Information Security Advisor

Human Rights Watch
Brussel, Belgium
about 1 month ago
Apply on be.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Languages
English
Job source

Tech stack

Microsoft Windows Artificial Intelligence Cyber Security Learning Management Systems Identity and Access Management Information Security Management Microsoft Security Essentials Open Source Technology Azure Active Directory Phishing Security Support Provider Interface Microsoft InTune
+2 more
Microsoft Fabric Microsoft Sentinel

Job description

The Information Security Program is seeking an Information Security Advisor to serve as a trusted security partner for staff across the organization. This is a highly collaborative, people-focused role centered on helping staff understand and manage security risks through practical guidance, training, awareness, and day-to-day support.

Working closely with the Director of Information Security, IT Ops, and colleagues across HRW, the Information Security Advisor will support staff in making informed security decisions, provide guidance for higher-risk activities and travel, and lead the development of security training, learning resources, and awareness initiatives. The role also contributes to incident response, governance, and the secure adoption of new technologies, helping strengthen HRW’s overall security posture while ensuring security remains practical, approachable, and aligned with the organization’s mission.

This position reports to the Director of Information Security, based in the US. This role will be based within commuting distance of the following HRW offices, and must be willing to work from the office on an as-needed basis: Brussels, London, Stockholm, Amsterdam, Beirut, or Johannesburg.

Responsibilities

Staff Security Support & Guidance

  • Serve as a trusted point of contact for staff seeking information security advice and support.

  • Provide practical security guidance that enables staff to carry out their work safely while supporting HRW’s operational needs.

  • Support staff preparing for higher-risk travel, field work, and other sensitive activities.

  • Conduct security consultations for projects, workflows, technologies, and operational initiatives.

  • Assist staff in securely using Microsoft 365, AI tools, and other technologies adopted by HRW.

  • Build trusted working relationships across the organization and promote a collaborative approach to information security.

Security Awareness, Training & Guidance

  • Lead HRW’s information security awareness and education program.

  • Design, develop, and deliver engaging security training for staff globally.

  • Develop and maintain security learning content within HRW’s Learning Management System.

  • Create practical guidance, playbooks, knowledge articles, FAQs, and self-service resources.

  • Plan and coordinate security awareness campaigns, phishing simulations, and educational initiatives.

  • Measure the effectiveness of awareness activities and continuously improve staff engagement and learning outcomes.

Governance, Risk & Technology

  • Support the implementation of HRW’s information security policies, standards, and governance framework.

  • Help staff understand and apply information security policies in their day-to-day work.

  • Participate in security reviews of new technologies, platforms, and services, including AI tools.

  • Assist with information security risk assessments and provide practical recommendations to reduce risk.

  • Contribute to the development of guidance for the secure and responsible use of emerging technologies.

Incident Response & Microsoft Security Operations

  • Support staff in responding to information security incidents, providing practical guidance to help contain issues, recover safely, and learn from incidents.

  • Use Microsoft 365 security tools and related systems to investigate issues, understand risks, and support resolution.

  • Maintain accurate documentation of incidents, investigations, and lessons learned.

Collaboration & Continuous Improvement

  • Work closely with IT, Safety and Security, Legal, Human Resources, and other teams to strengthen HRW’s security posture.

  • Contribute to improving security processes, procedures, and documentation.

  • Develop reports, metrics, and dashboards that measure security activities and program effectiveness.

  • Stay informed about emerging threats and recommend improvements to HRW’s security capabilities.

  • Perform other duties as required.

Requirements

Education: A level of education that, when combined with professional experience, demonstrates the ability to contribute meaningfully to HRW’s Information Security Program. Candidates with relevant academic qualifications or industry certifications are encouraged to apply, but these are not required.

Experience: A minimum of five years of professional experience in information security, IT security, or a related field.

Required Skills and Knowledge

  • Experience supporting users and helping non-technical audiences understand and manage security risks.

  • Excellent written and verbal communication skills, with the ability to explain technical concepts in clear, practical language.

  • Excellent interpersonal skills and the ability to build trusted relationships across technical and non-technical teams.

  • Experience designing or delivering security awareness, training, or educational programs.

  • Ability to evaluate technologies, workflows, and operational practices from a security perspective.

  • Understanding of information security principles, risk management, and common security frameworks.

  • Experience supporting or participating in the investigation and response to information security incidents.

  • Working knowledge of Microsoft 365 security and identity management.

  • Experience securing and supporting Microsoft Windows devices. Experience supporting Apple devices is highly desirable.

  • Ability to manage multiple priorities while working independently and collaboratively.

  • Ability to work respectfully and effectively with colleagues from diverse cultural and professional backgrounds.

  • Demonstrated curiosity, sound judgment, and a strong commitment to helping others work securely.

  • Working knowledge of the risks associated with human rights, civil society, journalism, or similarly high-risk environments is highly desirable

Additional Qualifications

  • Experience supporting global or distributed organizations.

  • Experience administering or operating Microsoft Defender XDR, Microsoft Purview, Microsoft Sentinel, Microsoft Entra ID, Microsoft Intune, or related Microsoft security services.

  • Experience evaluating AI tools or advising on the secure and responsible use of AI technologies.

  • Experience contributing to information security governance, policy implementation, or risk management initiatives.

  • Fluency or proficiency in one or more languages in addition to English.

  • Demonstrated commitment to continuous learning and knowledge sharing through research, speaking, writing, community participation, or open source contributions.

Other: HRW is only able to sponsor work authorization for this role if the successful candidate is based in either the UK or Belgium. Candidates based in other locations must possess valid work authorization for their location.

Salary and Benefits: HRW seeks exceptional applicants and offers comprehensive compensation and benefits.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on be.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

10:42 min

Essential soft skills and evaluating security candidates

Kurt Eder · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:29 min

Evaluating phishing emails that leverage artificial time constraints

Mauro Verderosa · LIVE

1:28 min

Volunteering to support grassroots advocacy for the hacker community

Chloé Messdaghi · World Congress 2021

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

2:39 min

Exposing stored XSS and phishing attacks via markdown

Ramona Schwering Ramona Schwering · World Congress 2026 Europe

Videos

See all

Related articles

See all