About the assignment
You advise mid-to-large organisations on building resilient security programs. You assess current security posture, identify gaps against frameworks like ISO 27001 and NIS2, and recommend actionable improvements.
You work across teams—engineering, compliance, executive leadership—translating technical risk into business impact. Your role bridges strategy and execution, ensuring security investments deliver measurable outcomes.
Your responsibilities
- Conduct security assessments and gap analyses against ISO 27001, NIS2, and industry-specific standards
- Design and document security policies, procedures, and control frameworks tailored to organisational needs
- Advise on risk mitigation strategies and security technology selection (tools, platforms, vendors)
- Develop security roadmaps and implementation plans with clear milestones and resource requirements
- Facilitate stakeholder alignment between IT, compliance, and executive teams on security priorities
- Monitor regulatory changes and advise leadership on compliance obligations and remediation timelines
- Mentor internal security teams and build security awareness programs
Tech Stack & Tools
Platforms & Tooling
Frameworks & Standards
Cloud & Infrastructure
Methodologies
Certifications (preferred)
Must-haves
- 7+ years cybersecurity experience in advisory, GRC, or risk management roles
- Deep knowledge of ISO 27001, NIS2, and regulatory compliance frameworks
- Proven ability to assess security maturity and design improvement programs
- Strong communication skills—presenting complex security topics to non-technical stakeholders
- Experience with GRC platforms (ServiceNow GRC, Archer, or equivalent)
Nice-to-haves
- CISA, CRISC, or CISSP certification
- Background in audit, risk management, or internal controls
- Experience supporting organisations through compliance audits or certifications
What we offer
- Shape security strategy at strategic level across multiple organisations
- Work with C-suite and board-level stakeholders on business-critical initiatives
- Competitive salary and professional development budget
- Flexible working arrangements and modern workplace setup
- Access to leading security certifications and training programs
- Personal guidance from a dedicated MVPeople consultant who knows your niche
The process
Introduction
Phone call with your MVPeople consultant (within 24 hours)
Match & Brief
We discuss the assignment in detail and prepare you
Client meeting
Introduction to the client
Start
Contracting and onboarding
Details
Type
Consultancy
Location
Den Haag
Work model
Hybrid
Level
Senior
Industry
overige
Posted
1 May 2026
Contact
MVPeople Group
jobs@mvpeoplegroup.com