Information Security Management Specialist
il y a 10 heures
**Location**:
Brussels, Belgium
**Security Clearance**:
EU Restricted
**Introduction**:
Information Security Management Service aims to ensure the confidentiality, integrity, and availability of the Contracting EU Institutions’ (EU-Is') information, data, and ICT services. This service relies on the identification of the Contracting EU-I's assets (including information assets), followed by the development, documentation, and implementation of policies and procedures for protecting these assets. It shall concentrate on the prevention aspect also by capitalizing on the lessons and recommendations learned from passed incidents and recurring security assessments.
Based on the overarching cyber defence and information security strategies, this service involves the design and definition of a sound corporate information security policy framework and is responsible for the implementation of the underlying information security management system. The Information Security Management Specialist will be expected to manage security deployment across all information systems, to ensure the provision of information availability, integrity, and confidentiality, and will be recognized as an ICT security policy expert by the internal and external stakeholders.
**Skills, knowledge, experience required**:
- Minimum 3 years’ experience in:
- Definition/design and implementation of an information security management system (ISMS);
- Writing:
- Security policies;
- Security operating procedures;
- Identity and access management;
- Minimum 5 years’ experience in:
- Risk assessment;
- Security audit/assessment;
- At least 1 certification among:
- CISSP (Certified Information Systems Security Professional);
- CISA (Certified Information Systems Auditor);
- CISM (Certified Information Security Manager);
- GSNA (GIAC Certified Systems and Network Auditor);
- GCCC (GIAC Certified Critical Controls);
- CAP ((ISC)2 Certified Authorization Professional);
- CRISC (ISACA Certified in Risk and Information Systems Control);
- Minimum 3 years’ experience with at least 1 of the following risk assessment methodologies:
- EBIOS;
- CRAMM;
- PILAR;
- Minimum 5 years’ experience with ISO 2700X standards;
- Minimum 8 years’ experience in:
- Networking (TCP/IP, SNMP, DNS, Syslog-ng, etc.);
- ISO 27001 implementation and auditing;
- Cryptography;
- Public key infrastructure (PKI) and hardware security module (HSM) operations;
- Minimum 3 years’ experience with:
- MS Windows operating systems;
- Linux operating systems (Red Hat, Debian).
**Desirable**:
- At least 1 certification among:
- CISSP-ISSMP ((ISC)2 Certified Information Systems Security Management Professional);
- GIAC Certified ISO-27000 Specialist;
- Minimum 5 years’ experience with:
- NIST Special Publication (SP) 800 series;
- CyberArk Enterprise Password Vault (EPV);
- CyberArk Privileged Session Manager (PSM);
- RSA Identity Management and Governance (IMG);
- SailPoint IdentityIQ;
- Minimum 3 years’ experience with:
- Storage (NetApp);
- Networking (Cisco IOS);
- VMware vSphere and ESXi.
**Duties/role**:
- Contributing to development of the Contracting EU-I's cyber defence and information security strategies;
- Drafting information security policies, standards, and guidelines;
- Defining, designing, and maintaining a sound information security management system (ISMS);
- Managing security processes and ensuring the production of ISMS records required to get or maintain a certification;
- Managing the procedures to classify information and assets;
- Performing risks assessments and analysis to identify threats, categorise the assets, and rate system vulnerabilities so that they can implement effective controls;
- Contributing to integration of IT security during a complete project lifecycle for development of IT services and systems, products, and solutions (security by design model);
- Drafting security plans and security operating procedures;
- Integrating security technical controls into systems, solutions, and services;
- Managing information security risks and system certification and accreditation;
- Identifying the threats and assessing effectiveness of the existing controls to face those threats;
- Informing and raising awareness;
- Ensuring promotion of the IT security charter;
- Inspecting and ensuring that the principles and rules for information security are applied;
- Providing guidance on information security;
- Elaborating plans and preparing and documenting releases and maintenance activities (such as patches and software upgrades) which are required to keep a system running at an optimised security condition;
- Assessing compliance of the deliverables related to identity and access management for projects and activities, which shall take place in the context of the operational security acceptance and security testing processes;
- Assessing, proposing, and implementing efficiency gains in the identity and access management processes;
- Man
-
Information Technology Security Specialist
il y a 4 jours
Brussels, Belgique beBeeCybersecurity Temps pleinJob Title: CyberSecurity Analyst We are seeking a highly skilled CyberSecurity Analyst to join our team. The successful candidate will be responsible for ensuring the security of our infrastructure and applications through the implementation of security services, risk assessments, and requirements setting. Responsibilities: Define and submit security...
-
Workplace Security Specialist
il y a 2 semaines
Brussels, Belgique HNM Solutions Temps plein**Job ID: HNMJD3426**: **Role: Workplace security specialist (WSS)** **Location:Brussels, Belgium** **Language: English** **Description of the task**: - The Following tasks will be performed by an external service provider: - Conducting Security Risk Assessments using the GOVSEC platform and the first version of Excel file supporting ITSRM (basic tool) -...
-
Information Security
il y a 6 jours
Brussels, Belgique Talencia Consulting Temps pleinInformation Security & risk officer (FR/NL) - brussels - permanentOur client is a leading Belgian cooperative in the pharmaceutical sector, known for its strong local roots and commitment to improving healthcare accessibility.The company combines technological innovation with a human approach to deliver reliable, secure, and accessible healthcare...
-
Information Security Officer
il y a 2 semaines
Brussels, Belgique Brainbridge Temps plein**Project description**: Pour notre client on est à la recherche d'un Informations Security Officer. Le département DBS (Digital Business Solutions) a pour objectif de soutenir l’ensemble des activités « métier » de notre client. Il veille à doter notre client de processus efficaces et d’un système d’information performant pour soutenir ces...
-
Information Security Officer
il y a 11 heures
Brussels, Belgique DIGI Belgium Temps pleinDIGI Belgium welcomes you!We have set foot in the telecom landscape with one clear mission: to disrupt and redefine. With bold ambitions and an unstoppable drive for progress, we are forging a path that is fully customer-centric and rooted in innovation. Get ready for a telecom revolution, because DIGI BE did not come to simply participate — we are here to...
-
Information Security Officer
il y a 1 semaine
Brussels, Belgique twentyAI Temps pleinAbout the OrganisationA global professional services leader with 30 offices across 20+ countries. The firm is built on exceptional talent and a culture that prioritises collaboration, innovation, agility, and accountability. It's a high-performing environment that stays grounded in fairness, transparency, and genuine support. Diversity and inclusion sit at...
-
Information Security Officer
il y a 4 semaines
Brussels, Belgique recurv Temps pleinInformation Security Officer (payroll)Are you ready to take ownership of information security within an organization that's reshaping its digital future? Our client, a respected player in the financial services sector, is seeking an Information Security Officer who can translate strategy into tangible action and ensure that security remains a cornerstone of...
-
Information Security Officer
il y a 10 heures
Brussels, Belgique MLOZ Temps plein**Tâches et responsabilités**: Vous êtes prêt à devenir notre nouveau Information Security Engineer ? Dans ce rôle, vous aidez à protéger l’organisation et les collaborateurs face aux risques informatiques et contribuez à la réalisation et l’implémentation d’une roadmap de sécurité dans un environnement varié, complexe et en constante...
-
Chief Information Security Officer
il y a 1 semaine
Brussels, Belgique beBeeCybersecurity Temps pleinIncident Response Specialist We are seeking an Incident Response Specialist to contribute to our Computer Security Incident Response Team (CSIRT). As a key member of this team, you will play a vital role in detecting, analyzing, and responding to security incidents that impact our clients.The ideal candidate is a hands-on cybersecurity professional with a...
-
Security Risk Manager
il y a 10 heures
Brussels, Belgique EUROPEAN DYNAMICS Temps plein**Your tasks**: - Provision of security studies associated with information system projects; - Security assessments of information systems; - Security gap analysis and management of security tests; - Evaluations of security products and tools for information systems; - Assistance in the implementation of security policies; - Security specifications for...