- Contract
- Anywhere
Location: Brussels (Hybrid, 2 days onsite / 3 days remote) Contract Type: Freelance or Consultancy Contract Duration: 12+ Months Start Date: ASAP
About the Role
Our client, a leading organization within the Supply Chain & Logistics sector, is looking for an experienced Security Risk Manager to join its Cyber Security team. You will play a key role in strengthening the organization’s security posture by managing cyber and technology risks across business and IT environments.
Working closely with security architects, project teams, business stakeholders, and compliance functions, you will support the implementation of robust risk management processes while ensuring alignment with industry regulations and security frameworks.
Key Responsibilities
Â
- Lead and facilitate cybersecurity risk assessments across projects, applications, infrastructure, and business initiatives.
- Identify, document, evaluate, and communicate security risks to relevant stakeholders.
- Collaborate with security architects and technical teams to define appropriate risk mitigation measures.
- Maintain and continuously improve the enterprise risk register.
- Monitor remediation activities and track risk treatment plans to completion.
- Provide security risk input during architecture reviews, project reviews, and technology assessments.
- Support compliance activities related to NIS2, ISO 27001, GDPR, and other relevant regulatory frameworks.
- Develop risk reporting and dashboards for senior management and leadership teams.
- Promote risk awareness and foster a security-conscious culture throughout the organization.
- Support internal and external audits and prepare evidence for compliance reviews.
- Contribute to the improvement of governance, risk, and compliance processes within the Cyber Security function.
Required Experience
Â
- Minimum 8-10 years of experience in Cybersecurity, Information Security, Risk Management, Governance, or Compliance.
- Strong understanding of security controls covering: Identity & Access Management (IAM) Network Security Cloud Security Secure Software Development Lifecycle (SSDLC) Cryptography Vulnerability Management
- Proven experience with risk assessment methodologies and risk treatment processes.
- Experience working with security and compliance frameworks such as: ISO 27001 NIS2 GDPR NIST Cybersecurity Framework CIS Controls
- Experience preparing for audits and regulatory assessments.
- Excellent stakeholder management and communication skills.
- Ability to translate technical risks into business impact.
Preferred Qualifications
Â
- CISSP, CISM, CRISC, ISO 27001 Lead Implementer/Auditor, or equivalent certifications.
- Experience within Supply Chain, Logistics, Transportation, Postal Services, or Critical Infrastructure environments.
- Familiarity with GRC platforms and risk management tooling.
Languages
Â
- English: Professional working proficiency (mandatory)
- Dutch and/or French: Strong advantage
