Security Architect

  • Brussel

Detail vacature

Introductie

The Security Architect translates strategic cybersecurity directions into concrete and robust

technical solutions. The Security Architect ensures consistency, regulatory compliance (NIS2,

GDPR, ISO 27001, IEC 62443…), and the effectiveness of security measures across the entire

organization, particularly in the context of critical services and vital infrastructures.

 

The Architect contributes to an integrated security architecture covering IT, OT, cloud and

network environments, leveraging Archimate models and functional frameworks such as

CyFun and ISO 27001 to ensure traceability and governance of security capabilities.

Functie

MAIN ACTIVITIES

Security Architecture

• Design, formalize, and evolve the target security architecture, integrating

requirements from the early stages of project design (Security by Design, Privacy by

Design).

• Define security architecture standards, models, and principles in alignment with the

organization’s strategic directions.

• Integrate key security domains (network, cloud, IT/OT/IoT, ICAM, data, cryptography,

etc.) into a coherent and modular vision.

• Lead or contribute to security intake processes and architecture committees to

ensure alignment of solutions with the target architecture.

 

Risk Management

• Perform technical and architectural risk assessments on projects, infrastructures,

business applications, support applications, and industrial systems.

• Identify threats, vulnerabilities, and attack scenarios, and recommend appropriate

mitigation measures.

• Maintain a consolidated and up-to-date view of risks across various domains,

including ERP systems (SAP), IT/OT/IoT environments, the use of Artificial

Intelligence, access management, and inter-application data flows.

 

Standards, Compliance and Governance

• Contribute to drafting and updating technical security standards, ensuring their

alignment with legal requirements and reference frameworks (CyFun, ISO 27001, IEC

62443, NIST, NIS2, GDPR, etc.).

• Contribute to security governance committees to guide technical decisions.

• Ensure consistency of architectural principles with internal standards and maintain

traceability of decisions.

• Participate in coordination with competent authorities when necessary.

 

Support and Advisory

• Assist project, IT, OT and business teams in integrating security requirements,

including in complex contexts (SAP integration, IT/OT convergence, cloud solutions,

access management).

• Provide support during design phases, solution analysis, or procurement processes

(RFI/RFP).

• Ensure the alignment of critical architectural components (ICAM, detection and

response solutions, cryptography, etc.) with overall security objectives and the IT

roadmap.

 

Continuous Improvement, Security and Technology

• Monitor the evolution of threats, technologies, regulations and governance models,

identifying innovation opportunities.

• Propose continuous improvements to strengthen the security posture, including

detection and response, logging, resilience and identity management.

• Promote modelling, reusability and consistency of architectural components.

Functie-eisen

CONFORMITY CRITERIA

Evidence of compliance with the requested skills (criteria) needs to be provided in the CV.

• Bachelor’s degree in IT, IT Risk Management or Information Security (or equivalent).

• Minimum 5 years of experience in cybersecurity architecture or risk assessment,

demonstrated in IT, OT or IoT environments.

• Active CISSP certification.

• Fluent English (spoken and written), minimum C1.

• Fluent French or Dutch (spoken and written), minimum C1.

• Willing to work onsite at least 3 days per week.

 

EVALUATION CRITERIA

The more experience, the stronger the evaluation.

• Experience with cybersecurity frameworks (CyFun, ISO 27001, NIST, IEC 62443, NIS2,

GDPR, CIS Controls), based on number of projects and role.

• Experience with SAP integration (number of projects, role, responsibilities).

• Experience in security assessments including Business Impact Analysis, Threat

Modelling, Risk Assessment and Gap Analysis.

• Breadth of technical experience across domains (network, cloud, ICAM,

cryptography, monitoring, AI security).

• Additional cybersecurity certifications (CCSP, CISM, CISA, CGEIT, ISO 27001, SABSA).

• Demonstrated stakeholder communication experience.

• Experience in analysis and improvement initiatives.

• Degree of autonomy and responsibility in previous roles.

• Experience working in multi-stakeholder environments.

Inlichtingen

Ginny-Rose Lie-A-Jen +32 3 202 05 00

GA DE UITDAGING AAN

Solliciteren voor deze vacature

Vul onderstaand formulier in

Deel deze vacature