Expert IT and Cyber Third Party Risk Assessor
Sector: Banking
Location: Brussels
Contract length: 12 months
Estimated daily rate (EUR): 780 - 950
Languages: French · English (Dutch Fluent)
Estimated daily rates are Rivant market estimates for guidance — not a client rate card.
Role details
Start date: 2026-10-01
Duration: 12 months
Extension possible: Not specified
Estimated daily rate (EUR): 780 - 950
Education: Master's in IT, Cybersecurity, Risk Management, or equivalent professional experience
Location detail: Brussels (5 min walk from Central Station) - hybrid ~50% on site / 50% homeworking. Travel N/A. Remote/telework from Belgium only
About the role
A major Belgian bank in Brussels needs an Expert in Third-Party Technology Risk Management. You assess and monitor IT and cybersecurity risk from intragroup and external suppliers — especially cloud solutions — and work with cyber defence, security architecture, continuity, data protection and procurement so supplier risk stays within appetite.
Responsibilities
- Run IT and cyber risk assessments of third-party suppliers during due diligence, including cybersecurity posture, IT controls and regulatory/contractual fit
- Assess cloud solutions (SaaS, HSP, AWS and similar) for security, data protection and resilience
- Review vulnerability and penetration testing reports against security practice and regulation
- Challenge and negotiate IT and cybersecurity clauses in supplier contracts with procurement, legal and business
- Coordinate IT and cyber onsite audits by external auditors; validate findings and track remediation
- Monitor third-party security posture via reports, incidents and compliance attestations (ISO 27001, SOC, NIST)
- Lead ICT risk and cyber forums with business and supplier security teams; maintain risk dashboards for senior management
- Improve TPTRM frameworks, templates and reporting with architecture, cyber defence, continuity, privacy and procurement
Business experience
| Skill | Level | Priority |
|---|---|---|
| Information Security and Risk Management frameworks (ISO 27001, SOC, NIST, OWASP) | Not specified | Mandatory |
| Financial services, particularly large corporate environments | Not specified | Mandatory |
| Reviewing and amending IT and cyber third-party clauses in supplier contracts | Not specified | Mandatory |
| Process design and business analysis in IT and security risk management | Not specified | Mandatory |
| Presentations and training to stakeholders on risk-related topics | Not specified | Mandatory |
| Strong IT background with exposure to operational and security risk management | Not specified | Mandatory |
Functional experience
| Skill | Level | Priority |
|---|---|---|
| Professional experience in information security | 10+ years | Mandatory |
| Third-party IT and security assessments | Not specified | Mandatory |
| IT risk management | Not specified | Mandatory |
| Process design and business analysis | Not specified | Mandatory |
| Delivering presentations and training | Not specified | Mandatory |
Technical experience
| Skill | Level | Priority |
|---|---|---|
| IT and Cyber Risk Management focused on third-party risk assessments and cloud security (SaaS, IaaS, PaaS) | 10+ years | Mandatory |
| Third-party IT and security assessments for suppliers and vendors | Not specified | Mandatory |
| Application security, vulnerability management, penetration testing and audit methodologies (ISO 27001, SOC 2, NIST, OWASP) | Not specified | Mandatory |
| Control frameworks and audit methodologies | Not specified | Preferable |
| GRC tools (e.g. ServiceNow) | Not specified | Preferable |
| Optional security certifications (CISSP, CISM, CIPP, CCSK) | Not specified | Preferable |
Language requirements
French · English (Dutch Fluent)
| Language | Speaking | Reading | Writing | Mandatory |
|---|---|---|---|---|
| French | Fluent | Fluent | Fluent | Yes |
| English | Fluent | Fluent | Fluent | Yes |
| Dutch | Fluent | Fluent | Fluent | No |
Soft skills
- Strong analytical and synthesis skills — turn complex technical risks into clear management insights
- Excellent communication and influencing with technical experts, business and external suppliers
- Autonomous, proactive and results-driven with a structured, methodical approach
- Manage multiple priorities in a dynamic, multicultural environment
- Negotiation and conflict resolution for contractual and risk-mitigation discussions
- Adapt to stakeholder expectations while respecting processes; mentor and coach others
Apply
Interested in this role?
Send your interest below. A person at Rivant will review it against this vacancy.
Get in touch
Register interest
Share your details and optionally upload a PDF CV.
Related vacancies
Explore similar banking and insurance freelance roles in Brussels.
Senior Data Visualisation Specialist
Banking · Brussels
Expert Business Analyst - Cards
Banking · Brussels
Expert Business Analyst - ServiceNow
Banking · Brussels
Expert Data Scientist - AI Solution Lead
Banking · Brussels