Cyber Security Specialist
Il y a 6 heures
Laeken, Brussels, Belgique
OneSource Consulting
Temps plein
Gratuit avec email ou Google
Enregistrez cette offre et organisez votre recherche
Créez un compte gratuit pour enregistrer des offres d'emploi, créer des alertes et revenir à cette liste depuis votre tableau de bord.
Gratuit avec email ou Google
JOB TITLE: SENIOR CYBERSECURITY ARCHITECT
LOCATION:
1000 BRUSSELS, BELGIUM LANGUAGES: DUTCH,FRENCH,ENGLISH WORK MODE: 100%FULLTIME (HYBRID 2
- 3 DAYS ONSITE PER WEEK) CONTRACT DURATION: 04/01/2027
- 31/12/2027+POSSIBILE OF EXTENSION
JOB DESCRIPTION
Senior Cybersecurity Architect Expert Profile | External release version Design, evolve and challenge Client's cybersecurity architecture in order to translate security, risk and compliance requirements into robust, realistic and maintainable technical solutions. The role is carried out in direct collaboration with Client's IT teams, in a logic of advice, co-construction, skills transfer and customer orientation. Any proposed change is subject to prior validation by Client before its implementation. As a Senior Cybersecurity Architect, you have a cross-functional role between security governance, IT architecture and technical teams. You will analyse the existing situation, define target architectures, assess risks and impacts, compare possible options and make recommendations that can be applied in a complex and highly interconnected IT environment. You apply the principles of Security by Design, Security by Default, Zero Trust, least privilege, defense in depth, segmentation and resilience. You will ensure a balance between security, availability, business needs, maintainability and operational constraints. Role Positioning The position is an architectural and consulting role. It does not replace the CISO, Client's operational teams, or specialized technical experts working on particular technologies or products The position is an architectural and consulting role. It does not replace the CISO, Fedasil's operational teams, or specialized technical experts working on particular technologies or products.
Actor CISO / Security Governance Defines the strategy, policies, risk framework, and security and compliance requirements.
Cybersecurity Architect Translates these requirements into architecture principles, target architectures, technical standards and recommendations.
Technical experts / operational teams Provide product expertise and work with the relevant teams to ensure the technical implementation of approved changes.
Client Maintains decision-making, prioritization, and validation of architectures and changes before implementation.
Profile and experience Minimum 10 years of experience in complex enterprise IT environments, including at least 7 years in the field of cybersecurity and at least 5 years of demonstrable experience in a Security Architect or Cybersecurity Architect role. Architecture experience should be directly related to the design, review, and evolution of complex cybersecurity architectures. Experience limited to administration, operations, SOC, safety engineering, or product expertise cannot be considered equivalent to architectural experience. Proven experience in designing, reviewing and evolving security architectures covering several domains: network and connectivity, data center, identity and access, perimeter security, remote access, cloud/hybrid and security monitoring. Ability to produce and maintain high-level and detailed architectures, flow diagrams, communication matrices, segmentation principles, architecture decisions, and security requirements. Excellent understanding of enterprise security technologies and ability to reason independently of OEMs and suppliers. Good knowledge of identity and access architectures: IAM, MFA, privileged accounts, PKI, certificates, strong authentication and PAM principles. Good understanding of network architectures, segmentation, routing, high availability, interconnects, remote access and flow control mechanisms. Good understanding of systems, virtualization, datacenter, cloud/hybrid environments as well as continuity and resilience issues. Experience with logging, SIEM/SOC architectures and security monitoring: collection, correlation, detection, retention and traceability. Ability to perform technical risk analyses, challenge supplier proposals and make proportionate, actionable and documented recommendations. Ability to translate regulatory, governance and risk requirements into concrete controls and architecture decisions.
Standards, standards and certifications Mastery of the requirements and principles of ISO/IEC 27001:2022 and ability to translate them into architecture requirements and technical controls. Good command of ISO/IEC 27002:2022 and ISO/IEC 27005:2022, including the selection of security measures and risk management related to architecture choices. Good knowledge of NIS2, GDPR and the main cybersecurity frameworks applicable to a public or regulated environment. Mastery of the CyberFundamentals (CyFun®) Framework of the Centre for Cyber Security Belgium (CCB), in its current version, its assurance levels and associated requirements, with the ability to translate them into architecture requirements and technical con
LOCATION:
1000 BRUSSELS, BELGIUM LANGUAGES: DUTCH,FRENCH,ENGLISH WORK MODE: 100%FULLTIME (HYBRID 2
- 3 DAYS ONSITE PER WEEK) CONTRACT DURATION: 04/01/2027
- 31/12/2027+POSSIBILE OF EXTENSION
JOB DESCRIPTION
Senior Cybersecurity Architect Expert Profile | External release version Design, evolve and challenge Client's cybersecurity architecture in order to translate security, risk and compliance requirements into robust, realistic and maintainable technical solutions. The role is carried out in direct collaboration with Client's IT teams, in a logic of advice, co-construction, skills transfer and customer orientation. Any proposed change is subject to prior validation by Client before its implementation. As a Senior Cybersecurity Architect, you have a cross-functional role between security governance, IT architecture and technical teams. You will analyse the existing situation, define target architectures, assess risks and impacts, compare possible options and make recommendations that can be applied in a complex and highly interconnected IT environment. You apply the principles of Security by Design, Security by Default, Zero Trust, least privilege, defense in depth, segmentation and resilience. You will ensure a balance between security, availability, business needs, maintainability and operational constraints. Role Positioning The position is an architectural and consulting role. It does not replace the CISO, Client's operational teams, or specialized technical experts working on particular technologies or products The position is an architectural and consulting role. It does not replace the CISO, Fedasil's operational teams, or specialized technical experts working on particular technologies or products.
Actor CISO / Security Governance Defines the strategy, policies, risk framework, and security and compliance requirements.
Cybersecurity Architect Translates these requirements into architecture principles, target architectures, technical standards and recommendations.
Technical experts / operational teams Provide product expertise and work with the relevant teams to ensure the technical implementation of approved changes.
Client Maintains decision-making, prioritization, and validation of architectures and changes before implementation.
Profile and experience Minimum 10 years of experience in complex enterprise IT environments, including at least 7 years in the field of cybersecurity and at least 5 years of demonstrable experience in a Security Architect or Cybersecurity Architect role. Architecture experience should be directly related to the design, review, and evolution of complex cybersecurity architectures. Experience limited to administration, operations, SOC, safety engineering, or product expertise cannot be considered equivalent to architectural experience. Proven experience in designing, reviewing and evolving security architectures covering several domains: network and connectivity, data center, identity and access, perimeter security, remote access, cloud/hybrid and security monitoring. Ability to produce and maintain high-level and detailed architectures, flow diagrams, communication matrices, segmentation principles, architecture decisions, and security requirements. Excellent understanding of enterprise security technologies and ability to reason independently of OEMs and suppliers. Good knowledge of identity and access architectures: IAM, MFA, privileged accounts, PKI, certificates, strong authentication and PAM principles. Good understanding of network architectures, segmentation, routing, high availability, interconnects, remote access and flow control mechanisms. Good understanding of systems, virtualization, datacenter, cloud/hybrid environments as well as continuity and resilience issues. Experience with logging, SIEM/SOC architectures and security monitoring: collection, correlation, detection, retention and traceability. Ability to perform technical risk analyses, challenge supplier proposals and make proportionate, actionable and documented recommendations. Ability to translate regulatory, governance and risk requirements into concrete controls and architecture decisions.
Standards, standards and certifications Mastery of the requirements and principles of ISO/IEC 27001:2022 and ability to translate them into architecture requirements and technical controls. Good command of ISO/IEC 27002:2022 and ISO/IEC 27005:2022, including the selection of security measures and risk management related to architecture choices. Good knowledge of NIS2, GDPR and the main cybersecurity frameworks applicable to a public or regulated environment. Mastery of the CyberFundamentals (CyFun®) Framework of the Centre for Cyber Security Belgium (CCB), in its current version, its assurance levels and associated requirements, with the ability to translate them into architecture requirements and technical con