Senior IT Risk Officer
- Full-time
Company Description
Eurofins Scientific is an international life sciences company, providing a unique range of analytical testing services to clients across multiple industries, to make life and our environment safer, healthier and more sustainable. From the food you eat, to the water you drink, to the medicines you rely on, Eurofins laboratories work with the biggest companies in the world to ensure the products they supply are safe, their ingredients are authentic, and labelling is accurate.
Eurofins is dedicated to delivering testing services that contribute to the health and safety of society and the planet, and to its corporate responsibility to protect the environment and ensure diversity, equity, and inclusion across the entire network of Eurofins companies.
Job Description
As a Senior IT Risk Officer, you will play a key role in identifying, assessing and reducing IT and cybersecurity risks across Eurofins' European businesses.
You will independently perform IT risk assessments across laboratories, business units and IT environments, working closely with IT, security and business teams.
This role requires a solid technical understanding of IT infrastructure and cybersecurity, combined with strong risk assessment, communication and stakeholder management skills.
In addition to IT risk assessments, you will contribute to broader security and resilience initiatives, including phishing campaigns and IT resilience exercises.
The position requires frequent travel across Europe, approximately 35–50% of the time.
Your main responsibilities will include:
- Independently planning and conducting IT and cybersecurity risk assessments across laboratories, regional infrastructure and central IT services.
- Assessing technical and organizational controls covering areas such as network security, identity and access management, endpoint security, vulnerability management, cloud, logging and monitoring, backup and IT resilience.
- Identifying technical weaknesses and evaluating their potential impact on business operations.
- Challenging existing technical implementations and security controls where necessary.
- Translating technical findings into clear business risks and pragmatic recommendations.
- Producing high-quality reports and presenting assessment results to technical teams and management.
- Following up on agreed remediation actions and evaluating whether identified risks have been adequately addressed.
- Contributing to the continuous improvement of IT risk assessment methodologies.
- Maintaining strong relationships with IT, security and business stakeholders.
Qualifications
We are looking for an independent, technically curious and pragmatic professional who is comfortable investigating complex IT environments and challenging established practices when necessary.
You should have:
- 3–7 years of relevant experience in cybersecurity, information security, IT risk, IT audit or a related technical IT control function.
- Experience performing IT risk assessments, security assessments or technical IT audits.
- A good understanding of risk management and cybersecurity principles.
- A strong general technical understanding of areas such as networking, firewalls, Active Directory / Entra ID, IAM/MFA, endpoint security, vulnerability management, Windows/Linux infrastructure, cloud security, SIEM/logging, backup and disaster recovery.
- The ability to understand technical architectures, identify realistic security risks and discuss them credibly with infrastructure and security engineers.
- Strong analytical skills and the ability to distinguish significant risks from theoretical or low-impact issues.
- Excellent written and verbal communication skills in English, with the ability to communicate technical risks to both technical and non-technical audiences.
- Strong stakeholder management and negotiation skills.
- A willingness to travel frequently across Europe.
Knowledge of NIS2, EU data protection requirements and common cybersecurity frameworks is considered an advantage.
Education and certifications
A university degree in Computer Science, Cybersecurity, Information Systems, Engineering or another relevant field, or equivalent professional experience.
Relevant certifications such as CISSP, CISM, CISA, CRISC, ISO 27001 or equivalent are an advantage but not mandatory.
Additional Information
We support your development! Do you feel you don’t match 100% of the requirements? Don’t hesitate to apply anyway! Eurofins companies are committed to supporting your career development.
We embrace diversity! As an Equal Opportunity Employer, the Eurofins network of companies believes in strength and innovation through diversity. We prohibit discrimination against employees or applications based on gender identity and/or expression, race, nationality, age, religion, sexual orientation, disability, and everything else that makes employees of Eurofins companies unique.
Sustainability matters to us! We are well on our way to achieving our objective of carbon neutrality by 2025, through a combination of emission reduction and compensation initiatives. We encourage our laboratory leaders to make sustainable changes at their local level, and in addition to their initiatives we count on our dedicated carbon reduction team to help us to achieve this goal!
Find out more on our Careers page: https://careers.eurofins.com/
Company description: Eurofins Scientific is an international life sciences company, providing a unique range of analytical testing services to clients across multiple industries, to make life and our environment safer, healthier and more sustainable. From the food you eat, to the water you drink, to the medicines you rely on, Eurofins laboratories work with the biggest companies in the world to ensure the products they supply are safe, their ingredients are authentic and labelling is accurate.
The Eurofins network of companies believes that it is a global leader in food, environment, pharmaceutical and cosmetic product testing and in discovery pharmacology, forensics, advanced material sciences and agroscience contract research services. It is also one of the market leaders in certain testing and laboratory services for genomics, and in the support of clinical studies, as well as in biopharma contract development and manufacturing. It also has a rapidly developing presence in highly specialised and molecular clinical diagnostic testing and in-vitro diagnostic products.
In over 37 years, Eurofins has grown from one laboratory in Nantes, France to ca. 63,000 staff across a decentralised and entrepreneurial network of more than 950 laboratories in over 1,000 companies across 60 countries. Eurofins companies offer a portfolio of over 200,000 analytical methods to evaluate the safety, identity, composition, authenticity, origin, traceability and purity of biological substances and products.
In 2024, Eurofins generated total revenues of EUR 6.95 billion, and has been among the best performing stocks in Europe over the past 20 years.
#LI-REMOTE
By clicking the link above or any third-party link within this posting, you are leaving this site and going to a third-party website where the third-party website's terms and privacy policy apply