> Markdown version of [/jobs/ext/630678-aisb-906-cybersecurity-grc-manager-iso-27001-nis2-hybrid](https://www.wearedevelopers.com/jobs/ext/630678-aisb-906-cybersecurity-grc-manager-iso-27001-nis2-hybrid). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # AISB-906 Cybersecurity GRC Manager (ISO 27001 / NIS2) - Hybrid - **Company:** AbAKUS - **Location:** Charleroi, Belgium - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Cyber Security, Information Systems Security Architecture Professional, Smartsuite, Information Security Management System, CIS Benchmarks, Servicenow - **Published:** June 25, 2026 - **Apply:** https://www.careerjet.be/jobad/beff512d5f7f41be601045d8e31cab0e33 ## About the Role * 3-5+ years of experience in GRC, information security, or IT compliance * Proven experience with ISO 27001 implementation or certification processes * Strong understanding of NIS2 requirements * Experience in risk management methodologies * Excellent documentation and communication skills * Ability to work autonomously in a multi-client environment * Fluent French (written and spoken) Nice to Have * ISO 27001 Lead Implementer certification * Experience with GRC tools (ServiceNow GRC, OneTrust, Archer, etc.) * Knowledge of RGPD / GDPR * Experience in regulated sectors (energy, water, public sector, finance, etc.) * Understanding of IT/security architectures and infrastructure concepts * Exposure to frameworks such as CIS Controls, IEC 62443 Soft Skills * Strong analytical and structured mindset * Excellent stakeholder management and communication skills * Ability to influence without direct authority * Pedagogical approach to security and compliance topics * Adaptability in complex, multi-organization environments * Results-oriented with strong ownership ## Description ABAKUS-IT-SOLUTIONS is looking for an experienced Cybersecurity GRC Manager to support strategic digital transformation and security initiatives within a critical infrastructure environment. You will join a cybersecurity team and work closely with the CISO, contributing to governance, risk, and compliance activities across multiple organizations. Project Details * Work model: Hybrid * Duration: Long-term mission (renewable) * Language: French (mandatory), English (nice to have) Your Mission You will support the implementation and continuous improvement of information security governance frameworks, focusing on ISO 27001 and NIS2 compliance within a multi-entity environment. You will act as a key GRC expert, bridging governance strategy and operational execution while interacting with internal teams and external stakeholders., * Lead and maintain the Information Security Management System (ISMS): * Policies, procedures, risk treatment plans * Support clients in achieving ISO 27001 certification (gap analysis to audit) * Prepare and coordinate internal and external audits, including follow-up on non-conformities * Contribute to NIS2 compliance implementation across regulated entities * Conduct and manage risk assessments (ISO 27005 or equivalent) * Use and manage GRC tools (e.g. CISO Assistant or equivalent platforms) * Coordinate with stakeholders (CISO, clients, providers) to ensure alignment and compliance * Deliver structured reporting and documentation for governance bodies ## Related Videos - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) - [Applying Agile Principles to Incident Management ](https://www.wearedevelopers.com/videos/101-applying-agile-principles-to-incident-management) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Reporting Active Exploits in 24 Hours: Are You Ready for the CRA?](https://www.wearedevelopers.com/videos/100248-reporting-active-exploits-in-24-hours-are-you-ready-for-the-cra) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Best Companies in the Netherlands: Top 25 Companies in 2023 ](https://www.wearedevelopers.com/magazine/193-best-companies-in-the-netherlands-top-25-companies-in-2023) - [Best Companies to Work For in Paris: Top 25 Companies in 2023 ](https://www.wearedevelopers.com/magazine/190-best-companies-to-work-for-in-paris-top-25-companies-in-2023) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers) - [Best Companies to Work For in Berlin: Top 14 Companies in 2023 ](https://www.wearedevelopers.com/magazine/188-best-companies-to-work-for-in-berlin-top-14-companies-in-2023)