Product Owner – Cybersecurity Testing & Exposure Management
Digital
(Project) Management
Bachelor, Master
Advanced (5+)
- Location
- Brussels, Brussels-Capital
- Work type
- Consultancy
- Work model
- Fulltime, Hybrid
Our client, a major public sector organization, is seeking a specialist to lead the development and management of security testing and exposure management services. This role focuses on defining a product vision and roadmap while coordinating with external partners to enhance cyber resilience. The objective is to translate stakeholder requirements into structured security assessments and proactive vulnerability management strategies.
Responsibilities
- Develop and manage the product vision, backlog, and roadmap for cybersecurity testing and exposure management services.
- Coordinate end-to-end penetration testing processes on applications, APIs, and infrastructure in collaboration with external partners.
- Manage ethical hacking initiatives including vulnerability disclosure and bug bounty programs.
- Oversee exposure management services by optimizing vulnerability scanners and attack surface management tools.
- Conduct quality reviews of security reports to ensure findings are consistent, reproducible, and include actionable remediation advice.
- Facilitate sourcing trajectories such as RFI and RFP processes to select and evaluate external security service providers.
- Monitor service levels and key performance indicators to ensure supplier performance and continuous service improvement.
Requirements
- You have 5+ years of experience as a Product Owner or in a similar leadership role within a digital environment.
- You possess 5+ years of experience as a Security Consultant focusing on data, infrastructure, or application security.
- You bring 5+ years of expertise in exposure management solutions, including vulnerability scanners and Attack Surface Management (ASM).
- You have 5+ years of experience coordinating or executing penetration testing across diverse technological landscapes.
- You possess experience analyzing and documenting security processes and governance frameworks.
- You have experience with security management frameworks such as ISO 27001, NIST, OWASP, COBIT, or CIS Critical Security Controls.
- You are fluent in Dutch at a C2 level.
Nice to Haves
- Possession of industry certifications such as CISM, CISSP, or CEH.
- Experience with SLA and KPI definition and service governance.
- Experience with sourcing trajectories including RFI and RFP requirements and evaluation.
- Knowledge of offensive security standards such as OSSTMM or PTES.
Offer
- Start date: 11/05/2026
- Duration: project until 15/07/2027
- Work regime: Full-time
- Location: Brussels
- Working model: Hybrid
- Contract: open to both permanent employees and freelancers
# 99893
)