Job description
Here is a rewritten and polished version of the Chief Information Security Officer (CISO) job description — professional, concise, and formatted for clear readability:
Job Title: Chief Information Security Officer (CISO) – Financial Sector
Location: Brussels, Belgium (3 days/week on-site)
Start Date: ASAP
Contract Type: Freelance/Contract
Language Requirements: English (Fluent), French/Dutch (preferred)
Citizenship: EU nationality required
Rate: Competitive Daily Rate
Role Overview:
A dynamic organization in the financial services sector is seeking a Chief Information Security Officer (CISO) to lead its cybersecurity and IT risk management strategy. This high-impact role blends strategic vision with hands-on delivery and requires deep technical knowledge and strong regulatory experience—particularly in financial environments.
The CISO will report directly to the CIO and work cross-functionally with executive leadership and second-line functions to ensure the confidentiality, integrity, and availability of the organization’s systems and data.
Key Responsibilities:
? Cybersecurity Strategy & Governance
-
Define and lead the enterprise-wide cybersecurity strategy
-
Establish governance structures, policies, KPIs, and control frameworks
-
Chair Information Security Steering Committees and advise on threat landscape
?? IT Risk Management
-
Conduct IT risk assessments, including third-party/cloud-related risks
-
Design and monitor mitigation plans and risk dashboards
-
Respond to internal/external audits and regulatory requests
? Security Operations & Incident Response
-
Oversee daily cyber operations and incident detection/remediation
-
Develop and coordinate incident response and business continuity plans
-
Liaise with internal teams and regulators during security incidents
? Cybersecurity Projects (DORA Focus)
-
Integrate cybersecurity into project delivery life cycles
-
Support vendor evaluations and third-party security reviews
-
Promote adoption of advanced security technologies
? Awareness & Stakeholder Engagement
-
Lead training and awareness programs across departments
-
Foster alignment across Legal, Compliance, Risk, and HR functions
-
Serve as the point of contact for regulatory and external stakeholders
Required Skills & Experience:
-
5–7+ years in cybersecurity, with 3+ years in a leadership role
-
Background in financial services or payment institutions
-
Strong technical expertise: network security, SIEM, cloud, encryption, firewalls
-
Proven experience in risk management, third-party risk, and audits
-
Deep understanding of: DORA, GDPR, PCI-DSS, ISO 27001
-
Excellent communication and stakeholder management skills
-
Fluent English; French or Dutch is a plus
Preferred Certifications:
-
CISSP, CISM, ISO 27001 Lead Implementer, NIS2 knowledge
Work Setup:
-
Hybrid model: 3 days/week on-site in Brussels (Tuesdays, Thursdays + 1 day of choice)
-
2 days remote per week