Senior Business Consultant - Cybersecurity

Orange Cyberdefense

Wijnegem

Hybride

EUR 90 000 - 130 000

Plein temps

14 jours+
Générateur de candidature

Obtenez une réponse de cet employeur — un CV et une lettre de motivation adaptés exactement à ce qu’on recherche pour ce poste.

Passez les filtres ATS

Avantages offerts par ce poste

32 vacation days
Meal vouchers
Eco-cheques
Hospitalisation & group insurance
Company laptop

Résumé du poste

Orange Cyberdefense in Belgium seeks a Senior Business Consultant - Cybersecurity to help organisations integrate security across the Secure Software Development Lifecycle, aligning with governance and compliance frameworks such as NIS2, DORA, ISO/IEC 27001 and OWASP ASVS.

You will lead Application Security assessments, threat modelling, and SSDLC improvements, advising developers, architects and business stakeholders on secure design and governance.

Qualifications

  • Extensive professional experience in Cyber Security.
  • Minimum 4 years in Application Security.
  • Experience leading customer engagements and workshops.
  • Experience producing executive-level reports and recommendations.

Responsabilités

  • Lead Application Security Assessments and Secure Architecture Reviews.
  • Facilitate Threat Modelling and Architectural Risk Assessments (ARA).
  • Support the implementation and continuous improvement of SSDLC and DevSecOps practices.
  • Define and review secure coding standards and security requirements.
  • Assess applications against OWASP ASVS and other recognised standards.
  • Advise development teams, architects and business stakeholders on secure design.
  • Contribute to application security governance, policies and roadmaps.

Connaissances

Analytical thinking
Strategic thinking
Executive communication
Workshop facilitation
Stakeholder management

Formation

CISSP
CSSLP
CRISC
ISO/IEC 27001 Lead Implementer
Cloud security certification (Azure/AWS)

Outils

OWASP ASVS
OWASP Top 10
OWASP SAMM
Threat Modelling (STRIDE)
FAIR risk assessment
SSDLC
Application Security Architecture
API Security
DevSecOps & CI/CD Security
Cloud Security (Azure/AWS)
Identity & Access Management

Description du poste

Position summary

As a Senior Business Consultant - Cybersecurity, you help organisations integrate security throughout the Secure Software Development Lifecycle (SSDLC) while ensuring alignment with governance, risk and compliance frameworks such as NIS2, DORA, ISO/IEC 27001 and OWASP ASVS. You combine deep application security expertise with strong advisory capabilities and can translate technical risks into business-oriented recommendations.

Key Responsibilities
  • Lead Application Security Assessments and Secure Architecture Reviews.
  • Facilitate Threat Modelling and Architectural Risk Assessments (ARA).
  • Support the implementation and continuous improvement of SSDLC and DevSecOps practices.
  • Define and review secure coding standards and security requirements.
  • Assess applications against OWASP ASVS and other recognised standards.
  • Advise development teams, architects and business stakeholders on secure design.
  • Contribute to application security governance, policies and roadmaps.
Required Technical Expertise
  • OWASP ASVS, OWASP Top 10, OWASP SAMM
  • Threat Modelling (STRIDE)
  • Risk Assessments (FAIR or an equivalent industry-recognized risk assessment framework)
  • Secure Software Development Lifecycle (SSDLC)
  • Application Security Architecture
  • API Security
  • DevSecOps and CI/CD Security
  • Cloud Security (Azure and/or AWS)
  • Identity & Access Management.
Governance, Risk & Compliance
  • NIS2
  • DORA
  • ISO/IEC 27001
  • ISO 27005
  • NIST Cybersecurity Framework
  • NIST SP 800-218 (SSDF)
  • FAIR (preferred)
  • CIS Controls.
Professional Experience
  • Extensive professional experience in Cyber Security.
  • Minimum 4 years in Application Security.
  • Experience leading customer engagements and workshops.
  • Experience producing executive-level reports and recommendations.
Preferred Certifications
  • CISSP
  • CSSLP
  • CRISC
  • ISO/IEC 27001 Lead Implementer or Lead Auditor
  • Cloud security certification (Azure or AWS).
Soft Skills
  • Strong analytical and strategic thinking.
  • High learning agility and curiosity.
  • Quality-oriented and systematic problem solver.
  • Collaborative, influential and diplomatic.
  • High integrity and resilience.
  • Strong planning, organisation and self-management.
  • Excellent written and verbal communication.
  • Executive presentation skills.
  • Workshop facilitation.
  • Stakeholder management.
  • Coaching and mentoring mindset.
  • Commercial awareness.
Key Motivators
  • Solving complex security challenges.
  • Continuous professional development.
  • Advising customers and influencing strategic decisions.
  • Working autonomously while collaborating in multidisciplinary teams.
Success Criteria (first 12 months)
  • Lead multiple Application Security and Architecture Risk Assessments.
  • Support customers in strengthening their SSDLC and DevSecOps capabilities.
  • Deliver governance and compliance recommendations aligned with NIS2, DORA and ISO/IEC 27001.
  • Become a trusted advisor for application security and GRC topics.
What you can expect from us:
  • Be taken care of - We offer you 32 vacation days (with the option to make it a whopping 37 days with our Benefit Motivation Plan :-)), meal vouchers, eco-cheques, hospitalization and group insurance, company laptop, mobile phone with unlimited use as well as other benefits. So you do not have to worry about a thing!
  • Never stop learning - We want to be the best in what we do and therefore we provide training, certifications and learning opportunities for every employee so you continuously enrich your skills.
  • Transparency - Communication is key! So we organize company and team meetings on a regular base so everyone is informed properly.
  • Do what you love - Enjoy flexibility with offices in Brussels, Antwerp, Ghent & Rotselaar, a variety of events and lots of activities. We spend more time at work then we do at home, that is why it is important that everyone feels at home. And we make sure you do!
  • Snack to your heart's desire - At Orange Cyberdefense we keep it healthy. So, you can enjoy an assortment of fresh fruit and healthy snacks. For those with an occasionally sugar dip, there are sweet snacks available.
  • Reputable brand - You will join an internationally, growing company with over 25 years’ experience in the industry. This makes us experts in what we do. We have an international presence and yet local teams to assist our customers.
  • The good life ...

Orange Cyberdefense are equal opportunities employer, welcoming applications from all people, regardless of their race, sex, disability, age, religion, or sexual orientation.

Obtenez votre examen gratuit et confidentiel de votre CV.
ou faites glisser et déposez votre fichier ici.
Similar jobs

Postes similaires à comparer

Presales Solution Architect – Defense Center
Presales Solution Architect – Defense Center

Orange Cyberdefense • Brussel Hoofdstad

Sur place
EUR 90 000 - 120 000
32 vacation days
Meal vouchers
Eco-cheques
+3
Junior Application Security Consultant
Junior Application Security Consultant

Nviso • Belgique

À distance
EUR 40 000 - 60 000
Training budget and learning perks
Company car and Belgian fuel card
Regular team-building events
+1
Senior GRC Consultant
Senior GRC Consultant

Approach Cyber • Antwerpen

Hybride
EUR 75 000 - 115 000
CDI contract
Mobility budget or company car
Group insurance and pension
+4
Senior Application Security & Risk Advisor
Senior Application Security & Risk Advisor

Orange Cyberdefense • Wijnegem

Hybride
EUR 90 000 - 130 000
32 vacation days
Meal vouchers
Eco-cheques
+2
SOC Analyst – Microsoft Security Focus
SOC Analyst – Microsoft Security Focus

EASI • Oost-Vlaanderen

Sur place
EUR 45 000 - 70 000
Company car Belgium charging card
Eco-vouchers
Hospitalization insurance
+4
(Junior) Security Operations Engineering Consultant
(Junior) Security Operations Engineering Consultant

Nviso • Brussel Hoofdstad

Sur place
EUR 38 000 - 60 000
Home Office possibilities
EU remote option
Junior Cyber Architecture & Strategy Consultant — Hybrid
Junior Cyber Architecture & Strategy Consultant — Hybrid

Nviso • Brussel Hoofdstad

Sur place
Cyber Strategy & Architecture Manager
Cyber Strategy & Architecture Manager

NVISO Security • Brussel

Hybride
EUR 90 000 - 140 000
10,000€ training budget + 10 days/2y
Company car + Belgian fuel card
Flexible hours and remote work from ab
Senior Red Teamer
Senior Red Teamer

Nviso • Brussel Hoofdstad

Sur place
EUR 90 000 - 130 000
Training budget
Remote options
Flexible schedule
+1
Technical Lead Manager
Technical Lead Manager

NVISO • Brussel Hoofdstad

Sur place
Confidential
Training budget 10.000€
Flexible working hours
32 paid leave days