Information Security Governance Consultant

Startup Talents
Brussel, Belgium
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
€70,000.0
Working hours
Regular working hours
Languages
Dutch, English, French
Job source

Tech stack

Cyber Security IT Management

Job description

The employer is a Major player in the cybersecurity landscape dedicated to safeguarding sensitive environments through a comprehensive suite of bespoke defensive strategies, ranging from high-level strategic advisory to continuous, round-the-clock operational oversight and rapid crisis mitigation., * Guide diverse organizations in architecting robust security frameworks, ensuring that internal policies, operational processes, and risk reduction strategies are perfectly aligned with business objectives.

Compliance & Risk Assurance

  • Evaluate organizational security maturity by conducting thorough gap analyses against international benchmarks and evolving regulatory mandates.
  • Design and implement structured security programs, steering clients toward full alignment with industry-recognized best practices.
  • Execute comprehensive risk management lifecycles, performing both high-level organizational assessments and targeted project-specific evaluations.
  • Act as a trusted advisor to C-level executives, Data Protection Officers, and IT leadership, translating complex technical risks into actionable business insights.

Audit & Validation

  • Lead rigorous internal and external audit engagements, including pre-certification assessments to ensure adherence to global standards and legal requirements.
  • Serve as a subject matter expert, providing technical guidance and support to internal audit teams regarding complex security domains.

Enablement practice

  • Advise and assist customers in establishing effective cyber governance practices and strategies, including Information Security policies, processes, and risk mitigation measures.

Assurance practice

  • Perform maturity assessments and gap analyses against standards (CyFun, ISO 27001/27002, SANS CIS TOP20, NIST CSF) and regulatory frameworks (NIS2, DORA, GDPR).
  • Establish Information Security programs and guide customers toward defined frameworks.
  • Conduct Information Security Risk Management processes following ISO 27005 and execute ad hoc project-level risk assessments.
  • Provide tailored advisory services to CISOs, Risk Officers, DPOs, IT Managers, and executive committees.

Audit practice

  • Perform internal, external, and pre-certification Information Security audits against established standards and regulatory frameworks.
  • Provide expertise and support to Internal Auditors on Information Security topics.

Requirements

  • Full professional fluency in English, Dutch, and French is mandatory.
  • A minimum of five years of dedicated experience within the information security domain.
  • Industry-recognized credentials/certifications (such as CISSP, CISM, or ISO 27001 certifications) are highly regarded.
  • Proven experience leading cybersecurity projects and coordinating stakeholders.
  • Advanced capacity for analytical / critical thinking and the resolution of complex technical obstacles.
  • A track record of implementing pragmatic, high-impact strategies to mitigate digital threats.
  • Extensive background in steering security initiatives and managing cross-functional collaboration across various organizational levels.
  • Education : Bachelor’s degree

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.adzuna.be

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

1:53 min

Managing infrastructure limitations with managed Amazon Aurora databases

Dharin Shah Dharin Shah · WWC 2025

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

5:00 min

Managing complex state with scope-based resource management

Bjarne Stroustrup · WWC 2022

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all