> Markdown version of [/jobs/ext/2318619-senior-cybersecurity-expert-consultant](https://www.wearedevelopers.com/jobs/ext/2318619-senior-cybersecurity-expert-consultant). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Cybersecurity Expert Consultant - **Company:** Keystone Solutions - **Location:** Brussel, Belgium - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Active Directory, Software System Penetration Testing, Authentication Protocols, Microsoft Azure, Burp Suite, Ubuntu (Operating System), Cyber Security, Information Systems, Debian Linux, Linux, Hyper-V, Identity and Access Management, Virtual Private Networks (VPN), Information Systems Security Architecture Professional, Linux System Administration, Microsoft Software, Windows Servers, Routing, Network Segmentation, Open Web Application Security, Azure Active Directory, Red Team (Cyber Security), Transmission Control Protocol (TCP), Virtual Local Area Networks, Virtualization Technology, Wi-Fi Technology, Computer Networking Systems, Mitre Att&ck, Firewalls (Computer Science), CIS Benchmarks, Vulnerability Analysis, Vmware - **Published:** August 18, 2026 - **Apply:** https://www.adzuna.be/details/5846339064 ## About the Role * Microsoft Windows Server. * Active Directory. * Microsoft Entra ID. * Microsoft Azure. * Microsoft 365. * Linux (Debian, Ubuntu, or equivalent distributions). * TCP/IP networks. * Switching, routing, and VLAN. * Enterprise Wi-Fi infrastructures. * Firewalls and VPNs. * Knowledge of virtualized environments (VMware, Hyper-V, or equivalents) to assess their security level. Methodologies * OWASP Testing Guide. * OWASP Top 10. * MITRE ATT&CK. * NIST Cybersecurity Framework. * CIS Benchmarks. Documentation * Excellent writing skills. * Production of technical and executive reports. * Documentation of architectures, findings, and recommendations. * Ability to simplify technical subjects for non-specialized audiences., The consultant must have significant experience in cybersecurity acquired in complex environments. They should demonstrate: * At least 7 years of professional experience in the field of cybersecurity. * Complete autonomy in managing complex missions. * Excellent mastery of Microsoft, Microsoft Entra ID, Azure, and Linux environments. * Strong experience in conducting penetration tests and technical audits. * Strong analytical and synthesis skills. * A methodical, rigorous, structured, and results-oriented approach. * Excellent organizational and prioritization skills. * Aptitude for dialogue with both technical teams and management. * A critical mindset to formulate pragmatic, proportionate, and context-adapted recommendations. * The ability to act as a cybersecurity reference for internal teams. * Excellent documentation, communication, and knowledge transfer skills. The consultant should demonstrate professional maturity and prioritize a pragmatic approach to cybersecurity, based on objective risk assessment, realistic solution seeking, and supporting teams in their implementation. Desired Certifications: Minimum Certification * The consultant must hold at least one recognized certification in offensive cybersecurity, such as: * Offensive Security Certified Professional (OSCP) or equivalent certification. Certifications that are an asset * Burp Suite Certified Practitioner (BSCP). * Practical Network Penetration Tester (PNPT). * Certified Red Team Operator (CRTO). * Certified Red Team Professional (CRTP). * GIAC Exploit Researcher and Advanced Penetration Tester (GXPN). * Certified Information Systems Security Professional (CISSP). * Microsoft Certified: Azure Security Engineer Associate. * Any Microsoft certification related to security or Microsoft Entra ID. If you are ready to tackle technical and strategic challenges in a dynamic consultancy environment, apply today at Keystone Solutions Career Portal. ## Description As part of the ongoing enhancement of its cybersecurity posture, our client seeks to engage the services of a Senior Cybersecurity Expert Consultant to provide independent expertise in assessing the security of its information system and to support IT teams in sustainably improving their level of protection. This position is a consultancy mission at a client site representing Keystone Solutions. Objectives of the Mission: The consultant will have the following objectives: * Evaluate the actual security level of the information system. * Identify technical and organizational vulnerabilities that could be exploited. * Conduct internal and external penetration tests. * Assess the security of Microsoft, Microsoft Entra ID, Azure, Linux, and network infrastructures. * Analyze attack paths that could compromise the information system. * Verify the effectiveness of existing security measures. * Evaluate the compliance of infrastructures with the security standards adopted by the company and industry best practices. * Assist technical teams in defining and prioritizing corrective measures. * Provide independent expertise in infrastructure evolution projects. * Contribute to the continuous improvement of the company's cybersecurity posture. Main Responsibilities: A. Security Evaluation * Conduct internal and external penetration tests. * Perform Active Directory audits. * Evaluate the security of Microsoft Windows, Linux, Microsoft Entra ID, and Azure environments. * Analyze the security of networks, authentication mechanisms, exposed services, and privileged access. * Review security configurations and identify gaps against best practices. * Validate the effectiveness of existing protection measures. * Identify exploitable technical vulnerabilities and assess their impact. B. Offensive Analysis * Simulate attack scenarios representative of current threats. * Analyze compromise chains and attack paths. * Identify privilege escalation and lateral movement opportunities. * Evaluate network segmentation and security mechanisms. * Analyze the security of identities, privileges, delegations, and authentication mechanisms. * Identify technical risks that could affect the confidentiality, integrity, or availability of the information system. C. Consulting, Architecture, and Support * Act as the technical reference for all cybersecurity-related questions. * Advise IT teams on technical choices impacting security. * Participate in architecture reviews from a cybersecurity perspective. * Evaluate the impacts of new projects on the company's security posture. * Formulate technical recommendations to reduce risks while considering operational constraints. * Participate in technical risk analyses. * Support teams in implementing remediation measures and in the continuous improvement of security. D. Documentation and Knowledge Transfer * Produce detailed technical reports and executive summaries for management. * Prioritize recommendations based on their criticality, exploitability, and feasibility. * Document findings, analyses, security architectures, and remediation measures. * Develop best practice guides and contribute to the standardization of security practices. * Ensure knowledge transfer and contribute to the skill enhancement of internal teams. * Present mission results to both technical audiences and management, adapting the level of discourse and formulating clear, reasoned, and pragmatic recommendations. Technical Skills Required: Cybersecurity * Internal and external penetration testing. * Active Directory audits. * Securing Microsoft environments. * Securing Microsoft Entra ID and Azure. * Securing Linux environments. * Identity and Access Management (IAM). * Privilege and authentication mechanism analysis. * Attack path analysis. * Security architecture evaluation. * Configuration review and hardening of systems. * Vulnerability analysis and remediation recommendations. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Creating a routing app with Google Maps API from scratch](https://www.wearedevelopers.com/videos/831-creating-a-routing-app-with-google-maps-api-from-scratch) - [WebAssembly: The Next Frontier of Cloud Computing](https://www.wearedevelopers.com/videos/972-webassembly-the-next-frontier-of-cloud-computing) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [A Technical Introduction to Bitcoin's 2nd Layer- The Lightning Network](https://www.wearedevelopers.com/videos/15-a-technical-introduction-to-bitcoin-s-2nd-layer-the-lightning-network) - [Generating code with Angular schematics](https://www.wearedevelopers.com/videos/129-generating-code-with-angular-schematics) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Where To Find Software Engineering Jobs](https://www.wearedevelopers.com/magazine/396-where-to-find-software-engineering-jobs) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Where to Find Entry-Level Software Engineering Jobs](https://www.wearedevelopers.com/magazine/397-where-to-find-entry-level-software-engineering-jobs) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)