IT Security Consultant


For a client in Brussels we are looking for an IT Security Consultant

• You are a champion of IT Security awareness, having attained both the training and experience to implement best-practice security policies and standards
• You have a deep understanding of how to best implement an ISMS into smaller organizations
• You are familiar with security standards and frameworks such as ISO27001 or NIST Cybersecurity frameworks
• You thoroughly understand GDPR and ITIL
• You are a diplomatic and circumspect communicator, able to discuss security as easily with business colleagues as technology colleagues or customers
• You are naturally analytical, able to identify opportunities and risks to guide the team in the best direction
• You are a champion of high-quality documentation
• You are an expert in developing and integrating security procedures throughout the organization
• You are able to create concise and informative security reports
• You take ownership of and react quickly to security related incidents
• You are a natural collaborator, checking assumptions and developing standards to avoid ambiguity
• You are an autonomous team member, delivering as expected and proactively without instruction
• You are a solution-driven expert in risk analysis

• Be the core team member driving the continuing effort to implement a full ISMS
• Supply requirements to IT projects of all sizes
• Perform direct risk analysis and follow up closely
• Continuously promote good IT Security practices in all tasks
• Create direct security policies, procedures and guidelines and the review process that keeps them up to date
• Take ownership of security or risk incidents, providing proactive guidance and solutions for resolution
• Provide new and better ways to report security and risk throughout the organization
• Present relevant security training to employees, contractors and suppliers when needed
• Prepare for and guide the organisation through surveillance audits, recertification visits or ad-hoc security reviews

1. Training
• CISSP, CISM, CISA, GIAC or ISO27001 certifications (maintained)

2. Experience
• Minimum 3-5 years of direct security experience
• Contextual understanding of application development processes

3. Skills
• Expert in IT Security
• Expert in Enterprise Risk Management
• Strong understanding of IT applications and systems
• Strong understanding of technologies used in monitoring and tracking security
• Strong presentation and communication skills, present technical solution to non-technical audiences
• Excellent spoken/written English



