Information Security Engineer
Il y a 8 heures
Liège, Walloon Region, Belgique
EVS
Temps plein
Gratuit avec email ou Google
Enregistrez cette offre et organisez votre recherche
Créez un compte gratuit pour enregistrer des offres d'emploi, créer des alertes et revenir à cette liste depuis votre tableau de bord.
Gratuit avec email ou Google
ppWe're looking for an Information Security Engineer to join the IT Security team within IT Corporate. /ppIn this hands-on role, you'll drive operational cybersecurity: vulnerability management, security monitoring, incident response support, security assessments, and ongoing improvement of our controls. You'll work closely with Infrastructure and Workplace teams to strengthen our security posture and help execute the security roadmap. /ppEVS is an NIS2 Essential Entity under Belgian law, currently working toward ISO/IEC 27001:2022 certification (target: April 2027). You'll play a direct role in this program : implementing controls, producing evidence, and ensuring audit readiness across the IT Corporate perimeter. /ppbJob Description /b /ppAs part of the IT Security team, the Information Security Engineer will contribute to the following activities: /ppSecurity Operations Monitoring /pulliMonitor and investigate alerts across multiple platforms /liliTake part in incident response efforts and help coordinate investigations /liliHelp refine and tune detection capabilities and monitoring use cases /liliSupport the development and upkeep of operational procedures and playbooks /liliConduct operational reviews and related follow-up work /li /ulpVulnerability Exposure Management /pulliOrganize scanning activities and ensure findings are reviewed and prioritized appropriately /liliLiaise with infrastructure, platform, application and support teams on remediation actions /liliTrack remediation progress and elevate overdue items when needed /liliArrange external penetration tests and other assessments /liliEnsure findings from these engagements are documented, tracked, and resolved /li /ulpSecurity Assessments Risk Management /pulliAssess applications, services and technical solutions from a security standpoint /liliContribute to risk evaluations for new projects, technologies and providers /liliExamine configurations and flag areas for improvement /liliHelp identify and manage risks across the IT environment /li /ulpSecurity Governance Reporting /pulliMaintain and track operational KPIs and dashboards /liliAssist with reporting on vulnerabilities, incidents, posture and remediation efforts /liliParticipate in periodic access reviews, including privileged accounts and controls /liliSupport compliance efforts and implementation of requirements under ISO/IEC 27001:2022 and NIS2 /liliProduce and maintain auditable evidence of control operation in line with ISO 27001:2022 (logs, reports, review records, remediation closure evidence) /li /ulpImprovement Automation /pulliSpot opportunities to strengthen controls and streamline processes /liliContribute to automation initiatives that reduce manual effort /liliMake use of available tooling
- including built-in analytics and automation features
- to enhance detection quality and efficiency /liliKeep documentation and procedures up to date /liliOffer guidance to IT teams and project stakeholders /liliPartner with Infrastructure and Workplace teams to strengthen overall posture /liliChampion best practices and support awareness initiatives /liliKeep up with emerging threats, vulnerabilities and industry trends /li /ulpbProfile /b /ppExperience /pulliMinimum 3 years in cybersecurity, security operations, vulnerability management, or a related technical security role /liliBackground in security monitoring, incident handling, or vulnerability management /liliPractical exposure to security tools and operational processes /li /ulpTechnical Knowledge /pulliSolid grasp of security monitoring and incident response principles /liliKnowledge of vulnerability management processes and risk-based remediation prioritization
- combining CVSS scores with asset criticality, exploitability context, and compensating controls /liliHands-on experience with the Microsoft Defender XDR suite: Defender for Endpoint (EDR), Defender for Office 365 / Exchange Online Protection, Defender for Identity /liliExposure to Microsoft Sentinel (SIEM/SOAR) or an equivalent platform
- deployment experience is a strong asset /liliGrasp of Entra ID governance: Conditional Access, Identity Protection, Privileged Identity Management (PIM) /liliWorking knowledge of Microsoft Intune (MDM, endpoint compliance policies) and Microsoft Purview (DLP, compliance) /liliCommand of network security fundamentals: firewall management (Palo Alto / FortiGate), log forwarding, network segmentation principles /liliAwareness of common frameworks and industry best practices (ISO/IEC 27001, NIST CSF, CIS Controls) /li /ulpPersonal Skills /pulliStrong analytical and problem-solving mindset /liliOrganized, structured, and detail-oriented /liliAble to work independently while collaborating effectively across teams /liliCurious, with a drive to keep learning new technologies and trends /liliProactive, with a continuous-improvement mindset /liliStrong communication and coordination abilities /liliTeam player with a practical, solution-or
- including built-in analytics and automation features
- to enhance detection quality and efficiency /liliKeep documentation and procedures up to date /liliOffer guidance to IT teams and project stakeholders /liliPartner with Infrastructure and Workplace teams to strengthen overall posture /liliChampion best practices and support awareness initiatives /liliKeep up with emerging threats, vulnerabilities and industry trends /li /ulpbProfile /b /ppExperience /pulliMinimum 3 years in cybersecurity, security operations, vulnerability management, or a related technical security role /liliBackground in security monitoring, incident handling, or vulnerability management /liliPractical exposure to security tools and operational processes /li /ulpTechnical Knowledge /pulliSolid grasp of security monitoring and incident response principles /liliKnowledge of vulnerability management processes and risk-based remediation prioritization
- combining CVSS scores with asset criticality, exploitability context, and compensating controls /liliHands-on experience with the Microsoft Defender XDR suite: Defender for Endpoint (EDR), Defender for Office 365 / Exchange Online Protection, Defender for Identity /liliExposure to Microsoft Sentinel (SIEM/SOAR) or an equivalent platform
- deployment experience is a strong asset /liliGrasp of Entra ID governance: Conditional Access, Identity Protection, Privileged Identity Management (PIM) /liliWorking knowledge of Microsoft Intune (MDM, endpoint compliance policies) and Microsoft Purview (DLP, compliance) /liliCommand of network security fundamentals: firewall management (Palo Alto / FortiGate), log forwarding, network segmentation principles /liliAwareness of common frameworks and industry best practices (ISO/IEC 27001, NIST CSF, CIS Controls) /li /ulpPersonal Skills /pulliStrong analytical and problem-solving mindset /liliOrganized, structured, and detail-oriented /liliAble to work independently while collaborating effectively across teams /liliCurious, with a drive to keep learning new technologies and trends /liliProactive, with a continuous-improvement mindset /liliStrong communication and coordination abilities /liliTeam player with a practical, solution-or