Grc Expert

il y a 7 jours


Brussels, Belgique Capgemini Temps plein

**Responsibilities**:
**Depending on the assigned mission or project being able too**:

- **Develop and execute a comprehensive Governance, Risk and Compliance (GRC) strategy in order to align information security practices with organizational goals, regulatory requirements, and industry best practices.**:

- **Lead the implementation of a Governance, Risk, and Compliance framework, ensuring integration with business operations and IT systems.**:

- **Being able to Implement, oversee and manage the organization's compliance with applicable laws, standards, and frameworks, including ISO 27001, NIST, GDPR, DORA, NIS2, etc.**:

- **Identify and evaluate information security risks, proposing and executing mitigation strategies to safeguard organizational assets and reputation.**:

- **Establish and monitor a robust risk management program, including periodic risk assessments, incident tracking, and reporting.**:

- **Act as a key advisor to the executive team and board of directors, providing regular updates on security posture, risks, and compliance metrics.**:

- **Develop, implement, and maintain policies, procedures, and controls to manage IT and cybersecurity risks effectively.**:

- **Lead and coordinate internal and external security audits and pentesting, ensuring findings are addressed and improvements are implemented.**:

- **Collaborate with cross-functional teams to embed security and compliance principles into organizational culture and processes.**:

- **Ability to drive the development and testing of business continuity and disaster recovery plans to ensure operational resilience.**:

- **Perform security assessments and propose remediation measures.**:

- **Oversee third-party risk management processes to ensure vendors and partners meet security and compliance requirements.**:

- **Managing and contribute to security incidents.**

**Technical Skills and Knowledge**:

- **Strong understanding of IT governance and architectural frameworks (e.g., TOGAF, SABSA).**:

- **Expertise in compliance frameworks and regulations, including PCI DSS and OWASP.**:

- **Familiarity with modern security concepts, such as Zero Trust Architecture, cloud security, DevSecOps (Basic), and identity and access management (IAM).**:

- **Technical background in IT infrastructure, networking, and cloud environments (e.g., Azure, AWS, Google Cloud) is advantageous.**:

- **Proficiency in analyzing and presenting risk data using visualization tools.**:

- **Good knowledge of the following technologies and products: SD-WAN, Zscaler, SIEM, IAM, Deffie Hellmann**:

- **Experience in accreditation and homologation is a plus.**

**Certifications and Education**:

- **Bachelor’s or Master’s degree in Computer Science/Engineering or equivalent professional experience (minimum 5 years in IT/Security, preferably in Azure environments).**:

- **Certifications such as CISSP, CISM, CISA, or ISO 27001 Lead Implementer/Auditor are essential.**:

- **Additional certifications in privacy, risk management, compliance or pentesting (e.g., CCSK, DPO, GPEN) are beneficial.**

**Professional Attributes**:

- **Passion for the Governance part of security.**:

- **Strong analytical skills to assess complex risks and translate them into strategic business decisions.**:

- **Able to translate governance and compliance requirements into high level technical needs**:

- **Exceptional communication and interpersonal skills, with the ability to influence stakeholders at all levels, including C-suite and board members.**:

- **Being able to the balance business priorities in accordance to the regulatory and security requirements.**:

- **Resilient and adaptable, thriving in a fast-evolving regulatory and technological landscape.**:

- **Being able to handle pressure during security incidents or breaches, maintaining composure, and responding effectively.**:

- **Fluency in French and Dutch and a good command of English.**

**Communication**:

- **Act as a trusted advisor, fostering a culture of security awareness and accountability across the organization.**:

- **Deliver clear, concise, and actionable reports on GRC initiatives and performance metrics to stakeholders, including non-technical audiences.**:

- **Able to engage with regulators, auditors, and external stakeholders to demonstrate the organization's commitment to governance, risk, and compliance excellence.**:

- **Effectively presenting findings, reports, and recommendations to executives, teams, or clients to gain buy-in for security strategies.



  • Brussels, Belgique Salt Temps plein

    **Risk & Control Management Expert (ServiceNow GRC, Controls) - Brussels** **Duration: 1 year** **Rate: Flexible** **Hybrid: 4 days onsite per month, the rest can be worked remotely** **UK contractors must use an Umbrella** **Role** This role focuses on managing the control framework, encompassing critical IT and security domains such as Identity &...


  • Brussels, Belgique Equans Temps plein

    **Requisition ID**: 24615**Domaine**: Digital et IT/Cyber-sécurité**Type d'emploi**: Standard**Temps de travail**: Full-TimePour rejoindre notre équipe IT, localisé à Bruxelles, nous sommes à la recherche d'un **Cyber Security GRC Officer**. **Vos missions principales** - évaluations des risques - analyse des impacts sur les activités - réponse aux...

  • Certified Risk

    il y a 4 semaines


    Brussels, Belgique Base 3 Temps plein

    **Note that you should be based in a Belgium or UK and**4 days a month on site in Belgium is mandatory.** **The Role** - This role focuses on managing the control framework, encompassing critical IT and security domains such as Identity & Access Management, Vulnerability Management, Security Monitoring, Incident Management, Platform, Network, and...


  • Brussels, Belgique Capgemini Temps plein

    ServiceNow Security Architect (SecOps, GRC) Get the opportunity to work together with highly talented and senior consultants on exiting projects within Cloud & Infrastructure services. Due to significant growth created by an ever-increasing client demand, we are looking to further bolster our group of Service Now Experts. You will be a part of the...


  • Brussels, Belgique The Cloud People Temps plein

    **Are you our next ServiceNow GRC and/or IRM Solution Consultant?**: **Are you looking to accelerate your career and want to work with one of the leading cloud-based Platforms? Then you have come to the right place!**: **The Cloud People, a Full ServiceNow Lifecycle Partner is growing rapidly in Europe and US. For our activities and office in the Benelux we...


  • Brussels, Belgique Expleo Temps plein

    Overview: **Industrial Cybersecurity Expert** Facing growing customers' requests in securing our European Critical Infrastructures against Cyberattack, Expleo is looking to strengthen its teams to assist its customers in Air, Sea and Land Transportation. **Role** Your role is very diversified and exciting. You will work closely with Industrial...

  • Cyber Security Expert

    il y a 5 jours


    Brussels, Belgique AVIV Group Temps plein

    Company DescriptionWe’re one of the world’s largest privately owned real estate tech companies and a subsidiary of Axel Springer. Our mission is to unlock everyone’s perfect place! Some of Europe’s best known digital real estate marketplaces and brands form part of our Group, they are: Meilleurs Agents, Groupe SeLoger, Immoweb, Immowelt, Housell and...

  • Privacy Praxis

    il y a 4 jours


    Brussels, Belgique Privacy Praxis Temps plein

    Activities You ensure that information security and IT requirements are included in third party's contracts. You execute the information security and IT control plan on third parties to ensure that they are performing accordingly with the contract. You coordinate and perform security audits on third parties. You set up processes and procedures for an end...

  • Expert in DevSecOps

    il y a 2 semaines


    Brussels Metropolitan Area, Belgique Brayton Global Temps plein

    DESCRIPTION OF THE TASKS The following tasks shall be covered by the service contract: Advise and Support as a subject Matter Expert in the field of DevSecOps. On top of this task, the candidate will contribute to: Security services development: Participate in the efforts towards developing and improving the service in its growing scope and coverage among DG...


  • Brussels, Belgique DigiTribe Temps plein

    Governance Risk & Compliance Consultant Role This role is focusing on IT general controls, covering the main Technology areas including IT operations, project delivery, governance, strategy and other key domains. The client's IT control framework is based on COBIT as industry best practice and is being implemented in the ServiceNow GRC platform through...


  • Brussels, Belgique NonStop Consulting Temps plein

    **Experience**: **IT and Cyber Risk Management Advisor** **Work Location**: Brussels **Contract Duration**: **Start Date**: 12/08/2024 **End Date**: 12/08/2025 **Hybrid**: Expectation**:50% on-site & 50% homeworking**. **Mission Context**: The **Governance, Risk, and Compliance (GRC) team** supports IT and Business Units in developing robust solutions...


  • Brussels, Belgique Systems Planning and Analysis, Inc. Temps plein

    Overview: Systems Planning and Analysis, Inc. (SPA) is a well-established and progressive defense contracting company in the Northern Virginia area just a few miles south of the Pentagon. We are a professional services firm established in 1972 that has a long-standing reputation for unrivaled technical and analytical support to some of the top decision...


  • Brussels, Belgique PKF-VMB Belgium Temps plein

    Looking for a new challenge in Data Privacy? Look no further, we have just the job for you.DKV Belgium, a loyal partner in insurance, is a dynamic team of around 500 engaged colleagues driving digital transformation. As part of the international Munich Re Group, we proudly lead private health insurance in Belgium, supporting our clients during good and...


  • Brussels, Belgique Systems Planning and Analysis, Inc. Temps plein

    Overview: Systems Planning and Analysis, Inc. (SPA) is a well-established and progressive defense contracting company in the Northern Virginia area just a few miles south of the Pentagon. We are a professional services firm established in 1972 that has a long-standing reputation for unrivaled technical and analytical support to some of the top decision...


  • Brussels, Belgique Systems Planning and Analysis, Inc. Temps plein

    Overview: Systems Planning and Analysis, Inc. (SPA) is a well-established and progressive defense contracting company in the Northern Virginia area just a few miles south of the Pentagon. We are a professional services firm established in 1972 that has a long-standing reputation for unrivaled technical and analytical support to some of the top decision...

  • Senior Cyber Strategy

    il y a 4 jours


    Brussels, Belgique NVISO Temps plein

    Who are we? **It all starts with the mission**: NVISO is here to protect European society from potentially devastating cyber attacks! This means we offer cyber security services to private and governmental organizations to help them better prepare for, prevent, detect and respond to cyber security incidents. All of this is built on four fundamental values...

  • Senior Cyber Strategy

    il y a 4 semaines


    Brussels, Belgique NVISO Temps plein

    Who are we? It all starts with the mission: NVISO is here to protect European society from potentially devastating cyber attacks! This means we offer cyber security services to private and governmental organizations to help them better prepare for, prevent, detect and respond to cyber security incidents. All of this is built on four fundamental values that...

  • Experienced Cyber Strategy

    il y a 4 semaines


    Brussels, Belgique NVISO Temps plein

    Already experienced in the world of cyber security? New to it all, but genuinely interested? Well, at NVISO we might be looking for you and we’d love to have a chat! Who are we? It all starts with the mission: NVISO is here to protect European society from potentially devastating cyber-attacks! This means we offer cyber security services to private and...

  • Experienced Cyber Strategy

    il y a 3 semaines


    Brussels, Belgique NVISO Temps plein

    Already experienced in the world of cyber security? New to it all, but genuinely interested? Well, at NVISO we might be looking for you and we’d love to have a chat!Who are we?It all starts with the mission: NVISO is here to protect European society from potentially devastating cyber-attacks! This means we offer cyber security services to private and...


  • Brussels, Belgique ERGO Insurance Temps plein

    ERGO is one of the major insurance groups in Germany and Europe. Worldwide, the Group is represented in around 26 countries and concentrates on Europe and Asia. In its home market of Germany, ERGO ranks among the leading providers across all segments. Objective of the Job: Do you have a good view on how the processes in an insurance company work? Are you...