Courbevoie, FR
Security Advisory Manager
CEVA Logistics provides global supply chain solutions to connect people, products, and providers all around the world. Present in 170+ countries and with more than 110,000 employees spread over 1,500 sites, we are proud to be a Top 5 global 3PL.
We believe that our employees are the key to our success. We want to engage and empower our diverse, global team to co-create value with our customers through our solutions in contract logistics and air, ocean, ground, and finished vehicle transport. That is why CEVA Logistics offers a dynamic and exceptional work environment that fosters personal growth, innovation, and continuous improvement.
At CEVA Logistics, we Rise in Motion. Your career is always on the move, growing as fast and as far as your ambition takes you. Join a global team of nearly 200 nationalities, shaping the future of global trade, moving essential goods, forging new paths, and pushing boundaries to serve an ever-changing world. The pace is fast, the challenges are real, but the rewards are greater: growth, purpose, and the chance to make a meaningful impact. This is more than a job. It’s a journey on which you rise.
Security Advisory Manager
Role & Responsibilities
We are seeking a proactive, business-minded, and experienced Security Advisory Manager – Head Office to lead the Security Advisory activities within the cybersecurity team.
The successful candidate will play a key role in strengthening the advisory practice by bringing technical direction, leadership, structure, scalability, and strategic alignment to the way security advisory services are delivered, while managing the team's workload, priorities, governance, and delivery quality.
- Lead the Security Advisory practice at Head Office, ensuring strong technical direction, consistent advisory quality, and alignment with cybersecurity and business objectives.
- Define and strengthen the advisory strategy, ensuring the team is positioned to support modern digital, cloud, infrastructure, application, data, and transformation initiatives.
- Drive the evolution of Security Advisory from reactive project support toward a scalable, structured, and proactive security-by-design capability.
- Provide technical leadership to Security Advisors by guiding complex security assessments, architecture reviews, risk evaluations, and advisory decisions.
- Act as a senior security advisor for strategic, complex, or high-risk initiatives, ensuring risks are clearly understood, documented, and addressed with pragmatic mitigation plans.
- Review and challenge advisory deliverables to ensure technical quality, consistency, relevance, and alignment with enterprise security standards, risk appetite, and business priorities.
- Build and maintain scalable advisory practices, including advisory playbooks, assessment methods, service catalogue content, and standard engagement models.
- Drive discipline across the advisory scope, ensuring requests, ownership, priorities, statuses, due dates, blockers, risks, and backlog items are properly maintained and visible.
- Manage the Security Advisory team’s workload, priorities, capacity, and delivery focus to ensure the right level of support is provided to critical and strategic initiatives.
- Lead, support, and develop Security Advisors by providing guidance, feedback, coaching, and opportunities to grow their technical and advisory capabilities.
- Promote knowledge sharing across the advisory team to reduce dependency on individual expertise and improve scalability of the function.
- Strengthen stakeholder trust by ensuring advisory recommendations are clear, actionable, risk-based, and aligned with business delivery constraints.
- Contribute to the continuous improvement of advisory ways of working, including intake, prioritization, reporting, documentation quality, governance, and stakeholder engagement.
- Stay informed on evolving threats, business priorities, regulatory expectations, and emerging technologies, and translate their impact into practical advisory guidance.
- Promote a culture of secure innovation, technical excellence, accountability, talent development, and continuous improvement within the Security Advisory scope.
Education & Experience
- You hold a Bachelor’s or Master’s degree in Information Security, Computer Science, Information Technology, Cybersecurity, Computer Engineering, or a related field.
- You bring at least 8 years of experience in information security, with strong experience in security advisory, secure project delivery, and security architecture consulting.
- You have previous experience leading or managing security professionals, advisory teams, project security activities, or transversal cybersecurity initiatives.
- Experience working in enterprise or complex environments, particularly in a consultative capacity with stakeholders across IT, business, risk, architecture, and cybersecurity functions.
- Experience supporting large-scale transformation programs, including cloud, application, infrastructure, digital, or business technology initiatives from a security perspective.
- Experience with similar work management tools such as Linear, ClickUp, or JIRA for activity tracking, workload visibility, backlog follow-up, dashboards, and management reporting.
Qualifications
- Strong knowledge of information security principles, frameworks, and standards such as ISO 27001, NIST CSF, OWASP Top 10, cloud security frameworks, and enterprise security governance practices.
- Strong ability to define security advisory direction and translate cybersecurity strategy into practical guidance, scalable practices, and delivery expectations.
- Strong understanding of security-by-design, secure architecture principles, threat modeling, and pragmatic risk mitigation.
- Ability to assess complex initiatives, identify key security risks, challenge design decisions, and propose balanced solutions that support both security and business delivery.
- Strong understanding of how to align security decisions with business objectives, project constraints, risk appetite, regulatory obligations, and enterprise priorities.
- Ability to use data, dashboards, and insights to support prioritization, workload management, risk escalation, and continuous improvement.
- Relevant certifications are a plus: CISSP, CISM, SABSA, TOGAF with security focus, CCSP, ISO 27001, or equivalent.
Soft Skills
- You are a confident communicator with the ability to influence technical, business, and management stakeholders at different levels.
- You bring a pragmatic, business-oriented, and solutions-focused approach to security.
- You demonstrate strong advisory, consulting, and leadership skills, with the ability to translate complex security requirements into clear and actionable guidance.
- You are able to challenge constructively, guide decision-making, and balance risk reduction with business delivery needs.
- You are structured, organized, and able to manage multiple priorities while keeping focus on quality, impact, and strategic outcomes.
- You are committed to developing people, building trust, and creating a positive team environment based on ownership, growth, and continuous improvement.
- You are fluent in French and English.
As a global organization, and as part of the CMA CGM Group, diversity is critical to our business success; only when we can reflect the cultures, languages, behaviors and local knowledge of our customers, we can succeed. By employing people with different experiences and abilities, we expand our knowledge and increase our creativity and innovation.
Please note: Legitimate CEVA Logistics recruitment processes include communication with candidates through recognized professional networks, such as LinkedIn or via an official company email address: firstname.lastname@cevalogistics.com. We recommend that you do not respond to unsolicited business propositions and/or offers from people with whom you are unfamiliar.