- Own and drive the information security management system (ISMS)
- Maintain the ISMS in line with ISO 27001 certification standards
- Create and maintain documentation required for ISO 27001 certification
- Organize internal and external audits and maintain audit readiness
- Plan and conduct regular ISMS management reviews
- Design, implement and improve ISMS processes and controls
- Manage risk identification, assessment, treatment plans and incident reporting/follow-up
- Oversee the security posture of the technical environment, including penetration testing and security controls
- Partner with engineering, operations and business stakeholders to embed security practices
- Support and update local office infrastructure
- Set up and maintain hardware
- Troubleshoot workstations, meeting room equipment and network devices as first-line support
- Manage user access and account provisioning/deprovisioning for internal systems
Requirements
- Proven experience managing an ISO 27001 ISMS end-to-end, including certification and surveillance/recertification audits
- Experience working in or with cloud-based SaaS environments
- AWS and/or Kubernetes exposure is a strong plus
- Background in cybersecurity, information security management, or IT compliance
- Strong stakeholder management and communication skills with technical and non-technical audiences
- Some hands-on experience with internal IT support
- Proactive, ownership-driven mindset
- Comfortable switching between strategic/documentation-heavy security work and hands-on IT support tasks
- Fluent English, written and spoken
- German language skills are a bonus
- Located in Germany or the Netherlands with the right to work there
- Ability and willingness to travel to the Amsterdam location if required
Core Competencies
Demonstrates expertise in managing an Information Security Management System (ISMS) in compliance with ISO 27001 standards, including risk management, audit readiness, and stakeholder collaboration. Proficient in both strategic security documentation and hands-on IT support within cloud-based environments.
Highest-signal resume keywords
- ISO 27001 ISMS Management
- Risk Identification and Assessment
- Stakeholder Management
- Cloud-Based SaaS Environments
- Cybersecurity and IT Compliance
ATS Optimization Keywords
Hard Skills
- ISMS Documentation
- Audit Management
- Penetration Testing
- Incident Reporting
- User Access Management
- AWS Exposure
- Kubernetes Exposure
Soft Skills
- Strong Communication Skills
- Proactive Mindset
- Ownership-Driven
Industry Keywords
- Information Security Management
- IT Compliance
- ISO 27001 Certification
- Audit Readiness
Tools & Technologies
- Cloud-Based Environments
- Network Devices
- Workstation Troubleshooting