Cyber Security Analyst

OneSource Consulting

Brussel Hoofdstad

Sur place

EUR 55 000 - 90 000

Plein temps

Il y a 4 jours
Soyez parmi les premiers à postuler
Générateur de candidature

Démarquez-vous pour ce poste — générez un CV et une lettre de motivation personnalisés en environ une minute.

Passez les filtres ATS

Résumé du poste

OneSource Consulting is seeking a Cybersecurity Analyst specialising in Vulnerability & Attack Surface Management to join the Flemish Centre for Digital Security project in Belgium.

You will analyze vulnerabilities, validate findings, and prioritize remediation while developing Python-based automation and reporting. Dutch (C2) is required, with expertise in security governance and frameworks. The role blends hands-on operations with process improvement and stakeholder collaboration.

Qualifications

  • Experience as cybersecurity analyst focusing on vulnerability management.
  • Experience as Security Consultant in data, infrastructure, or applications.
  • Ability to translate findings into actionable reporting.
  • Proficient in Python scripting for automation.
  • Knowledge of security frameworks (ISO27000, NIST, CIS).

Responsabilités

  • Analyze vulnerabilities and exposures from diverse sources.
  • Validate findings, filter noise, estimate real impact.
  • Prioritize findings based on CVSS, EPSS, context.
  • Produce targeted recommendations for remediation.
  • Develop Python scripts and API integrations for data collection and reporting.
  • Support cyber awareness initiatives and phishing simulations.
  • Contribute to process standardization and continuous improvement.

Connaissances

Vulnerability management
Python scripting
Security governance
Security frameworks
Dutch language proficiency

Description du poste

JOB TITLE: CYBERSECURITY ANALYST VULNERABILITY & ATTACK SURFACE MANAGEMENT
DURATION: 01/10/2026 - 15/07/2027 PLUS POSSIBLE OF EXTENSION
LANGUAGES: FRENCH, DUTCH AND ENGLISH
JOB DESCRIPTION
BUSINESS CONTEXT:
  • You will work within the Flemish Centre for Digital Security (VCDV), part of Client. The VCDV acts as the central expertise centre for digital security within the Flemish government and supports both Flemish entities and local authorities with expertise, services and coordination on cybersecurity.
  • Within this context, a structural service is being developed, with the aim of identifying vulnerabilities in a timely manner and supporting organisations within the Flemish government and local authorities in strengthening their digital security.
TECHNICAL CONTEXT:
  • The technical environment in which these services are offered is very diverse and includes a variety of technologies, platforms and architectures that are used within the Flemish government and by local authorities. The service must therefore be applicable to a wide spectrum of applications, infrastructures, cloud environments and digital platforms.
  • Given this variety of solutions and the size of the data volumes and target groups to be processed, maximum integration and automation of the work processes is essential. You are therefore expected to be able to independently set up and maintain automation solutions.
  • As a Cybersecurity Analyst Vulnerability & Attack Surface Management, you will support the further development, implementation and optimisation of the services related to vulnerability management, attack surface management and cyber awareness within the Flemish government.
  • You analyze, assess and follow up on information about vulnerabilities, exposed systems and security risks. You validate findings, place them in their risk context and translate them into concrete recommendations. In doing so, you will support Flemish entities and local authorities in prioritising and following up on remediation actions.
  • Automation is an essential part of the job. Given the volume of sources, data, and audiences, you'll develop and maintain scripts — primarily in Python — and integrations that support the collection, enrichment, correlation, follow-up, and reporting of vulnerability information.
  • You will work closely with internal teams, external service providers and representatives of Flemish entities and local authorities. You provide timely insight into vulnerabilities and exposed systems and provide the corresponding recommendations, so that the organisations involved can remediate in a targeted manner.
  • In addition, you also support initiatives around cyber awareness and phishing simulations.
  • The position is executive and supportive in nature and combines substantive expertise with a strong operational focus. In addition to the analysis and follow-up of files, you will take an active role in the daily operation of the service and contribute to the further professionalization of processes, working methods and supporting solutions.
CORE TASKS
  • Analyzing vulnerabilities and exposures based on a variety of sources.
  • Validating findings, filtering noise and false positives, and estimating the real impact for the organizations involved.
  • Risk-based prioritization of findings based on CVSS, EPSS, operating status and organizational context, among other things.
  • Distilling overarching findings and trends as well as organization-specific recommendations from the analyzed information.
  • To make this information accessible through the existing reporting and communication channels, tailored to the target groups involved.
  • Developing and maintaining scripts and API integrations (Python) for data collection, enrichment, correlation and reporting.
  • Supporting Flemish entities and local authorities in the follow-up of remediation actions.
  • Helping to prepare, implement and discuss cyber awareness initiatives and phishing simulations.
  • Contributing to the documentation, standardization and continuous improvement of processes, working methods and supporting solutions.
  • Demonstrable experience as a Security Consultant within one of the following environments: data, infrastructure, applications, ...
  • Demonstrable expertise in specific knowledge domain of information security (e.g. implementing information security management processes, performing vulnerability analyses and pen tests, optimizing application security through cost-effective
  • Demonstrated experience in analyzing, optimizing and documenting security processes and governance
  • Demonstrated experience in security management techniques and/or frameworks (e.g.: ISO27000 series, COBIT for Security, NIST, OWASP, CIS Critical Security Controls for Effective Cyber Defense)
  • Demonstrable knowledge and experience via certificates depending on domain of expertise (e.g. CISM, CISSP, CEH).
  • Language requirement: Dutch at European CEFR - level C2.
SKILLS
MUST HAVE:
  • Demonstrable experience as a cybersecurity analyst in vulnerability management: identification, validation, risk-based prioritization and follow-up of remediation.
  • Demonstrable experience as a Security Consultant within one of the following environments: data, infrastructure, applications, .
  • Proven experience in analyzing, optimizing and documenting security processes and governance
  • Proven experience with scripting and automation in Python: API integrations, data processing, and automated reporting.
  • Proven experience with vulnerability scanning and exposure management solutions, including configuration, execution and interpretation of scans.
  • Demonstrable expertise in a specific knowledge domain of information security
  • Language requirement: Dutch at European CEFR - level C2.
SHOULD HAVE:
  • Demonstrable experience in translating technical findings into reporting and recommendations for both technical and non-technical target groups.
  • Proven experience with ticketing and workflow systems for the follow-up of findings and remediation actions (e.g. Jira, ServiceNow).
  • Demonstrable experience with security management techniques and/or frameworks. (bv: ISO27000 series, COBIT for Security, NIST, OWASP, CIS Critical Security Controls for Effective Cyber Defense).
  • Demonstrable knowledge and experience via certificates depending on domain of expertise (e.g. CISM, CISSP, CEH).
  • Proven experience with cyber awareness programs and phishing simulations.
Obtenez votre examen gratuit et confidentiel de votre CV.
ou faites glisser et déposez votre fichier ici.
Similar jobs

Postes similaires à comparer

Cybersecurity Analyst Vulnerability & Attack Surface Management
Cybersecurity Analyst Vulnerability & Attack Surface Management

Harvey Nash • Brussel Hoofdstad

Sur place
EUR 60 000 - 90 000
Cybersecurity Analyst – Python & Vulnerability Management
Cybersecurity Analyst – Python & Vulnerability Management

Pauwels Consulting • Brussel

Hybride
EUR 55 000 - 80 000
Cybersecurity Analyst Vulnerability Management & Attack Surface (Freelance mogelijk)
Cybersecurity Analyst Vulnerability Management & Attack Surface (Freelance mogelijk)

EngiFlex BV • Brussel Hoofdstad

Hybride
EUR 60 000 - 90 000
Bedrijfswagen
Extralegale voordelen
Junior Functional Security Analyst
Junior Functional Security Analyst

Nexeo • Brussel Hoofdstad

Sur place
EUR 30 000 - 42 000
Cybersecurity Engineer – Belgium (Hybrid)
Cybersecurity Engineer – Belgium (Hybrid)

Hive-X • Namen

Sur place
EUR 50 000 - 70 000
IT Security Analyst
IT Security Analyst

Source Technology Limited • Antwerpen

Hybride
EUR 27 675 000 - 33 210 000
Junior Functional Security Analyst
Junior Functional Security Analyst

Nexeo • Brussel

Sur place
EUR 38 000 - 52 000
Senior Security Consultant
Senior Security Consultant

Prodata Systems • Zaventem

Sur place
EUR 50 000 - 70 000
Vulnerability & Attack Surface Analyst (Cyber Defense)
Vulnerability & Attack Surface Analyst (Cyber Defense)

OneSource Consulting • Brussel Hoofdstad

Sur place
EUR 55 000 - 90 000
Cybersecurity Manager
Cybersecurity Manager

Nettalent • Brussel Hoofdstad

Hybride
EUR 70 000 - 90 000
Annual bonus scheme
Executive-level company car
Group Insurance benefits
+3