Cyber Risk & Control Architect (CISO)

Cyber Risk & Control Architect (CISO)

provinceProvince Brussels
locationMarkerIconRegion Brussels
briefcaseIconPermanent Contract
senorityIcon
positionIcon1 open position
provinceProvince BrusselslocationMarkerIconBrusselsbriefcaseIconPermanent ContractsenorityIcon5+ years of experiencepositionIcon1 open position

What will you do?

Bnode is strengthening its Group CISO Office and is looking for a senior Cyber Risk & Control Architect to help shape how cybersecurity risk is governed across our international organisation.

In this role, you will design and continuously evolve the Group Cyber Risk & Control Framework, providing a common approach to cyber risk, controls, compliance and reporting across more than 20 entities.

Working closely with the Group CISO and Cyber Program Management Lead, you will translate evolving cyber threats, regulatory requirements, audit findings and business priorities into clear risks, controls and actions. You will combine strategic thinking with practical implementation, helping senior leaders make informed, risk-based decisions and strengthening cyber governance across Bnode.

Your mission

Shape our Group Cyber Risk & Control Framework

  • Own and continuously improve the Group Cyber Risk & Control Framework.
  • Define cyber risk scenarios, control objectives, KRIs and maturity criteria.
  • Translate emerging threats, regulatory requirements, audit findings and maturity assessments into clear cyber priorities.
  • Support risk appetite discussions and risk-based decision-making at Executive Committee and Board level.

Strengthen governance, compliance and reporting

  • Define and maintain the methodology supporting the Group Cyber Plan.
  • Create clear traceability between cyber risks, controls, regulatory requirements, remediation plans and strategic initiatives.
  • Develop integrated reporting covering cyber risk, programme delivery, control effectiveness and NIS2 compliance.
  • Support reporting to senior management, the Board and the Audit & Risk Committee.

Develop our cyber data, processes and tooling

  • Design scalable processes to collect, validate and consolidate cyber data across more than 20 entities.
  • Establish reporting cycles, responsibilities and data-quality standards.
  • Develop the data model connecting risks, controls, compliance obligations, action plans and reporting.
  • Lead the selection and evolution of GRC and related cyber governance tooling.
  • Drive greater automation and standardisation across cyber risk, compliance and reporting.

Drive continuous improvement

  • Ensure the framework evolves with the threat landscape, regulation, audit findings and changing business priorities.
  • Promote greater consistency and maturity across the Group while recognising the needs of different entities.
  • Identify opportunities to improve control effectiveness, risk visibility and the quality of cyber reporting.

Who are you?

Your profile

You are an experienced cybersecurity professional who can combine strong GRC expertise with the ability to influence at senior level.

You bring:

  • Around 10+ years of experience in cybersecurity governance, cyber risk, compliance, audit or cybersecurity consulting.
  • Strong expertise in cyber risk management, control frameworks and regulatory compliance.
  • Experience working within large, complex and preferably international organisations.
  • Proven experience designing governance frameworks, operating models and reporting processes.
  • Experience implementing or managing GRC, risk-management or compliance tooling.
  • Strong knowledge of frameworks and regulations such as CyFun, NIS2, ISO 27001, NIST CSF and DORA.
  • Strong analytical and conceptual skills, with the ability to turn complex cyber risks into clear priorities and actions.
  • The confidence and communication skills to engage, influence and challenge stakeholders from operational teams through to Board level.
  • Fluency in English. Dutch and/or French is an asset.

This is an opportunity to play a central role in shaping Bnode's Group-wide approach to cyber risk and controls, with significant exposure across our international organisation and senior leadership.

What do we offer?

Like a long-awaited parcel, we want to make you feel welcome and valued. Our offer includes a competitive monthly salary, that goes without saying. On top of that, you can count on:

  • Meal vouchers of €8 per working day 
  • Hospitalization-, group- and disability insurances 
  • A phone subscription, including 25GB data 
  • A flexible renumeration plan, which allows you to customize your own benefits. A company car, bike leasing, public transportation, extra days off,... the choice is yours 
  • Possibility to enter the Federal Mobility plan 
  • Work/life balance, thanks to flexible working hours and the possibility to work from home  
  • 20 days of statutory leave and 7 additional extralegal days off  
  • An end-of-year and performance-based bonus and double holiday pay  
  • Many benefits from more than 100 Bpost-partners 
#Bpost #Bnode #LI-BP6

Waarom bpost?

This is how we make sure that you are happy to come to work with us every day:

euro
An interesting package

With a fair salary, of course. Topped off with interesting extra fringe benefits, such as meal vouchers, extra holidays and additional allowances.

cardiology
Work life balance

Your well-being is our priority, so your job should fit into your life: with a job close to home, or a flexible office job. 

school
Job security and growth opportunities

With over 500 different jobs, we gladly offer you growth opportunities. This way, you are assured of your job, and your future.

customer loyality
Equal opportunities for everyone

bpost is diverse, and we are proud of that. It is our strength together with our respect and trust for each other.

At bpost, we really have the ambition to help people grow. You can feel the human values, without losing touch with reality. I also notice this pragmatism, with a human touch, in my colleagues; each and every one of them is capable and exceptionally professional. Besides technical knowledge, mutual support is the key word across all departments.

Elodie

Product Owner

Read more 
Elodie