GRC and PMO Compliance Officer
GRC and PMO Compliance Officer
Unlock your potential with Dassault Systèmes, a global leader in Scientific Software Engineering, as a GRC and PMO Compliance Officer in Bangalore, Karnataka!
Our compliance function is responsible for ensuring that the company meets its regulatory and market-driven compliance obligations efficiently, consistently, and at scale. Working under the direction of the Compliance Program Office, with key stakeholders from R&D, IT, Procurement, and Legal, this role is responsible defining and implementing a Third-Party Risk Management Program.
As the Third-Party Risk Program Manager, you will work collaboratively with R&D, IT, Procurement, Legal teams to assess current supplier risk practices and design and implement a common risk management framework that is integrated into our enterprise-wide Governance, Risk and Compliance program.
Role Description & Responsibilities:
• Define third-party risk management requirements based on applicable regulations, standards, and internal policies (e.g., ISO 9001, ISO 27x01, SOC 2, NIST, GDPR, NIS2, CRA, FedRAMP).
• Identify stakeholders and conduct a current-state assessment of existing third-party risk policies and practices
• Facilitate working groups to define a common risk management framework that is comprehensive without being overbearing driving consensus on policy, risk appetite, control ownership, and evidence collection
Program Management
• Build a program plan to manage objectives, scope, timeline, budget, workflow configuration, and integration with existing systems.
• Manage program status and progress and provide regular updates to key stakeholders and sponsors escalating issues and risks that threaten timeline, scope, or budget
• Identify and actively manage dependencies, risks, and conflicts across project workstreams and related projects
• Define and track program KPIs to measure status and progress and overall program value
• Serve as primary point of contact with workstream leaders, and other key stakeholders
• Manage the training and deployment TPRM program to operational teams
On-going program operations
• Monitor third-party risk metrics and report on program maturity, open findings, and remediation progress
• Track regulatory and industry changes and update the framework accordingly
• Support due diligence reviews, contract risk language, and escalations for high-risk vendors
• Provide training and guidance to stakeholders on third-party risk requirements and processes
• Serve as a point of contact for internal and external compliance audits
• Monitor and measure the value of the TPRM program and optimize it to achieve the greatest value
• Manage highly-matrixed program with senior-level stakeholders from across the globe
• Program deliverables and formal communication (kick-off, status, workshops) will be conducted in English
• Work as a quick problem-solver and critical thinker in a fast-paced environment.
• Work independently and within a global, collaborative team structure to solve complex problems.
• This position in on-site in our Paris HQ reporting into the Compliance Program Office
Qualifications:
• Bachelor's or Master's degree.
• 5+ years of relevant experience in compliance, risk management, or regulatory operations
• Experience working with a control framework tied to standards such as ISO 27001, SOC 2, ISO 42001
• Experience managing compliance requests or similar operational workflows end to end, including prioritization and cost-benefit analysis.
• Strong understanding of GRC frameworks and control models, and how new regulations map to existing controls.
• Process and operations management methodologies and best practices.
• Experience with: Process Management; Continuous Improvement / Process Improvement; Change Management; Stakeholder Management.
• Excellent English language communication skills, verbal and written.
• Proficient with Microsoft Office (PowerPoint, Word, Excel, Outlook, etc.).
• Familiarity with quality, security, privacy standards and their control requirements (e.g. ISO 9001, 27001, SOC 2, GDPR, FedRAMP, …)
• Relevant certifications (e.g. CRISC, CISA) — nice to have.
What is in it for you?
- Work for the one of the biggest software companies
- Work in a culture of collaboration and innovation
- Opportunities for personal development and career progression
- Chance to collaborate with various internal users of DASSAULT SYSTEMES and also stakeholders of various internal and partner projects
Inclusion statement
다쏘시스템은 인류의 발전을 위한 촉매제 역할을 합니다. 우리는 기업과 개인에게 지속 가능한 혁신을 상상할 수 있는 협업용 가상 환경을 제공합니다. 3DEXPERIENCE 플랫폼과 애플리케이션을 통해 현실 세계의 버추얼 트윈 경험을 창출함으로써, 150여 개국의 모든 산업 분야에서 35만 명 이상의 고객에게 가치를 제공합니다. 2만 3,800여명의 열정적인 임직원이 함께하는 글로벌 커뮤니티에 참여하세요!
더 알고 싶으십니까?
자세한 내용을 알아보려면 우리 웹사이트의 다른 섹션을 방문하십시오.
재학생 및 졸업생
미래 인재의 일원이 되어보세요 - 인턴십과 취업 기회를 확인하세요.
채용 과정
채용 과정에 대해 알아보세요.
우리의 문화와 가치
우리의 문화와 가치를 알아보세요