IT and Cyber Third-party Risk Assessor

il y a 3 jours


Brussels, Belgique BNP Paribas Fortis Temps plein

**IT and Cyber Third-party Risk Assessor - M/F/x**

**Willing to push the boundaries with us for a more sustainable world?**
- Do you wish to develop your skills while contributing to the sustainability of the Bank ?
- Do you search for an agile and digital work environment where diversity and inclusion are not slogans but part of our day to day activities ?
- Are you interested by the domain of IT and Cyber risk management and more particularly, when addressing our suppliers ?

In such case, you may become our next** IT and Cyber Third-party Risk Assessor**.

CoE Security is a department in Brussels in charge of protecting BNP Paribas Fortis from operational risks linked to IT and Cyber Security across the whole Bank.

Within the CoE, the team Governance, Risk and Compliance is in charge, among other topics, of the IT and Cyber maturity assessment of any supplier accessing or processing bank information.
Our mission can be summarized as: ‘Make it easy, keep it safe’.
‘Make it easy’ means being a “business enabler” by providing a quick and efficient support to the Bank in terms of IT and security risks.
‘Keep it safe” intends to ensure that our information is adequately protected against IT and Cyber Security threats.

**Your future job**
- You setup processes and procedures for an end to end IT ad Cyber Security management on our suppliers.
- You execute IT and Cyber security assessments on Third-parties’ organizations. You maintain the identified risks in the risk registry database.
- You ensure that information security requirements are included in third-party contracts.
- You support the execution of the information security control plan on third parties aiming to provide assurance of the supplier performing accordingly with the security clauses of the contract. Exceptionally, you may coordinate and perform IT and security audits on third parties.
- You deliver consulting on risk management to internal customers (IT and Business):

- Proposition or validation of measures to mitigate risks.
- Creation of detailed or synthetic risk report, structured and formulated in line with BNP Paribas Group and IT and Information Security Risk Management best practices.
- Support in increasing risk control maturity by providing a valuable follow up and reporting.
- You report risks and overall risk posture to Security, IT or Business Management:

- Correlate risks across a portfolio of suppliers or activities; identify and propose transversal risk mitigating actions.
- Create risk dashboards and reports for a management audience, in line with the defined risk appetite for the company.
- Create one-pagers and synthetic risk reports for a management audience.
- You manage our internal customer relationship and are the Single Point Of Contact for the risk management services you deliver. You customize services to meet customer needs or expectations while ensuring compliance with risk management methodologies and guidelines.
- You contribute to the definition and improvement of risk management methods and tools supporting the above activities (risk identification guide, risk evaluation matrix, industrialization of risk monitoring and reporting framework and deliverables) taking into account your field experience as well as best practices coming from the BNP Paribas Group or other sources like regulators, Basel II, CobIT, ISO27000/31000...
- You contribute to writing procedures and processes supporting risk management activities outlined above, for both an expert and non-expert audience. Experience on linking different ISMS processes or linking to other Third-party Management processes of the Bank is a must.

**Highlight your strengths**
- You have a master university degree and at least 3-year experience in risk management.
- You are fluent in Dutch, French and English.
- You are familiar with Cyber Security or ready to invest yourself in this domain.
- You have a strong IT background.
- You are able to work autonomously while being a team player in a multicultural team.
- You are an enabler, results oriented.
- You are able to communicate at all levels of the organization, verbally or in writing.
- You build bridges: you not only listen but are able to convince your stakeholders.
- You plan and deliver right the first time, respecting agreed deadlines and with the expected quality.

Tempted by the challenge?

Should you wish more information about this vacancy, you can contact Maria Pilar Barrena Redondo or Mohammed El Ouadghiri.

Your future workplace

Thanks to the daily commitment of our more than 12,000 employees, BNP Paribas Fortis aims to be a responsible and sustainable leader and the preferred partner of our clients over the long term. For IT it means developing ingenious banking technologies to continuously offer them tailored solutions—at every key moment in their lives.

Our IT teams work at the centre of Brussels, just a few 100m from the central station, the building has a company restau


  • Third Party Risk Analyst

    Il y a 7 mois


    Brussels, Belgique Next Ventures Limited Temps plein

    Practice **Cloud & Infrastructure** - Technologies **Cyber Security** - Location **Brussels, Belgium** - Type **Contract** **Third Party Security Risk Analyst - Brussels / London / Krakow - 12+ months contract** Our client, a global provider of Financial Market Infrastructure services is hiring a **Third-Party Security Risk Analyst **on a 12+ month...


  • Brussels, Belgique Sparagus Temps plein

    **Mission context** Risk and Compliance team supports IT and Business Units to develop adequate solutions on operational IT and Cyber risk management practices, with specific focus on Information Security. Their main missions are: - Advice, consult, monitor and report on risk treatment in order to reduce the overall risk exposure of IT and Business at an...

  • Cyber Risk Professional

    il y a 1 mois


    Brussels, Belgique HNM Solutions Temps plein

    **Description**: - Advice, consult, monitor and report on risk treatment in order to reduce the overall risk exposure of IT and Business at an optimized cost. - Elaborate and manage the implementation of a flexible strategy to reduce IT and Cyber risks in accordance with the IT and Information Security policies of client - you execute **information security...


  • Brussels, Belgique Base 3 Temps plein

    **Key responsibilities**:Third-Party Assurance Lifecycle & Support the transformation of the activity - **Execute Third Party Due Diligence**, risk profiling, onboarding, re-certification; Make an opinion on Third Party Security Posture; Define Remediation where applicable - **Support Contract Management** - ensure that the security expectations included in...


  • Brussels, Belgique Salt Temps plein

    **Third Party IT Security Manager/Dora Implementation - Banking Client - London/Brussels** **Duration: 6-12 months** **Rate: €650 - €750 (Inside of IR35 if UK contractor)** **Remote working - Travel to Brussels for workshops** The **Third Party IT Security Manager** will be responsible for execution of risk-based IT Security controls for Third...


  • Brussels, Belgique Ebury Temps plein

    Ebury is a hyper-growth FinTech firm, named in 2021 as one of the top FinTechs to work for by Glassdoor and AltFi. We offer a range of products including FX risk management, trade finance, currency accounts, international payments and API integration. **Third Party Risk Management Specialist** **Ebury Brussels - 4 days in the office** **About our...


  • Brussels, Belgique Ebury Temps plein

    Ebury is a hyper-growth FinTech firm, named in 2021 as one of the top FinTechs to work for by Glassdoor and AltFi. We offer a range of products including FX risk management, trade finance, currency accounts, international payments and API integration. **Third Party Risk Management Specialist** **Ebury Brussels - 4 days in the office & 1 day working from...


  • Brussels, Belgique Ebury Temps plein

    Ebury is a hyper-growth FinTech firm, named in 2021 as one of the top FinTechs to work for by Glassdoor and AltFi. We offer a range of products including FX risk management, trade finance, currency accounts, international payments and API integration. **Third Party Risk Management Specialist** **Ebury Brussels - 4 days in the office & 1 day working from...


  • Brussels, Belgique ING Temps plein

    **Sourcing Expert Third Party** ***[Belgium, full time]** **We redefine banking. What about you?** There has never been a more interesting time to work at ING. We’re on a journey that’s centered around our customers, powered by technology and driven by smart, determined people. Our customers feel our people are empowering them to stay a step ahead in...

  • Security Analyst

    il y a 2 jours


    Brussels, Belgique DigiTribe Temps plein

    Within the context of the overall Enterprise Risk Management (ERM) framework, the IT and Cyber Risk team provides a strong control environment based on internationally recognized controls that allows all IT, information security and cyber risks to be continually identified, assessed, monitored, and mitigated (or accepted). Role Description - IT Security...


  • Brussels, Belgique Proximus Group Temps plein

    Are you passionate about #AI and #cybersecurity? Do you love working with high profile teams with a sure taste of challenge and variety? You dream to join a fast-growing company with start-up mentality? Eager to learn continuously? Join **Proximus Ada**! Within this Proximus’ first Belgian center of excellence combining artificial intelligence and...


  • Brussels, Belgique Alphacredit Temps plein

    **IT (Cyber)Security and Risk Manager (including CISO)**: You are passionate about IT, cybersecurity and risk management and looking for an opportunity to lead and motivate a dynamic team. We want to meet you! **Your role**: As the leader of the IT Risk & Security team, you will be part of the IT Benelux management team and lead the IT Risk & Security team...


  • Brussels, Belgique NonStop Consulting Temps plein

    **Experience**: **IT and Cyber Risk Management Advisor** **Work Location**: Brussels **Contract Duration**: **Start Date**: 12/08/2024 **End Date**: 12/08/2025 **Hybrid**: Expectation**:50% on-site & 50% homeworking**. **Mission Context**: The **Governance, Risk, and Compliance (GRC) team** supports IT and Business Units in developing robust solutions...


  • Brussels, Belgique V-IT Temps plein

    V-IT is voor een van haar klanten in Brussel op zoek naar een Third Party Integration Developer. **Start**: asap **Duurtijd**: 9 maanden **Talen**: Nederlands, Frans en Engels **Description** La mission est de rejoindre comme développeur une équipe de développement. Comme développeur Java/Angular vous participez aux développements de la nouvelle...


  • Brussels, Belgique FST Temps plein

    We are looking for an IT and Cyber Risk Management Specialist to provide support to our customer and help protect their digital assets from threats, vulnerabilities, and potential breaches. **Key Responsibilities**: 1. Develop, implement, and maintain IT and cyber risk management frameworks and processes. 2. Conduct risk assessments, identifying potential...

  • Privacy Praxis

    Il y a 7 mois


    Brussels, Belgique Privacy Praxis Temps plein

    Activities You ensure that information security and IT requirements are included in third party's contracts. You execute the information security and IT control plan on third parties to ensure that they are performing accordingly with the contract. You coordinate and perform security audits on third parties. You set up processes and procedures for an end...


  • Brussels, Belgique Uni Systems Temps plein

    At Uni Systems, we are working towards turning digital visions into reality. We are continuously growing and we are looking for a** Cyber and Information Security Officer **to join our UniQue team in the Brussels. **What will you be doing in this role?** - Organize, coordinate and perform security compliance initiatives (e.g. Vulnerability Assessment,...


  • Brussels, Belgique Privacy Praxis Temps plein

    We are looking for a IT and Cyber GRC Technical Consultant with at least 2 years experience for developing information technology risk management solutions - freelance or full time contract in Brussels (Belgium): ???? As a IT and Cyber GRC Technical Consultant, you will have the following responsibilities: ? You design, configure and maintain solutions in...


  • Brussels, Belgique NonStop Consulting Temps plein

    **IT and Cyber Risk Management Professional** **Lieu de travail**: Brussel **Date de début**: 09/2024 | Einddatum: 06/2025 **Telewerken**:50% on-site & 50% thuiswerk **Belangrijkste verantwoordelijkheden**: - IT- en beveiligingsrisico beoordelingen uitvoeren voor IT-/bedrijfsoplossingen en organisaties van derden. - IT- en beveiligingsaudits uitvoeren...


  • Brussels, Belgique FST Temps plein

    We are looking for a Cyber Risk Management Advisor to offer guidance, advice, and expertise to our customer’s organizations or teams on managing and reducing cyber risks. **Responsibilities**: - Provide expert advice on cyber risk management strategies. - Advise on the implementation of security frameworks, best practices, and policies. - Conduct...