Virya Energy is a Belgian pioneer in sustainable energy solutions, active across the renewable energy value chain.
Your role:
- The primary technical advisor to the CISO, keeping IT, OT and business teams secure, resilient and compliant.
- Operating independently as the CISO’s right hand—making decisions, taking ownership, and escalating only when truly necessary.
- Owning the technical security domain and managing day‑to‑day security operations and the external SOC partner.
- Lending expertise to architectural decisions and cross‑functional projects.
Key Responsibilities:
NIS2 Compliance & Governance
- Lead the technical implementation of NIS2 requirements.
- Translate abstract regulatory requirements (NIS2, ISO 27001) into concrete technical controls and procedures.
- Assist the CISO in maintaining the security policy framework and ensuring policies are technically enforceable.
Security Operations & SOC Management
- Act as point of contact for the external SOC MSSP.
- Review SOC reports, validate alerts and coordinate remediation of detected vulnerabilities.
- Coordinate internal response to security incidents, ensuring seamless communication between SOC and internal IT teams.
- Drive the adoption of security controls across the organization.
Security Architecture & Project Support
- Apply “Security by Design” principles to new IT projects, ensuring security is embedded in the development lifecycle and infrastructure services.
- Review low‑level technical designs and provide architectural advice on common cyber capabilities.
- Act as liaison between the CISO office and ICT departments to ensure security tools are deployed effectively without hindering business performance.
IT/OT Convergence
- Serve as the bridge between IT security and OT domains.
- Use understanding of OT environments to ensure IT security measures do not disrupt energy production or grid operations.
- Collaborate with engineers to maintain “Purdue Model” separation and secure remote access points.
- Support alignment with OT security standards (IEC 62443).
Qualifications
- 5–10 years of experience in Information/Cyber Security.
- Good knowledge of security frameworks (NIST, ISO 27001) and the practical implications of NIS2.
- Fluent in English; good knowledge of Dutch and/or French is highly desirable.
- Strong understanding of technical architecture: Microsoft 365 Security & Compliance stack, cloud security, network security, endpoint protection and hardening.
- Nice to have: familiarity with OT standards and/or experience in the Energy or Utilities sector.
- Excellent at explaining complex technical risks to non‑technical stakeholders and leadership.
- Experience managing external partners and holding them accountable to SLAs and deliverables.
- Pragmatic: balances perfect security with business agility, seeking workable solutions.
- Only candidates residing in Belgium with a valid residence and work permit will be considered.
Offer
- Join a fast‑growing developer shaping the energy transition in Belgium and beyond.
- Full‑time job and an open‑ended contract (no consulting).
- Benefits such as a green company car, meal vouchers, group insurance and health care insurance for you and your family members.
- Flexible workplace: homeworking up to 2–3 days per week.
Our offices are currently located in Braine‑l’Alleud. As of 2026, the workplace will be in Halle.