Information Security Analyst
DidomiConsent and company
Paris, FranceMid
Bpifrance
Breega
Elephant Venture Capital
Marlin Equity Partners
Legal & Compliance
About the role
TL;DR
Support the operational backbone of our ISO 27001 program and ensure audit readiness.
- •Join our Security & IT team as an Information Security Analyst to support our ISO 27001 program and ensure audit readiness.
- •Key Responsibilities Maintain and improve our ISO 27001 management system.
- •Contribute to internal and surveillance audits, and recertification cycles.
- •Carry out recurring security activities, including vulnerability scanning and access reviews.
- •Triage vulnerability findings and work with the Security Manager to define remediation priorities.
- •Support the security team on security questionnaires, RFPs, and customer due diligence requests.
- •Requirements 3+ years of experience in a GRC, compliance, or information security analyst role.
- •Solid working knowledge of ISO 27001, including Annex A controls and the audit process.
- •Hands-on experience with vulnerability management tools and access governance processes.
- •Demonstrated use of AI tooling to accelerate recurring compliance and documentation work.
- •Strong written communication in English.
Required skills
AWS
Nice-to-have skills
HIPAA
Domain expertise
cybersecurity
Tech stack
AWSSSOMFASlackNotion