Christian Dior Security by Design & TPRM Lead
- Location
- Employment
- Full-Time
- Seniority
- Senior
- Department
- IT & Technology Systems
- Industry
- Fashion, Apparel & Leather Goods
- Posted
- Apr 23, 2026
About Christian Dior
Christian Dior Couture is an iconic French maison within the LVMH group, renowned for haute couture, leather goods and global luxury retail. As a Maison of LVMH, it combines artisanal craftsmanship and creative excellence with rigorous corporate governance and global IT and security infrastructures expected at a leading luxury house.
Christian Dior Couture seeks a Security by Design & TPRM Lead in Paris — senior cybersecurity leader to oversee third‑party risk and security‑by‑design programmes.
Role & Responsibilities
- Lead security-by-design activities across IT projects, ensuring alignment with Christian Dior Couture and LVMH security standards.
- Operate as the point of accountability for third‑party security assessments and due diligence during contractual phases and ad‑hoc reviews.
- Maintain and evolve the security baseline; supervise the implementation of security controls across project phases (design, build, go‑live).
- Identify, assess and manage security risks to prioritise remediation roadmaps and to support the Maison’s security strategy.
- Strengthen team methodologies and procedures through continuous improvement and the formalisation of best practices.
- Coordinate cross‑functional and international stakeholders (Business, IT, Security) to ensure coherent security outcomes throughout programmes.
Qualifications
- Minimum 10 years of professional experience with deep expertise in third‑party risk management (TPRM), GRC and risk analysis.
- Proven track record integrating security into projects and delivery lifecycles (security by design); experience leading a Security by Design team.
- Strong knowledge of DevSecOps practices and Cloud security architectures and controls.
- Familiarity with security frameworks and regulations such as ISO 27002, NIST and GDPR.
- Demonstrated programme and project management experience in Agile, international environments, including budget oversight.
- Excellent interpersonal and pedagogical skills, strong analytical rigour, autonomy and proven ability to drive cross‑disciplinary collaboration.
Skills
Experience
Minimum 10 years of relevant professional experience in cybersecurity, third‑party risk management and GRC, with demonstrated leadership of security‑by‑design teams and delivery of international programmes.
Education
Bachelor’s degree in Computer Science, Information Systems, Cybersecurity or a related discipline; advanced degree or professional security certifications (CISSP, CISM, CRISC or equivalent) preferred.
Workplace
This position is based in Paris, Île-de-France, France.
Culture
Christian Dior Couture cultivates an environment that marries creative excellence with rigorous operational standards, fostering craftsmanship, collaboration and international mobility. The Maison promotes inclusion and diversity — including active initiatives to employ people with disabilities — and participates in LVMH’s LIFE360 sustainability programme, with a growing focus on Green IT practices.
About Cerulean
Cerulean is the definitive career portal for the global luxury industry. We match exceptional professionals with exclusive opportunities at the world's most prestigious brands. From haute couture and fine watchmaking to prestige beauty, hospitality, and boutique retail, Cerulean centralises luxury employment to help you find the career for which you were destined.
Frequently Asked Questions
The luxury industry is characterised by a diverse and nuanced nomenclature. Esteemed houses frequently employ proprietary terminology, and even within a single organisation like Christian Dior, titles may vary across global markets to reflect local conventions. To ensure absolute clarity, Cerulean assigns a standardised, industry-coherent canonical title to every listing. However, it is worth noting that this role is functionally synonymous with «Security by Design Lead», «Third-Party Risk Management Lead», «GRC & Security Architecture Lead», «Security Architecture and TPRM Manager», and other variations. Our sophisticated search architecture anticipates these variations, ensuring that inquiries using related terms will seamlessly yield the exact roles you desire.