Security Risk and Compliance Analyst
il y a 16 heures
The mission of the Security Management section within Proximus Ada is to protect Proximus SA, its affiliates, customers, business, operations, and its reputation against external and internal cybersecurity threats. We oversee all cyber security matters across the company and its affiliates, ensuring that necessary security controls are implemented on IT and telecommunication systems, in accordance with the related risks and in line with security regulations, standards, and policies.
We are seeking a motivated and enthusiastic colleague to join our Vendor Risk Management team. If you are well-versed in cybersecurity, have a knack for adhering to rules and an interest in legal matters, can bring a creative flair that enhances team efficiency, and a can-do attitude in a high paced work environment, you are the perfect fit.
**Key responsibilities**
- Conduct comprehensive audits of third-party information security policies, procedures, and controls.
- Participate in contract negotiations concerning the third-party information security annex.
- Lead online and in-person meetings with third parties.
- Analyse submitted security questionnaires and documentation to identify and assess potential vulnerabilities and risks. Raise issues promptly and provide mitigation options based on security issues identified.
- Prepare detailed risk assessment reports for senior leadership, providing insights and recommendations for third-party risk reduction.
- Contribute to the continuous improvement of the team's processes based on experience in third-party risk assessment, industry best practices, and internal policies and frameworks.
- Produce clear and structured documentation of processes, meetings, and other relevant activities.
- Initiate and lead improvement projects aimed at enhancing the efficiency and effectiveness of the Vendor Risk Management team.
- Collaborate with other sections within the company to ensure alignment of processes.
- Stay up-to-date with emerging technologies, threats, vulnerabilities, and industry best practices.
**Qualifications**
- 2+ years’ experience in third/party risk management, information security risk management, compliance, or a background in cybersecurity.
- Familiarity with information security processes, including risk assessment, vulnerability management, and incident response.
- Understanding of regulatory requirements (e.g. GDPR, NIS2, DORA)
- Proficiency in risk management, cybersecurity control frameworks and standards (e.g. NIST RMF, ISO 27001, ISO 28000, CyFun, CCM)
- Excellent analytical and problem-solving skills, with the ability to interpret complex risk data and make informed decisions.
- Attention to detail and proven ability to initiate and drive projects.
- Experience in aligning team processes with broader organizational goals.
- A collaborative mindset and a positive attitude towards working with a diverse team.
- Relevant certifications such as CISA, CISSP, CISM, ISO/IEC 27001Lead Implementer/Auditor, ISO/IEC 28000 Lead Implementer/Auditor, Security+.
- Capable of conducting professional business communications and effectively handling information security aspects of contract negotiations.
- Strong written and verbal communication skills in **English.** Capability to articulate complex risk concepts to technical and non-technical audiences.
- Relevant certifications such as CISA, CISSP, CISM, ISO/IEC 27001Lead Implementer/Auditor, ISO/IEC 28000 Lead Implementer/Auditor, Security+.
- Advanced knowledge of Microsoft Office Suite (Word, Excel, PowerPoint, Outlook) to create professional documentation, presentations, dashboards, prepare statistics calculations, and optimize workflows.
**Preferred**additional skills**
- Knowledge of emerging technologies and their associated risks, especially in AI and cloud computing.
- Experience of using a Governance, Risk, and Compliance (GRC) tool
- Experience in the telecommunication domain.
- Proficiency in French or Dutch.
-
Is Security Risk Expert
il y a 16 heures
Bruxelles Ixelles, Belgique ATS4IT Temps pleinFounded in 2020 in Belgium, ATS4IT is part of the Moongy Group, established to strengthen agap2IT’s presence in Europe. Since 2021 we expanded further with the opening of our Danish branch in Copenhagen, and our Spanish brand in Madrid, reinforcing our commitment to being a key player in the European technology landscape. Proximity, transparency, and...
-
Legal Risk and Compliance Officer
il y a 2 semaines
Bruxelles, Belgique Robert Half Temps pleinRobert Half Talent Solutions is looking for a Compliance Officer (m/f/x) for one of its clients, a key player in the insurance sector. To provide peace of mind and support to their clients, thanks to a passionate team who find deep meaning in their work. As a Compliance Officer (m/f/x), you will join the Compliance Central Office. Under the supervision of...
-
Security Operation Analyst
il y a 2 semaines
Bruxelles, Belgique Stott and May Temps pleinFirst-Line SOC Analyst (Freelance) Contract Type: Freelance / Independent Contractor Start: ASAP We are looking for a hands-on First-Line SOC Analyst to join our cybersecurity operations in Brussels. You will be working in a dynamic SOC environment where ~50–60% of your time will be dedicated to first-level alert monitoring, analysis, and...
-
Analyst, Risk
il y a 6 jours
Bruxelles, Belgique Hunter Bond Temps pleinMy leading Financial Services client are currently looking for a KYC Onboarding Analyst to help continue their exceptional growth journey. You'll perform the entire onboarding process to ensure all their KYC requirements are completed, making sure you comply with the relevant legislative and regulatory standards. This is a great opportunity to work in a...
-
Security Operations Center Analyst
il y a 2 semaines
Bruxelles, Belgique Stott and May Temps pleinFirst-Line SOC Analyst (Freelance) Location: On-site — Brussels Contract Type: Freelance / Independent Contractor Eligibility: EU Nationality required (client access restriction) Start: ASAP Role Overview We are looking for a hands-on First-Line SOC Analyst to join our cybersecurity operations in Brussels. You will be working in a dynamic SOC environment...
-
Application Security Analyst
il y a 2 semaines
Bruxelles, Belgique InterEx Group Temps pleinUnique Security Analyst/ Belgium / Cybersecurity We are working exclusively with a top partner in cyber security who is currently expanding their security presence in Belgium, due to their rapid growth. They are looking to build a strong team of security application analysts to revolutionize their security team. Unique Security Analyst/ Belgium /...
-
Security Operation Analyst
il y a 20 heures
Bruxelles, Belgique Enzo Tech Group Temps pleinJob Opportunity: SOC Tier 2 Analyst (Temporary – Night Shift) Schedule: Night shifts, 12 hours (19:00–07:00) We are urgently looking for an entry-level SOC Tier 2 Analyst to join our Cyber Defense team on a temporary basis. This role is critical to supporting our 24/7 security operations and ensuring continuous monitoring during night hours. The...
-
Information Security
il y a 2 semaines
Bruxelles, Belgique Sander Temps pleinDo you thrive on designing and implementing IT security programs from the ground up while taking care on several projects? Step into a key leadership role as IT Security Manager and spearhead the development of a brand-new cybersecurity function within an international company. IT Security Manager – Role Overview Lead the establishment and growth...
-
Information Security Consultant
il y a 2 semaines
Bruxelles, Belgique Koda Staff Temps pleinWe're looking for an Information Security Consultant who can help strengthen our clients' security practices and guide teams in protecting our systems and data. In this role, you'll work closely with different parts of the organisation to identify risks, recommend improvements, and support the implementation of effective security measures. Key...
-
System Security Engineer
il y a 6 jours
Bruxelles, Belgique Innova Solutions Temps pleinAs a Systems Security Engineer, you will play a key role in implementing system-level security controls across PMH's Windows and Linux environments, ensuring resilience and compliance without disrupting business continuity. Your Role: • Implement and maintain system-level security controls for Windows and Linux platforms. • Perform continuous...