IT and Cyber Risk Management Professional

il y a 1 semaine


Brussels, Belgique Sparagus Temps plein

**Mission context**

Risk and Compliance team supports IT and Business Units to develop adequate solutions on operational IT and Cyber risk management practices, with specific focus on Information Security.

Their main missions are:

- Advice, consult, monitor and report on risk treatment in order to reduce the overall risk exposure of IT and Business at an optimized cost.
- Elaborate and manage the implementation of a flexible strategy to reduce IT and Cyber risks in accordance with the IT and Information Security policies.

**Function description**:

- you
**3rd-parties organization**, processes ).
- you execute** information security and IT control plans on third parties** to ensure that they are performing according to signed contracts.
- you coordinate and perform **IT and security audits on third parties**.
- you create one-pagers and synthetic risk reports for a management audience
- you set up **processes and procedures for an end to end IT and security management for third-parties**.
- you deliver consulting on IT and Cyber risk management to internal customers (IT and Business):

- Proposition or validation of measures to mitigate risks.
- Creation of detailed or synthetic risk report. - Support in increasing risk control maturity by providing a valuable follow up and reporting.
- you manage customer relationship and are the Single Point Of Contact for the risk management services you delivered.
- you contribute to definition and improvement of risk management methods and tools **on the third-party management area**.
- you contribute to writing processes and procedures supporting risk management activities outlined above, for both an expert and non-expert audience.

**Experience on linking different ISMS processes** is a must.
- you are knowledgeable on **CIAT** topic and able to adapt to the way this is applied in the bank for **third-party suppliers.**:

- you review **IT and security contractual clauses** for suppliers servicing bank activities. **Language requirementsDutchFluentFrenchFluent (mandatory)EnglishFluent
**(mandatory)Education**Bachelor/Master or equivalent by experience
**Certification**(Optional) CISSP, CISM, CIPP, CCSK, ISO27001...
**TravelNA**Telework
- Expectation: 50% on site & 50% homeworking

**Required experience / knowledge**
- Professional experience in information security (5+ years)
- Experience in **process design** and **Business analysis**:

- Experience in **Third-party** IT and security assessments
- Experience in **risk management**:

- Experience in delivering presentations and training

**Technical experiencemandatory**
- Significant experience in operational/security risks management.
- Significant experience in working with **cloud services **(SaaS, HSP, AWS)
- Strong MS Office Skills (Excel, word, Powerpoint)
- Knowledge of software development security best practices
- Experience in release management, change management, incident management, testing.

**preferable**
- Security certifications like CISSP, CISM, CIPP, CCSK.
- Experience with RSA Archer and/or ServiceNow GRC.
- Experience in vulnerability management and penetration testing
- Knowledge of control frameworks and audit methodologies.

**Business experiencemandatory**
- Knowledge of Information Security and Risk Management frameworks (ISO27001, SOC, NIST, OWASP, etc.)
- Professional experience in information security (5+ years), particularly in **cloud based solutions**:

- **Strong IT background.**:

- Professional experience in Financial Services. **used to work in large companies**.
- Experience in reviewing and amending IT and Cyber Third-party clauses in contracts

**preferable**
- ** Experience in banking environment.**

**Soft skills**
- **High performer**:

- **Autonomy**, commitment, and perseverance in personal organization.
- Quick self-starter, **pro-active attitude, team player**.
- **Results-oriented, responsible for his/her tasks, resourceful.**:

- Excellent English **writing skills**.
- Good communication and **influencing** skills.
- **Good analytical and synthesis skills, ability to produce structured and concise documents, be precise and methodological**.
- Ability to work in a dynamic and multi-cultural environment.
- Accurate & control minded, but flexible.
- **Ability to capture and adapt to stakeholder expectations while respecting processes in place.**:

- **Ability to mentor/coach people.


  • IT and Cyber Risk Management

    il y a 3 semaines


    Brussels, Belgique HNM Solutions Temps plein

    **Job ID: HNMJD2362**: **Role: IT and Cyber Risk management** **Location: Brussels, Belgium** **Required experience / knowledge**: - Professional experience in information security (5+ years) - Experience in project management, process design and improvement - Experience in Data protection, Business continuity, Access management - Experience in IT and...

  • IT and Cyber Security

    il y a 2 semaines


    Brussels, Belgique HNM solutions Temps plein

    **Description**: You perform security risk quality assurance from the creation to the closure of the risk. - you deliver advice and support on risk management to internal customers (IT and Business) : this means: - Accompany and challenge IT risk assessments performed by the Entities. - Propose or validate measures to mitigate risks derived from...


  • Brussels, Belgique HNM Solutions Temps plein

    **Job ID: HNMJD2894**: **Role: IT and Cyber Third-party Risk Assessor** **Location**: **Brussels, Belgium** **Language**: **English + Dutch + French** **Required experience / knowledge**: - Professional experience in information security (5+ years) - Experience in process design and improvement - Experience in Third-party IT and security assessments -...


  • Brussels, Belgique Yechte Consulting Temps plein

    **We’re an independent digital consultancy with big ambitions. With offices in Belgium, India and the UK, we support a wide range of businesses. We build digital teams and deliver digital solutions. We are hiring for Chief Risk and Compliance Officer. **Responsibilities**: - Provide cyber and information security advise to projects and initiatives within...

  • Cyber Risk

    il y a 3 semaines


    Brussels, Belgique HeadMind Partners Temps plein

    What will you be doing? Within a community of more than  300 experts  in France & Belgium, you will build your experience in one of the 5 largest firms specialising in Cybersecurity, a privileged partner of ANSSI (Agence Nationale de la Sécurité des Systèmes d’Information in France) and a founding member of the Cyber Campus. You will develop...

  • Cyber Risk

    Il y a 2 mois


    Brussels, Belgique HeadMind Partners Temps plein

    What will you be doing? Within a community of more than  300 experts  in France & Belgium, you will build your experience in one of the 5 largest firms specialising in Cybersecurity, a privileged partner of ANSSI (Agence Nationale de la Sécurité des Systèmes d’Information in France) and a founding member of the Cyber Campus. You will develop...

  • Third Party IT Security

    il y a 4 semaines


    Brussels, Belgique Salt Temps plein

    **Third Party IT Security & Risk Analyst - Banking Client - Brussels** **Rate: Flexible** **Duration: 6- 12 months** **Inside of IR35** **Hybrid Working - 3 days onsite per month, the rest is remote.** IT and Cyber Risk Team Aligning with the overall corporate mission of being a 'trusted Financial Market Infrastructure', the 'IT and Cyber Risk' team...

  • Cyber Security Strategy

    Il y a 2 mois


    Brussels, Belgique Oliver James Associates Temps plein

    Cyber Security Strategy - Bruxelles Our client is looking for an experienced freelancer with Cyber security strategy experience. Responsibilities and main tasks: - Perform deep-dive analysis of data security requirements in close collaboration with security architect(s) - identify security design gaps in existing and proposed architectures and recommend...


  • Brussels, Belgique Bank Nagelmackers Temps plein

    **Responsibilities**: - You have a strong risk mind-set, are a good relationship builder and want to play a critical role in the IT Risk transformation. Proficient (oral and written) communication as well as influencing are part of your main skills; - You will take an active role both in designing and managing the control framework as it will be developed...


  • Brussels, Belgique NATO - OTAN Temps plein

    **1. SUMMARY** - The Joint Intelligence and Security (JIS) Division, under the leadership of the Assistant Secretary General (ASG) for Intelligence and Security, comprises two principal pillars: Intelligence, headed by the Deputy ASG for Intelligence; and the NATO Office of Security (NOS), headed by the Deputy ASG for Security (DASG-S) / Director NOS. - The...

  • Cyber Strategy

    il y a 2 semaines


    Brussels, Belgique NVISO Temps plein

    Who are we?It all starts with the mission: NVISO is here to protect European society from potentially devastating cyber attacks! This means we offer cyber security services to private and governmental organizations to help them better prepare for, prevent, detect and respond to cyber security incidents.All of this is built on four fundamental values that...


  • Brussels, Belgique Bank Nagelmackers Temps plein

    **Qualifications, professional skills and experience**: - **Have thorough it knowledge, ex. computer science**: - **Field experience in the IT risk and control environment or equivalent experience and critical mindset and ability to challenge and influence middle management and IT experts**: - **Process-minded and good knowledge of the key principles of...

  • Cyber Strategy

    Il y a 2 mois


    Brussels, Belgique NVISO Temps plein

    Who are we? **It all starts with the mission**: NVISO is here to protect European society from potentially devastating cyber attacks! This means we offer cyber security services to private and governmental organizations to help them better prepare for, prevent, detect and respond to cyber security incidents. All of this is built on four fundamental values...

  • Cyber Strategy

    il y a 3 jours


    Brussels, Belgique NVISO Temps plein

    Who are we? **It all starts with the mission**: NVISO is here to protect European society from potentially devastating cyber attacks! This means we offer cyber security services to private and governmental organizations to help them better prepare for, prevent, detect and respond to cyber security incidents. All of this is built on four fundamental values...

  • Cyber Strategy

    Il y a 2 mois


    Brussels, Belgique NVISO Temps plein

    Who are we? It all starts with the mission: NVISO is here to protect European society from potentially devastating cyber attacks! This means we offer cyber security services to private and governmental organizations to help them better prepare for, prevent, detect and respond to cyber security incidents. All of this is built on four fundamental values that...

  • Cyber Strategy

    il y a 3 semaines


    Brussels, Belgique NVISO Temps plein

    Who are we? It all starts with the mission: NVISO is here to protect European society from potentially devastating cyber attacks! This means we offer cyber security services to private and governmental organizations to help them better prepare for, prevent, detect and respond to cyber security incidents. All of this is built on four fundamental values that...


  • Brussels, Belgique Base 3 Temps plein

    **Required Profile**: - years cyber security professional experience with at least 5 years in domain or enterprise architecture experience - Deep knowledge of the IAM and CIAM framework and industry best practice, Identity Governance, Logical and Privileged Access Management, Role Modelling, Access Recertification, and authentication mechanisms. - Familiar...

  • Cyber Security Iam Architect

    il y a 18 heures


    Brussels, Belgique Base 3 Temps plein

    **Required Profile**: - years cyber security professional experience with at least 5 years in domain or enterprise architecture experience - Deep knowledge of the IAM and CIAM framework and industry best practice, Identity Governance, Logical and Privileged Access Management, Role Modelling, Access Recertification, and authentication mechanisms. - Familiar...

  • Senior Associate, Cyber Risk

    il y a 3 semaines


    Brussels, Belgique Kroll Temps plein

    In a world of disruption and increasingly complex business challenges, our professionals bring truth into focus with the Kroll Lens. Our sharp analytical skills, paired with the latest technology, allow us to give our clients clarity—not just answers—in all areas of business. We embrace diverse backgrounds and global perspectives, and we cultivate...


  • Brussels, Belgique Proximus Group Temps plein

    Are you passionate about #AI and #cybersecurity? Do you love working with high profile teams with a sure taste of challenge and variety? You dream to join a fast-growing company with start-up mentality? Eager to learn continuously? Join **Proximus Ada**! Within this Proximus’ first Belgian center of excellence combining artificial intelligence and...