Skip to content
MVPeople Group Logo
MVPeopleGroup
GRC & Compliance

Information Security Officer

Noord HollandConsultancyHybridSenioroverige

About the assignment

You act as the bridge between technical security and business strategy. Your role is to identify risks, implement controls, and ensure the organisation meets regulatory obligations across industry frameworks.

You report on security posture to leadership, manage vendor security assessments, and continuously improve security governance. You own the security roadmap and make decisions that balance protection with operational efficiency.

Your responsibilities

  • Design and maintain information security policies aligned with ISO 27001, NIS2, and industry-specific regulations
  • Conduct regular risk assessments and develop mitigation strategies for identified vulnerabilities
  • Oversee security compliance audits and coordinate remediation efforts with stakeholders
  • Manage third-party security assessments and vendor risk programs
  • Report security metrics and incidents to senior management and the board
  • Lead security awareness initiatives to embed a risk-conscious culture
  • Coordinate incident response planning and oversee post-incident reviews

Tech Stack & Tools

Platforms & Tooling

ServiceNow GRCArcherOneTrust

Frameworks & Standards

ISO 27001NIS2NIST CSFDORACOBIT

Methodologies

Risk assessment and managementCompliance auditingIncident response coordination

Certifications (preferred)

CISACISSPCISMCRISC

Must-haves

  • 8+ years in information security, compliance, or risk management roles
  • Deep knowledge of ISO 27001, NIS2, and relevant regulatory frameworks
  • Experience with security governance and GRC tooling
  • Proven ability to communicate security concepts to non-technical stakeholders
  • Understanding of security architecture and technical controls

Nice-to-haves

  • Experience with incident response coordination and business continuity planning
  • Knowledge of third-party risk management and vendor assessments
  • Familiarity with cloud security and infrastructure risks

What we offer

  • Strategic influence on security direction and technology adoption
  • Work with C-suite and board-level stakeholders on critical decisions
  • Competitive compensation aligned with your experience
  • Personal guidance from a dedicated MVPeople consultant who knows your niche

The process

1

Introduction

Phone call with your MVPeople consultant (within 24 hours)

2

Match & Brief

We discuss the assignment in detail and prepare you

3

Client meeting

Introduction to the client

4

Start

Contracting and onboarding

Details

Type

Consultancy

Location

Noord Holland

Work model

Hybrid

Level

Senior

Industry

overige

Posted

12 May 2026


Contact

Apply nowMore information
Apply now