Expert IT and Cyber Third Party Risk Assessor

Sector: Banking

Location: Brussels

Contract length: 12 months

Estimated daily rate (EUR): 780 - 950

Languages: French · English (Dutch Fluent)

Estimated daily rates are Rivant market estimates for guidance — not a client rate card.

Role details

Start date: 2026-10-01

Duration: 12 months

Extension possible: Not specified

Estimated daily rate (EUR): 780 - 950

Education: Master's in IT, Cybersecurity, Risk Management, or equivalent professional experience

Location detail: Brussels (5 min walk from Central Station) - hybrid ~50% on site / 50% homeworking. Travel N/A. Remote/telework from Belgium only

About the role

A major Belgian bank in Brussels needs an Expert in Third-Party Technology Risk Management. You assess and monitor IT and cybersecurity risk from intragroup and external suppliers — especially cloud solutions — and work with cyber defence, security architecture, continuity, data protection and procurement so supplier risk stays within appetite.

Responsibilities

  • Run IT and cyber risk assessments of third-party suppliers during due diligence, including cybersecurity posture, IT controls and regulatory/contractual fit
  • Assess cloud solutions (SaaS, HSP, AWS and similar) for security, data protection and resilience
  • Review vulnerability and penetration testing reports against security practice and regulation
  • Challenge and negotiate IT and cybersecurity clauses in supplier contracts with procurement, legal and business
  • Coordinate IT and cyber onsite audits by external auditors; validate findings and track remediation
  • Monitor third-party security posture via reports, incidents and compliance attestations (ISO 27001, SOC, NIST)
  • Lead ICT risk and cyber forums with business and supplier security teams; maintain risk dashboards for senior management
  • Improve TPTRM frameworks, templates and reporting with architecture, cyber defence, continuity, privacy and procurement

Business experience

SkillLevelPriority
Information Security and Risk Management frameworks (ISO 27001, SOC, NIST, OWASP)Not specifiedMandatory
Financial services, particularly large corporate environmentsNot specifiedMandatory
Reviewing and amending IT and cyber third-party clauses in supplier contractsNot specifiedMandatory
Process design and business analysis in IT and security risk managementNot specifiedMandatory
Presentations and training to stakeholders on risk-related topicsNot specifiedMandatory
Strong IT background with exposure to operational and security risk managementNot specifiedMandatory

Functional experience

SkillLevelPriority
Professional experience in information security10+ yearsMandatory
Third-party IT and security assessmentsNot specifiedMandatory
IT risk managementNot specifiedMandatory
Process design and business analysisNot specifiedMandatory
Delivering presentations and trainingNot specifiedMandatory

Technical experience

SkillLevelPriority
IT and Cyber Risk Management focused on third-party risk assessments and cloud security (SaaS, IaaS, PaaS)10+ yearsMandatory
Third-party IT and security assessments for suppliers and vendorsNot specifiedMandatory
Application security, vulnerability management, penetration testing and audit methodologies (ISO 27001, SOC 2, NIST, OWASP)Not specifiedMandatory
Control frameworks and audit methodologiesNot specifiedPreferable
GRC tools (e.g. ServiceNow)Not specifiedPreferable
Optional security certifications (CISSP, CISM, CIPP, CCSK)Not specifiedPreferable

Language requirements

French · English (Dutch Fluent)

LanguageSpeakingReadingWritingMandatory
FrenchFluentFluentFluentYes
EnglishFluentFluentFluentYes
DutchFluentFluentFluentNo

Soft skills

  • Strong analytical and synthesis skills — turn complex technical risks into clear management insights
  • Excellent communication and influencing with technical experts, business and external suppliers
  • Autonomous, proactive and results-driven with a structured, methodical approach
  • Manage multiple priorities in a dynamic, multicultural environment
  • Negotiation and conflict resolution for contractual and risk-mitigation discussions
  • Adapt to stakeholder expectations while respecting processes; mentor and coach others

Apply

Interested in this role?

Send your interest below. A person at Rivant will review it against this vacancy.

Get in touch

Register interest

Share your details and optionally upload a PDF CV.

Applying for Expert IT and Cyber Third Party Risk Assessor

No file selected yet

By submitting, you ask Rivant to use your details to match you with relevant client roles. We may use IT tools, including AI, to support matching; a person reviews before we contact you or a client. We keep profiles for up to 12 months after last contact, unless you ask us to delete sooner. Full details: Privacy Notice · Legal · Cookies · Terms. Please avoid special-category data in your CV unless we ask for it.

Related vacancies

Explore similar banking and insurance freelance roles in Brussels.