Location: Netherlands
Salary: £130
Overview
We are seeking an experienced Chief Information Security Officer to lead and continuously enhance the organisation’s cyber security strategy, governance, and risk posture. You will provide executive leadership across information security, privacy alignment, and resilience, ensuring security is embedded across technology, people, and processes. This role partners closely with senior stakeholders to support business objectives while meeting regulatory and contractual requirements.
Key Responsibilities
- Define and deliver a multi-year information security strategy and operating model aligned to business risk appetite.
- Own security governance, policies, standards, and metrics; report regularly to executive leadership and relevant committees.
- Lead enterprise security risk management, including threat modelling, risk assessments, and prioritised remediation plans.
- Oversee security architecture, secure engineering, and cloud security controls across platforms and products.
- Direct incident response, crisis management, and post-incident lessons learnt; ensure readiness through exercises.
- Manage third-party and supply chain security, including due diligence, contractual controls, and ongoing assurance.
- Own security awareness and training programmes to improve security culture organisation-wide.
- Ensure compliance and audit readiness against relevant frameworks and regulations (e.g. ISO 27001, NIST, GDPR, sector-specific requirements).
- Build and lead high-performing security teams; manage budgets, vendors, and security tooling.
Requirements
- Significant senior leadership experience in information security, including managing teams and budgets.
- Proven track record designing and executing security strategies within complex, modern environments (cloud, SaaS, DevSecOps).
- Strong knowledge of security governance, risk, and compliance, with hands-on experience of audits and assurance.
- Expertise in incident response, vulnerability management, identity and access management, and security monitoring.
- Demonstrable ability to influence at board and executive level, communicating risk clearly to non-technical audiences.
- Experience with vendor management, procurement assurance, and supply chain risk.
- Relevant certifications preferred (e.g. CISSP, CISM, CCSP, ISO 27001 Lead Implementer/Lead Auditor).
- Degree or equivalent experience in cyber security, computer science, or a related discipline.
What Success Looks Like
- Reduced exposure to material cyber risks through measurable control improvements.
- Strong audit outcomes and clear evidence of continuous improvement.
- Efficient, well-drilled incident response with improved detection and recovery capabilities.
