Third Party IT Security

il y a 4 semaines


Brussels, Belgique Salt Temps plein

**Third Party IT Security & Risk Analyst - Banking Client - Brussels**

**Rate: Flexible**

**Duration: 6- 12 months**

**Inside of IR35**

**Hybrid Working - 3 days onsite per month, the rest is remote.**

IT and Cyber Risk Team

Aligning with the overall corporate mission of being a 'trusted Financial Market Infrastructure', the 'IT and Cyber Risk' team within CISO Division provides several services that aim to:

- Ensure 'end-to-end' management of risks by identifying IT, information security or cyber risks or deficiencies
- Ensure root cause issues and risks are structurally remediated through sustainable controls, and ensure reduce risk exposure through increased control maturity
- Ensure risk exposure is in line with the risk appetite of the firm
- Ensure regulatory compliance is evidenced
- Ensure accountability, ownership and risk culture is embed within first line

Within the context of the overall Enterprise Risk Management (ERM) framework, the IT and Cyber Risk team provides a strong control environment based on internationally recognized controls that allows all IT, information security and cyber risks to be continually identified, assessed, monitored, and mitigated (or accepted).

Role Description - IT Security Manager

The role will be responsible for execution of risk-based IT Security controls for Third Parties.

Key responsibilities:
Customer and Third-Party Assurance Lifecycle
- Due Diligence - risk profiling, onboarding, re-certification
- Contract Management - ensuring that the security expectations included in the contract are proportionate to the risk profiling
- Exit Management - performance of necessary security checks at the end of a contractual agreement with a Third Party

Ecosystem Third Party Security Monitoring & Alerting
- Continuous, automated monitoring of Third Party related Cyber Threats with the potential to impact the client. Monitoring is executed with the help Cyber Threat intelligence tools. The capability enables the client to quickly act, limiting the risk of contagion or severity of impacts.
- Continuous monitoring, alerting and incident management of external connections based on several distinct use-cases

Core Skills
- Knowledge of the customer, third-party and connectivity ecosystems
- Knowledge of security risk management
- Knowledge of control frameworks, eg, ISO 27000, NIST, CIS-18, COBIT-5
- Knowledge of logging, monitoring and alerting is an advantage
- Knowledge of similar ecosystem frameworks, eg, SWIFT CSP is an advantage
- Knowledge of financial markets, FMIs and CSD operations is an advantage
- Experience with supplier and supply chain due diligence framework, procedures, data gathering risk and control assessment.
- Experience with contract review of information security schedules and terms
- Knowledge of logging, monitoring and alerting is an advantage
- Experience with ServiceNow GRC is an advantage
- IT Security Certification such as CISSP, CSSLP, CCSP, CISM, CISMP, GCIH, CEH, etc. is an advantage.

Soft Skills
- Leadership. Be an inspiring and engaging leader by providing strategy and direction to team members, by showing business acumen, by possessing self-reflection and by being results-driven
- Interpersonal. Be self-motivated and proactive, have strong, innovative and creative problem-solving skills, be open and welcoming to change, work comfortably in a constantly evolving environment and have an ability to remain calm under pressure and in the face of uncertainty.
- Collaborative. Work comfortably with business executives and stakeholders, within group settings or with team-members
- Change. Ability to handle multiple projects against tight deadlines whilst being instrumental in delivering cultural change throughout the organisation

Please do send across to me the most up to date CV to (see below)



  • Brussels, Belgique Base 3 Temps plein

    **Key responsibilities**:Third-Party Assurance Lifecycle & Support the transformation of the activity - **Execute Third Party Due Diligence**, risk profiling, onboarding, re-certification; Make an opinion on Third Party Security Posture; Define Remediation where applicable - **Support Contract Management** - ensure that the security expectations included in...

  • Third Party IT Security

    Il y a 2 mois


    Brussels, Belgique Base 3 Temps plein

    **Role Description** The role will be responsible for execution of risk-based IT Security controls for Third Parties. **Key responsibilities: Customer and Third-Party Assurance Lifecycle** - Due Diligence - risk profiling, onboarding, re-certification - Contract Management - ensuring that the security expectations included in the contract are proportionate...


  • Brussels, Belgique Salt Temps plein

    **Third Party IT Security Manager/Dora Implementation - Banking Client - London/Brussels** **Duration: 6-12 months** **Rate: €650 - €750 (Inside of IR35 if UK contractor)** **Remote working - Travel to Brussels for workshops** The **Third Party IT Security Manager** will be responsible for execution of risk-based IT Security controls for Third...

  • Third Party Risk Analyst

    il y a 7 jours


    Brussels, Belgique Next Ventures Limited Temps plein

    Practice **Cloud & Infrastructure** - Technologies **Cyber Security** - Location **Brussels, Belgium** - Type **Contract** **Third Party Security Risk Analyst - Brussels / London / Krakow - 12+ months contract** Our client, a global provider of Financial Market Infrastructure services is hiring a **Third-Party Security Risk Analyst **on a 12+ month...


  • Brussels, Belgique HNM Solutions Temps plein

    **Job ID: HNMJD2894**: **Role: IT and Cyber Third-party Risk Assessor** **Location**: **Brussels, Belgium** **Language**: **English + Dutch + French** **Required experience / knowledge**: - Professional experience in information security (5+ years) - Experience in process design and improvement - Experience in Third-party IT and security assessments -...


  • Brussels, Belgique Sparagus Temps plein

    The main mission of the ‘Third Party Management Analyst’ is to ensure the identification of risks associated to the different Third Parties in relation in Belgium. You will be responsible for evaluating the risk associated with these external entities, assessing their security controls, integrating some action plans in their contracts, and ensuring a...


  • Brussels, Belgique Capco Temps plein

    WHAT MAKES US DIFFERENT? We are a global technology and management consultancy dedicated to the financial services industry. Our professionals combine innovative thinking with unrivalled industry knowledge to offer our clients consulting expertise, complex technology and package integration, transformation delivery, and managed services, to move their...


  • Brussels, Belgique CAPCO Temps plein

    WHAT MAKES US DIFFERENT? We are a global technology and management consultancy dedicated to the financial services industry. Our professionals combine innovative thinking with unrivalled industry knowledge to offer our clients consulting expertise, complex technology and package integration, transformation delivery, and managed services, to move their...

  • Senior Security Officer

    il y a 2 semaines


    Brussels, Belgique Sparagus Temps plein

    The main mission of the ‘Third Party Management Analyst’ is to ensure the identification of risks associated to the different Third Parties in relation with the company in Belgium. You will be responsible for evaluating the risk associated with these external entities, assessing their security controls, integrating some action plans in their contracts,...


  • Brussels, Belgique Ebury Temps plein

    Ebury is a hyper-growth FinTech firm, named in 2021 as one of the top FinTechs to work for by Glassdoor and AltFi. We offer a range of products including FX risk management, trade finance, currency accounts, international payments and API integration. **Third Party Risk Management Specialist** **Ebury Brussels - 4 days in the office** **About our...


  • Brussels, Belgique Ebury Temps plein

    Ebury is a hyper-growth FinTech firm, named in 2021 as one of the top FinTechs to work for by Glassdoor and AltFi. We offer a range of products including FX risk management, trade finance, currency accounts, international payments and API integration. **Third Party Risk Management Specialist** **Ebury Brussels - 4 days in the office & 1 day working from...


  • Brussels, Belgique Ebury Temps plein

    Ebury is a hyper-growth FinTech firm, named in 2021 as one of the top FinTechs to work for by Glassdoor and AltFi. We offer a range of products including FX risk management, trade finance, currency accounts, international payments and API integration. **Third Party Risk Management Specialist** **Ebury Brussels - 4 days in the office & 1 day working from...


  • Brussels, Belgique Sparagus Temps plein

    **Mission context** Risk and Compliance team supports IT and Business Units to develop adequate solutions on operational IT and Cyber risk management practices, with specific focus on Information Security. Their main missions are: - Advice, consult, monitor and report on risk treatment in order to reduce the overall risk exposure of IT and Business at an...

  • Security Governance Expert

    il y a 1 semaine


    Brussels, Belgique ING Temps plein

    Security Governance Expert - CISO BE - Security Governance team - 50 % work from home **A day in the life of a Security Governance Expert** - As a part of the security governance team, you help develop and implement a comprehensive **security strategy** aligned with business objectives. You help to continuously assess and refine the security strategy to...

  • Security Regulatory

    il y a 2 semaines


    Brussels, Belgique AXA Temps plein

    As part of the broad process of digitalisation of its activities, AXA Belgium deals with an ever-increasing volume of data and offers increasingly comprehensive digital services to its customers and partners. All of this is taking shape in increasingly cloud-oriented environments (AWS/Azure). As such, it is essential to ensure that all this information is...

  • Third-party Works Coordinator

    il y a 3 semaines


    Brussels, Belgique Fluxys Temps plein

    **Will you help us change the world?**: Fluxys is an international energy infrastructure group with 1,300 employees active in gas transmission & storage and liquefied natural gas terminalling. As a purpose-led company, we’re committed to fast-track the shift to a carbon neutral world. We explore new technologies and invest in infrastructure to accommodate...


  • Brussels, Belgique Belfius Temps plein

    Belfius Bank - Financial - Brussel - Permanent Wij zijn op zoek naar een Third Party Risk and Process Officer, die een essentiële rol speelt bij de implementatie van het nieuwe Third Party Risk Management (TPRM) framework en bij het proactief ondersteunen van de kwalificatie van alle 3rd parties van Belfius. Als Third Party Risk and Process Officer...


  • Brussels, Belgique Belfius Temps plein

    Belfius is een 100% Belgische bank die maximaal investeert in nuttige en duurzame projecten in België. Gesterkt door onze waarden gaan wij proactief op zoek naar creatieve en innoverende oplossingen die zinvol zijn voor onze klanten en voor de grote uitdagingen van de samenleving van morgen. De afdeling Procurement is een dynamisch team dat zich bezighoudt...


  • Brussels, Belgique Lease Temps plein

    **Description**: **Function**: - Establish and enforce robust cybersecurity policies, standards, and procedures to minimize risks and ensure adherence to relevant laws and regulations. - Identify, evaluate, and prioritize cybersecurity risks, developing effective strategies to manage and mitigate these risks efficiently. - Lead the development and...

  • Information Security Manager

    il y a 2 semaines


    Brussels, Belgique Sander and Partners Temps plein

    At Sander, we are on the search for an Information Security Manager to join a tech company in Liège, embarking on a critical phase of product enhancement and expansion. This innovative firm is setting new benchmarks in the tech sector, broadening its horizons across Europe and investing deeply in its digital offerings. **Responsibilities**: Develop...