Skip to content
MVPeople Group Logo
MVPeopleGroup
GRC & Compliance

Information Security Officer

Zuid-Holland, NederlandConsultancyHybrideSenioroverige

Over de opdracht

You shape the security culture and risk management approach for an organisation navigating complex regulatory requirements. Your role bridges technical security, compliance, and business strategy.

You'll establish security policies, oversee incident response procedures, and ensure the organisation meets industry standards. You're responsible for translating technical risk into board-level insights and driving security awareness across all teams.

Jouw werkzaamheden

  • Design and maintain information security policies aligned with ISO 27001, NIS2, and relevant industry standards
  • Conduct regular risk assessments and vulnerability reviews across IT infrastructure and business processes
  • Manage security incident response procedures and coordinate with technical teams during breaches or threats
  • Report security metrics and risk status to leadership and governance bodies quarterly
  • Oversee third-party security assessments and vendor risk management processes
  • Develop and deliver security awareness training programmes for all staff levels
  • Monitor compliance with regulatory requirements and audit findings; track remediation timelines

Tech Stack & Tools

Platforms & Tooling

ServiceNow GRCArcherOneTrustSplunkAzure Security Center

Frameworks & Standaarden

ISO 27001NIS2NIST Cybersecurity FrameworkCOBITDORABIO 2.0

Cloud & Infrastructure

AzureAWS

Methodieken

Risk assessment and analysisSecurity policy developmentIncident response planningCompliance auditing

Certificeringen (pré)

CISMCISSPCISACRISC

Must-haves

  • 8+ years in information security, risk management, or compliance roles
  • Deep knowledge of ISO 27001, NIS2, and governance frameworks
  • Experience building and maintaining security policies and procedures
  • Strong communication skills for reporting to executives and boards
  • Proven incident response and breach management experience

Nice-to-haves

  • Experience with GRC tools like ServiceNow GRC or Archer
  • Background in a regulated industry (finance, energy, healthcare)
  • CISM or CISSP certification
  • Exposure to threat landscape and MITRE ATT&CK framework

Wat wij bieden

  • Strategic role with real influence on security direction
  • Lead a growing security function with budget ownership
  • Work with executive leadership and governance bodies
  • Exposure to emerging threats and industry best practices
  • Flexible working arrangements and professional development budget
  • Personal guidance from a dedicated MVPeople consultant who knows your niche

Het proces

1

Kennismaking

Telefonisch gesprek met je MVPeople consultant (binnen 24 uur)

2

Match & Brief

We bespreken de opdracht in detail en bereiden je voor

3

Klantgesprek

Introductie bij de opdrachtgever

4

Start

Contractering en onboarding

Details

Type

Consultancy

Locatie

Zuid-Holland, Nederland

Werkmodel

Hybride

Niveau

Senior

Sector

overige

Geplaatst

31 maart 2026


Contact

Reageer directMeer informatie
Reageer direct