Domain Lead ISMS

Synctiv
Brussel, Belgium
15 days ago
Apply on www.careerjet.be
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
10 years minimum
Working hours
Regular working hours
Languages
English

Tech stack

Cyber Security Information Security Management Smartsuite Information Security Management System

Job description

We are looking for an experienced ISMS Domain Lead to drive and oversee the Information Security Management System within a large, complex organization. In this role, you will act as a key authority in shaping, implementing, and maintaining information security policies, ensuring alignment with industry standards and regulatory requirements. You will also play a critical role in promoting cybersecurity awareness and best practices across the organization., ISMS Continuous Improvement Develop and maintain a structured, measurable ISMS management framework based on industry standards and best practices Identify and implement improvements to enhance efficiency and consistency of ISMS processes Ensure prioritization and quality of activities within governance, risk, and compliance functions Provide guidance and coaching to senior stakeholders and security teams Support recruitment and onboarding of qualified team members ISMS & Policy Management Strengthen and maintain ISMS-related capabilities and services Align ISMS processes with broader organizational policy frameworks Oversee lifecycle management of ISMS services, including KPIs/KRIs, documentation, and risk management Monitor service quality and external providers Report on performance, planning, and capacity to internal stakeholders Knowledge Sharing & Leadership Collaborate with cross-functional teams to drive synergies Support internal stakeholders in understanding information security and risk management Mentor junior team members and contribute to team development

Requirements

Minimum 10 years of experience in information security management Strong experience implementing ISMS frameworks in large organizations Deep knowledge of cybersecurity standards, frameworks, and regulations Relevant certifications such as CISSP, CISA, CISM, ISO 27001 Lead Implementer/Auditor, or CRISC are a plus Master’s degree or higher (ideally in a quantitative field such as statistics or econometrics) Experience with ISMS/GRC tools (e.g., CertKit, Sprinto, Vanta, OneTrust, LogicGate) is an advantage Strong communication skills and ability to influence stakeholders Fluency in English and at least one additional European language is preferred

Benefits & conditions

Within our open corporate culture, you contribute to the digital transformation of SNCB. You will have a job with social impact and ample opportunity to make your own contribution. In addition to a good work-life balance and a competitive salary, you will receive the following benefits: the possibility to work remotely + flexible working hours; 35 days of leave; a company car + a public transport season ticket; a target bonus; a comprehensive insurance package (affiliation without own contribution, excl. outpatient costs for family members); hospitalisation and dental care for the whole family; outpatient costs (= medical costs separate from hospitalisation); group insurance: supplementary pension, work disability and death (cafeteria plan); accidents at work (extralegal); meal vouchers and eco-vouchers; net allowances for remote working and carwash + internet budget.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerjet.be
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

4:25 min

The growing power and security responsibility of developers

Tino Sokic · World Congress 2023

5:03 min

Navigating new cybersecurity compliance frameworks and laws

Kurt Eder · LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

3:02 min

Navigating DORA compliance and executive liability in security

Michele Zuccala Michele Zuccala +4 · World Congress 2026 Europe

1:03 min

Securing applications against exceptional condition mishandling

Christian Wenz Christian Wenz · World Congress 2026 Europe

Videos

See all

Related articles

See all