Trouver une offreRecruteurs

CISO Officer - Third Party Risk Management (Transport Sector)

Opportunité exclusive

Urgent

Hybride

CISO Officer - Third Party Risk Management (Transport Sector)

Taleo Consulting

CISO Officer - Third Party Risk Management (Transport Sector)

Expertises

CISCOISO 27001ISO 27002NIS2hird Party Risk ManagementSecurity Audit ISO 27036GDPRSecurity Assurancecybersecurity

il y a 3 jours

Opportunité exclusive

Partagez cette opportunité

Partagez cette opportunité à quelqu’un de votre réseau :
✓ Offrez-lui un boost de visibilité auprès du client.
✓ Aidez vos contacts à trouver leur prochain job.

Information importante


Type de contrat:

Freelance

Salaire / Taux journalier :

Salaire selon profil

Localisation :

Bruxelles, Belgique

Date de démarrage :

Urgent

Mode de travail :

Hybride

Publié le :

18 mars 2026

Le besoin


Location: Brussels, Belgium
Sector: Transport & Railway Operations
Contract Type: Freelance

About the Role
As a provider of essential public transport services, our client is committed to the highest cybersecurity standards. We are looking for a specialist to join the IT department and help shape a secure and resilient digital landscape. In the role of CISO Officer for Third Party Risk Management (TPRM) , you will be responsible for ensuring the effective management of cybersecurity risks related to all third parties, including suppliers, partners, and integrators.

Your objective is to integrate and enforce cybersecurity requirements within all procurement and tendering processes, ensuring that security commitments are consistent, compliant, and traceable throughout the entire lifecycle of the third-party relationship. You will work at the intersection of cybersecurity, legal, and procurement to protect critical railway operations.

Key Responsibilities

  1. Third Party Risk Management (TPRM)

    • Establish, maintain, and continuously improve the cybersecurity TPRM framework in alignment with regulatory standards.

    • Identify, analyze, and assess cybersecurity risks associated with third parties using security questionnaires, certifications, policy reviews, and architectural assessments.

    • Define, monitor, and document risk mitigation measures and acceptance conditions.

  2. Procurement & Tender Security

    • Review and secure cybersecurity requirements within procurement documents (RFI, RFP, RFQ, tenders).

    • Assess supplier responses and proposals from a security, compliance, and risk perspective.

    • Contribute to drafting security-related responses and identifying associated risks and commitments in collaboration with Legal and Procurement teams.

  3. Reporting & Improvement

    • Ensure clear reporting and monitoring of third-party risks and reviewed tenders.

    • Provide consolidated visibility to the CISO and propose continuous improvement actions based on threat intelligence and regulatory developments.

Profile & Qualifications

  • Education: Master’s degree in IT, Law, Risk Management, or Information Security. A Bachelor’s degree complemented by significant experience will also be considered.

  • Experience: Minimum of 5 years in a cybersecurity-related role, specifically in Third Party Risk Management, Security Assurance, GRC (Governance, Risk, Compliance), or Security Audit, with a strong focus on reviewing procurement and tender documentation.

Profil recherché


Required Skills & Knowledge

  • Standards: Strong knowledge of ISO 27001/27002, NIS2, GDPR, CyFun, ISO 27036 (Supplier Relationships), and ISA/IEC 62443.

  • Risk Assessment: Ability to assess solutions and architectures from a security perspective and to analyze complex contractual documents.

  • Stakeholder Management: Proven ability to interact effectively with various internal stakeholders (Procurement, Legal, IT, Business Units, CISO).

  • Analytical Skills: Excellent analytical and synthesis skills with the ability to produce clear and structured deliverables.

  • Solution-Oriented: Motivated to dive into complex topics with a critical, risk-oriented, and solution-oriented approach.

Languages

  • Dutch or French at native level or minimum C1 proficiency.

  • Good working proficiency in the second national language.

  • Professional proficiency in English (minimum C1).

Personal Attributes

  • Autonomous with strong prioritization skills and ability to learn quickly.

  • Rigorous, critical mindset with a strong attention to detail.

  • Team spirit, adhering to the motto: "Together, we achieve more."

D'autres offres idéales pour vous !

Ces entreprises cherchent également d'excellents profils

Visian

Responsable IT Risk Management - 3rd Party Risk

CDI

Dans 2 à 4 semaines

Paris, France

Hybride

Top Recruteur

Expertises

CybersécuritéIT risk managementRisk analysis methodologyISO 27001IT auditBusiness continuity and disaster recoveryThird-party/vendor risk managementServiceNow (IT GRC modules)

il y a 10 jours

Opportunité exclusive

Randstad Digital

Cyber Risk Analyst – CISO Office (Paiements)

67K - 72K

CDI

Urgent

93100 Montreuil, France

Hybride

Expertises

IAAnglais CourantComplianceAnalyse de RisquesSuivi de plans d'actionArchitectureIAM / Gestion des AccèsCloud SecurityMicrosoft Office

il y a 4 jours

Opportunité exclusive

Freelance.com

Consultant TPRM Expert - Cyber & Risk Management

680

Freelance

Dans 2 à 4 semaines

Paris, France

Sur site, Hybride

Expertises

Third-Party Risk ManagementVendor Risk AssessmentInformation Security Governance, Risk and Compliance (GRC)ISO 27001ISO 27005NIST

il y a 19 heures

Opportunité exclusive

Réseau professionnel conçu pour les talents

© 2026. Tous droits réservés.

Freelancers

Créer un profil

Rejoindre un collectif

Solutions et outils