Job Description
mc2i is an independent consulting firm that supports its key clients with their digital transformation projects.
For over 35 years, we've been active in diverse sectors and areas, including Human Resources, Energy & Utilities, Transport, Banking, Finance & Insurance, Retail & Luxury, Media & Telecoms, Marketing & Customer Experience, Public Services, Cybersecurity, Data/AI, Infra, UX/UI Design, and Management & Organization.
We're recognized for our entrepreneurial approach, our innovative spirit, and our commitment to more responsible digital practices.
With over 1600 employees, mc2i has maintained a friendly atmosphere and close relationships with its staff. For more than 20 years, we've achieved double-digit growth, a testament to the excellence of our services. To continue this momentum, we're looking for new talents, exclusively recruited based on their profiles, to shape the future alongside us 馃殌.
Job description :
Within the Cybersecurity Department of a major Luxury Group, the Security Integration in Projects (ISP) team ensures that security requirements are proactively and effectively embedded across all IT projects within the Group.
The ISP acts as a key player in the cybersecurity framework in order to:
Reduce exposure to cyber risks
Ensure regulatory compliance
Enforce internal security standards
Promote a strong Security by Design culture
The objective of this mission is to act as a Risk Assessor within the ISP team, contributing to all activities within the scope, in close collaboration with project teams, business stakeholders, cybersecurity teams, and design functions (architecture, privacy).
Main Activities:
Security integration from project initiation: participation in Kick-Off Meetings, project criticality assessment, identification of security stakes, and triggering of required analyses.
Risk analysis and treatment: execution of Business Impact Analysis (BIA) and CATIS, identification of threat scenarios, risk evaluation (custom methodology aligned with ISO 27005 & EBIOS RM), definition and follow-up of mitigation measures.
Pentest coordination and follow-up: planning and coordination with external providers, analysis of test reports, and monitoring of vulnerability remediation.
Validation of new applications/tools: risk assessment, compliance verification against internal standards, definition of compensating controls where needed, and issuance of formal security opinions.
- Technical architecture challenge: security review of proposed architectures (network segmentation, IAM, encryption, APIs, logging, interconnections) and formulation of recommendations prior to production go-live.
Your profil :
Confirmed to Senior Profile (minimum 4 years of experience) with strong expertise in cybersecurity and risk assessment activities.
Technical skills:
Strong knowledge of Information Security principles
Risk analysis expertise (ISO 27005 / EBIOS RM aligned)
Blueteam and security control expertise
Architecture security (on-premise and cloud environments)
Application security
Network and Infrastructure security
Vulnerability management
Understanding of modern IT environments
Expertise in AI, Cloud security, payment systems security would be highly appreciated
Project environments include: AS400, Headless architectures, SAP, data platforms, new retail points of sale, Cloud AWS, Azure, GCP, Alibaba, Salesforce
Certifications could be an advantage : CCSP, ISO27001, CISA, CRISC, CEH, CISSP, CCNA Cisco,...
Facultative : Redteam culture or experiences
Soft Skills
Ability to challenge stakeholders diplomatically
Strong analytical and structured mindset
Leadership capabilities
Strong synthesis and reporting skills
High level of autonomy
Proactive and solution-oriented mindset
Languages
English: mandatory
French: recommended
We value diversity and inclusion. Every voice matters, and we encourage applications from all backgrounds.
馃實All our offers are open to people with disabilities.
One click away from applying ?
- Ranked 3rd in the Great Place to Work 2025 awards, mc2i is a great place to live and work.- Proximity management is a priority at mc2i, with one manager for every five consultants.
- At mc2i, all employees are in control of their professional journey and build the career that suits them best.
- As an independent firm 100% owned by its management, employees joining our Senior Management have the opportunity to invest in the company's capital and take part in the adventure.
- A presence in France, Belgium, and Portugal
To learn about our recruitment process, click here. A Talent Acquisition Consultant will be by your side to support you throughout your candidate journey. You'll also have the opportunity to take advantage of free coaching sessions to prepare yourself in the best way.
At mc2i, promoting diversity and fighting against all forms of discrimination are long-term commitments.
Our dedication to diversity and inclusion is reflected in our particular attention to the integration of people with disabilities. We encourage their applications and are committed to doing our utmost to provide necessary accommodations throughout their experience at mc2i. By joining us, you become part of a team where every individual matters and every voice is heard. As a signatory of the Diversity Charter, we strongly encourage applications from all backgrounds and look forward to discovering yours.
Join mc2i and let's build a more innovative and responsible digital future together! 猬囷笍