About the assignment
Your organisation is scaling operations and faces increasing regulatory scrutiny. You own the design and implementation of GRC processes that ensure compliance with ISO 27001, NIS2, and industry-specific regulations.
You bridge the gap between security strategy and day-to-day operations. Your work directly influences risk decisions at management and board level, making you a trusted advisor on compliance posture and control effectiveness.
Your responsibilities
- Design and maintain governance frameworks aligned with ISO 27001, NIS2, and COBIT standards
- Develop risk assessments and control matrices that map business objectives to security requirements
- Monitor compliance status across the organisation using GRC tools and reporting dashboards
- Conduct control effectiveness reviews and coordinate remediation of identified gaps
- Prepare board and management reports on risk metrics, compliance status, and control performance
- Support internal and external audit processes with evidence and documentation
- Collaborate with business units to embed compliance into change and project processes
Tech Stack & Tools
Platforms & Tooling
Frameworks & Standards
Methodologies
Certifications (preferred)
Must-haves
- 5+ years in GRC, compliance, or internal audit roles
- Hands-on experience with ISO 27001 and risk management frameworks
- Proficiency with GRC platforms (ServiceNow, Archer, or OneTrust preferred)
- Strong analytical skills with ability to translate regulations into controls
- Excellent written and verbal communication skills for stakeholder engagement
Nice-to-haves
- Experience with NIS2, DORA, or financial services regulations
- Familiarity with MITRE ATT&CK or NIST CSF for control mapping
- Background in software development or cloud infrastructure (helps assess technical controls)
What we offer
- Work with a modern GRC toolstack and real governance challenges
- Partner with C-level executives on compliance and risk strategy
- Grow expertise in emerging regulations like AI Act and NIS2
- Collaborative culture that values your compliance perspective
- Flexible work arrangements supporting work-life balance
- Personal guidance from a dedicated MVPeople consultant who knows your niche
The process
Introduction
Phone call with your MVPeople consultant (within 24 hours)
Match & Brief
We discuss the assignment in detail and prepare you
Client meeting
Introduction to the client
Start
Contracting and onboarding
Details
Type
Consultancy
Location
North Holland
Work model
Hybrid
Level
Medior
Industry
overige
Posted
13 April 2026
Contact
MVPeople Group
jobs@mvpeoplegroup.com