Skip to content
MVPeople Group Logo
MVPeopleGroup
GRC & Compliance

Information Security Officer

Den HaagConsultancyHybrideSenioroverige

Over de opdracht

A leading organisation is strengthening its security posture and needs an experienced Information Security Officer to take ownership of security governance, risk management, and compliance programmes.

You'll translate board-level security priorities into actionable strategies, oversee policy development, and ensure the organisation meets regulatory requirements across ISO 27001, NIS2, and industry-specific standards.

Your impact: a cohesive security framework that protects assets, reduces breach risk, and demonstrates compliance to stakeholders and regulators.

Jouw werkzaamheden

  • Design and maintain security policies, standards, and procedures aligned with organisational risk appetite
  • Develop and execute the annual security roadmap in collaboration with IT leadership and business units
  • Conduct risk assessments and manage risk registers, prioritising remediation activities
  • Oversee compliance audits, certifications (ISO 27001, NIS2), and regulatory reporting
  • Lead incident response planning and post-incident reviews to strengthen defences
  • Report security metrics and KPIs to the board and management committee quarterly
  • Manage third-party security assessments and vendor risk across the supply chain
  • Foster security awareness and culture through training and communication programmes

Tech Stack & Tools

Platforms & Tooling

ServiceNow GRCArcherOneTrust

Frameworks & Standaarden

ISO 27001ISO 27005 (Risk Management)NIS2 DirectiveNIST Cybersecurity FrameworkCOBIT 2019TIBER-EU

Methodieken

Risk-based governanceIncident response planning (NIST IR)Business continuity and disaster recovery (BCDR)

Certificeringen (pré)

CISM (Certified Information Security Manager)CISSP (Certified Information Systems Security Professional)CISA (Certified Information Systems Auditor)

Must-haves

  • 8+ years in information security, risk management, or GRC roles
  • Proven experience designing and implementing security governance frameworks
  • Deep knowledge of ISO 27001, NIS2, and regulatory compliance requirements
  • Strong stakeholder management and board-level communication skills
  • Experience with GRC platforms (ServiceNow, Archer, or equivalent)

Nice-to-haves

  • Background in financial services, healthcare, or critical infrastructure sectors
  • Experience with incident response programme development and tabletop exercises
  • Familiarity with emerging regulations (AI Act, DORA, BIO 2.0)

Wat wij bieden

  • Strategic influence on security direction and organisational resilience
  • Competitive salary and comprehensive benefits package
  • Professional development budget for certifications and training
  • Flexible working arrangements and hybrid collaboration
  • Personal guidance from a dedicated MVPeople consultant who knows your niche

Het proces

1

Kennismaking

Telefonisch gesprek met je MVPeople consultant (binnen 24 uur)

2

Match & Brief

We bespreken de opdracht in detail en bereiden je voor

3

Klantgesprek

Introductie bij de opdrachtgever

4

Start

Contractering en onboarding

Details

Type

Consultancy

Locatie

Den Haag

Werkmodel

Hybride

Niveau

Senior

Sector

overige

Geplaatst

1 april 2026


Contact

Reageer directMeer informatie
Reageer direct