Cyber Governance & Risk Lead

Heerema Marine Contractors

Netherlands

Remote

EUR 90,000 - 130,000

Full time

40 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Annual bonus
Pension plan
30 days leave
Gym access
Office Leiden

Job summary

Heerema Marine Contractors seeks an Information Security Officer (CGRC) to lead governance across IT and OT, defining policies and standards, driving risk assessments, and ensuring compliance with ISO, NIS2, and GDPR. You will embed security controls into daily operations and projects.

You will build a governance framework, map requirements to external frameworks, coordinate audits, and report on CGRC KPIs while working with IT, OT, Legal, Compliance, Quality, HR and business stakeholders.

Qualifications

  • 5+ years of experience in information security, risk, or compliance with GRC leadership across IT/OT
  • Hands-on experience with security frameworks and privacy/EU directives such as GDPR, NIS2, and IMO cybersecurity requirements
  • Strong communication skills to translate between technical and non-technical audiences in English and Dutch

Responsibilities

  • Define and embed cybersecurity governance across IT and OT
  • Establish CGRC roles and responsibilities (RACI)
  • Plan, execute, and maintain cybersecurity risk assessments
  • Map security requirements to ISO/NIST/IEC and GDPR/NIS2/IMO
  • Coordinate audits and manage remediation
  • Define CGRC KPIs, maturity metrics, dashboards, and reporting
  • Deliver role-based cybersecurity awareness and training
  • Lead incident governance and regulatory reporting
  • Collaborate with IT, OT, Legal, Compliance, Quality, HR and external stakeholders

Skills

Information security
GRC leadership
Risk assessment
Auditing
ISO 27001 knowledge
NIS2/GDPR knowledge

Education

HBO/WO degree
Relevant certifications (CISSP/CISM/ISO 27001 Lead Implementer/Auditor/IEC 62443)

Tools

ISO/IEC 27001/2
NIST CSF/800-53
IEC 62443
GDPR compliance

Job description

Heerema Marine Contractors seeks an Information Security Officer (CGRC) to lead governance across IT and OT, defining policies and standards, driving risk assessments, and ensuring compliance with ISO, NIS2, and GDPR. You will embed security controls into daily operations and projects.

You will build a governance framework, map requirements to external frameworks, coordinate audits, and report on CGRC KPIs while working with IT, OT, Legal, Compliance, Quality, HR and business stakeholders.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Governance & Risk Lead (CGRC) for IT & OT
Cyber Governance & Risk Lead (CGRC) for IT & OT

Heerema • Netherlands

On-site
EUR 70,000 - 100,000
Strong compensation & benefits
Annual bonus tied to company performance
30 days off
+2
Information Security Officer (CGRC)
Information Security Officer (CGRC)

Heerema • Netherlands

On-site
EUR 70,000 - 100,000
Strong compensation & benefits
Annual bonus tied to company performance
30 days off
+2
Information Security Officer (CGRC)
Information Security Officer (CGRC)

Heerema Marine Contractors • Netherlands

Remote
EUR 90,000 - 130,000
Annual bonus
Pension plan
30 days leave
+2
Strategic CISO: Lead Cybersecurity & Board-Level Impact
Strategic CISO: Lead Cybersecurity & Board-Level Impact

Heerema Marine Contractors • Leiden

On-site
EUR 120,000 - 180,000
Security Governance & Risk Lead - ISO 27001, AI
Security Governance & Risk Lead - ISO 27001, AI

PwC South Africa • Amsterdam

Hybrid
Confidential
Competitive salary
Annual bonus
Permanent contract
+6
Security Governance & Risk Leader (Hybrid)
Security Governance & Risk Leader (Hybrid)

PwC Nederland • Amsterdam

Hybrid
EUR 110,000 - 140,000
Competitive salary
Permanent contract
Training programs
+5
Corporate Information Security Officer (CISO)
Corporate Information Security Officer (CISO)

Heerema Marine Contractors • Leiden

On-site
EUR 120,000 - 180,000
GRC & IS Consultant — Shape Compliance & Security Strategy
GRC & IS Consultant — Shape Compliance & Security Strategy

Software Search • Netherlands

Hybrid
EUR 9,000 - 11,000
Laptop and phone
Training budget
Events & meetups
+1
Remote GRC & Security Analyst
Remote GRC & Security Analyst

Jobgether • Netherlands

Remote
EUR 90,000 - 140,000
Competitive salary
Equity
Remote-friendly
+4
Senior OT Cybersecurity Consultant - Industrial Controls
Senior OT Cybersecurity Consultant - Industrial Controls

DNV GL • Amsterdam

On-site
EUR 90,000 - 130,000
Profit Share
Insurance
Pension Schemes
+5