At a Glance
- Tasks: Lead the Information Security Management System and manage risk across the organisation.
- Company: Join Michelin Connected Fleet, a leader in sustainable mobility with a diverse team.
- Benefits: Enjoy flexible working, competitive salary, and opportunities for professional growth.
- Why this job: Make a real impact on security and sustainability in a fast-growing tech environment.
- Qualifications: Strong analytical skills, communication abilities, and experience in information security management.
- Other info: Embrace a culture of agility and innovation while working with a global team.
The predicted salary is between 36000 - 60000 Β£ per year.
Role : Information Security and Risk Manager
Location : Aberford Leeds
Contract : Permanent
Working : Hybrid 3 days in the office
As MICHELIN Connected Fleet, a division of the Michelin Group, leader in sustainable mobility for 130 years, we specialise in connected fleet management services and solutions. We are a market leader with over 30 years expertise in a high-growth, competitive mobility technology industry. Today we serve 70,000 customers and over 600,000 vehicles globally, growing more than 10% per year, and entering at the rate of 3 new markets a year. Backed by Michelin Group and operating under the Michelin Connected Fleet name, we intend to be a major player in this market in the coming years.
OUR DREAM
We know our planet is at risk and we urgently need to find innovative ways to protect it. At Michelin, pioneering is what we do : We are innovating constantly, to explore new opportunities, with, around and beyond tires to lead the way in sustainable mobility. Our people act for change, with respect, and as leaders. We care about giving people a better way forward. Our dream is rooted in a single purpose : by 2050, Michelin will be recognised as a critical innovation leader that helped humanity conquer new frontiers. And we all work hard every day to realise this dream.
OUR PEOPLE & WAYS OF WORKING
At MICHELIN Connected Fleet, agility is not a word β itβs a lifestyle. We gather entrepreneurial minds who are not afraid to fail fast and learn quickly, every day. We think long term and act short term, we grow fast and love what we do. We believe in an inclusive working environment, building teams with a variety of backgrounds, skills, views, and opinions. Among our 400 employees in Europe, we proudly benefit from around 30 nationalities. We thrive because of the diverse background and talent of our people. We nurture our team\βs growth with several company wide development programs β including our Diversity, Mentoring and Sustainability programs.
THE ROLE IN SHORT
As the Information Security and Risk Manager, you are the central leader responsible for the company\βs overall security and compliance posture. You will manage the entire Information Security Management System (ISMS), ensuring the continuous maintenance of the ISO 27001 standard and leading the comprehensive risk management program.
Your duties include coordinating internal and external audits, ensuring effective tracking of strategic security objectives and KPIs, and overseeing all security incident response and resolution efforts.
WHAT WILL I BE DOING
- Lead and manage the end-to-end Information Security Management System (ISMS), ensuring continued ISO 27001 compliance.
- Drive information risk management across the organisation, including identification, assessment, treatment, and ongoing tracking of risks, non-compliances, and associated action plans.
- Coordinate Information Asset Owners (IAOs) to review the ISMS, maintain up-to-date asset profiles, and ensure all major risks have defined treatment plans.
- Manage security incidents, taking responsibility for investigation, resolution, post-incident reporting, and leading ad-hoc response teams during critical situations.
- Develop and implement strategies for raising information security awareness, including creating and disseminating training materials (in-person, e-learning, and intranet).
- Organise and coordinate security audits (internal, external, customer, and penetration tests), manage the collection of evidence, and track findings through to resolution.
- Animate \βSecurity by Design\β meetings and review proposed architectures with engineering teams from a security perspective.
- Provide expert advice to senior management on the organisation\βs information risk profile and the status of risk treatments.
- Manage and update all essential ISMS documentation, including translation (French), and ensure maintenance of the ISMS and related projects (e.g., Jira).
- Regularly audit information systems and business processes, assessing risks, internal controls, and compliance with relevant laws and statutes to drive continuous improvement.
TO BE SUCCESSFUL YOU WILL LIKELY HAVE
- Spirit of analysis and being proactive in solving problems or internal dysfunction.
- Good communication skills and being a good teacher.
- Ability to work independently and with ad hoc teams.
- Rigour, precision and attention to details.
- Writing skills.
- Ensuring technological and regulatory watch.
- IT tools skills (Microsoft Office / Google Workspace / Jira).
- Policies and procedures related to information security, in particular ISO 27001.
- Project management techniques.
- Control of the audit activity : procedure, implementation, management and control missions.
- Specific experience with Quantitative Risk Analysis methodologies.
- Knowledge of core security controls and technologies across domains (network, cloud, application).
- Experience defining, collecting, and visualizing Key Performance Indicators (KPIs).
- Fluent and technical English, French is a plus.
Work life balance is important to us at Michelin Connected Fleet, so we offer our teams as much flexibility as possible in line with the needs of their role. We trust our teams to know how they work best, combining remote and collaborative working, with a flexible approach to hours. This allows our people the time and space for life outside of work.
#J-18808-Ljbffr
Information Security and Risk Manager employer: MICHELIN Connected Fleet
Contact Detail:
MICHELIN Connected Fleet Recruiting Team
StudySmarter Expert Advice π€«
We think this is how you could land Information Security and Risk Manager
β¨Tip Number 1
Network like a pro! Get out there and connect with people in the industry. Attend events, join online forums, or even hit up LinkedIn. The more people you know, the better your chances of landing that dream job.
β¨Tip Number 2
Prepare for interviews by researching the company inside out. Understand their values, mission, and recent projects. This will help you tailor your answers and show them you're genuinely interested in being part of their team.
β¨Tip Number 3
Practice makes perfect! Do mock interviews with friends or family to get comfortable with common questions. This will boost your confidence and help you articulate your skills and experiences clearly.
β¨Tip Number 4
Don't forget to apply through our website! Itβs the best way to ensure your application gets noticed. Plus, we love seeing candidates who are proactive about joining our team at Michelin Connected Fleet.
We think you need these skills to ace Information Security and Risk Manager
Some tips for your application π«‘
Tailor Your CV: Make sure your CV is tailored to the Information Security and Risk Manager role. Highlight relevant experience, especially around ISO 27001 compliance and risk management. We want to see how your skills align with our mission at Michelin Connected Fleet!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about information security and how you can contribute to our dream of sustainable mobility. Keep it engaging and personal β we love to see your personality come through!
Showcase Your Skills: Donβt just list your skills; demonstrate them! Use specific examples from your past experiences that showcase your problem-solving abilities and attention to detail. Weβre looking for proactive individuals who can lead and manage effectively.
Apply Through Our Website: We encourage you to apply directly through our website. Itβs the best way to ensure your application gets into the right hands. Plus, youβll find all the details about the role and our company culture there!
How to prepare for a job interview at MICHELIN Connected Fleet
β¨Know Your ISO 27001 Inside Out
Make sure youβre well-versed in the ISO 27001 standard. Be prepared to discuss how you've implemented or maintained compliance in previous roles. This shows that you understand the framework and can lead the Information Security Management System effectively.
β¨Showcase Your Risk Management Skills
Prepare examples of how you've identified, assessed, and treated risks in past positions. Highlight your experience with quantitative risk analysis methodologies and how youβve tracked risks and non-compliances. This will demonstrate your proactive approach to information security.
β¨Communicate Clearly and Confidently
Since good communication is key for this role, practice explaining complex security concepts in simple terms. Think about how you would teach these concepts to someone without a technical background. This will show your ability to raise awareness and train others effectively.
β¨Be Ready for Scenario-Based Questions
Expect questions that put you in hypothetical situations related to security incidents or audits. Prepare to discuss how you would manage these scenarios, including your approach to investigation, resolution, and post-incident reporting. This will highlight your problem-solving skills and readiness for real-world challenges.