Third party Risk manager
il y a 1 jour
Here is the detailed JDRole: Third Party Risk ManagerLanguages: English, French or DutchWork mode: HybridDescription:The Third-Party Risk Manager (TPRM) is responsible for setting up, managing, overseeing and mitigating the information security risks associated with third-party vendors, suppliers, service providers, and contractors, and this in alignment with the NIS2 Directive. This role ensures that external partners meet Client security standards and policies, comply with NIS2 obligations, and do not introduce unacceptable risks to business operations.The manager will build and maintain strong relationships with third parties, facilitate risk assessments, and collaborate with internal stakeholders to enhance business resilience against information security threats.We are only looking for candidates who have actually performed in this role as described here.Key responsibilities:Third party supplier security governance: Define and build the necessary governance and processes for managing third party supplier information security risks. Evaluate and classify third parties based on criticality and risk to essential or services. Assist the CISO and Procurement in the development and maintenance of security policies and procedures for supplier security.NIS2 Compliance: Ensure all third-party relationships adhere to the cybersecurity requirements set out in the NIS2 Directive, including risk management, incident reporting, and supply chain security.Third-Party Risk Assessment & Management:Conduct thorough security due diligence and risk assessments of existing and prospective third-party vendors, focusing on their ability to meet NIS2 standards.Maintain an up-to-date risk register and treatment plans of third parties and their risk status as required by NIS2.Establish risk scoring methodologies and criteria for vendor categorisation.Establish and monitor security performance metrics for key vendors.Manage the complete third-party risk lifecycle from onboarding to contract termination.Contract and Procurement support:Collaborate with Procurement and CISO to ensure contracts with third parties include robust cybersecurity clauses, clear incident notification requirements, and audit rights as mandated by NIS2.Review and approve cybersecurity clauses in third-party agreementsEnsure data protection and privacy requirements are incorporated into vendor contractsSupport contract negotiations on security terms and risk allocationManage security-related service level agreements and penaltie Supply Chain Security: Develop and maintain processes to identify, monitor, and mitigate risks in the supply chain cyber resilience, ensuring that vendors implement appropriate technical and organizational measures. This includes continuous monitoring of vendor dependencies.Monitoring & Reporting: Oversee the continuous monitoring of third-party compliance, including KPIs, SLAs, regular reviews, audits, and follow-up on remediation actions:Develop and maintain third-party risk dashboards and reporting mechanismsPrepare regular reports for Management, Risk Office and Procurement on third-party risk posture, compliance status, and remediation progress, highlighting any NIS2-related issues.Track and report on risk mitigation activities and effectivenessIncident Management and Notification: Coordinate with third parties to ensure timely reporting and effective management of security incidents or breach notifications, in line with NIS2 incident notification timelines.Stakeholder Engagement: Liaise with internal teams (ICT, Risk Procurement) and external partners to promote a shared understanding of NIS2 requirements and best practices in third-party risk management. Facilitate regular security review meetings with critical suppliers.Awareness & Training: Oversee the development and delivery of training and awareness programs for third parties on NIS2 obligations and supply chain security, as well as awareness around Client's relevant information security policies.
-
CISO
il y a 3 semaines
belgium, belgique WhatJobs Temps pleinMission Context: Axepta BNP Paribas is seeking an experienced and hands-on Chief Information Security Officer (CISO) to lead the cybersecurity and IT risk management efforts within our payment institution. The successful candidate will bring deep expertise in cybersecurity principles, risk management practices, and regulatory compliance to ensure the...
-
Security Risk Consultant
il y a 1 jour
Belgium Next Ventures Temps pleinOne of our sector leading customers within the Brussels area is currently looking for a Security Risk Consultant for a long term freelance project. Security Risk Consultant (Mid–Senior)Location: Brussels area (Hybrid – 2 days on-site per week)Languages: French & EnglishStart: ASAPCompetitive market rateLong-term projectImmediate start, competitive rates,...
-
Senior IOS Developer
il y a 3 jours
Belgium Koda Staff Temps pleinYour Responsibilities:Develop and maintain iOS applications using Swift and XcodeImplement UI/UX designs and integrate APIsDebug, test, and optimize app performanceCollaborate remotely with stakeholders and provide regular progress updatesYour Profile:Proven experience building iOS apps (Swift, UIKit/SwiftUI)Familiarity with RESTful APIs and third-party...
-
Electrical-Instrumentation and Automation Engineer
il y a 1 jour
Belgium Business and Engineering Solutions (BES) Temps pleinB.E.S. (Business & Engineering Solutions) is growing and thus welcoming a new Electrical-Automation and Instrumentation Engineer in our Energy team.As an Electrical-Automation and Instrumentation Engineer at B.E.S., you will enjoy a collaborative environment where you will work closely with others in an organization that encourages and values collaboration,...
-
IT support specialist
il y a 3 jours
Belgium iPify Temps pleinWe are seeking an experienced IT Support Specialist to manage comprehensive IT operations for our Brussels office part-time. This role encompasses end-user support, system administration, vendor management, and cybersecurity responsibilities.Required Skills & ExperienceCore Technical CompetenciesEnd-user Support: Windows/Mac workstation setup, configuration,...
-
Business Development Manager
il y a 1 jour
Belgium Cross-Border Commerce Europe Temps pleinCROSS-BORDER COMMERCE EUROPE MISSIONCross-Border Commerce Europe is the EU Retail business accelerator providing valuable information and partner connections for companies that want to start or scale their cross- border e-trading within, from and to Europe. This positioning is unique on the EU market.Cross-Border Commerce Europe, CBCommerce.eu, has become...
-
BMC Helix specialist
il y a 1 jour
Belgium ITSM Solutions International Temps pleinWe are seeking an experienced BMC Helix Specialist / Consultant / Developer with proven, hands-on expertise working with the latest BMC Helix platforms and tools. This role is ideal for a highly skilled professional who can quickly integrate into an existing team and provide the specialist knowledge required to support, enhance, and integrate a global BMC...
-
Discipline Electrical Manager
il y a 1 jour
Belgium Arcadis Temps pleinReporting to the Engineering Manager, the Department / Discipline Manager is a key member of our team who will provide high level specialist Management expertise in your specialist Discipline and will be an integral part of the overall delivery of significant capital value projects for Arcadis Engineering and our Clients. The post-holder will be responsible...
-
Project Management Consultant
il y a 2 semaines
brussels metropolitan area, belgium Intys Temps pleinPosition Offer: Project ManagerWe are seeking a highly motivated and skilled Project Manager, capable of handling various project management tasks including planning, execution, monitoring, and closing projects. This position requires a dynamic professional who thrives in a fast-paced environment and is committed to contributing to our company's success by...
-
Project Manager Pega
il y a 1 jour
Belgium Innova Solutions Temps pleinJob Title: Project Manager PegaJob Type: ContractWho can apply: AnyoneLocation: Brussels, BelgiumLanguage: English Work regime: Hybrid (2-3 days/week onsite)Keywords: Project Manager, Pega, CLM-KYCSectorOur client stands as a globally renowned leader in financial messaging, spearheading safe and secure networks that enable seamless communication and...