IT and Cyber Third Party Risk Assessor

Il y a 3 jours

Brussel, Brussel-Hoofdstad, Belgique OPTIMUS IT SERVICES Temps plein 90 000 € - 130 000 €/an

We're Hiring: IT & Cyber Third Party Risk Assessor (Expert) – Brussels, Belgium

We are looking for an experienced IT & Cyber Third Party Risk Assessor to join a leading Governance, Risk & Compliance team within a major banking environment.

As a TPTRM Expert, you will play a key role in assessing and managing cybersecurity, operational, and cloud-related risks associated with third-party suppliers and technology partners while ensuring compliance with security standards and regulatory requirements.

Key Responsibilities

  • Conduct IT & Cyber risk assessments of third-party suppliers and cloud service providers (SaaS, IaaS, PaaS, AWS, etc.)
  • Review cybersecurity controls, vulnerability assessments, penetration testing reports, and compliance evidence
  • Assess and negotiate IT & Cyber security clauses within supplier contracts
  • Coordinate and oversee third-party IT & Cyber audits and remediation activities
  • Lead ICT Risk & Cyber Committees with suppliers and internal stakeholders
  • Monitor supplier security posture through ISO 27001, SOC, NIST, and related compliance frameworks
  • Produce risk dashboards, management reports, and executive-level recommendations
  • Collaborate with Cyber Defense, Security Architecture, Business Continuity, Data Protection, Procurement, and Legal teams

Required Experience

  • 10+ years of experience in IT & Cyber Risk Management
  • Strong expertise in Third-Party Risk Management (TPRM/TPTRM)
  • Experience assessing cloud-based environments and services
  • Knowledge of ISO 27001, SOC 2, NIST, OWASP, vulnerability management, and penetration testing
  • Experience reviewing and negotiating IT & Cyber security contractual clauses
  • Strong background in risk assessments, audits, governance, and compliance
  • Experience within Financial Services or large enterprise environments

Nice to Have

  • CISSP, CISM, CCSK, CIPP, or similar certifications
  • Experience with GRC platforms such as ServiceNow

What We're Looking For

  • Strong analytical and risk assessment capabilities
  • Excellent stakeholder management and communication skills
  • Ability to influence, negotiate, and drive risk mitigation initiatives
  • Coaching and mentoring mindset
  • Autonomous, structured, and proactive approach

If you are an experienced Cyber Risk professional with expertise in Third-Party Risk Management and cloud security, we'd love to hear from you.

#CyberSecurity #RiskManagement #ThirdPartyRiskManagement #TPRM #TPTRM #InformationSecurity #CloudSecurity #CyberRisk #GovernanceRiskCompliance #GRC #ISO27001 #NIST #SOC2 #Banking #FinancialServices #Brussels #Belgium #Hiring