Ciso Officer

il y a 4 semaines


Anderlecht, Belgique Ypto NV Temps plein

The IT Risk Officer is responsible for guarding the vision, the development of strategy and the implementation of the Information Security Risk and IT Risk Management programme within the NMBS-SNCB organisation (including its affiliates).

You identify, analyse and report information security risks for different NMBS-SNCB Business Units. You provide Information Security requirements for IT projects. You will follow up on the implementation status of agreed controls.
You identify, analyse and report on the internal IT risks, and take care of the follow-up. You maintain the risk register and take care of the management reporting.
You participate in the execution of the SNCB ISMS. You define risk policies, standards, procedures and guidelines. You take care of their communication and awareness at the respective audiences. You follow up and report on their implementation and status.
The influence of the IT Risk Officer extends across the entire enterprise. The Risk Officer reports to the Risk & Service Continuity Manager within the CISO organisation.

**Information Risk Management**
- Setting up and maintaining an Information Risk Management framework, based on the ISO 31000 methodology.
- Incorporation of information risk management processes in the existing business and IT processes.
- Setting up and maintaining an information risk registry.
- Active execution, monitoring and adjusting of information risk analysis (Business Impact Assessments, Threat & Vulnerability Assessments)
- Guiding business about their availability requirements versus disaster recovery capabilities, in cooperation with the Service Continuity Officers.
- Aligning risk assessments and controls with the Data Protection Officers.

**IT Risk Management**
- Setting up and maintaining an IT risk management framework, based on ISO 31000, COBITv5 and the NMBS Enterprise Risk Management framework.
- Incorporation of this IT risk management processes in the existing business and IT processes.
- Active execution, monitoring and adjusting IT risk analyses.
- Setting up and maintaining an IT risk register.
- Setting up and maintaining relationships and act as point of contact with (internal) audit and other risk departments.

In both of these domains, you will work closely with IT PMO to align with existing IT processes, with IT project managers and operational managers to identify or mitigate risks, with NMBS-SNCB and YPTO Data Protection Officers to guard privacy, with IT Compliance Officers, with the CyberSecurity team, and with IT Service Continuity Officers to align on risks and BIA’s.
- Bachelor's degree or equivalent experience
- 3 to 10 years of relevant experience in risk management and / or information security
- Knowledge of ISO2700x, ISO31000, COBIT5, ITIL,
- Experience in assessing and managing IT and/or Information Risk
- Broad knowledge of IT processes and technology
- Knowledge of security architectures and controls
- Knowledge of NIST CSF is a plus
- Experience in managing and overseeing security in third party service providers.
- Certifications: CISSP, CISM, CISA or CRISC is a plus
- Problem analysis and conflict management
- Customer focus and able to handle in an organisation-sensitive way
- Record of responsibility
- Spoken and written fluency in Dutch **or** French
- Passive understanding of Dutch **and** French

**Offer**

Within our open corporate culture, you contribute to the digital transformation of SNCB. You will have a job with social impact and ample opportunity to make your own contribution. In addition to a good work-life balance and a market-related salary, you have:

- the possibility to work remotely for up to three days per week + flexible working hours;
- 35 days of leave;
- a company car + a public transport pass;
- a target bonus;
- a hospitalisation insurance (including dental care) for the entire family, a group insurance and a disability insurance (cafeteria plan), without own contribution;
- meal cheques and eco-vouchers;
- net allowances for remote working and carwash + internet budget.


  • Ciso Officer

    il y a 1 semaine


    Anderlecht, Région de Bruxelles, Belgique Ypto NV Temps plein

    As an Information Security Officer you will be part of a team responsible for Information Security Risk assessments, IS Risk and Audit follow-up, Information Security standards and the implementation of IS controls.Your responsibilities:Information Security Management: You identify security protection objectives and metrics in line with the strategic CISO...

  • Ciso Officer

    il y a 1 semaine


    Anderlecht, Région de Bruxelles, Belgique Ypto NV Temps plein

    The IT Risk Officer is responsible for guarding the vision, the development of strategy and the implementation of the Information Security Risk and IT Risk Management programme within the NMBS-SNCB organisation (including its affiliates).You identify, analyse and report information security risks for different NMBS-SNCB Business Units. You provide...

  • Ciso Officer

    il y a 3 semaines


    Bruxelles Anderlecht, Belgique Ypto NV Temps plein

    As an Information Security Officer you will be part of a team responsible for Information Security Risk assessments, IS Risk and Audit follow-up, Information Security standards and the implementation of IS controls. **Your responsibilities**: Information Security Management: - You identify security protection objectives and metrics in line with the...

  • IT Service Continuity

    Il y a 2 mois


    Anderlecht, Belgique Multipharma Temps plein

    **QUI SOMMES-NOUS ?** Multipharma est la plus grande coopérative dans le domaine de la pharmacie en Belgique. En tant qu’acteur clé dans le secteur des soins pharmaceutiques, Multipharma souhaite renforcer le rôle du pharmacien dans les soins de première ligne afin de rendre les soins de santé accessibles à tous. Pour ce faire, Multipharma s'appuie...

  • IT Service Continuity

    il y a 1 semaine


    Anderlecht, Région de Bruxelles, Belgique Multipharma Temps plein

    **QUI SOMMES-NOUS ?**Multipharma est la plus grande coopérative dans le domaine de la pharmacie en Belgique. En tant qu'acteur clé dans le secteur des soins pharmaceutiques, Multipharma souhaite renforcer le rôle du pharmacien dans les soins de première ligne afin de rendre les soins de santé accessibles à tous. Pour ce faire, Multipharma s'appuie sur...

  • Teamlead Icam

    il y a 1 semaine


    Anderlecht, Région de Bruxelles, Belgique Ypto NV Temps plein

    Within the CISO department, the Identity, Credential & Access Management (ICAM) team exists alongside the Cyber Centre of Excellence and GRC Office teams.Key ActivitiesPeople management Ensure clear governance, including roles and responsibilities, accountability and delegation of tasks within their team. Coach and steers the team where necessary and guides...

  • Teamlead Icam

    il y a 3 semaines


    Bruxelles Anderlecht, Belgique Ypto NV Temps plein

    Within the CISO department, the Identity, Credential & Access Management (ICAM) team exists alongside the Cyber Centre of Excellence and GRC Office teams. **Key Activities** **People management** - Ensure clear governance, including roles and responsibilities, accountability and delegation of tasks within their team. - Coach and steers the team where...

  • Service Delivery Manager IT

    il y a 1 semaine


    Anderlecht, Région de Bruxelles, Belgique Ypto NV Temps plein

    Within the Business Service Management (BSM) team of our Operations department, you are responsible for maintaining the transition, operations and continuous improvement of the service levels and KPIs from the Security services in the SNCB/NMBS organisation (including its subsidiaries) so as to adequately protect the company resources.Responsibilities:...

  • Digital Expert

    Il y a 2 mois


    Anderlecht, Belgique Ypto NV Temps plein

    Bij Ypto, het IT-filiaal van NMBS, helpen wij onze klant en haar dochterondernemingen om reizigers veilig, stipt en comfortabel naar hun bestemming te brengen. Zo dragen wij rechtstreeks bij aan de realisatie van de nationale objectieven om onze mobiliteit duurzamer te maken. Onze passie drijft ons om innovatieve oplossingen te ontwikkelen en te...

  • Digital Expert

    il y a 1 semaine


    Anderlecht, Région de Bruxelles, Belgique Ypto NV Temps plein

    Bij Ypto, het IT-filiaal van NMBS, helpen wij onze klant en haar dochterondernemingen om reizigers veilig, stipt en comfortabel naar hun bestemming te brengen. Zo dragen wij rechtstreeks bij aan de realisatie van de nationale objectieven om onze mobiliteit duurzamer te maken. Onze passie drijft ons om innovatieve oplossingen te ontwikkelen en te...

  • Service Delivery Manager IT

    il y a 2 semaines


    Bruxelles Anderlecht, Belgique Ypto NV Temps plein

    Within the Business Service Management (BSM) team of our Operations department, you are responsible for maintaining the transition, operations and continuous improvement of the service levels and KPIs from the Security services in the SNCB/NMBS organisation (including its subsidiaries) so as to adequately protect the company resources. Responsibilities: -...

  • Service Delivery Manager IT

    il y a 2 semaines


    Bruxelles Anderlecht, Belgique Ypto Temps plein

    Within the Business Service Management (BSM) team of our Operations department, you are responsible for maintaining the transition, operations and continuous improvement of the service levels and KPIs from the Security services in the SNCB/NMBS organisation (including its subsidiaries) so as to adequately protect the company resources. Responsibilities: -...