CISO Officer – TPRM & GRC
Digital
Security
Master
Advanced (5+)
- Emplacement
- Anderlecht, Bruxelles-Capitale
- Type de travail
- Consultancy
- Modèle de travail
- Fulltime, Hybrid
Our client, a major organization in the transportation sector, is seeking a professional to manage cybersecurity risks within their third-party ecosystem. This role focuses on integrating security requirements into procurement processes and ensuring compliance throughout the entire lifecycle of third-party relationships.
Responsabilités
- Improve the cybersecurity third-party risk management framework in alignment with regulatory and industry standards.
- Analyze and assess cybersecurity risks associated with third parties based on security questionnaires, certifications, and architecture reviews.
- Define and monitor risk mitigation measures and action plans for third-party engagements.
- Review and secure cybersecurity requirements within procurement documentation including RFI, RFQ, and RFP processes.
- Evaluate vendor proposals from a security, compliance, and risk management perspective.
- Provide consolidated reporting on third-party risks and continuous improvement actions to the CISO and senior management.
Exigences
- You have a Master’s degree in IT, Law, Risk Management, or Information Security.
- You possess 5+ years of experience in Third Party Risk Management (TPRM), Security Assurance, GRC, or Security Audit.
- You bring proven experience in reviewing procurement documentation such as RFI, RFQ, and RFP.
- You have an active certification in ISC2 CISSP, CCSP, ISACA CISA, CRISC, CISM, CDPSE, or CGEIT.
- You possess experience with cybersecurity frameworks and assessing IT security architectures.
- You have experience in risk-based decision-making and producing structured reports for diverse stakeholder groups.
- You're capable of working autonomously and managing complex stakeholders across IT, Legal, and Security departments.
- You are fluent in English (at least C1 level) with C1 level in either Dutch or French and at least B2 level in the other.
Nice to Haves
- Experience in drafting organizational security policies and detailed assessment reports.
- Proven track record in high-complexity stakeholder management within large-scale organizations.
Offre
- Start date: 07/09/2026
- Duration: Until 31/08/2027
- Work regime: Full-time
- Location: Brussels
- Working model: Hybrid (onsite at least 2 days per week)
- Contract: open to both permanent employees and freelancers
# 101658
Discuter avec Alex
Vous hésitez à postuler ? Discutez avec Alex, notre coach carrière IA, et découvrez les offres qui vous correspondent.
)