Opportunity: Functional Analyst - Orientation Security
Start Date: As soon as possible
End Date: 31/12/2025
Duration: 12 months (full time)
Location: Avenue Fonsny, 20 - 1060 Brussels
Remote Work: Available
Job Description:
We are looking for a motivated Functional Analyst with a passion for new technologies and a strong sensitivity to application security. You will join a dynamic team dedicated to addressing application security issues for solutions we develop on behalf of our clients. You will collaborate closely with developers, architects, and cybersecurity experts.
Responsibilities:
- Conduct functional analysis of business needs, focusing on security requirements at every stage of the application development lifecycle.
- Draft functional and technical specifications related to the implementation of application security.
- Participate in the definition and implementation of the Security Development Lifecycle (SDL) based on NIST best practices.
- Collaborate with development teams to integrate security controls throughout the application lifecycle.
- Ensure compliance with security standards and applicable regulations.
- Actively monitor new vulnerabilities, techniques, and security methodologies.
- Contribute to raising awareness among internal teams about security issues.
- Assist in organizing application security testing.
- Monitor emerging threats related to software vulnerabilities and identify new risks to applications.
- Analyze vulnerability reports from both external sources (e.g., vulnerability databases) and internal sources.
Profile:
- Degree in computer science.
- Solid experience in functional analysis and writing technical specifications.
- Strong technical knowledge and keen interest in the security of information systems and applications.
- Eager to invest in an ever-evolving environment where security is a critical challenge.
- Good understanding of software development processes (e.g., Agile, DevOps).
- Familiarity with security best practices (e.g., NIST, OWASP, ASVS).
- Ability to understand and analyze complex technical issues.
- Ability to collaborate with multidisciplinary teams (developers, architects, security experts).
- Strong written and verbal communication skills, including the ability to simplify technical issues for various audiences.
- Familiarity with the concept of Software Bills of Materials (e.g., CycloneDX, SPDX).
- Knowledge of tools for security vulnerability analysis (e.g., Dependency-Track).
- Understanding of the different versions of the CVSS scoring system and EPSS.
- Familiarity with the principles of the Security Development Lifecycle (SDL).
- Proficiency with application lifecycle management tools (e.g., Jira, Jenkins, GIT).
- Basic understanding of cryptography, authentication, and access control.
- Familiarity with security frameworks (e.g., NIST, ISO 27001, ASVS).
- Understanding of secure software architectures and threat modeling techniques.
- Experience with vulnerability analysis tools (e.g., SAST, DAST).
- Proficiency in one of the two national languages, along with a good understanding of the second, is essential.
- Strong writing skills in English.