Security Governance Specialist

swile France
Relocation
Apply
AI Summary

As a Security Governance Specialist, you will lead our GRC strategy and operations, ensuring our security posture scales with our growth. You will be responsible for IT Risk Management, Certifications, DORA & Third-Party Risk, Audits, Resilience, Business Impact, Customer Liaison, and Regulatory Liaison. This role requires 5+ years of experience in GRC, IT Audit, or Cybersecurity Governance.

Key Highlights
Lead GRC strategy and operations
Ensure security posture scales with growth
5+ years of experience in GRC, IT Audit, or Cybersecurity Governance
Key Responsibilities
Lead Information Security Risk Assessments and implement operational controls
Maintain ISO 27001, PCI-DSS certifications and lead the implementation of SOC2 across all Swile products
Design and execute the Third Party Risk Management (TPRM) framework under the new DORA regulations
Orchestrate internal audits covering the internal control, financial audits and ad-hoc audits required by authorities, customers or Swile Board of Directors
Plan and coordinate the annual Disaster Recovery tests
Conduct the annual Business Impact Analysis (BIA) across all departments
Drive RFP initiatives by delivering accurate and impactful questionnaire responses and representing the team in customer interactions when required
Manage reporting for financial authorities like ACPR and Banque de France
Technical Skills Required
Cloud Security environments (AWS) ITGC basics
Benefits & Perks
Competitive salary and benefits package
Professional development and career growth opportunities
Working for one of France's top Scaleups

Job Description


At Swile, we believe that good products can help reduce friction in daily professional life and boost employee satisfaction. Today, we provide innovative solutions in various areas such as Fintech, Travel, HR, and Employee Benefits to more than 5.5 million users in 85,000 companies in France and Brazil.


🦾 Your Mission

As a Security Governance Specialist, you will bridge the gap between regulatory excellence and operational agility. Reporting directly to the CISO, you will lead our GRC strategy and operations, ensuring our security posture scales with our growth, while collaborating with a talented, international team based in France and Brazil.


✅ Your responsibilities include:

  • IT Risk Management : Lead Information Security Risk Assessments and implement operational controls.
  • Certifications: Maintain our ISO 27001, PCI-DSS certifications and lead the implementation of SOC2 across all Swile products.
  • DORA & Third-Party Risk: Design and execute the Third Party Risk Management (TPRM) framework under the new DORA regulations.
  • Audits : Orchestrate internal audits covering the internal control, financial audits and ad-hoc audits required by authorities, customers or Swile Board of Directors .
  • Resilience: plan and coordinate the annual Disaster Recovery tests.
  • Business Impact: Conduct the annual Business Impact Analysis (BIA) across all departments.
  • Customer Liaison: Drive RFP initiatives by delivering accurate and impactful questionnaire responses and representing the team in customer interactions when required
  • Regulatory Liaison: Manage reporting for financial authorities like ACPR and Banque de France.


✨ It will be a perfect match if you:

  • Have 5+ years of experience in GRC, IT Audit, or Cybersecurity Governance (Scale-up background would be a very strong bonus).
  • Are familiar with Cloud Security environments (AWS) and ITGC basics.
  • Possess a "hands-on" mindset: you enjoy building processes rather than just documenting them.
  • Are fluent in French and English (essential for our Brazil & France collaboration).
  • Are a Problem Solver capable of managing high-load audit periods with autonomy.


📓 One thing worth to be mentioned

We value a proactive, entrepreneurial mindset. Whether you come from a startup or a structured consulting environment, your ability to understand the code behind the controls is what matters.


💡What’s in it for you ?

  • Working for one of France's top Scaleups in a sunny place ☀️ (we can help with relocation 🚚 )
  • An opportunity to integrate a dynamic team of talented engineers.
  • A collaborative work environment that values innovation and creativity.
  • Competitive salary and benefits package.
  • Professional development and career growth opportunities.


Apply now and join us in creating impactful products that enhance the daily professional lives of millions.


Similar Jobs

Explore other opportunities that match your interests

GRC Specialist/Sr. Specialist

Cyber Security
9m ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

Agoda

Thailand

Senior Information Security Engineer

Cyber Security
45m ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

AAA Life Insurance Company

United State

Senior Systems Engineer - EU Operations

Cyber Security
5h ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

Amazon

Ireland

Subscribe our newsletter

New Things Will Always Update Regularly