Senior IT SWAT – Security Configuration & Remediation Specialist

11/06/2026

Our client is the parent company and corporate brand, repositioned in late 2025 as a digital-first logistics leader. Under its “Rethink the Possible” strategy, it simplifies a previously complex portfolio of 31 legacy brands (entities) into three distinct commercial business units to drive growth in Western Europe, North America, and Asia.

Cyber security is a critical enabler of operations, service continuity and digital transformation. As the Group becomes more connected and digitally integrated, cyber security must evolve from a fragmented, local responsibility to a coherent, Group-level capability.

To support this, the Group has launched a Group Cyber Security Improvement Plan focused on strengthening core security foundations, increasing maturity across entities and enabling secure digital products and operations. Key capabilities at group level include Identity & Access Management, SOC and Network Security, supported by a federated operating model combining Group standards and platforms with local execution.

Mission

The IT SWAT Engineer is part of the Group Cyber Centers of Excellence (CoE) and provides expert technical support to entities to help them reduce risks and close security gaps more efficitenly.

The role delivers hands-on advisory, secure configuration guidance, vulnerability remediation support and operational best practices across key IT technologies.

The IT SWAT team provides expertise and resources to entities with limited capacity or specialist knowledge — whilst ensuring operational ownership remains with the local IT groups.

Position Overview

The IT SWAT Engineer is part of the Group Cyber CoE and works with Entity IT Operations, the Single Points of Contact for the Entity VM Entity Security, Group SOC, outsourcing partners and the Vulnerability Analyst.

The role supports entities in translating vulnerability findings and security requirements into practical technical remediation actions. It is designed to accelerate remediation, improve secure configuration, reduce recurring weaknesses and strengthen IT operational maturity.

The role complements the Vulnerability Analyst: the Analyst coordinates, prioritises and tracks; IT SWAT advises and supports technical remediation.

Key Responsibilities

1. Vulnerability Remediation Support

  • Support IT teams in understanding and remediating vulnerabilities across infrastructure, cloud, network, endpoint and platform environments.
  • Provide practical remediation advice for patches, configuration changes, compensating controls and hardening actions.
  • Assist with complex or high-priority vulnerabilities where local teams need specialist support.
  • Help validate remediation actions and confirm that fixes are technically effective.

2. Security Configuration Advisory

  • Provide secure configuration guidance for servers, endpoints, cloud platforms, network devices, identity components and operational IT systems.
  • Advise on hardening baselines, secure build standards and technical control implementation.
  • Support entities in correcting misconfigurations that increase cyber exposure.
  • Help reduce recurring vulnerabilities by addressing structural configuration weaknesses.

3. Technical Best Practices for IT Operations

  • Advise IT Operations on secure operational practices, including patching, change control, backup hygiene, logging, access control and privileged administration.
  • Help entities embed security into day-to-day IT operations.
  • Support operational teams with practical guidance rather than theoretical policy interpretation.
  • Share reusable patterns, checklists and playbooks across entities.

4. Incident & Urgent Exposure Support

  • Support urgent remediation actions for actively exploited vulnerabilities, critical exposures or security incidents.
  • Work with Group SOC, outsourcing partners and Entity IT to assess impact and define immediate containment or mitigation actions.
  • Provide technical guidance during emergency patching or high-risk configuration changes.
  • Help coordinate rapid response where several entities face the same technical exposure.

5. Entity Enablement & Knowledge Transfer

  • Coach local IT teams so they can independently manage similar issues in the future.
  • Deliver practical workshops, remediation clinics and technical walkthroughs.
  • Document repeatable remediation patterns and lessons learned.
  • Promote consistent adoption of Group security standards and secure operating practices.

6. Continuous Improvement

  • Identify recurring technical weaknesses across entities.
  • Feed lessons learned into Group standards, secure configuration baselines and vulnerability prioritisation rules.
  • Recommend automation, standardisation or tooling improvements to reduce manual remediation effort.
  • Support the maturity evolution from reactive fixing to proactive secure operations.

6. Continuous Improvement

  • Build out and manage the IT SWAT team.
  • Coordinate the work of the IT SWAT team.

Key Deliverables

  • Technical remediation guidance.
  • Secure configuration recommendations.
  • Remediation playbooks and checklists.
  • Entity remediation support plans.
  • Validation input after remediation.
  • Lessons learned and recurring weakness reports.
  • Technical input for standards, baselines and hardening guidance.

Required Experience

  • Minimum of ten years’ experience in a similar role.
  • Strong hands-on experience in IT operations, infrastructure engineering, cloud engineering, workplace, network, platform or security engineering.
  • Practical experience with vulnerability remediation and secure configuration.
  • Good understanding of enterprise technologies such as Windows/Linux servers, Active Directory/Entra ID, endpoint management, cloud platforms, networking, firewalls, databases, middleware or backup platforms.
  • Experience with security hardening frameworks, patch management and operational risk reduction.
  • Experience in federated, multi-entity or complex enterprise environments would be a major bonus.

Skills & Competencies

  • Strong technical troubleshooting skills.
  • Pragmatic and hands-on advisory style.
  • Able to translate security findings into concrete IT actions.
  • Strong communication with infrastructure and operations teams.
  • Coaching mindset: helps teams improve rather than taking over ownership.
  • Able to work under pressure during urgent remediation or incidents.
  • Broad technology knowledge, with one or more deep technical specialists.

Success Measures

  • Faster remediation of critical vulnerabilities.
  • Reduced recurring misconfigurations.
  • Improved secure configuration maturity across entities.
  • Better ability of local IT teams to remediate independently.
  • Reduced dependency on external emergency support.
  • Stronger bridge between Group Security expectations and local IT execution.

Job specifications

ID: 13382

Duration: 15-06-2026 - 31-12-2026

Location: Brussels

Type: Freelance

Stijn De Keyser

IT Recruitment Consultant
This position is no longer accepting applications.