Job Description:
Hello, we're L'Oréal. We're not just building brands, we're shaping how the world experiences beauty (and it takes a lot of cool jobs to do it). Intrigued? Keep reading, this might be the opportunity you've been searching for.
A Day in the Life
Your mission is to orchestrate and strengthen L'Oréal's cyber-compliance posture. You will be responsible for ensuring that our external Regulatory requirements are consistently met worldwide. A key part of your role is to act as the primary liaison to synchronize cyber-compliance activities with the Internal Control and Internal Audit teams, ensuring a unified and audit-ready organization.
What a day in the life of the GRC team looks like: Within the Group Cybersecurity Compliance Lead team you will:
Compliance & Oversight
* Monitor global cyber regulations and ensure they are translated into measurable and automated controls within our monitoring framework.
* Liaise with relevant stakeholders to ensure the seamless integration of cyber-regulatory requirements into the broader global compliance strategy.
* Participate to the definition of the global strategy for reviewing compliance with Cyber Policies at both Global and local levels.
* Detect and analyze gaps between Group requirements and local posture to help establishing clear remediation trajectories for local stakeholders.
Audit & Control Synchronization
* Act as the Cybersecurity lead to handle coordination and communication with internal and external auditors.
* Standardize the evidence-gathering process and ensure the completeness and accuracy of proofs sent to auditors.
* Validate the planning of each recommendation with relevant stakeholders and follow-up actions plans execution.
* Analyze audits outputs, identify recurrent pain point, and define global action plans in collaboration with Zones & Business Platforms.
* Propose improvement in cybersecurity standards and policies based on audits results.
Global Monitoring & Decision Intelligence
* Architect the automation of continuous monitoring to reduce manual effort and increase data reliability.
* Leverage technology to build synchronized KPIs/ KCIs/ KRIs, ensuring all local and global compliance data is centralized, accurate, and drillable for auditors.
We Are Looking For
First and foremost, we love people that are curious, collaborative, eager to have an impact, proactive and who value innovation, autonomy, and team spirit.
Secondly, in this specific position, it will be important for you to have:
* Education: Master's degree in Information Technology.
* Professional experience: You have a successful and proven experience in GRC with a first experience in cybersecurity compliance, within a consultancy firm or a Fortune 500 company.
* Technical skills:
* Strong knowledge of security frameworks and regulations (GDPR, NIS2 and CRA).
* Experience in managing compliance cycles and synchronizing audit activities with Internal Control and Internal Audit teams.
* Hands-on experience with GRC platforms and data visualization tools.
* Certifications (CRISC, CISM, ISO 27001 Lead Auditor / Implementer) are a plus.
* Management skills:
* Ability to manage consultancy teams.
* Ability to communicate complex ideas effectively, in English and French, with international stakeholders and with Cybersecurity stakeholders within the Group.
* Interpersonal skills:
* Willingness to learn and develop new hard and soft skills.
* Ability to navigate within a fast-moving environment.
* Strong analytical skills.
* Ability to lead workshops.
* Fluency in English is essential.
* Position based at St-Ouen (93) with regular meetings within Paris area and rare business trip abroad.
What's In It For You
* A place for you to leave your comfort zone and grow beyond your potential (here, you'll be encouraged to try new things and take risks!)
* Real responsibility from day 1, there's no sitting on the sidelines at L'Oréal
* An environment where people of every ethnicity, social background, age, religion, gender and sexual orientation as well as people with disabilities are accepted, can speak up, will thrive and are celebrated!
* A place where you can contribute to something bigger! Many of our brands have societal /environmental causes to make concrete difference
Who We Are
L'Oréal is present in 150 markets on five continents. For more than a century, L'Oréal has devoted itself solely to 'Create beauty that moves the world'; it is now the industry world leader with EUR42 billion consolidated sales. Together, we solve complex challenges at scale, while making sure we stay committed to making the world a more inclusive and a better place for everyone & our planet.
Today, L'Oréal includes over 9k experts in beauty tech, digital, data and e-comm and is constantly growing. Championing Beauty Tech, we invent the beauty of the future while becoming the company of the future. To achieve this ambition, L'Oréal continues to recruit diverse, innovative, skilled, and passionate minds in different tech domains such as Data, Digital, Cloud, Cyber Security, IT Architecture, DevOps, Applications, and Infrastructure.
We're committed to guaranteeing inclusive recruitment processes and to advocating for hiring and promoting each candidate in an ethical and equitable way. The Group strictly prohibits discrimination against any applicant for employment because of the individual's gender identity or expression, sexual orientation, visible and/or invisible disabilities, socio-economic and/or multicultural origins, health conditions, age, religion, or any other characteristics protected by law
| Source: | Company website |
| Posted on: | 01 Aug 2026 |
| Type of offer: | Graduate job |
| Industry: | Consumer Goods |
| Languages: | English |