Information Security Governance Consultant
Job description
The employer is a Major player in the cybersecurity landscape dedicated to safeguarding sensitive environments through a comprehensive suite of bespoke defensive strategies, ranging from high-level strategic advisory to continuous, round-the-clock operational oversight and rapid crisis mitigation. They are looking for a seasoned expert Information Security Governance Consultant on a Permanent role in Brussels, Belgium to join its specialized advisory division in charge of delivering high-end security resilience, offering a comprehensive suite of services ranging from strategic consulting and governance to continuous threat detection and emergency response protocols.
MISSIONS Strategic Advisory & Governance Guide diverse organizations in architecting robust security frameworks, ensuring that internal policies, operational processes, and risk reduction strategies are perfectly aligned with business objectives. Compliance & Risk Assurance Evaluate organizational security maturity by conducting thorough gap analyses against international benchmarks and evolving regulatory mandates.
Design and implement structured security programs, steering clients toward full alignment with industry-recognized best practices. Execute comprehensive risk management lifecycles, performing both high-level organizational assessments and targeted project-specific evaluations. Act as a trusted advisor to C-level executives, Data Protection Officers, and IT leadership, translating complex technical risks into actionable business insights.
Audit & Validation Lead rigorous internal and external audit engagements, including pre-certification assessments to ensure adherence to global standards and legal requirements. Serve as a subject matter expert, providing technical guidance and support to internal audit teams regarding complex security domains. Enablement practice Advise and assist customers in establishing effective cyber governance practices and strategies, including Information Security policies, processes, and risk mitigation measures.
Assurance practice Perform maturity assessments and gap analyses against standards (Cy. Fun, ISO 27001/27002, SANS CIS TOP20, NIST CSF) and regulatory frameworks (NIS2, DORA, GDPR). Establish Information Security programs and guide customers toward defined frameworks. Conduct Information Security Risk Management processes following ISO 27005 and execute ad hoc project-level risk assessments.
Provide tailored advisory services to CISOs, Risk Officers, DPOs, IT Managers, and executive committees. Audit practice Perform internal, external, and pre-certification Information Security audits against established standards and regulatory frameworks. Provide expertise and support to Internal Auditors on Information Security topics.
Requirements
Full professional fluency in English, Dutch, and French is mandatory. A minimum of five years of dedicated experience within the information security domain. Industry-recognized credentials/certifications (such as CISSP, CISM, or ISO 27001 certifications) are highly regarded. Proven experience leading cybersecurity projects and coordinating stakeholders.
Advanced capacity for analytical / critical thinking and the resolution of complex technical obstacles. A track record of implementing pragmatic, high-impact strategies to mitigate digital threats. Extensive background in steering security initiatives and managing cross-functional collaboration across various organizational levels.
Education
Bachelor's degree Desired experience: more than 5 years Language Requirements French
- Professional English
- Professional Dutch
- Native / Bilingual Benefits Type of Contract : Permanent role (on-site/in-person) in London (UK) or New York (USA). Salary : To 70k Benefits: TOIL / Remote work / Company Mutual / Meal vouchers Recruitment process : Recruiter / HR Call Team Lead Interview Final Interview