- Company Name
- Belfius
- Job Title
- Job | Risk Expert - GRC Architect & NFR Framework | Bruxelles
- Job Description
-
**Job Title**
Risk Expert – GRC Architect & NFR Framework
**Role Summary**
Lead the design, implementation, and evolution of the Non‑Financial Risk (NFR) Management framework, integrating risk governance, compliance, and data strategy across the organization. Act as the internal subject‑matter expert on GRC architecture, ServiceNow GRC platform, and NFR methodology, ensuring alignment with regulatory requirements and business objectives.
**Expectations**
- Deliver a cohesive, data‑driven NFR architecture that unifies all non‑financial risk domains.
- Drive modernization of GRC tools and data processes to enhance digital efficiency.
- Ensure consistent application of risk policies and standards across business units.
- Communicate complex risk concepts clearly to stakeholders at all levels.
**Key Responsibilities**
1. **GRC Architecture** – Define and champion the target architecture for NFR, ensuring integration of cyber, operational, third‑party, IT, continuity, and data protection risks.
2. **Tooling & Data Strategy** – Lead the evolution of the ServiceNow GRC platform and related solutions; design data models, integration flows, and reporting logic to improve data quality and usability.
3. **Methodology Development** – Develop, maintain, and harmonize risk management methodologies and operational guidelines; provide training and documentation to embed a risk‑aware culture.
4. **Framework & Governance** – Author and refine NFR policies, standards, and principles; participate in governance bodies to align the framework with EU/International regulations.
5. **Implementation Oversight** – Manage project planning, testing, and deployment of GRC solutions, ensuring compliance, performance, and stakeholder buy‑in.
**Required Skills**
- Strategic vision and execution planning in risk governance.
- Proficiency with ServiceNow GRC and related risk‑management platforms.
- Strong analytical ability to synthesize data, identify critical insights, and simplify complex information.
- Project management skills: scheduling, deadline adherence, and priority setting.
- Multilingual communication in Dutch, French, and English.
**Required Education & Certifications**
- Master’s degree or equivalent in Risk Management, Information Security, Cybersecurity, Engineering, Computer Science, or a related field.
- Relevant certifications in risk management, GRC, or cybersecurity are highly desirable.