LeHibou - Information Security Engineer
Il y a 2 heures
Liège, Wallonia, Belgique
LeHibou
Temps plein
Gratuit avec email ou Google
Enregistrez cette offre et organisez votre recherche
Créez un compte gratuit pour enregistrer des offres d'emploi, créer des alertes et revenir à cette liste depuis votre tableau de bord.
Gratuit avec email ou Google
En continuant, vous acceptez nos Conditions d’utilisation & Politique de confidentialité.
An international technology company operating in the media sector is looking for an Information Security Engineer to join the IT Security team within the corporate IT department. The role focuses on operational cybersecurity activities, vulnerability management, security monitoring, incident response support, security assessments, and continuous improvement of security controls.br/ This is a hands-on role combining technical expertise, operational follow-up, coordination, and continuous improvement. The position is part of a structured cybersecurity and compliance programme in the context of NIS2 obligations under Belgian law and the implementation of ISO/IEC 27001:2022 certification, with a target of April 2027. The consultant/employee will contribute directly to control implementation, evidence production, and audit readiness across the corporate IT perimeter.br/ br/ h2Practical information /h2 ul liLocation: Seraing (Liège), Belgium /li liContract type: open to freelance consultant or permanent employee, depending on profile /li liStart date: as soon as possible /li liRemote work: hybrid model with 2 days per week remote and 3 days on site /li liTravel: no travel required /li liReporting line: Cybersec Operations Manager /li liWorking language: French for day-to-day team interactions, with professional English required for documentation, tools, and international stakeholders /li liTeam context: the IT Security team is being structured and scaled, in a build environment rather than a steady-state operation /li /ul br/ h2Main responsibilities /h2 br/ Security operations monitoring:br/ ul liMonitor and investigate security alerts across multiple security platforms /li liParticipate in incident response activities and support the coordination of security investigations /li liImprove and tune detection capabilities and monitoring use cases /li liSupport the development and maintenance of operational security procedures and playbooks /li liPerform operational security reviews and follow-up activities /li /ul br/ Vulnerability exposure management:br/ ul liCoordinate vulnerability scanning activities and ensure findings are reviewed and prioritized /li liFollow up remediation actions with infrastructure, platform, application, and support teams /li liTrack remediation progress and escalate overdue actions when required /li liCoordinate external penetration tests and security assessments /li liEnsure findings from assessments and pentests are documented, tracked, and remediated /li /ul br/ Security assessments risk management:br/ ul liPerform security reviews of applications, services, and technical solutions /li liContribute to risk assessments for new projects, technologies, and providers /li liReview security configurations and identify improvement opportunities /li liSupport the identification and management of security risks across the IT environment /li /ul br/ Security governance reporting:br/ ul liMaintain and monitor operational security KPIs and dashboards /li liSupport reporting related to vulnerabilities, incidents, security posture, and remediation efforts /li liParticipate in periodic reviews of user access, privileged accounts, and security controls /li liContribute to compliance activities and implementation of security requirements related to ISO/IEC 27001:2022 and NIS2 /li liProduce and maintain auditable evidence of security control operations, including logs, reports, review records, and remediation closure evidence /li /ul br/ Security improvement automation:br/ ul liIdentify opportunities to improve security controls and operational processes /li liContribute to automation initiatives to reduce manual activities /li liLeverage available security tooling capabilities, including built-in analytics and automation features, to improve detection quality and reduce manual effort /li liMaintain security documentation, processes, and operational procedures /li /ul br/ Collaboration Security advisory:br/ ul liProvide security guidance and support to IT teams and project stakeholders /li liWork closely with Infrastructure and Workplace teams to improve overall security posture /li liPromote security best practices and support awareness initiatives /li liStay informed about emerging threats, vulnerabilities, and cybersecurity trends /li /ul br/ h2Profile required /h2 br/
Experience:
br/ ul liMinimum 3 years of experience in cybersecurity, security operations, vulnerability management, or a related technical security role /li liExperience in security monitoring, incident handling, or vulnerability management /li liExperience working with security tools and operational security processes /li /ul br/ Technical knowledge:br/ ul liUnderstanding of security monitoring and incident response principles /li liKnowledge of vulnerability management processes and risk-based remed
Experience:
br/ ul liMinimum 3 years of experience in cybersecurity, security operations, vulnerability management, or a related technical security role /li liExperience in security monitoring, incident handling, or vulnerability management /li liExperience working with security tools and operational security processes /li /ul br/ Technical knowledge:br/ ul liUnderstanding of security monitoring and incident response principles /li liKnowledge of vulnerability management processes and risk-based remed