Function
Your role as IT Security Lead is to design, develop and implement the cybersecurity policy for Lutosa, covering two production sites as well as the central offices in Leuze and Waregem. The role is also responsible for ensuring that all security audits are managed effectively and efficiently. This also applies to Lutosa's satellite sites worldwide (sales and administrative offices located worldwide). The Enterprise Security Lead is responsible for establishing and maintaining a comprehensive enterprise-wide security program. This role involves designing, implementing, and overseeing security measures to protect the organization's systems, networks, and data from cyber threats and vulnerabilities.
* Security Strategy Development: Develop and implement an enterprise-wide security strategy aligned with business objectives and industry best practices.
* Security architecture and infrastructure: Design and maintain security architectures, ensuring that systems and networks are resilient to cyber threats.
* Risk Assessment and Management: Conduct regular risk assessments to identify potential vulnerabilities and develop mitigation plans to address security risks.
* Security Operations: Oversee security monitoring, incident response, and forensic analysis to quickly detect and mitigate security breaches.
* Security compliance: Ensure compliance with applicable regulations, standards and standards (e.g. GDPR, ISO 27001, NIST) and manage certification processes if necessary.
* Security awareness and training: Develop and deliver awareness and training programs to educate employees on good security practices.
* Vendor and third‑party security management: Assess and manage security risks related to external vendors and partners.
* Security governance and reporting: Define security policies, procedures, and guidelines, and provide regular reports to management on security posture and incidents.
* Ensure your own safety and that of your colleagues in accordance with company instructions and rules:
o Collaborating in the analysis of accidents and incidents as well as the analysis of workplace risks
o Participating in trainings
o By actively contributing to the prevention policy put in place: by reporting hazards presenting a risk to safety and health, as well as any anomaly via the "Hazard Reporting" booklet
o By making behavioural observations and reporting risky behaviours (BOS)
* Comply with the rules on the protection of the environment and energy resources:
o By being exemplary (selective sorting, control of discharges, rational use of water and energy: steam, electricity, compressed air, etc.)
o By being proactive in the implementation of improvement measures
o By reporting bad practices
* Comply with internal procedures, applicable standards (BRC, HACCP, etc.) as well as food safety guidelines: Immediately report any situation that may compromise the safety or compliance of the products and actively participate in corrective actions and mandatory training.
Profile
Experience
Experience in risk management, threat intelligence, and incident response. Good knowledge of compliance requirements and information security certifications (e.g. CISSP, CISM, CISA). Up-to-date knowledge of cybersecurity trends and threats.
Level of education
Bachelor's or master's degree in computer science, information technology, engineering or a related field.
Experience required
Minimum 15 years of experience.
Human qualities
Excellent communication, analytical, and problem‑solving skills. Ability to collaborate with cross‑functional teams and stakeholders.
Offer
* A varied and rewarding role within a leading company in its market, integrated into an international group (McCain)
* A pleasant working environment, in a dynamic team that is always focused on innovation
* Real training and development opportunities to develop your skills and build your future
* An attractive salary package, complemented by extra‑legal benefits
#J-18808-Ljbffr