About this role
At BrightAnalytics, you take the lead on our Information Security Management System (ISMS), acting as the ultimate authority on our security governance. We are a team of high-end professionals in a high-paced environment. We focus on results, we learn from the best, and we grow with impact.
Key Performance Areas
ISMS Implementation
- Take end-to-end responsibility to plan, evaluate, and continuously improve our information security services and ISO 27001 certification.
- Guarantee strict compliance with European data protection legislation across our entire platform.
- Organize steering committees with leadership to align security strategy with our high-paced organizational growth.
- Operate with a strict risk management mindset.
Application Security & Technical Collaboration
- Cooperate with our Security Champions.
- Oversee vulnerability management.
- Drive application and infrastructure pentesting initiatives to proactively expose and neutralize threats.
- Set up and participate actively in exercises to prepare the organization for real-world cyber attacks.
Incident Response
- Collaborate directly with technical teams to resolve vulnerabilities and update security processes swiftly.
- Report on security incidents with absolute clarity, delivering straight-to-the-point recommendations for remediation.
- Investigate and initiate small-scale improvements to internal tooling without waiting for a directive.
Client Trust & Audit Execution
- Work seamlessly with Vanta to maintain a comprehensive corpus of evidences on Security and Privacy.
- Act as the security authority during client contact, directly responding to compliance and security questionnaires.
- Prepare rigorously for our internal and external security audits.
Legal & Compliance
- Take full ownership of our legal frameworks, staying relentlessly up to date with evolving security laws and international regulations.
- Execute strict license management, driving the follow-up and final approval processes.
- Assume full responsibility and act as our dedicated Data Protection Officer (DPO).
- Apply your knowledge of NIS2, DORA, CRA, and the EU AI Act to future-proof our operational resilience.
What do you bring?
- A Bachelor’s or Master’s degree in IT or Computer Science, backed by proven experience in ISMS and security frameworks.
- In possession of a CISO certificate is an added value
- Deep knowledge of AI to critically evaluate both its security risks and operational advantages within our environment.
- "Not my job" is not in our vocabulary, autonomous execution and extra-role behavior are the baseline.
- You function highly focussed under pressure and can handle critical situations
- Thriving in our hub at least 4 days a week, because proximity is power and accelerates growth.
What can you expect?
- A key role in one of the fastest-growing fintech companies in Belgium
- We are a financially healthy and ISO-certified scale-up with strong international growth ambitions
- An open and entrepreneurial culture where personal initiative is valued
- Being part of a team that highly prizes entrepreneurship
- On-the-job coaching and weekly training to develop unique skills
- No less than 20 statutory + 12 extra vacation days
- Flexible working hours: start between 7:30 and 9:30 AM and finish between 4:30 and 6:30 PM.
- Company car
- Meal vouchers of €10 per working day
- Eco-vouchers
- Hospitalization insurance
- Alan Health Benefits (your comprehensive supplementary health insurance)
- Friday after-work drinks, legendary team-building events, and an annual weekend trip with the entire BrightAnalytics team
Ready to boost your career in fintech?
Apply today and grow with BrightAnalytics!
