Pauwels Consulting Logo

Product Owner – Cybersecurity Testing & Exposure Management

Digital
(Project) Management
Bachelor, Master
Advanced (5+)
Location
Brussels, Brussels-Capital
Work type
Consultancy
Work model
Fulltime, Hybrid

Our client, a major public sector organization, is seeking a specialist to lead the development and management of security testing and exposure management services. This role focuses on defining a product vision and roadmap while coordinating with external partners to enhance cyber resilience. The objective is to translate stakeholder requirements into structured security assessments and proactive vulnerability management strategies.

Responsibilities

  • Develop and manage the product vision, backlog, and roadmap for cybersecurity testing and exposure management services.
  • Coordinate end-to-end penetration testing processes on applications, APIs, and infrastructure in collaboration with external partners.
  • Manage ethical hacking initiatives including vulnerability disclosure and bug bounty programs.
  • Oversee exposure management services by optimizing vulnerability scanners and attack surface management tools.
  • Conduct quality reviews of security reports to ensure findings are consistent, reproducible, and include actionable remediation advice.
  • Facilitate sourcing trajectories such as RFI and RFP processes to select and evaluate external security service providers.
  • Monitor service levels and key performance indicators to ensure supplier performance and continuous service improvement.

Requirements

  • You have 5+ years of experience as a Product Owner or in a similar leadership role within a digital environment.
  • You possess 5+ years of experience as a Security Consultant focusing on data, infrastructure, or application security.
  • You bring 5+ years of expertise in exposure management solutions, including vulnerability scanners and Attack Surface Management (ASM).
  • You have 5+ years of experience coordinating or executing penetration testing across diverse technological landscapes.
  • You possess experience analyzing and documenting security processes and governance frameworks.
  • You have experience with security management frameworks such as ISO 27001, NIST, OWASP, COBIT, or CIS Critical Security Controls.
  • You are fluent in Dutch at a C2 level.

Nice to Haves

  • Possession of industry certifications such as CISM, CISSP, or CEH.
  • Experience with SLA and KPI definition and service governance.
  • Experience with sourcing trajectories including RFI and RFP requirements and evaluation.
  • Knowledge of offensive security standards such as OSSTMM or PTES.

Offer

  • Start date: 11/05/2026
  • Duration: project until 15/07/2027
  • Work regime: Full-time
  • Location: Brussels
  • Working model: Hybrid
  • Contract: open to both permanent employees and freelancers
# 99893
With a plus sign and country code (e.g. +32 400 00 00 00).
We accept Word and PDF files up to 3 MB.
Candidates must be legally authorised to work in the EU and possess the required language skills for the job location.
Not sure if this job is right for you? Chat with Alex, our AI career coach, and discover the vacancies that match your profile.