How to apply to Rennes School of Business
We guide you to find the programme that best meets your needs.
School News
Discover what brings the school to life every day: conferences, business partnerships, student projects, and key moments on campus.
Our campuses
Our campuses in Rennes and Paris welcome students in environments conducive to success.
Combines governance, cybersecurity, and risk management to prepare students for leading information systems security.
Discover the programme
Recommended programme
The day may start with reviewing security alerts and incidents. You interact with IT, business, legal, and compliance teams to assess risks and decide on actions. You might manage an audit, validate an architecture, prepare a crisis exercise, follow up on a remediation plan, or present cybersecurity indicators to the executive committee.
Source: RSB internal employment survey, conducted with a sample of Alumni. Average gross annual salary, bonuses included among graduates working in France.
See the associated RSB programme
WAVESTONE – NIJI – EY – SOPRA STERIA – TEHTRIS
Discover the associated RSB programme
Your first steps in the profession
You can start as a SOC Analyst, Cybersecurity Consultant, Security Auditor, or Cyber Risk Analyst. These initial experiences allow you to master the tools, methods, and mechanics of the sector.
Gaining autonomy
With experience, you can progress to roles such as Security Manager, Cybersecurity Project Manager, or Deputy CISO. You will oversee a broader scope, more complex projects, and increased coordination.
Reaching senior leadership roles
With several years of experience, you can advance to
Discover professions that draw on similar or complementary skills.
Risk Manager Financial Analyst
Management / Strategy Consultant
What is the difference between RSSI and CISO?
Both titles generally refer to the person responsible for information systems security. CISO is the English acronym for Chief Information Security Officer, while RSSI is its French equivalent.
Does a CISO need to be a technical expert?
They must understand technical challenges, but their role is also strategic and managerial: governance, budget, compliance, risk management, communication, and crisis handling.
Which skills are required?
Cyber risk management, network and systems security, auditing, governance, regulatory compliance, crisis management, leadership, and executive communication.
Which qualification should you pursue?
A 5-year degree (Master’s level) in cybersecurity, IT, risk management, or business management is generally expected. The MSc Cyber Security and Risk Management at Rennes School of Business is designed for this type of career.
What is the salary of a junior Chief Information Security Officer (CISO)?
A junior CISO earns a particularly high starting salary upon graduation. According to internal data from RSB (Rennes School of Business), the average salary observed among graduates with 0 to 2 years of experience reaches €51,100 gross annual including bonuses. This figure increases rapidly to €60,000 after 3 to 5 years of experience, driven by high demand in the tech job market. These figures are based on graduates working in France.
What types of companies hire a Chief Information Security Officer?
A CISO mainly works within cybersecurity consulting firms (Wavestone, EY), IT service companies, and security software vendors (TEHTRIS). They are also highly sought after by large corporations and public institutions to directly join their Information Systems Department (IT Department) to protect strategic data.
Interested in a career as a Chief Information Security Officer (CISO)?
Discover the MSc Cyber Security and Risk Management at Rennes School of Business, a programme designed to combine governance, cybersecurity, and risk management to prepare students for leading information systems security.