Security & Privacy Expert
Enregistrez cette offre et organisez votre recherche
Créez un compte gratuit pour enregistrer des offres d'emploi, créer des alertes et revenir à cette liste depuis votre tableau de bord.
En continuant, vous acceptez nos Conditions d’utilisation & Politique de confidentialité.
What you will do
You will join the Security, Privacy & Access team of a Belgian energy sector organisation that has recently achieved ISO 27001 certification and is working towards ISO 27701 certification in 2027. The organisation and its stakeholders are classified as essential entities under NIS2 legislation and process large volumes of personal data.
Your focus will be on privacy aspects and general legal support. Your tasks include:
- Integrating and monitoring security and privacy requirements in contract management with service providers
- Integrating security and privacy requirements in change management
- Optimising the register of processing agreements
- Updating existing processing agreements where necessary
- Updating the processing register (including retention periods) and establishing a process for maintaining the register
- Contributing to the optimisation and maintenance of the organisation's ISMS and PIMS
What we are looking for
You hold a master's degree in law and bring at least 8 years of expert-level experience as a legal expert in privacy and information security. You also have at least 8 years of expert-level experience as a security consultant in one or more of the following environments: data, infrastructure, applications.
Required experience and knowledge:
- Demonstrable business experience in privacy management (DPO certification is not required)
- Experience in data governance (data classification, data retention, data transfer) including in cloud environments
- Experience in implementing ISO 27001/ISO 27002/ISO 27701
- Experience in developing contracts with service providers and clients, specifically the information security and privacy aspects
- Experience in developing DPIAs and risk analyses
- Experience with processing registers and (registers of) processing agreements
- Knowledge and experience in Information Security Management (ISO 2700x)
- Knowledge of Belgian privacy legislation and GDPR
Desirable:
- Experience within the Belgian energy market
- Experience in agile project work
You are able to work independently and proactively, and you have strong communication skills for collaboration within multidisciplinary teams.
The setting
This assignment runs from early November 2026 to early November 2028, with the possibility of extension.
You will work at 60% capacity (approximately three days per week). At least two working days per week are on-site at the organisation's offices in Brussels. Occasional travel to other locations or to third-party sites may be required.
Languages: You must be fluent in English and either Dutch or French at CEFR level C1. Proficiency in all three languages (Dutch, French and English) at C1 level is a strong advantage.
The organisation develops and supports IT systems for the Belgian energy market and is committed to strict compliance with privacy and information security requirements.
You can join us for this assignment as a freelancer or as an employee of HumanInTech. Same role, same team. If you join as an employee, your employment continues beyond this assignment. When it ends, we’ll work together to find your next assignment.
Location: Brussels, hybrid
Work address: Belgium
Employer / contracting party: HumanInTech
Applications close (Brussels time): October 2, 2026 at 2:00 AM
Engagement: Freelance or employed by HumanInTech
Working hours: Full-time
Experience: More than 10 years or more
Education: Master's or more
Published: September 2026