A holding organisation in Belgium coordinates five vocational training centres and 24 campuses across the vocational education network. It is defining its future Target Operating Model, governance structure, and target architecture, and the Security Architect will embed cybersecurity into these foundations. The role focuses on Cybersecurity Operating Models, Security Architecture, and Identity and Access Management (IAM), while translating ISO 27001, NIST, and risk management requirements into practical organisational decisions.
The mission
The organisation is assessing how security is currently organised, governed, and delivered across its Belgian activities. The future-state design must provide clear security principles, decision rights, control ownership, and architecture standards that can be applied consistently across services and campuses. This work will support informed investment and compliance decisions as the target organisation and its services are developed.
As the senior Security Architect, you will connect the current-state assessment to the future security operating model. You will work with business, technology, risk, and governance stakeholders to define the required capabilities, controls, and processes. Your recommendations will inform the Target Operating Model, target architecture, security governance, and the roadmap for embedding cybersecurity into routine decision-making.
Your responsibilities
- Assess the current security organisation, processes, risks, governance arrangements, and control environment to identify structural improvements.
- Define a target cybersecurity operating model with clear capabilities, roles, responsibilities, decision rights, and control ownership.
- Establish security principles and architecture standards that guide future services, technologies, and organisational decisions.
- Shape Identity and Access Management (IAM) governance, including access principles, accountability, and alignment with the wider security architecture.
- Translate ISO 27001, NIST, SABSA, and security controls frameworks into practical risk management and compliance guidance.
- Produce security roadmaps and recommendations that allow leadership to sequence priorities and embed security governance in the target organisation.
Your profile
Essential skills
- Bring senior-level experience in security architecture, cybersecurity governance, and the design of cybersecurity operating models.
- Assess security maturity, organisational risks, processes, and controls, and turn findings into prioritised recommendations.
- Design security governance structures, principles, standards, and operating processes for a complex organisation.
- Apply Identity and Access Management (IAM), ISO 27001, NIST, SABSA, and security controls frameworks in an enterprise context.
- Connect risk management and compliance requirements with target architecture, service design, and executive decision-making.
- Communicate security roadmaps and architecture recommendations clearly to both technical specialists and non-technical stakeholders.
- Work independently across business, technology, risk, and governance domains, while building alignment between stakeholders.
Languages
- English: professional working proficiency
- Dutch: professional working proficiency
- French: professional working proficiency