Technology Risk Consultant

Asenium Consulting

Brussel Hoofdstad

On-site

EUR 90,000 - 120,000

Full time

15 hours ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Asenium Consulting seeks a senior TPTRM expert to assess and manage supplier IT, cybersecurity, and operational risks in a large financial services environment. You will lead risk assessments of SaaS/IaaS/PaaS, review cloud security and audits, and negotiate supplier clauses with procurement and legal teams.

Responsibilities include coordinating external audits, tracking remediation, and reporting risk dashboards to senior management, while collaborating with cyber defense, security

Qualifications

  • 10+ years of info security and IT/cyber risk management experience.
  • Experience assessing SaaS, IaaS, and PaaS and cloud security.
  • Proficiency with ISO 27001, SOC 2, NIST, and OWASP.
  • Financial services experience in large corporate environments.

Responsibilities

  • Conduct IT and cyber risk assessments of suppliers during due diligence.
  • Assess cloud services for security, data protection, and resilience; review vulnerability and penetration testing reports.
  • Review, challenge, and negotiate supplier IT and cybersecurity clauses with procurement, legal, and business teams.
  • Coordinate external on-site audits, validate findings, track remediation, and elevate critical risks.
  • Monitor supplier security posture through periodic reviews, incident responses, and compliance attestations.
  • Lead ICT risk and cyber committees; prepare dashboards and concise risk reports for senior management.
  • Collaborate with cyber defense, security architecture, continuity, and data protection specialists.
  • Improve TPTRM methodologies, assessment templates, audit guidelines, and reporting standards.

Skills

IT risk management
Third-party risk assessment
Cloud security
Information security
ISO 27001
SOC 2
NIST
OWASP
Vendor negotiations
Stakeholder management
Training & presentations

Education

Master’s degree in IT/Cybersecurity or Risk Management

Job description

Asenium is looking for a senior TPTRM expert to assess and manage supplier-related IT, cybersecurity, and operational risks in a large financial services environment.

Responsibilities:
  • Conduct IT and cyber risk assessments of intragroup and external suppliers during due diligence.
  • Assess cloud services for security, data protection, and resilience; review vulnerability and penetration testing reports.
  • Review, challenge, and negotiate supplier IT and cybersecurity clauses with procurement, legal, and business teams.
  • Coordinate external on-site audits, validate findings, track remediation, and elevate critical risks.
  • Monitor supplier security posture through periodic reviews, incident responses, and compliance attestations.
  • Lead ICT risk and cyber committees; prepare dashboards and concise risk reports for senior management.
  • Collaborate with cyber defense, security architecture, continuity, and data protection specialists.
  • Improve TPTRM methodologies, assessment templates, audit guidelines, and reporting standards.
Must-have requirements:
  • 10+ years of experience in information security and IT/cyber risk management, with strong third-party assessment and cloud security expertise.
  • Experience assessing SaaS, IaaS, and PaaS environments, application security, vulnerabilities, penetration testing, and audit findings.
  • Proficiency in ISO 27001, SOC/SOC 2, NIST, and OWASP frameworks and methodologies.
  • Financial services experience within large corporate environments.
  • Experience reviewing and amending third-party IT and cybersecurity contractual clauses.
  • Strong process design and business analysis skills, plus experience delivering stakeholder presentations and training.
  • Strong analytical, communication, negotiation, and stakeholder management skills; ability to work autonomously, manage competing priorities, and coach others.
  • Master’s degree in IT, Cybersecurity, or Risk Management, or equivalent experience.
  • Fluent French and English, spoken and written.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Technology Risk Consultant - TPTRM & Cloud Security
Senior Technology Risk Consultant - TPTRM & Cloud Security

Asenium Consulting • Brussel Hoofdstad

On-site
EUR 90,000 - 120,000
IT and Cyber Third Party Risk Assessor
IT and Cyber Third Party Risk Assessor

OPTIMUS IT SERVICES • Brussel

On-site
EUR 90,000 - 130,000
IT and Cyber Third Party Risk Assessor (Expert) - BNP Paribas Fortis
IT and Cyber Third Party Risk Assessor (Expert) - BNP Paribas Fortis

Adjugo • Brussel Hoofdstad

Hybrid
EUR 95,000 - 130,000
IT & Cyber Third Party Risk Assessor
IT & Cyber Third Party Risk Assessor

Huxley • Brussel

Hybrid
EUR 60,000 - 90,000
IT & Cyber Third Party Risk Management Expert - HQ Brussels
IT & Cyber Third Party Risk Management Expert - HQ Brussels

Editx • Brussel

On-site
EUR 90,000 - 120,000
IT And Cyber Third Party Risk Assessor
IT And Cyber Third Party Risk Assessor

Rhox • Brussel

On-site
EUR 90,000 - 130,000
Third Party Risk Consultant
Third Party Risk Consultant

Stott and May Inc. • Brussel Hoofdstad

Hybrid
EUR 90,000 - 130,000
Senior Cyber Security Risk Assessment Consultant – DAST / SAST/ OWASP
Senior Cyber Security Risk Assessment Consultant – DAST / SAST/ OWASP

Salt • Brussel Hoofdstad

Hybrid
EUR 90,000 - 140,000
Strategic Third-Party IT Risk & Cybersecurity Expert
Strategic Third-Party IT Risk & Cybersecurity Expert

Editx • Brussel

On-site
EUR 90,000 - 120,000
Senior IT & Cloud Security Third-Party Risk Assessor
Senior IT & Cloud Security Third-Party Risk Assessor

Adjugo • Brussel Hoofdstad

Hybrid
EUR 95,000 - 130,000