Stott and May
Information Security Engineer
Stott and MayBelgium9 days ago
ContractRemote FriendlyInformation Technology, Analyst

Security Engineer – Information Security & Risk 3 years experience

Location: Hybrid Brussells

Contract: Freelance One Year

About the Role

You’ll be joining the Information Security & Risk (IS&R) function within IT, with a mission to:

  • Transform security into a strategic enabler of innovation and customer trust
  • Integrate “secure by design” principles from the earliest stages of product and service development
  • Embed security as part of the company’s culture and day-to-day practices
  • Validate and continuously improve the security posture of IT services and solutions

As part of a collaborative and multidisciplinary team, you will play a key role in supporting the implementation of IS&R standards, raising awareness, and ensuring that security and risk practices are fully aligned with business objectives.

Key Responsibilities

  • Support the implementation of Information Security & Risk (IS&R) processes and standards
  • Promote and coordinate Information Security and Risk Management practices across IT squads
  • Drive and coordinate awareness initiatives within IT
  • Collaborate closely with IT teams to align projects with security principles
  • Build strong stakeholder relationships and monitor access and controls across IT squads
  • Report regularly on risks, issues, and corrective actions to IT BISO leadership
  • Act as coordination point to ensure completeness of the application referential for information assets
  • Document security procedures and processes, ensuring consistency and clarity
  • Monitor and report on recurrent security tasks, including:
  • Control plan execution
  • Patch management dashboards
  • Security configuration tracking
  • Internal quality control execution
  • Exception management (logical access)

What You Bring

  • A minimum of 3 years’ experience in a transversal IT or security-related role, ideally in information security, IT risk, or compliance
  • Strong interest in the Information Security Office domain, with the ability to explain its purpose and value
  • Familiarity with infrastructure, systems, and processes (hardware, OS, networks, etc.)
  • Strong stakeholder management and communication skills
  • Understanding of security processes, procedures, and governance requirements
  • Strong problem-solving mindset, curiosity, and ability to work in an Agile environment
  • Excellent English (knowledge of Dutch or French is a plus)
  • Resilience under pressure and a continuous improvement mindset

Bonus Skills (not required, but highly valued):

  • Risk awareness and incident management experience
  • Exposure to business intelligence tools
  • Strong Microsoft Office skills)
  • Experience with Microsoft Power Apps
  • Visio for process documentation
  • Knowledge of automation and process improvement