Patch Velocity & Software Lifecycle Lead
里昂, 法国Gentilly, 法国 Regular 发布于 Jul. 08, 2026 申请截止于 Aug. 15, 2026 Salary Range EUR 64,000.00 - 85,333.33
Le contenu du poste est libellé en anglais car il nécessite de nombreuses interactions avec nos filiales à l’international, l'anglais étant la langue de travail.
This job offer is accessible to all, regardless of gender.
Job title:Patch Velocity & Software Lifecycle Lead
Location: Lyon or Gentilly, France
Type:Permanent,Full-time,Hybrid
About the job
At Sanofi, we are strengthening our cybersecurity posture by accelerating the remediation of vulnerabilities and enforcing robust software lifecycle governance.
As Patch Velocity & Software Lifecycle Lead within our Vulnerability Operations Center Team, you’ll play a critical role in reducing the organization’s exposure to cyber risks by driving patching velocity and coverage, controlling software obsolescence, and ensuring compliance across our Digital landscape.
This role combines operational acceleration, effective orchestration and transversal leadership to deliver measurable risk reduction at scale.
One-line Mission:Accelerate vulnerability remediation and enforce software lifecycle governance to sustainably reduce Sanofi’s exposure to cybersecurity risks.
Ready to get started?
About Sanofi:
We’re an R&D-driven, AI-powered biopharma company committed to improving people’s lives and delivering compelling growth. Our deep understanding of the immune system – and innovative pipeline – enables us to invent medicines and vaccines that treat and protect millions of people around the world. Together, we chase the miracles of science to improve people’s lives.
Main responsibilities
Drive Patch Velocity & Remediation Performance
- Accelerate patch deployment across servers, middleware, endpoints, and application layers
- Reduce Mean Time To Patch (MTTP) and vulnerability backlog
- Ensure adherence to remediation SLAs, especially for critical and high-risk vulnerabilities
- Identify and remove bottlenecks impacting remediation speed
Enforce Software Lifecycle & Obsolescence Management
- Define and drive software lifecycle standards (EOL/EOS management)
- Ensure continuous upgrade and modernization of software components
- Reduce risks related to obsolete and unsupported technologies
Strengthen Software Governance & Catalog Control
- Enforce compliance with the Digital-approved software catalog
- Implement mechanisms to detect and remove unauthorized software
- Reduce exposure linked to shadow IT and unmanaged software components
Ensure Security Compliance by Design
- Guarantee that systems are secure and compliant at delivery (golden images, baselines)
- Maintain compliance throughout the asset lifecycle
- Embed patching and lifecycle requirements into operational processes
Define Policies, Standards & Operating Model
- Formalize patch management and software lifecycle policies
- Define clear roles, responsibilities, and governance frameworks
- Ensure alignment between Security, IT, and Business stakeholders
Drive Transversal Execution
- Engage and align cross-functional teams:
- Infrastructure & Cloud
- Digital Workplace
- Application Owners
- CyberSecurity & Risk and Compliance
- Activate the right organizational and technical levers to meet objectives
Measure Performance & Drive Continuous Improvement
- Define and monitor key KPIs:
- Mean Time To Patch (MTTP)
- SLA compliance for vulnerability remediation
- Patch and lifecycle compliance rates
- Unauthorized software rate
- Track progress and ensure sustainable improvement (non-regression)
- Provide clear reporting and executive visibility
About you
Experience:
- Proven experience in cybersecurity, vulnerability management, or infrastructure security
- Track record in driving cross-functional transformation or remediation programs
- Strong understanding of:
- Patch management processes and tools
- Software lifecycle and obsolescence risks
- Enterprise IT environments (endpoints, servers, applications)
Technical skills:
- Experience with Windows and Linux environments, and patch management tools (Intune, SCCM, Microsoft Azure Arc, Red Hat Satellite, etc.)
- Experience with cloud environments (Azure and AWS)
- Experience with vulnerability management, Endpoint Detection & Response (EDR), and SOAR tools
- Proficiency in Python and PowerShell scripting
- Advanced use of AI technologies for improving operations
Soft skills:
- Strong result orientation with focus on measurable risk reduction
- Ability to drive performance and accountability across teams
- Excellent stakeholder management and influencing skills
- Data-driven mindset with experience defining and tracking KPIs
- Structured, pragmatic, and execution-focused
Education: Bachelor’s or Master’s degree in Information Security, IT, or related field
Languages: Anglais, Français
Key Success Factor:
- Measurable improvement in patching velocity and SLA compliance
- Reduction in critical and high vulnerabilities exposure
- Decrease in obsolete and unauthorized software footprint
- Sustainable increase in global IT compliance levels
Why choose us?
- Play a key role in reducing cyber risk exposure at scale
- Drive a high-impact, outcome-oriented transformation
- Work at the intersection of security, IT, and digital transformation
- Contribute to building a more resilient and secure Sanofi environment
What we offer you:
A fixed salary over 12 months, supplemented by a short-term incentive, as well as a collective variable compensation based on Sanofi Group results.
Because taking care of our employees is also our mission: 31 days of paid leave + RTT depending on your status, remote work up to 2 days/week, quality health insurance, public transport coverage up to 80%, extended maternity/parental leave (18/14 weeks), Group Savings Plan & PERCOL with employer matching, PERO, numerous CSE benefits, internal and international mobility opportunities, learning & development opportunities, and many other benefits to discover here.
#LI-FRA
#LI-Hybrid
追寻 发展。探索 菲凡。
加入赛诺菲,开启科学新时代。在这里,你的成长将如我们的工作成果一样具有变革性。我们帮助你发展,助你走得更远、思考得更快、做前所未有的事。你将与我们一起突破边界、挑战常规,打造更智慧的解决方案,惠及全球社区。准备好追寻科学的奇迹,改善人们的生活了吗?让我们携手追寻发展,探索非凡。
赛诺菲致力于为所有员工提供平等的就业机会,不因种族、肤色、血统、宗教、性别、国籍、性取向、年龄、公民身份、婚姻状况、残疾、性别认同、受保护的退伍军人身份或其他受法律保护的特征而有所差异。
最终薪酬将根据已展现的经验、技能、工作地点和其他相关因素确定。员工可能有资格参与公司员工福利计划。
体验可能性
-
-
Ama
Ama puts her project management techniques and ServiceNow knowledge to use to help advance Sanofi’s Digital Data operating model. Learn how our team connects data and AI to do what’s never been done before.
-
Cambridge Crossing
We're bringing together 2,500 people from across our organization — R&D, Medical, Commercial and Global colleagues all working to realize the power of collaboration.
-
Innovation in Action
Our flexible lab of the future will transform how we conduct research, while our innovation center will be fully integrated with existing R&D locations.
-
Sanofi’s AI Centre of Excellence in Toronto
The Centre is focused on using leading technologies to develop world-class data and artificial intelligence (AI) products to create value for the health sector.
-
Sanofi Canada's Philanthropic Efforts
By chasing the miracles of science to improve people’s lives, we surprise ourselves with what we can achieve. Our team is humbled by the impact our efforts make.
-
Sustainable and Green
Our new facility was built to minimize the environmental impact — helping protect our planet and people. Using resources efficiently, we're providing greener, healthier workspaces.
-
-
-
我们的故事
我们关注每一个员工的声音。因为,我们的未来取决于所有员工的付出与努力。正因为他们的助力,我们才能追求远大的理想。
-
心怀梦想,成就一番事业
我们希望您以饱满的热情投入到自己的工作岗位中,给全球数百万人带来美好生活。您的职业发展道路由您自己来掌控。您只管制定目标,我们会提供充足的培训机会和支持,让您得偿所愿。
-
勇敢追梦,奔赴美好未来
想要改变自己的生活,乃至改变全球数百万人的生活,该怎么做?加入我们,开启职业新篇章,然后在我们的保驾护航中展翅高飞,并向优秀的人求教,为这份事业做出切实的贡献。
-
我们的办公地点
我们的员工遍布60多个国家/地区。他们勠力同心,携手共创医疗健康领域的美好未来。无论您在哪里工作,我们的专家都会指导您推动职业发展,您也将能够运用先进的科学技术,取得意义非凡的重大突破。
-
我们的人与文化
我们是首个建立多元化、公平性和包容性(DE&I)委员会的制药企业。我们还建立了“菲常联盟”,为每位员工提供发声的平台。您的声音是我们建设未来道路的重要基石。
-
您和我们相互依存,共同成长
我们精心打造薪酬体系,为您的身心健康、财务健康与社交健康提供全面保障。我们有着海纳百川的包容性团队文化,无论您在哪个岗位,都能展翅高飞。
-
为什么选择我们?
我们为您提供各种工具、支持和培训机会,帮助您实现自己的目标。我们也希望您充分发挥潜力,帮助我们实现目标:将新药研发到临床治疗的时间减半。