Director of Cyber Security; H/F - SAFRAN INC.
Listed on 2026-02-28
-
IT/Tech
Cybersecurity, Information Security
Overview
Safran est un groupe international de haute technologie opérant dans les domaines de l'aéronautique (propulsion, équipements et intérieurs), de l'espace et de la défense. Sa mission : contribuer durablement à un monde plus sûr, où le transport aérien devient toujours plus respectueux de l'environnement, plus confortable et plus accessible. Implanté sur tous les continents, le Groupe emploie 100 000 collaborateurs pour un chiffre d'affaires de 27,3 milliards d'euros en 2024, et occupe, seul ou en partenariat, des positions de premier plan mondial ou européen sur ses marchés.
Safran est la 2ème entreprise du secteur aéronautique et défense du classement « World s Best Companies 2024 » du magazine TIME.
Safran USA is seeking a Director of Cyber Security to lead cybersecurity, regulatory compliance, and cyber operations for Safran USA shared Services and across all U.S. entities and shared services. The Safran USA CISO is accountable for achieving and sustaining CMMC certification across Safran USA shared services, including AWS Gov Cloud and Microsoft 365 GCC High, harmonizing cybersecurity architectures and processes across U.S. companies, and ensuring compliance with U.S. regulatory frameworks including NIST SP800-171, CMMC 2.0, ITAR.
This role operates as the U.S. cybersecurity authority and as an extension of Safran Group Global Cyber organization, while retaining operational ownership for U.S.
-specific regulatory execution, incident response, and compliance activities. This position is reporting to Group CISO and will be integrated in the Global Cybersecurity organization of more than 140 Cybersecurity specialists delivering Cybersecurity services to all Safran companies across the world. CORE MISSION OBJECTIVES Achieve and maintain CMMC Level 2 certification for Safran USA and all in-scope shared services. Harmonize cybersecurity architectures, shared services, and control implementations across Safran USA companies.
Lead cybersecurity strategy and execution for ITAR, DFARS, and other U.S.
-regulated requirements. Implement the SOC and CERT operational model in the U.S. as an extension of the Global SOC et CERT located in France (Paris Cyber team). Deploy a consistent U.S. cyber operational model to manage incidents, security requests, audits, and compliance activities, while applying the Safran Standard (procedures and workflows) deployed in all Safran companies, and as an extension of global Cyber security services.
Deploy Secure-by-Design approach across all Safran USA IT and digital projects.
- Executive ownership of CMMC 2.0 Level 2 certification and audit readiness across Safran USA.
- Governance of CUI enclaves, system boundaries, shared responsibility matrixes, SSPs, POA&Ms, and risk registers.
- Review and approval of cybersecurity architectures for U.S. projects involving regulated data and shared services.
- Leadership of SOC, CERT, and incident response operations as an extension of Group Cyber organization.
- Executive engagement with CIO, Legal, Compliance, HR, and Business leadership.
- Representation of Safran USA during audits, assessments, and regulatory engagements.
- Deep expertise in: CMMC 2.0 (Level
2); NIST 800-171 / 800-53; ITAR / Export Controls; DFARS - Strong understanding of SOC, CERT, vulnerability management, and incident response models.
- Proven experience securing AWS Gov Cloud and Microsoft 365 GCC High environments.
- Excellent communication and influencing skills.
- Strong judgment in high-pressure regulatory and incident scenarios.
- Autonomous, accountable, and collaborative leadership style aligned with Global Safran Cybersecurity organization and objectives.
- Bachelor s degree in Cybersecurity, Computer Science, Information Technology, Engineering, or related field (Master s preferred).
- 10+ years of progressive cybersecurity leadership experience, including senior roles.
- Demonstrated leadership of CMMC, NIST 800-171, ITAR, and DFARS compliance programs.
- Experience operating in multinational, matrixed organizations.
- U.S. military, DoD, or defense industrial base background strongly preferred.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).