Security Engineer - DORA H/F/X
Référence 5906120 | Créé le 22 juillet 2026
Retour à la liste
Security Engineer - DORA
Position Overview
DigiTribe is looking for an experienced Security Engineer Consultant to support on a client project in assessing, advising on, and implementing cybersecurity and operational resilience strategies to meet DORA requirements. The consultant will work closely with the dedicated IT team and report to the Head of IT. The Digital Operational Resilience Act (DORA) is a five-pillar regulatory framework covering ICT Risk Management, Incident Reporting, Operational Resilience Testing, Third-Party Risk Management and information-sharing.
Key Responsibilities
Skills & Qualifications
Technical Skills
Business & Soft Skills
Assignment Details
Our Offer
We provide a stimulating, people-focused and expertise-driven environment:
- Temps de travail : Temps plein
- Type de contrat : Durée indéterminée
- Famille de métiers : Informatique / Services informatiques
Description de l'entreprise
DigiTribe is an IT & business consulting company specialized in Cyber Security, Cloud, Architecture and Digital Enablement. We co-develop our services & approaches with the community to bring innovation, leverage digital practices and infuse purpose to large corporate organizations in digital transformation. We pride ourselves on our capacity to support our clients not only by allocating resources to reinforce organizations but by co-creating with the community and bringing value through workshops and content creation. That is our vision of a more valuable consultancy world. We believe that the « super-connected community » is the future. A community about encouraging « many-to-many » organic relationships to crack the opportunities and solve the business problems that conventional skillsets and approaches can't.Description de la fonction
Security Engineer - DORA
Position Overview
DigiTribe is looking for an experienced Security Engineer Consultant to support on a client project in assessing, advising on, and implementing cybersecurity and operational resilience strategies to meet DORA requirements. The consultant will work closely with the dedicated IT team and report to the Head of IT. The Digital Operational Resilience Act (DORA) is a five-pillar regulatory framework covering ICT Risk Management, Incident Reporting, Operational Resilience Testing, Third-Party Risk Management and information-sharing.
Key Responsibilities
- DORA Compliance Advisory: provide expert guidance on aligning cybersecurity frameworks, IT risk management, and operational resilience strategies with DORA requirements.
- Gap Analysis & Risk Assessment: conduct assessments to identify gaps in existing cybersecurity and ICT risk management practices.
- Policy & Framework Development: assist in developing ICT risk management, incident reporting, third-party risk management, and business continuity frameworks.
- Incident Response & Crisis Management: support in establishing incident reporting mechanisms aligned with DORA mandates.
- Testing & Simulation: collaborate with third-party suppliers to conduct penetration testing, vulnerability assessments, and operational resilience testing to meet regulatory standards.
- Regulatory Reporting & Documentation: prepare compliance reports and ensure proper documentation for audits and regulatory scrutiny.
Skills & Qualifications
Technical Skills
- At least 5 years of relevant experience in cybersecurity, with proven hands-on expertise in vulnerability assessment, monitoring tools, logging tools and access management.
- Strong knowledge of DORA and related regulations: NIS2, GDPR, EBA/ECB ICT risk guidelines, and ISO 27001/27005.
- Experience in IT risk management, operational resilience and/or cyber risk within financial services.
- Strong knowledge of cloud security, third-party risk management and penetration testing methodologies.
- Experience with cyber risk assessments, BCP, disaster recovery and incident response.
- Familiarity with cybersecurity frameworks: NIST, CIS, ISO 27001, MITRE ATT&CK.
- Relevant certifications are a plus: CISM, CISSP, CRISC, CISA, ISO 27001 Lead Implementer/Auditor, CEH.
- Knowledge of Azure infrastructure setup and ServiceNow is a plus.
Business & Soft Skills
- Proven experience developing and writing clear information security processes and procedures.
- Ability to engage with regulators, auditors, and senior stakeholders to explain compliance strategies.
- Excellent written and oral communication skills, with strong presentation abilities adapted to the audience.
- Team player, proactive and quick self-starter, comfortable in dynamic and multicultural environments.
- Strong analytical and synthesis skills, quality-minded with eye for detail.
- Goal-oriented, autonomous, and able to work under pressure and meet deadlines.
Assignment Details
- Location: Brussels - Belgium
- Work arrangement: 60% on-site
- Languages: English (mandatory - fluent oral and written), French and/or Dutch (preferred)
- Education: Cyber Security degree or equivalent; relevant certifications strongly valued
Our Offer
We provide a stimulating, people-focused and expertise-driven environment:
- A competitive salary with performance-based bonuses.
- A company car with...
Compétences linguistiques
-
Français (atout)
- Comprendre : Indépendant - (B1)
- Écrire : Indépendant - (B1)
- Lire : Indépendant - (B1)
- Parler : Indépendant - (B1)
-
Néérlandais (atout)
- Comprendre : Indépendant - (B1)
- Écrire : Indépendant - (B1)
- Lire : Indépendant - (B1)
- Parler : Indépendant - (B1)
-
Anglais (atout)
- Comprendre : Indépendant - (B1)
- Écrire : Indépendant - (B1)
- Lire : Indépendant - (B1)
- Parler : Indépendant - (B1)
Envie d'en apprendre davantage sur ce métier ou sur un métier proche de celui-ci ? Parcourez toutes les informations utiles sur Panorama des métiers. Panorama des métiers
Cette offre a été rédigée par l'employeur, Actiris n'est donc pas responsable de son contenu et des éventuelles infractions à la législation en vigueur.
Attention, un employeur ne peut pas vous demander de lui communiquer des données sensibles. En savoir plus.
Si vous avez une remarque sur cette offre, n'hésitez pas à nous la communiquer via ce formulaire de contact.
Attention, un employeur ne peut pas vous demander de lui communiquer des données sensibles. En savoir plus.
Si vous avez une remarque sur cette offre, n'hésitez pas à nous la communiquer via ce formulaire de contact.
Comment postuler ?
|
Nom de l'employeur
|
DIGI TRIBE
|
|
Personne de contact
|
HR Department DigiTribe
|
|
Mode de présentation
|
postuler via le site Web
|
|
Website
|
Site de l’employeur |