Director, Enterprise IT Risk Management & Audit Digital Leader

Resumen del puesto
Indefinido
Rueil-Malmaison
Salario: No especificado
Competencias y conocimientos
Atención al detalle
Conocimientos de ciberseguridad
Capacidad de comunicación
Colaboración y trabajo en equipo
Capacidad de resolución de problemas
+8

Schneider Electric
Schneider Electric

¿Te interesa esta oferta?

Preguntas y respuestas sobre esta oferta

El puesto

Descripción del puesto

The Director, Enterprise IT Risk Management & Audit Digital Leader is responsible for defining, implementing, and overseeing the enterprise-wide IT risk management strategy, framework and execution.

Your role :

This role ensures alignment with internal audit, cybersecurity, compliance, and governance functions, and drives proactive risk mitigation across digital platforms, infrastructure, and applications.

The leader will serve as the primary liaison between IT and internal/external audit teams and executive stakeholders.

You will ensure alignment and readiness for all IT-related audits

Your main responsibilities :

Strategic Risk Leadership

  • Develop and execute the enterprise IT risk management framework aligned with business objectives and regulatory requirements.
  • Define risk appetite and tolerance levels in collaboration with executive leadership.
  • Lead risk identification, assessment, and mitigation strategies across IT domains.


Audit & Governance Coordination
  • Act as the central point of contact for internal and external audits related to ITGC, ITAC, cybersecurity, and disaster recovery.
  • Collaborate with audit teams to define scope, timelines, and deliverables.
  • Facilitate walkthroughs, evidence collection, and stakeholder engagement across IT and business units.
  • Track and report remediation efforts and audit findings.


Cybersecurity & Compliance
  • Partner with cybersecurity teams to validate control design and effectiveness across identity management, endpoint protection, and incident response.
  • Ensure readiness for frameworks such as NIST, ISO 27001, PCI-DSS, and GDPR.


IT General Controls (ITGC)
  • Establish ITGC Framework for Enterprise IT.
  • Support testing and documentation of controls related to access management, change management, backup and recovery, and segregation of duties.
  • Ensure consistency across federated ERP systems and global platforms (e.g., SAP, Oracle, Coupa, SailPoint).


Application & Infrastructure Risk
  • Oversee risk controls for application lifecycle management, including patching, configuration, and decommissioning.
  • Coordinate with infrastructure and application owners to ensure DR plans are documented, tested, and aligned with policy requirements.
  • Support network security audits and third-party access reviews.


Reporting & Communication
  • Consolidate audit findings and track remediation plans across IT domains.
  • Prepare executive dashboards and summaries for leadership.
  • Communicate risk policies and processes across the organization.
  • Provide training and awareness programs to foster a risk control culture.


Your profile :

  • Master’s or Engineer’s degree in IT, Cybersecurity, Risk Management or related field
  • Certifications such as CGEIT, CRISC, CISA, CISM, CISSP, PMP and/or ITIL are highly desirable.
  • 10+ years of experience in IT risk management, Cybersecurity or Digital Governance with 5+ years in leadership roles with cross-functional influence.
  • Prior experience in external or internal audit experience is a plus.
  • Experience working in a matrixed, global organization is a plus.
  • Strong analytical, strategic thinking, problem-solving capabilities and practical execution.
  • Excellent communication and stakeholder management skills.
  • Deep understanding of IT control frameworks, NIST, ISO 27001, PCI-DSS, and GDPR.
  • Familiarity with tools like SAP GRC, ServiceNow, and audit management platforms.
  • High attention to detail, ability to work under pressure and manage multiple priorities.
  • Broad understanding of technology landscapes (security, infrastructure, cloud, data privacy, pentesting, network) .
  • Fluent english (please apply in english).


We know skills and competencies show up in many ways and can be based on your life experience. If you do not necessarily meet all the requirements that are listed, we still encourage you to apply.

#LI-SM1

Looking to make an IMPACT with your career?

When you are thinking about joining a new team, culture matters. At Schneider Electric, our values and behaviors are the foundation for creating a great culture to support business success. We believe that our IMPACT values - Inclusion, Mastery, Purpose, Action, Curiosity, Teamwork - starts with us.

IMPACT is also your invitation to join Schneider Electric where you can contribute to turning sustainability ambition into actions, no matter what role you play. It is a call to connect your career with the ambition of achieving a more resilient, efficient, and sustainable world.

We are looking for IMPACT Makers; exceptional people who turn sustainability ambitions into actions at the intersection of automation, electrification, and digitization. We celebrate IMPACT Makers and believe everyone has the potential to be one.

Become an IMPACT Maker with Schneider Electric - apply today!

€36 billion global revenue
+13% organic growth
150 000+ employees in 100+ countries
#1 on the Global 100 World’s most sustainable corporations

You must submit an online application to be considered for any position with us. This position will be posted until filled.

Schneider Electric aspires to be the most inclusive and caring company in the world, by providing equitable opportunities to everyone, everywhere, and ensuring all employees feel uniquely valued and safe to contribute their best. We mirror the diversity of the communities in which we operate, and ‘inclusion’ is one of our core values. We believe our differences make us stronger as a company and as individuals and we are committed to championing inclusivity in everything we do.

At Schneider Electric, we uphold the highest standards of ethics and compliance, and we believe that trust is a foundational value. Our Trust Charter is our Code of Conduct and demonstrates our commitment to ethics, safety, sustainability, quality and cybersecurity, underpinning every aspect of our business and our willingness to behave and respond respectfully and in good faith to all our stakeholders. You can find out more about our Trust Charter here

Schneider Electric is an Equal Opportunity Employer. It is our policy to provide equal employment and advancement opportunities in the areas of recruiting, hiring, training, transferring, and promoting all qualified individuals regardless of race, religion, color, gender, disability, national origin, ancestry, age, military status, sexual orientation, marital status, or any other legally protected characteristic or conduct.

¿Quieres saber más?

¡Estas ofertas de trabajo te pueden interesar!

Estas empresas también contratan para el puesto de "{profesión}".