Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
NVISO Security

Cyber Incident Manager

NVISO Security

. Lead NVISO’s response to high-impact cyber incidents as the primary customer-facing decision-maker .

Posted 10/6/2026full-timeBrussels • BelgiumMid-LevelSeniorWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in leading high-impact cyber incident responses, managing the full incident lifecycle, and coordinating cross-functional teams to ensure effective containment, recovery, and compliance with regulatory obligations. Proficient in stakeholder management and communication, with a focus on continuous improvement and readiness in incident response methodologies.

Highest-signal resume keywords
Cybersecurity Incident ResponseDigital ForensicsStakeholder ManagementCrisis ManagementRegulatory Compliance

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Incident TriageInvestigationContainmentEradicationRecoveryPost-Incident ReviewRoot-Cause AnalysisEvidence PreservationThreat IntelligenceCrisis Simulations
Soft Skills
LeadershipCoordinationCommunicationCustomer-Facing ConsultingContinuous Improvement Mindset
Industry Keywords
NATO Member State CitizenshipIT Service ManagementCISO EngagementPrivacy ComplianceRisk Management

Tech Stack

Tools & technologies
CloudCyber SecurityITSM

About the role

Key responsibilities & impact
  • Lead NVISO’s response to high-impact cyber incidents as the primary customer-facing decision-maker
  • Own the full incident lifecycle from initial triage and scoping through investigation, containment, eradication, recovery, and post-incident improvement
  • Establish the response model, define priorities and investigative questions, coordinate technical and business workstreams, and document decisions and actions
  • Coordinate Incident Responders, Digital Forensics, Threat Intelligence, legal, IT, risk, data protection, communications, and customer leadership
  • Act as Incident Lead during active engagements and steer decisions on containment, eradication, recovery, evidence preservation, and business continuity
  • Assess incoming incidents, determine severity and business impact, and activate appropriate people, expertise, and escalation paths
  • Run customer and internal incident calls and maintain the war-room cadence, incident timeline, decision log, action tracker, and stakeholder map
  • Provide customer leadership with concise updates on situation, business impact, decisions, progress, and next steps
  • Produce and quality-review executive updates, status reports, incident reports, root-cause analyses, and remediation roadmaps
  • Ensure compliance with response frameworks, engagement scope, evidence-handling requirements, and regulatory, contractual, and organisational obligations
  • Coordinate legal, privacy, risk, communications, insurance, external specialists, and third parties such as cloud providers, managed service providers, insurers, outside counsel, PR advisers, and law enforcement
  • Support regulatory incident reporting by identifying relevant facts, timelines, impact, and evidence
  • Help customers make risk-based decisions on isolation, recovery, restoration of critical services, and communications
  • Manage and mentor incident response team members, delegate work, remove blockers, maintain quality, and protect team wellbeing
  • Maintain accurate incident documentation and traceability of evidence, decisions, customer actions, and outstanding risks
  • Lead or oversee post-incident reviews and lessons-learned sessions and convert findings into improvements
  • Identify recurring incident patterns and systemic weaknesses and recommend security enhancements
  • Improve NVISO’s incident-management methodology, templates, crisis communications approach, escalation procedures, and readiness services
  • Support tabletop exercises, crisis simulations, forensic readiness assessments, response-plan reviews, and executive briefings
  • Monitor threat actor activity, attacker TTPs, major incident trends, and regulatory developments to improve response decisions and customer advice

Requirements

What you’ll need
  • Citizenship in one of the 32 NATO member states
  • 5+ years of relevant experience in cybersecurity, incident response, digital forensics, crisis management, IT service management, or a comparable high-pressure operational role
  • Ability to explain technically complex matters to a wide variety of stakeholders
  • Experience leading or coordinating cyber incidents, including triage, investigation, containment, eradication, recovery, stakeholder communication, and post-incident review
  • Proven stakeholder-management skills with technical teams, IT leadership, CISOs, executives, legal counsel, privacy professionals, risk teams, and external providers
  • Strong coordination and leadership skills, including organising parallel workstreams, delegating effectively, resolving blockers, and maintaining an effective working rhythm during prolonged incidents
  • Customer-facing consulting maturity and ability to build trust quickly, challenge constructively, and balance technical, commercial, legal, and operational considerations
  • Continuous-improvement mindset focused on playbooks, readiness measures, detection capabilities, and response processes
  • Up-to-date knowledge of current cyber threats, attacker tradecraft, and the incident-response landscape
  • Dutch and/or French and English at C1+ proficiency for client-facing work across BE/NL/LUX
  • Availability for an on-call rotation, typically one week per month, including outside standard business hours
  • Willingness to travel approximately 10–20% within BE/NL/LUX/DE/AT/CH

Benefits

Comp & perks
  • A training budget of 10.000€ and 10 days every two years
  • Company car + Belgian fuel card
  • Working and learning from leading people in the European cyber security industry
  • Access to deep technical security certifications (GSE, GXPN, GREM, GCFA, OSCP, etc.)
  • Entrepreneurial and agile work environment supporting new initiatives
  • Regular team-building and fun events throughout the year
  • Personal coach within the team
  • Career growth and well-being support
  • Flexible working hours and home office possibilities
  • Flex Reward Plan
  • 32 holidays