Tribe Risk Officer Artificial Intelligence Consultant

Il y a 2 jours

Brussel, Brussel-Hoofdstad, Belgique keystone-solutions Temps plein 90 000 € - 135 000 €/an

Mission Overview

The Tribe Risk Officer - Artificial Intelligence is a consultancy mission at the client site, representing Keystone Solutions. As a Keystone Solutions consultant, you will be hired to work on client projects, delivering expertise and value in risk management within an AI-driven environment.

Mission Context

The Tribe Risk Officer supports the AI Tribe in identifying, structuring, prioritizing, and mitigating technology, operational, regulatory, and AI-related risks. The primary mission is to transform risk observations, findings, and recommendations into executable mitigation plans that can be implemented, monitored, and governed through the Tribe's delivery processes. The Tribe Risk Officer acts as the bridge between Risk Management, Information Security, Architecture, Delivery Management, and Business stakeholders, ensuring that risks are translated into realistic, prioritized, and measurable implementation roadmaps.

Responsibilities

  • Analyze and challenge risk findings raised by Internal Audit, Information Security, Risk Management, Architecture reviews, and external assessments.
  • Consolidate and restructure risk observations into coherent risk themes, remediation streams, and implementation plans.
  • Define practical mitigation actions and ensure alignment with architecture, security, operational, and regulatory requirements.
  • Coordinate with squads, architects, product owners, and tribe leadership to secure execution of remediation activities.
  • Monitor implementation progress, dependencies, residual risks, and target dates.
  • Report overall risk posture, remediation status, and risk reduction achievements to Tribe management and governance bodies.
  • Contribute to the development of a sustainable risk management culture across the Tribe.
  • Organise quarterly risk evaluation meetings to track progress on audits and risk closure.

Function Description

  • Own the end-to-end lifecycle of risks from identification to closure.
  • Review existing risk inventories and transform fragmented findings into structured remediation programs.
  • Translate risk statements into concrete implementation actions, backlog items, epics, and delivery plans.
  • Define target operating models and mitigation roadmaps together with architects and delivery teams.
  • Ensure risks are properly assessed, prioritized, and documented.
  • Challenge remediation proposals to ensure they address root causes and not only symptoms.
  • Coordinate risk reduction initiatives across multiple squads and stakeholders.
  • Facilitate regular risk review sessions with Tribe leadership.
  • Maintain a consolidated view of risk exposure, mitigation progress, and residual risks.
  • Prepare management reporting and executive-level summaries.
  • Support audits, regulatory reviews, and control assessments.
  • Build trusted relationships with Product Owners, Architects, Delivery Leads, Security Officers, and Business representatives.
  • Contribute to the continuous improvement of risk management frameworks, tooling, and reporting.
  • Support the implementation of AI governance, operational resilience, and regulatory compliance requirements where applicable.
  • Act as the Tribe’s Single Point of Contact for risk governance activities.

Education

Bachelor or Master degree in Information Technology, Engineering, Cybersecurity, Risk Management, or equivalent through experience.

Certification

  • CRISC
  • CISA
  • CISSP
  • ISO27001 Lead Implementer / Lead Auditor
  • PMP, Prince2 or Agile certification
  • ITIL Foundation

Languages

French and Dutch: Knowledge of either is a plus.

English: Fluent, good, or not required.

Travel

Primarily Brussels-based with occasional travel within group entities.

Telework

Expectation: 50% on site & 50% homeworking.

Required Knowledge / Experience

  • Minimum 5 years of experience in IT Risk, Operational Risk, Cybersecurity, Technology Governance, or Technology Transformation.
  • Demonstrated experience managing complex remediation programs across multiple stakeholders.
  • Experience in translating audit findings and risk assessments into actionable delivery plans.

Technical Experience

  • Strong experience in Operational Risk, IT Risk, and Cyber Risk Management.
  • Experience with risk remediation planning and implementation governance.
  • Experience working with Agile organizations (Tribes, Squads, Chapters).
  • Strong understanding of software delivery, DevSecOps, and cloud environments.
  • Experience with SaaS platforms, public cloud, and enterprise platforms.
  • Knowledge of security frameworks an