Head of Security (CISO)
Proximus Group
Brussels, Belgium
The Proximus Global Head of Security (= Chief Information Security Officer) serves as the process owner of all assurance activities related to the availability, integrity and confidentiality of customers, business partners, employees and business information in compliance with the organization’s information security policies.
A key element of the CISO’s role is working with the technical teams but also with the executive management to determine acceptable levels of risk for the organization. This position is responsible for establishing and maintaining a corporate-wide information security management program for all affiliates worldwide to ensure that information assets are adequately protected.
Responsibilities:
- Develop, implement and monitor a strategic, comprehensive enterprise information security and IT and network security program;
- Work directly with the business units to facilitate risk assessment and risk management processes;
- Develop and enhance an information security management framework in line with multiple international standards and regulations (ISO 27001, ISO 27701, NIS 2, SOC 2, DORA, GDPR, AI Act...);
- Understand and interact with related disciplines through committees to ensure the consistent application of policies and standards across all technology projects, systems and services;
- Organize and provide leadership to the enterprise’s information security organization;
- Assist with the overall business technology planning, providing a current knowledge and future vision of technology and systems with a focus on security and business continuity;
- Ensure knowledge on security technologies is readily available.
Requirements:
- Master’s degree in cybersecurity, IT, telecommunications or related fields;
- Relevant certifications in cybersecurity, such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or Certified Information Systems Auditor (CISA) are preferred;
- Ability to get the required security clearances allowing to interact with several authorities;
- Minimum of 5 to 10 years of experience in a combination of risk management, information and/or network security and relevant IT jobs;
- Knowledge andor experience of common information security management frameworks, such as ISO/IEC 27001, SOC 2 and NIST;
- Background in regulatory compliance and data privacy laws in the telco industry;
- Background experience with SIEM tools, EDR tooling, firewalls, intrusion detection systems, etc... Telecommunication knowledge is preferred;
- Understanding of secure software development and DevSecOps practices;
- Understanding of artificial intelligence and machine learning applications in security;
- Multilingual proficiency for international security collaboration. ENG is mandatory + FR or NL;
- Excellent written and verbal communication skills;
- High level of personal integrity allowing to pass several international security clearances;
- Innovative thinking and leadership with an ability to lead and motivate cross-functional, interdisciplinary and international teams working in multiple time-zones;
- Experience with contract and vendor negotiations and management;
- Knowledge of cloud security architecture;
- Knowledge of ethical hacking and penetration testing techniques;
- Familiarity with incident management and disaster recovery planning.
Don't forget to mention EuroTechJobs when applying.