Security

Senior Security & Compliance Officer

Are you an Information Security / NIS2 expert with strong ISO 27001 and ISMS experience, ready to support an organisation with its NIS2 compliance journey?

We are looking for an experienced Senior NIS2 / Information Security Consultant to support a large organisation in achieving compliance with the NIS2 Directive and the Belgian NIS2 legislation of 26 April 2024.

You will play a key role in strengthening the organisation’s information security framework, working closely with internal stakeholders, external suppliers and security teams to define, align and implement the required technical and organisational security measures.

The role combines information security, NIS2 compliance, ISMS implementation, project management and stakeholder management. You will also support the organisation in preparing for audits, inspections and regulatory oversight, ensuring that compliance can be effectively demonstrated through appropriate documentation and evidence.


Role

  • Support the organisation in its NIS2 compliance programme and implementation roadmap.
  • Help develop, harmonise and implement information security policies, processes and controls.
  • Translate regulatory and security requirements into practical and effective technical and organisational measures.
  • Work closely with internal teams, management and external suppliers to ensure alignment and implementation.
  • Support the implementation and continuous improvement of an Information Security Management System (ISMS), preferably based on ISO/IEC 27001.
  • Prepare and coordinate the organisation for audits, inspections and regulatory control activities.
  • Ensure appropriate evidence, documentation and reporting are available to demonstrate compliance.
  • Monitor the progress of security and compliance initiatives and report to relevant stakeholders.
  • Identify cybersecurity risks and help balance them against operational and business objectives.
  • Provide expert advice and act as a trusted security partner for both business and IT stakeholders.

Your Experience

  • 10+ years of experience working in complex enterprise IT environments.
  • 5+ years of experience in information security, ideally in an operational, governance or organisational context.
  • Proven experience implementing and rolling out an ISMS, preferably according to ISO/IEC 27001.
  • Strong experience in project management, stakeholder management and progress reporting.
  • Demonstrated experience preparing for, supporting and following up on audits, inspections and regulatory oversight activities.
  • Experience in the public sector or social security environment is a major advantage.
  • Experience working with multiple internal and external stakeholders, including suppliers.


Profile

Strong knowledge of NIS2 and its implementation in Belgium.

Good knowledge of the CyberFundamentals Framework (CCB) and related information security frameworks.

Strong understanding of technical and organisational security measures and their practical implementation.

Ability to assess and communicate cybersecurity risks versus operational/business objectives.

Strong understanding of compliance evidence, documentation and audit readiness.

Pragmatic mindset with the ability to turn regulatory and theoretical requirements into realistic, actionable security measures.

Excellent communication, leadership and influencing skills.

Autonomous, structured and capable of operating effectively in a complex stakeholder environment.

Offer

Long-term Freelance Contract

Voordelen
  • 3_days_remote3 dagen telewerken
Bij Sander, behandelen we elke aanvraag strikt vertrouwelijk!
Apply now
Submit your CV today and let us connect you with top employers in your field.