Cybersecurity Governance or Risk Officer| Brussels
On site
Anderlecht, Belgium
Full Time
03-02-2025
Job Specifications
Responsabilities
As a GRC Officer within the CISO team, you will be responsible for managing and improving the Governance, Risk and Compliance processes of our organization. You will work closely with various internal and external stakeholders to ensure a seamless integration of risk management and compliance within all layers of the organization. Your main task is to ensure that our organization complies with relevant laws and regulations, including NIS2 and GDPR, and that our internal processes and procedures are constantly adapted to the latest developments in information security and risk management. Contributing to or co-developing, implementing, and maintaining an effective Information Security Management System (ISMS) and risk management program to protect the organization's sensitive information, ensure compliance with relevant regulations, and minimize security risks is also part of this.
Core Skills
Knowing and protecting compliance with applicable policies and legislation
Information Security Management
Information Risk Management
CISO Security Solutions & Services
Governance, Policies & Awareness round information security and data protection
Coordination, Management or Support of one or more projects and initiatives within the CISO departments
Reporting on the CISO domains and security findings
The follow-up of IT Compliance
Keeping one's own knowledge up-to-date and expanding one's own knowledge
Keeping records, processing data and ensuring their quality and completeness
Supporting colleagues within the CISO domain
Knowledge
Minimum Knowledge level Masters or equivalent through experience
ISO 27001-27005, NIST Cybersecurity Frameworks
Extensive knowledge of NIS2, GDPR and other relevant laws and regulations.
Information Security Management Systems
Information Security Principles and Standards
Knowledge of cybersecurity and privacy standards, frameworks, policies, regulations, legislation, certifications and best practices
Risk Management Frameworks (FAIR)
GRC-Tooling
Experience
Relevant work experience of 5 to 10 years, of which at least 5 years of experience in a similar position within Governance, Risk & Compliance, preferably within a complex business environment.
Experience in risk assessment, vulnerability management, and security incident response.
Proven experience with project management and leading large-scale projects within a GRC context incl. budgeting and presentation experience for senior management (+5 years)
Security experience, risk management experience, and delivery of ISMS audit evidence (+5 years)
Practical
Enlish + NL OR FR
2 days in the office
Anderlecht
Computer Futures is a Staffing and Recruitment firm for IT roles in Belgium.
About the Company
Computer Futures is part of SThree PLC, the leading global STEM (Science, Technology, Engineering and Mathematics) recruitment company. For more than 30 years, we've been connecting businesses with highly skilled IT talent. As global IT recruitment experts, we specialise across niche IT markets and technologies - everyday we're helping software developers, engineers, and a host of IT professionals access job opportunities with a variety of businesses. Our approach is simple - we combine our global networks, local experti... Know more
Related Jobs
- Company Name
- Multipharma
- Job Title
- Network & Security Architect
- Job Description
- Notre département IT cherche à recruter un architecte réseau et sécurité LA FONCTION En tant qu'architecte réseau et sécurité, vous serez responsable de la conception, de la mise en œuvre et de la maintenance de solutions réseau sécurisées et évolutives. Vous travaillerez avec une équipe multidisciplinaire pour garantir que notre infrastructure informatique fonctionne de manière optimale et qu'elle est protégée contre les cybermenaces modernes. Responsabilités - En collaboration avec les équipes internes et les fournisseurs, analyser les nouveaux services et solutions et formuler des propositions lorsque ceux-ci peuvent apporter une amélioration (qualité, prix, simplicité, etc.) aux implémentations et solutions existantes. - Diriger des projets de migration et de mise à niveau liés au réseau et à la sécurité et contribuer à la mise en œuvre de cadres et de normes tels que NIS2 et Zero Trust. - Développer, documenter et maintenir l'architecture de nos réseaux et solutions de sécurité en consultation avec les équipes d'architecture et de sécurité, et ce dans les domaines du LAN, WAN, VPN, SD-WAN, des télécommunications et de notre infrastructure en nuage. - En tant que membre du conseil d'architecture d'entreprise, participer à l'évaluation des nouveaux projets et conseiller sur les choix à faire en termes de solutions technologiques de son propre point de vue, tout en veillant à la vision sur l'architecture et les normes formulée dans le plan stratégique. - Dans le cadre de la préparation du plan pluriannuel, conseiller sur les projets d'innovation quantifiés à inclure dans le budget informatique. - Surveiller et évaluer les performances du réseau et les journaux de sécurité afin de détecter rapidement les menaces. - Effectuer une analyse des risques et proposer des stratégies d'atténuation. PROFIL -Vous êtes titulaire d'une licence ou d'une maîtrise en informatique ou dans un domaine connexe. - Vous avez 3 à 5 ans d'expérience en tant que Network System Engineer, Network Architect, ou dans un rôle similaire. - Vous avez une connaissance approfondie des protocoles et technologies de réseau (TCP/IP, BGP, MPLS, VLAN, etc.). - Vous avez une expertise dans les solutions de sécurité telles que les firewalls, IDS/IPS, VPN et endpoint security, Identity Governance and Administration (IGA), Security Operations Center, SIEM. - Des certifications telles que CCNP, CCIE, CISSP, CISM ou similaires sont un atout majeur. - Expérience des réseaux et Cloud security (Azure, Google Cloud, AWS). - Excellentes capacités d'analyse et de résolution de problèmes pour mettre en place de manière autonome l'analyse et la conception dans le cadre de processus multiples. - Vous pouvez travailler de manière indépendante et communiquer couramment dans les deux langues nationales NL et FR. NOTRE OFFRE Un poste stimulant et varié dans lequel vous aurez des responsabilités et contribuerez activement à la stratégie et à la croissance de Multipharma. Un salaire attractif et compétitif auquel s'ajoutent de nombreux avantages extralégaux : assurance groupe, assurance hospitalisation pour vous et votre famille, réduction pour le personnel, congés complétés par des jours RTT, Benefits at Work, chèques-repas (abonnement de téléphonie mobile, bon pour l'achat d'un téléphone mobile, voiture de société avec carte de carburant ou carte de recharge et bonus). S’épanouir et se former : nous offrons un large éventail de possibilités de formation (spécifiques à la fonction) afin que vous puissiez continuer à vous développer tant sur le plan professionnel que personnel. Une équipe fantastique qui vous accueille à bras ouverts dans un environnement moderne. Attendez-vous à une atmosphère conviviale et de chouettes moments entre collègues Faire ce que vous aimez bien et ce qui vous rend heureux, au sein d'une organisation stable et saine où la solidarité, l'empathie et l'expertise sont essentielles. Du télétravail quelques jours par semaine ? C'est possible ! Nous vous offrons les possibilités de réaliser vos ambitions : chez nous, vous pouvez vous développer horizontalement, verticalement ou en diagonale, à votre propre rythme.
- Company Name
- OneSource Consulting
- Job Title
- Security Engineer
- Job Description
- Job Title: Security Consultant/Engineer Location: 1030 Brussels (Schaerbeek), Belgium (Hybrid) Duration: 17/02/2025 - 31/12/2025 Languages: Dutch Job Description: Tasks of the role: Performing risk analyses Drawing up guidelines in the context of information security Developing processes around information security Monitoring and reporting compliance-related aspects of information security Providing support to security architects in the context of legal provisions and risk analyses You are responsible for detecting, monitoring, and responding to information security incidents. Requirements: Demonstrable experience as a Security Consultant within one of the following environments: data, infrastructure, applications, etc. Demonstrable expertise in a specific knowledge domain of information security (e.g., implementing information security management processes, performing vulnerability analyses and penetration tests, optimizing application security through cost-effective means, implementing Privileged Access Management, implementing encryption solutions) Demonstrable experience in analyzing, optimizing, and documenting security processes and governance Demonstrable experience of security management techniques and/or frameworks (e.g., ISO27000 series, COBIT for Security, NIST, OWASP, CIS Critical Security Controls for Effective Cyber Defense) Demonstrable knowledge and experience through certificates depending on domain of expertise (e.g., CISM, CISSP, CEH)
- Company Name
- EBRAINS
- Job Title
- Information Security Officer
- Job Description
- Information Security Officer EBRAINS is the European digital Research Infrastructure for brain research developed by the EC-funded Human Brain Project (HBP). The HBP was the largest brain science project in Europe that stands among the biggest research projects ever funded by the European Union. EBRAINS’ ambition is to drive advancements in brain science globally, offering state-of-the art digital tools, models, data and services to researchers, clinicians and experts from various disciplines. The overarching goal of EBRAINS is to foster a deeper understanding of brain structure, function and mechanisms to facilitate the development of more effective treatments, diagnostics and preventive measures for neurological and psychiatric disorders. Are you eager to build further EBRAINS’ profile among the scientific and healthcare communities, policymakers, industry representatives, media and citizens and shape digital brain research in Europe and beyond? We are looking for a proactive and motivated professional to join the Communications Team. The EBRAINS AISBL is a non-profit association and coordinates the operation of the EBRAINS European Research Infrastructure on behalf of its members. Position Overview: The Information Security Officer (ISO) will join the technical team of EBRAINS AISBL and report directly to the CTO. She/He will be responsible to manage and oversee all information & security aspects of the Research Infrastructure. She/He will build and operate the Information and Security Plan of the organisation. The ISO will be responsible for safeguarding the digital assets, sensitive data, and computing infrastructure of EBRAINS RI. This involves developing and enforcing cybersecurity policies, ensuring compliance with data protection regulations, and mitigating security risks associated with data and high-performance computing (HPC) systems. The ISO will lead cybersecurity risk management, ensure compliance with relevant regulations, and foster a culture of security awareness among researchers and staff. This requires collaboration with IT teams, legal and compliance departments, and external partners to safeguard sensitive research data and critical systems. Key Responsibilities: Planning, designing, and implementing an IT and network strategy for EBRAINS RI. Working with all stakeholders to determine possible risks and risk management processes. Analyzing IT security threats in real-time and mitigating these threats. Ensuring that newly acquired technology complies with the IT security regulations. Ensuring that no internal breaches or misuse of data take place. Determining the cause of internal and external data breaches and instituting appropriate corrective action. Reporting on cybersecurity risks and mitigation strategies to senior management. Working closely with IT, legal, compliance, and research teams to integrate security into all operations. Qualifications: An MSc degree in Computing Science, Information Technology, or a related field. At least 7-year experience in risk management, information security, or programming. Strong hands-on experience. A strong experience of working in highly regulated environments. Experience with security risk assessment, vulnerability management, and incident response. Knowledge of information security management frameworks, such as ISO/IEC 27001 and NIST. CISSP or similar certification preferred Expertise in securing high-performance computing (HPC) environments. Experience in securing cloud-based and on-premises storage solutions. Excellent understanding of current security legislation and regulations relevant to our organization. Excellent project management and leadership skills. First-rate writing and verbal communication skills. Why work at the EBRAINS AISBL? Understanding the human brain is one of the greatest challenges facing 21st century science. Joining the EBRAINS AISBL will put you at the centre of an effort to gain profound insights into the structure and functioning of the brain, develop new treatments for brain diseases and build revolutionary new computing technologies. The EBRAINS AISBL team plays a central role in the EBRAINS research infrastructure in Europe and worldwide. You will find yourself inspired by the exciting things that people in the project are building and make a meaningful contribution to understanding the brain. We strive to find the right people and to keep our skills and insights sharp. We are a young, dynamic, interdisciplinary and international team. We focus on delivering high value to the scientific community and are involved in everything from community engagement to integrating scientific workflows with some of the world’s largest supercomputers. Work in the team involves open feedback, with opportunities for additional training to improve our skills. Join us and make an important contribution to the success of one of the most exciting projects of the 21st century! Position Title: EBRAINS Information Security Officer Reports To: Head of INFRA Location: Brussels Employment Type: fixed-term employment Contract duration: until the end of 2026 Starting date: February 2025 Deadline for applications: 14 February 2025 Interested candidates should submit a motivation letter and a detailed CV in a single PDF format only, with file name “Surname_position applied_motivation letter and CV” electronically to jobs@ebrains.eu. Please use the position title in the “subject” field. Applications that do not comply with this request will not be considered. Applications will be reviewed on a rolling basis.
- Company Name
- GAMING1
- Job Title
- NETWORK ENGINEER (LIEGE - BELGIUM)
- Job Description
- THE SCOPE With 30 years of history, today Gaming1 is one of the international leaders in both land-based and online games of chance (casino games, sports betting and poker). Its evolution at the heart of innovation is accompanied by a diversification and specialization of positions, with the creation of new cutting-edge jobs. As part of its sustained growth, Gaming1 is looking for a Network Engineer to join its team. The Network Engineer will be primarily responsible for designing, managing, and maintaining our network infrastructure and ensuring high availability, security, and performance. This role is also critical in building and maintaining our internal Developer Platform, which supports the infrastructure needs of our organization. YOUR ROLE At GAMING1, Network and System Engineers act as Platform Engineers within the IT Ops Delivery Platform cluster, providing robust, secure, observable, resilient, and self-service technical capabilities for seamless software delivery. Manage the capabilities related to Delivery Platform capabilities threating them as Infrastructure-as-Code Ensure the security of Delivery Platform capabilities Continuous improvement and enhancement of Delivery Platform capabilities Follow innovations and grow personal knowledge Collaboration and communication within the team and with other teams YOUR PROFILE Bachelor or master’s in computer science or equivalent skills acquired through experience Minimum of 5 years’ professional experience in a similar technology environment Fortinet NSE certification or similar is a real asset Network & Automation Mindset: Strong network engineering background with a Fortinet focus (FortiGate, FortiSwitch) and familiarity with WAN protocols (BGP, IPsec). Fortinet NSE 4 certification (minimum) or equivalent practical experience. Experience with Infrastructure as Code principles, using tools such as Ansible and Terraform for network and systems automation. Python scripting (or equivalent) to automate tasks across network and system layers. Security-First Approach: Knowledge of cybersecurity standards and procedures, ensuring secure configuration of networks and systems. Familiarity with Cloudflare (DNS management, WAF, anti-DDoS, Magic Transit) is a plus for broader security coverage. DevOps, Platform Engineering & Observability: Good understanding of DevOps, Platform Engineering, or SRE practices, with a focus on automation, resiliency, and scalability. Knowledge of CI/CD concepts and tools (Git, pipelines) for continuous integration and deployment. Experience administering observability and security tools (Datadog, Prometheus, Grafana, Tenable, Elastic Security) to ensure platform reliability and performance. Collaboration & Continuous Improvement: Ability to combine technical expertise with an operational and proactive mindset, always seeking to automate and improve. Thrive as part of a close-knit team, making joint decisions to deliver the best outcomes for the Developer Platform customers. Strong sense of when to work autonomously and when to collaborate to achieve optimal results. Additional Pluses: Kubernetes experience for container orchestration Software coding skills in .NET PostgreSQL administration RabbitMQ management What We Offer As well as having a unique experience - centered around our values of pleasure, team spirit, performance, boldness and integrity - alongside 1,200 employees around the world, we offer: the opportunity to contribute to the international development of a family company from Liège the chance to take part in a human and entrepreneurial adventure within a solid group a friendly work environment that is adapted to reaching optimal performance leadership by talents, values, trust and autonomy the opportunity to progress and specialize with our internal mobility system a competitive salary package with several perks The possibility to work remotely up to 50% for a good work-life balance THE INTERVIEW PROCESS