security point of contact to help agencies in the implementation of new security certifications, primarily ISO 27001, TISAX and other security requirements as determined by business needs.
- Contribute to the broad range of global Information Security and risk mitigation initiatives as guided by the Leadership of the Global Security Office team.
- Set and measure security effectiveness in line with services provided by GSO to Groupe agencies.
- Perform key compliance activities such as control gap assessments, internal security audits and security risk assessments.
- Advise business or operational teams on the implementation of administrative, physical and technical security controls required for security policy adherence and compliance.
- Coordinate the implementation of security controls.
- Contribute to continual improvement of Publicis Groupe’s security policies, standards and guidelines.
- Get involved in security documentation on a regular basis as an author or reviewer.
- Maintain awareness of the current industry environment that shapes opportunities for client solutions (e.g., news events, trends, mergers, etc.).
- Contribute to the security awareness initiatives by publishing security bulletins, blogs, newsletters, etc.
Qualifications
- Degree from an accredited university, preferably in Computer Science, Information Systems, or a related field; relevant working IT or security experience considered.
- Education and experience should also include auditing and/or operational risk management exposure.
- Security certification such as CISM, ISO 27001 Lead Implementer, CCSK, CISSP or CRISC strongly preferred.
Required Skills
- Good communication and presentation skills.
- Ability to work effectively and collaboratively with stakeholders.
- Willingness to work with geographically dispersed teams, which may involve working during non‑business hours occasionally to accommodate time‑zone differences.
- Mandatory language skills (oral, written and listening): English.
Preferred Skills
- At least 5 years of IT and/or information security–related experience, including experience in implementation and managing a security program based on ISO 27001 or any other well‑known security standard or framework.
- Experience in working for an ISMS (ISO 27001) implementation and maintenance program.
- Familiarity with general information security controls, processes and principles.
- Experience with technology security solutions such as cyber security solutions such as CSPM, CASB, CWPP, and Cloud‑Native Application Protection Platform (CNAPP).
- Exposure in supporting risk and compliance programs for public cloud solutions (AWS, Azure, SaaS solutions), latest server & network infrastructure and databases based on relevant security requirements.
- Worked on standards and frameworks like TISAX, SOX, SSAE 16, PCI:DSS, SOC 1/2, NIST CSF, Cloud security standards (CIS, CSA).
- Exposure to Data Security Posture Management (DSPM) solutions and practical usage of AI solutions in security.
Seniority Level
Employment Type
Job Function
Industries
- IT Services and IT Consulting
Referrals increase your chances of interviewing at Publicis Re:Sources by 2x
Get notified about new Financial Services Associate jobs in Gurugram, Haryana, India.