Pauwels Consulting Logo
Apply now

CISO Officer – TPRM & GRC

Digital
Security
Senior (7+)
Location
Anderlecht, Brussels-Capital
Work type
Consultancy
Work model
Fulltime

Our client is seeking a dedicated professional to manage cybersecurity risks within their supply chain and third-party partnerships. This role ensures that security requirements are effectively integrated into procurement processes and maintained throughout the entire vendor relationship lifecycle.

Responsibilities

  • Establish and continuously improve the cybersecurity third-party risk management framework in alignment with regulatory standards.
  • Analyze and assess cybersecurity risks associated with third parties using security questionnaires, audit reports, and architecture reviews.
  • Define and monitor risk mitigation measures and document associated action plans for vendor compliance.
  • Review and secure cybersecurity requirements within procurement documentation such as RFI, RFQ, and RFP.
  • Assess supplier proposals from a security and risk management perspective to ensure alignment with organizational standards.
  • Provide consolidated risk reporting and visibility to the CISO and senior management while proposing improvement actions.

Requirements

  • You have 5+ years of experience in domains such as Third Party Risk Management, Security Assurance, GRC, or Audit.
  • You possess proven experience in reviewing procurement documentation including RFI, RFQ, and RFP.
  • You bring expertise in assessing IT security architectures and working with cybersecurity frameworks.
  • You have experience in conducting risk analysis, compliance audits, and producing structured reports for management.
  • You possess an active certification such as CISSP, CCSP, CISA, CRISC, CISM, CDPSE, or CGEIT.
  • You hold a Master’s degree in IT, Law, Risk Management, or Information Security.
  • You are proactive with strong stakeholder management skills and the ability to work autonomously.
  • You are fluent in English at C1 level and Dutch or French at C1 level with at least B2 level in the other language.

Nice to Haves

  • Experience in risk-based decision making within complex organizational contexts.
  • Previous involvement in large-scale IT security architecture assessments.

Offer

  • Start date: 19/10/2026
  • Duration: until 31/08/2027
  • Work regime: Full-time
  • Location: Brussels
  • Working model: Hybrid (minimum 2 days per week onsite)
  • Contract: open to both permanent employees and freelancers
# 102432
With a plus sign and country code (e.g. +32 400 00 00 00).
We accept Word and PDF files up to 3 MB.
Candidates must be legally authorised to work in the EU and possess the required language skills for the job location.
Chat with Alex
Not sure if this job is right for you? Chat with Alex, our AI career coach, and discover the vacancies that match your profile.