Job : Information Security Officer (ISO)
Location: Herstal (Liège)
Hybrid (2-3 days remote, on-site presence required)
Contract: Open-ended (employee status, CDI)
Start Date: ASAP
We are looking for an experienced Cyber Security Officer to join a friendly and human-centered Belgian group in order to optimze security initiatives along with the current CISO.
Key responsibilities
In this position, the Information Security Officer will typically:
- Define, maintain, and improve cybersecurity governance frameworks
- Contribute to the implementation and monitoring of security policies and controls
- Support risk assessments and ensure appropriate mitigation measures are in place
- Help ensure compliance with frameworks such as ISO 27001 and European regulations (including NIS2 and DORA)
- Participate in audits, security assessments, and control validation activities
- Monitor and follow up on cybersecurity risks and incidents
- Collaborate with IT, security operations, and architecture teams to embed security by design
- Support third-party and supplier risk management activities
- Contribute to security awareness initiatives across the organization
- Report on security posture and risks to management and relevant governance bodies
Profile and requirements
The ideal candidate typically has:
- Strong experience (5 years minimum) in cybersecurity governance, risk, and compliance (GRC)
- Familiarity with ISO 27001 and information security management systems
- Understanding of European regulatory frameworks such as NIS2 and DORA
- Knowledge of IT security domains (infrastructure, applications, cloud, etc.)
- Experience in audit processes, risk assessments, and security controls
- Ability to work in complex, regulated environments such as insurance or financial services
- Strong communication skills to interact with both technical and non-technical stakeholders
- Ability to structure and formalize security processes
If this sounds like you, please hit us with your latest CV !