EngiFlex

Security Consultant GRC & ISMS (Freelance mogelijk)

Belgium full-time Senior Salary not listed
full-time Senior level Technology & IT Curated
Sign in to apply Free account — we bring you straight back to this role.

About the role

Voor een complexe ICT-omgeving in de publieke sector zoeken we een securityspecialist die governance-, risico- en complianceprocessen versterkt. De focus ligt op GRC, ISMS, kwetsbaarheden en het uitbouwen van auditeerbare, schaalbare security-oplossingen.
📋 Taken en verantwoordelijkheden

Je analyseert, optimaliseert en documenteert securityprocessen en governance.

Je werkt rond information security binnen data-, infrastructuur- en applicatieomgevingen.

Je beoordeelt kwetsbaarheden en risico's op expertniveau en benadert ISMS als een organisatiebreed managementsysteem.

Je integreert GRC-platformen met Microsoft-technologieën zoals Entra ID, SharePoint, Outlook en andere relevante bedrijfsapplicaties.

Je integreert threat-intelligencebronnen en andere relevante compliance-input in de GRC-werking.

Je structureert, beheert en linkt GRC-gerelateerde documentatie zoals policies, procedures, risicoanalyses, controles en auditdocumentatie.

Je zet auditeerbare en schaalbare GRC-oplossingen op.

Je werkt rapportering, dashboards, monitoring, KPI-opvolging en managementinformatie uit binnen een GRC-context.

Je begeleidt stakeholders en stelt kosteneffectieve oplossingen voor die aansluiten bij de security risk appetite van de organisatie.

📝 Jouw profiel

Je hebt aantoonbare ervaring als Security Consultant binnen data, infrastructuur, applicaties of gelijkaardige omgevingen.

Je beschikt over diepgaande expertise in een specifiek domein van information security, zoals information security managementprocessen, kwetsbaarheidsanalyses en pentesten, applicatiebeveiliging, Privileged Access Management of encryptieoplossingen.

Je hebt aantoonbare hands-on ervaring met de inrichting van security- en/of GRC-oplossingen.

Je combineert business solutioning met security-expertise en vertaalt risico's naar kosteneffectieve oplossingen.

Je hebt ervaring met securitybeheertechnieken en -raamwerken zoals ISO 27000, COBIT for Security, NIST, OWASP en CIS Critical Security Controls.

Je kan certificeringen voorleggen afhankelijk van je expertisedomein, zoals CISM, CISSP of CEH.

Je communiceert vlot in het Nederlands op Europees CEFR-niveau C2.

💼 Aanbod
Je zal deel uitmaken van een groeiende KMO met ruimte voor initiatief en persoonlijke ontwikkeling. Wij zorgen ervoor dat je in een uitdagende maar aangename werkomgeving terecht komt met leuke collega's. Samen met jou stippelen we een carriereplan uit, met aandacht en budget voor bijkomende opleidingingen / certificaties. Je kan rekenen op een motiverend salaris, aangevuld met extralegale voordelen, inclusief bedrijfswagen (of alternatieve vergoeding).
(Freelance is ook mogelijk)
Originally posted on Himalayas

Interview prep

Walk in with sharper answers.

Use this as a quick practice sheet before you speak with the employer.

Senior
Technology & IT Security Consultant Grc Isms Freelance Senior level

Likely questions

  1. Tell us about work you have done that is close to the Security Consultant GRC & ISMS (Freelance mogelijk) role.
  2. How would you approach your first 30 days at EngiFlex?
  3. Which of Security, Consultant and Grc have you used recently, and what did it help you achieve?
  4. How have you led people, improved a process, or made a hard decision in a previous role?
  5. How do you handle busy days, changing priorities, or pressure at work?

Prepare before the call

  • A recent example that proves your experience with Security, Consultant and Grc.
  • One short story with a problem, your action, and the result.
  • Two examples that show the strengths listed on your CV.
  • A clear reason why this role and company interest you.
  • Your availability, preferred work style, and salary expectations.

Ask them

  • What would success look like in the first 90 days?
  • What are the main problems this hire should help solve?
  • How does the team give feedback and measure good work?
  • What does a normal working week look like for this role?
Practice line

I am interested in the Security Consultant GRC & ISMS (Freelance mogelijk) role because I can bring practical experience in Security, Consultant and Grc, learn the team quickly, and contribute to the outcomes EngiFlex needs from this hire.

Related jobs.

More roles from this company or category.