IT CYBER SECURITY SPECIALIST
Il y a 2 jours
Brussel Hoofdstad, Brussel Hoofdstad, Belgique
OneSource Consulting
Temps plein
65 000 € - 90 000 € Contrat
Gratuit avec email ou Google
Enregistrez cette offre et organisez votre recherche
Créez un compte gratuit pour enregistrer des offres d'emploi, créer des alertes et revenir à cette liste depuis votre tableau de bord.
Gratuit avec email ou Google
DURATION: 01/12/2026 - 14/06/2027 (POSSIBILITY OF EXTENSION)
LANGUAGES: FRENCH
JOB DESCRIPTION - ROLES AND RESPONSIBILITIES
BACKGROUND
- The Client wishes to strengthen its team in charge of operational security. A team whose main mission is to ensure the protection, detection and response to cybersecurity incidents.
- The mission aims to integrate a secops engineer profile specialized in network and infrastructure security to strengthen security operations.
- In addition to its recurring activity, it will be available in 24/7 callback mode (rotation between several people).
- The Client is currently in the process of complying with the NIS2 regulation (essential level).
- The Client has a complex environment that provides services to Walloon citizens. It is a hybrid infrastructure (multi-site and cloud), a wide area network (several dozen locations), many applications with various technologies, and a large number of users. The security of its information system is therefore essential.
OBJECTIVES
- Ensure the day-to-day management of security tools and security incidents.
- Maintain and optimize security tools (except for operations).
- Collaborate with the SOC and other PWS teams to strengthen overall security.
- Participate in projects related to operational security.
- Intervene in call-back mode or on call depending on criticality.
- Activities
- Security incident management (analysis, escalation, resolution) including incident documentation;
- Coordination of different teams with a view to resolving the security incident or improving the level of security;
- Analysis of network flows and correlation with alerts;
- Contribution to the security of network architectures, relevance of configurations, exception management (impact and risk analysis);
- Participate in the tuning of protection and detection rules, especially on network security tools (WAF, IDS/IPS, NDR, Proxy, etc.);
- Implement exception management (impact and risk analysis);
- Cross-functional support on security tools;
- Post-mortem analysis of incidents: technical retrospective, recommendations and follow-up of action plans with the ITSM team;
- Processing alerts (SIEM, WAF, etc.) from the SOC and/or security tools;
- Security monitoring and threat intelligence: monitoring of CVEs, IOCs, Mitre AT&ck tactics;
- Participation in the development or continuous improvement of SecOps processes, procedures and guides;
- Support for IT projects related to operational security: security review, delivery of technical and functional opinions, active participation in the project team;
- Use of ITSM tools (Jira Service Management, etc.);
- Any other operational security activities based on the needs and priorities of the department.
EXPECTED DELIVERABLES
- Activity and incident reports, progress report on post-incident recommendations
- ISN2: Initial Notification, Preliminary Report and Final Report
- Change log of rules (who, what, why)
- Optimized Security Tool Configurations
- Technical documentation, process and procedure
- Advice and recommendations for improvement
- Cyber dashboard, operational, tactical and strategic reporting
- Security KPI tracking
EXPECTED BEHAVIOURAL SKILLS
- Clear communication
- Rigorous change management
- Emergency Management
- Incident prioritization
- Adaptability and learning
- autonomy
- Team collaboration
- Assertiveness and ability to challenge
SKILLS
- Security incident management (incident responder and/or incident manager)(mandatory) :
- Managing an IPS/IDS or NDR(mandatory) :
- Firewall Security Management(mandatory) :