Information Security Officer
Over de opdracht
A leading organisation is strengthening its security posture and needs an experienced Information Security Officer to take ownership of security governance, risk management, and compliance programmes.
You'll translate board-level security priorities into actionable strategies, oversee policy development, and ensure the organisation meets regulatory requirements across ISO 27001, NIS2, and industry-specific standards.
Your impact: a cohesive security framework that protects assets, reduces breach risk, and demonstrates compliance to stakeholders and regulators.
Jouw werkzaamheden
- Design and maintain security policies, standards, and procedures aligned with organisational risk appetite
- Develop and execute the annual security roadmap in collaboration with IT leadership and business units
- Conduct risk assessments and manage risk registers, prioritising remediation activities
- Oversee compliance audits, certifications (ISO 27001, NIS2), and regulatory reporting
- Lead incident response planning and post-incident reviews to strengthen defences
- Report security metrics and KPIs to the board and management committee quarterly
- Manage third-party security assessments and vendor risk across the supply chain
- Foster security awareness and culture through training and communication programmes
Tech Stack & Tools
Platforms & Tooling
Frameworks & Standaarden
Methodieken
Certificeringen (pré)
Must-haves
- 8+ years in information security, risk management, or GRC roles
- Proven experience designing and implementing security governance frameworks
- Deep knowledge of ISO 27001, NIS2, and regulatory compliance requirements
- Strong stakeholder management and board-level communication skills
- Experience with GRC platforms (ServiceNow, Archer, or equivalent)
Nice-to-haves
- Background in financial services, healthcare, or critical infrastructure sectors
- Experience with incident response programme development and tabletop exercises
- Familiarity with emerging regulations (AI Act, DORA, BIO 2.0)
Wat wij bieden
- Strategic influence on security direction and organisational resilience
- Competitive salary and comprehensive benefits package
- Professional development budget for certifications and training
- Flexible working arrangements and hybrid collaboration
- Personal guidance from a dedicated MVPeople consultant who knows your niche
Het proces
Kennismaking
Telefonisch gesprek met je MVPeople consultant (binnen 24 uur)
Match & Brief
We bespreken de opdracht in detail en bereiden je voor
Klantgesprek
Introductie bij de opdrachtgever
Start
Contractering en onboarding
Details
Type
Consultancy
Locatie
Den Haag
Werkmodel
Hybride
Niveau
Senior
Sector
overige
Geplaatst
1 april 2026
Contact
MVPeople Group
jobs@mvpeoplegroup.com