Sodecia is looking for a Cybersecurity & Compliance Manager to lead and strengthen our global cybersecurity function across IT and Operational Technology environments.
This is a unique opportunity to define and drive cybersecurity strategy within a multinational automotive group, ensuring compliance, protection, and resilience across our global operations.
As a Cybersecurity Manager, you will take ownership of cybersecurity governance across the group, including manufacturing plants, engineering centers, and corporate functions. You will act as the key cybersecurity leader, partnering with executive stakeholders and OEM customers.
Key Responsibilities
Cybersecurity Strategy & Governance
- Define and deploy a global cybersecurity roadmap aligned with business and automotive industry requirements
- Establish governance frameworks and ensure standardization across all sites
- Develop and maintain cybersecurity policies, standards, and controls
- Ensure compliance with TISAX, ISO/IEC 27001, NIST, IEC 62443, and GDPR
- Lead cybersecurity steering committees and management reviews
Risk Management & Compliance
- Conduct cybersecurity risk assessments across IT and OT environments
- Identify vulnerabilities and drive mitigation plans
- Manage internal and external audits and certifications
- Oversee supplier and third-party cybersecurity risks
- Maintain audit-ready documentation for OEM and customer requirements
IT & OT Security
- Define security standards across infrastructure, networks, cloud, endpoints, and industrial systems
- Ensure secure integration of OT environments (SCADA, MES, IC)
- Oversee security tools (SIEM, EDR/XDR, firewalls, IDS/IPS, MFA)
- Lead vulnerability management, patching, and system hardening
- Coordinate penetration testing and technical assessments
Incident Response
- Lead global cybersecurity incident response activities
- Manage crisis situations (ransomware, data breaches, phishing, insider threats)
- Develop and maintain response and disaster recovery plans
- Ensure proper escalation to executive management and customers
Customer & Regulatory Interface
- Act as the cybersecurity focal point for OEM customers
- Support customer audits, assessments, and questionnaires
- Ensure cybersecurity readiness for production and engineering programs
Cybersecurity Awareness
- Develop global awareness and training programs
- Promote a strong cybersecurity culture across IT and manufacturing teams
- Conduct phishing simulations and employee training
Vendor & Technology Management
- Manage cybersecurity partners and service providers
- Support budgeting and investment planning
- Define KPIs and monitor cybersecurity performance globally
Qualifications & Experience
- Bachelor's or Master's in Cybersecurity, IT, Computer Science, Engineering, or similar
- 7-10+ years of cybersecurity experience
- 3-5+ years in leadership roles, ideally in automotive, manufacturing, or industrial environments
- Strong experience in multinational, multi-site organizations
- Proven track record in certifications and audits (TISAX, ISO 27001, NIST)
Technical Expertise
- Cybersecurity frameworks: ISO 27001, TISAX, NIST, IEC 62443
- Strong knowledge of OT security (industrial systems, SCADA, MES)
- Cloud security (Azure / AWS) and Microsoft security ecosystem
- Network architecture and segmentation
- SIEM / EDR / vulnerability management / IAM
- Backup, recovery, and resilience strategies
Preferred Certifications
CISSP | CISM | ISO 27001 Lead Implementer/Auditor | CEH | GIAC | Security+ | IEC 62443
What We're Looking For
- Strategic thinker with strong execution capability
- Proven leadership in complex, matrix organizations
- Excellent communication and stakeholder management skills
- Strong crisis management and decision-making ability
- High integrity and confidentiality
Why Join Sodecia?
- Be part of a global Tier 1 automotive supplier
- Lead cybersecurity at a strategic, enterprise-wide level
- Drive transformation across IT and OT environments
- Work in a international, multicultural environment
Data protection notice:
By applying, your personal data will be processed for recruitment purposes and stored for 3 years. To learn more or exercise your rights, visit our Privacy Policy or contact dpo@sodecia.com.