GRC Consultant Risk Management

il y a 24 heures


Leudelange, Esch-sur-Alzette, Luxembourg Sopra Steria Temps plein
Company Description

Sopra Steria is Europe's leading digital solutions provider, employing over 56,000

employees in 30 countries. We provide tailored, end-to-end corporate technology

and software solutions. We leverage our digital tools and market expertise to help

our clients make bold choices and deliver results. Our commitment to innovation,

collaboration and value in business development is why we're the preferred

technology partner of Europe's most successful companies. The world is how we

shape it, so let's shape it together.

Job Description

Main Mission

Consultant capable of designing and implementing an industrialized process for Risk Management.

The consultant must be able to :

Definition of the Risk Strategy

  • Define, formalise and maintain a structured risk analysis methodology.
  • Develop and maintain templates, policies, standards, and guidance documents.
  • Build an service offering for risk analysis activities.
  • Harmonise practices across teams and ensure alignment with group-wide expectations.

Industrialisation of the Risk Analysis Process

  • Design automated workflows for generating risk analyses
  • Automate data collection, pre‑population of fields, consolidation and generation of standardised deliverables.
  • Continuously improve the process to reduce effort, improve quality and increase consistency.
  • Work closely with customers to integrate business and operational constraints.
Qualifications

Governance, Risk & Compliance

  • Good knowledge of cybersecurity frameworks (ISO 27001, NIST CSF, CIS Controls).
  • Skills in IT and security risk management.
  • Understanding of regulatory requirements: GDPR, DORA, eIDAS, etc.
  • Ability to draft policies, procedures, standards, and guidelines.
  • Analysis & Project Management
  • Ability to coordinate multiple stakeholders (IT, Security, Business teams, HR).
  • Strong ability to produce clear and structured deliverables.
  • Knowledge of CSSF constraints is an asset.
  • Strong vision and expertise in CyberSecurity processes, especially IT risk analysis.
  • Affinity with operational process workflows and their optimisation.

Behavioural Skills

  • Strong rigour and attention to detail.
  • Proactive mindset and ability to take initiative.
  • Strong organisational capabilities.
  • Critical thinking and problem‑solving mindset.
  • Client‑oriented attitude.
  • Creativity, innovation, and ability to resolve complex issues.
  • Ability to synthesise and simplify complex information.

Language Skills

  • French: read, written, spoken.
  • English: read, written, spoken.

Bachelor's/Master's degree (Computer Science, Cybersecurity, Risk Management, Governance, Audit or equivalent).

Experience in GRC, cybersecurity, IT risk management, IT audit or compliance.

Certifications appreciated: ISO 27001 Lead Implementer / Auditor, ITIL, CISSP, CISM, CISA.

Additional Information

As a member of one of Europe's largest digital solutions providers, you'll benefit from extensive career development opportunities, both local and international. At the Sopra Steria Academy, you'll be part of a dynamic network of 56,000 professionals at all stages of their careers. With a wide array of offices to explore, you can find your ideal location and take the next step in your career.

We offer a generous employee benefits package that includes:

  • Access to our Sopra Steria training and personal development academy
  • A company car lease or mobility budget
  • A company laptop and mobile phone
  • Private health insurance coverage
  • Meal vouchers
  • Social security and pension plan
  • A competitive salary

Sopra Steria is implementing the tools of the future today at the world's largest businesses across industry and financial services. By being bold together, our professionals are changing how business is done.

______

Sopra Steria is an equal opportunity employer. All qualified applicants will be considered for employment without regard to age, ancestry, nationality, color, family or medical leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, gender (including pregnancy), sexual orientation or any other characteristic protected by applicable local laws, regulations and ordinances. We foster a work environment that is inclusive and respectful of all differences.



  • Leudelange, Esch-sur-Alzette, Luxembourg Northern Trust Corp. Temps plein

    About Northern Trust:Northern Trust, a Fortune 500 company, is a globally recognized, award-winning financial institution that has been in continuous operation since 1889.Northern Trust is proud to provide innovative financial services and guidance to the world's most successful individuals, families, and institutions by remaining true to our enduring...


  • Leudelange, Esch-sur-Alzette, Luxembourg Northern Trust Temps plein

    About Northern Trust:Northern Trust, a Fortune 500 company, is a globally recognized, award-winning financial institution that has been in continuous operation since 1889.Northern Trust is proud to provide innovative financial services and guidance to the world's most successful individuals, families, and institutions by remaining true to our enduring...

  • Compliance Monitoring Officer

    il y a 2 semaines


    Leudelange, Esch-sur-Alzette, Luxembourg Banque Raiffeisen Temps plein

    Le Compliance Monitoring Officer intervient au sein du pôleCompliance Risk & Controlde la Fonction Compliance (2ème ligne de défense ou 2LoD).Sa mission principale est de contribuer à l'évaluation périodique du risque de non-conformité et à la mise en œuvre du Compliance Monitoring Plan (CMP), en testant l'existence, le design et l'efficacité des...

  • Compliance Monitoring Officer

    il y a 2 semaines


    Leudelange, Esch-sur-Alzette, Luxembourg Banque Raiffeisen Temps plein

    Le Compliance Monitoring Officer intervient au sein du pôleCompliance Risk & Controlde la Fonction Compliance (2ème ligne de défense ou 2LoD).Sa mission principale est de contribuer à la mise en œuvre du Compliance Monitoring Plan (CMP), en testant l'existence, le design et l'efficacité des contrôles de 1ère ligne de défense (1LoD) pour les domaines...

  • compliance monitoring officer

    il y a 2 semaines


    Leudelange, Esch-sur-Alzette, Luxembourg Banque Raiffeisen s.c. Temps plein

    Première banque coopérative au Luxembourg, la Banque Raiffeisen a su évoluer au fil des années de manière constante et autonome tout en gardant à l'esprit les valeurs fondamentales qui la caractérisent. Forte de son ancrage local et de la parfaite connaissance de son périmètre d'action, la Banque Raiffeisen est une banque universelle indépendante,...

  • fraud prevention manager

    il y a 2 semaines


    Leudelange, Esch-sur-Alzette, Luxembourg Banque Raiffeisen s.c. Temps plein

    Première banque coopérative au Luxembourg, la Banque Raiffeisen a su évoluer au fil des années de manière constante et autonome tout en gardant à l'esprit les valeurs fondamentales qui la caractérisent. Forte de son ancrage local et de la parfaite connaissance de son périmètre d'action, la Banque Raiffeisen est une banque universelle indépendante,...

  • Fraud Prevention Manager

    il y a 2 semaines


    Leudelange, Esch-sur-Alzette, Luxembourg Banque Raiffeisen Temps plein

    Le Fraud Prevention Manager intervient au sein du pôle Compliance Risk & Control, en deuxième ligne de défense (2LoD). Il agit comme expert dans le domaine de la fraude bancaire. Il est responsable de la définition, de la coordination et de la supervision des dispositifs de prévention, détection, investigation et gestion du risque de fraude interne et...

  • Space Project Manager

    il y a 4 jours


    Leudelange, Esch-sur-Alzette, Luxembourg OQ Technology Temps plein

    With our groundbreaking satellite 5G constellation, OQ Technology is a global leader in IoT communication connectivity and associated services. We are a venture-backed company with a successful track record of satellite launches and the first in the world to merge cellular 5G with satellites. Our technology has transformative applications across Oil & Gas,...


  • Leudelange, Esch-sur-Alzette, Luxembourg FDLV SA Temps plein

    Détenue par une holding familiale et basée à Leudelange, FDLV a été créée en 2007 dans le but d'apporter des solutions aux problématiques de ses clients tout en les accompagnant dans leurs projets. Nos collaborateurs, principalement spécialisés dans les domaines de l'informatique, l'assistance maitrise d'ouvrage et la gestion de projet, travaillent...

  • Medical Case Manager

    il y a 2 semaines


    Leudelange, Esch-sur-Alzette, Luxembourg FOYER Temps plein

    Foyer Global Health is the international health insurance brand of Foyer Group, Luxembourg's leading insurance company. We provide first-class health coverage to globally mobile individuals and are part of a growing, innovative environment with a strong international focus.GoalWe are seeking an experienced Medical Case Manager to join our Partner and Medical...