Back to all jobs
Visible on IKONS todayNewPopular

Digital Risk & Compliance Officer

BrusselsHybrid40 hours/week<3months

This assignment involves developing and maintaining information security policies, standards, and procedures. You will conduct structured risk assessments and monitor the threat landscape. You will contribute to IT audits and collaborate with teams to integrate security and compliance requirements into operational processes and digital projects.

What you do

  • Develop and maintain information security policies, standards, and procedures in alignment with organizational goals.
  • Conduct structured risk assessments across IT systems and third-party vendors using frameworks such as CIS18, ISO 27001, or NIST.
  • Monitor the threat landscape to proactively identify and mitigate emerging risks relevant to the project.
  • Contribute to internal and external IT audits and test the effectiveness of digital controls.
  • Collaborate with cross-functional teams to embed security and compliance requirements into operational processes and digital projects.
  • Implement pragmatic security controls and build digital risk awareness courses for employees.
  • Assess the risk profiles and compliance posture of critical SaaS vendors and digital partners.

What they ask

  • 1+ years of experience in information security, IT risk management, or a related discipline.
  • Practical knowledge of security frameworks and standards such as ISO 27001, CIS18, and NIST CSF.
  • Solid understanding of regulatory requirements including GDPR, NIS2, and the EU AI Act.
  • Experienced in conducting vendor risk assessments and collaborating on IT audits.
  • Technical understanding of Azure cloud governance, Microsoft 365, and hybrid infrastructure.
  • Knowledge of Identity & Access Management concepts including RBAC, PAM, MFA, and Entra ID.
  • Familiarity with vulnerability management processes and tooling such as Qualys or Tenable.
  • Fluent in French and English.

Nice to Haves.

  • Possession of ISO 27001 Foundation, ISO 27001 Lead Implementer, or CompTIA Security+ certifications.
  • Experience setting up an ISMS or GRC platform to manage controls and risks.
  • Understanding of secure software development practices and application-level risks.
  • Knowledge of Dutch.

How to apply

View the full assignment text and application details once your tailored application is ready.

Order a tailored application to view the full assignment and application details.

More context, less searching.

You get enough context to judge whether this job is relevant. The full brief, client details and next steps stay available inside the app.