Information Technology Risk Manager

Il y a 1 jour

Brussels, Brussels-Capital, Belgique BIG WATER CONSULTING (BWC) Temps plein
About the job BWC is looking for an IT & Cyber Third-Party Risk Assessor for its client in Brussels, Belgium. It's a full-time permanent contract with BWC. Freelance can also apply.

Job Type
Hybrid :
- 50% Onsite + 50% Teleworking in Belgium. Roles &

Requirements:
• Language: Fluent in French, Dutch and English.
•

Experience:
10+ years of professional experience in IT & Cyber Risk Management, Information Security, or Third-Party Risk Management.
•

Education:
Master’s degree in IT, Cybersecurity, Risk Management, or equivalent professional experience.
• Strong experience in Third-Party IT & Cyber Risk Assessments, supplier/vendor due diligence, and IT security evaluations.
• Hands-on experience assessing cloud-based solutions, including SaaS, IaaS, PaaS, HSP, and AWS environments.
• Strong knowledge of IT security controls, vulnerability management, penetration testing, and security audits.
• Good knowledge of security and risk frameworks including ISO 27001, SOC 2, NIST, and OWASP.
• Experience reviewing IT audit reports, security assessments, compliance attestations, remediation plans, and risk findings.
• Experience reviewing, challenging, and negotiating IT & Cybersecurity clauses in third-party contracts.
• Experience coordinating and following up on IT & Cyber onsite audits and supplier remediation activities.
• Strong understanding of IT Risk Management, Information Security, Operational Risk, and Third-Party Risk Management.
• Experience with process design and Business Analysis, particularly within IT and Security Risk Management.
• Experience developing ICT risk dashboards, management reports, risk assessments, and presentations for senior stakeholders.
• Experience collaborating with Cyber Defense, Security Architecture, Business Continuity, Data Protection, Procurement, Legal, and Business teams.
• Experience delivering presentations, training, mentoring, and coaching to stakeholders.
• Knowledge of GRC tools, preferably ServiceNow, is an additional asset.
• Experience in the Financial Services / Banking sector or large corporate environments is highly preferred.
• Strong analytical, synthesis, communication, influencing, negotiation, and stakeholder management skills.
• Ability to work autonomously, manage multiple priorities, and operate effectively in a dynamic and multicultural environment.
• Security certifications such as CISSP, CISM, CIPP, or CCSK are an additional asset. Interested candidates, please send your CV to : gk@bigwater.consulting preeti@bigwater.consulting