Group Information Security Officer Group Risk & Compliance · TBAuctions | Amsterdam ·

TBAuctions

Amsterdam

Hybrid

EUR 110,000 - 120,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Yearly salary incl holiday allowance
Bonus scheme
Pension scheme
25 vacation days
Laptop and iPhone
Training opportunities
Team-oriented culture

Job summary

TBAuctions in Amsterdam seeks an experienced Group Information Security Officer to design and implement group security standards across brands and regions, and to lead the Information Security Office with risk and compliance teams.

You will direct security initiatives, conduct risk assessments, lead threat modeling, manage incidents, ensure ISO 27001/2, GDPR and NIS2 compliance, and oversee third-party security, while educating teams and reporting to executives.

Qualifications

  • Degree in computer science or a technology-related field.
  • Professional information security certification.
  • More than 8 years of information security management experience.
  • Solid understanding of relevant laws, regulations and standards (NIS2, ISO27001/2).
  • Excellent problem-solving and analytical skills.
  • Strong communication in English.

Responsibilities

  • Own and develop information security strategy, policies, and standards across regions and brands.
  • Act as the single point of accountability for information security (cloud, application, infrastructure, data).
  • Lead risk assessments, threat modeling, vulnerability management; maintain security risk register.
  • Own security incident response from detection to remediation.
  • Assist with compliance projects (ISO 27001/2, GDPR, NIS2).
  • Manage third-party and supplier security, due diligence and contracts.
  • Drive security awareness and training across the organization.
  • Provide reporting to executive management on risk posture and incidents.

Skills

Information security
Security leadership
Risk assessment
Threat modeling
Incident response
Security training
Cloud security
Data security

Education

Bachelor's degree in computer science
Professional information security certification

Job description

We are looking for an experienced and hands-on Group Information Security Officer. In this position you design and implement Group information security standards across our business operations and monitor performance accordingly. You direct the Information Security Office, including information security representatives from our auction brands and our Group Risk and Compliance team.

As part of our strategy, we make significant investments in our auction management software and data platforms to make them the invisible engines of our business. We work with different platforms, some for a specific brand and some integrated with multiple brands. While learning from our integration efforts we continue building new features in the system at the same time. You have an essential role in this transition to ensure a security mindset among the business teams and developers and to ensure that security best practices are created and followed.

What you will do

To be successful, you should have expert analytical skills and in-depth knowledge of information security best practices to prevent and resolve a wide range of security threats. Top candidates will also be excellent communicators, able to train and educate our teams in various information security topics. To monitor performance against Group information security standards, you have a solid level of leadership and management skills allowing you to closely cooperate with Group and Regional functions.

In this postion you:

  • Own and continuously develop TBA’s information security strategy, policies, and standards across all regions and brands.
  • Act as the single point of accountability for information security, including cloud, application, infrastructure, and data security.
  • Lead risk assessments, threat modeling, and vulnerability management, maintain an up-to-date security risk register, and work in close cooperation with our Product and Tech teams to ensure that our network and data remain secure.
  • Own security incident response, including detection, escalation, communication, and post-incident reviews.
  • Help with future compliance, regulatory and standardization projects (e.g., ISO 27001/2, GDPR, NIS2).
  • Manage third-party and supplier security, including due diligence, ongoing reviews, and security clauses in contracts.
  • Drive security awareness and training across the organization.
  • Provide clear reporting to executive management, including risk posture, incidents, and remediation progress.
What you bring
  • Degree in computer science or a technology-related field.
  • Professional information security certification.
  • More than 8 years of experience in information security management, including conducting risk assessments, setting companywide standards, actively creating awareness, and managing incidents.
  • Solid understanding of relevant laws, regulations and standards related to information security (amongst which NIS2 and ISO27001/2)
  • Excellent problem-solving and analytical skills.
  • Self-driven and enjoy working together towards a common goal.
  • Ability to educate a technical as well as a nontechnical audience about various security measures.
  • Effective verbal and written communication skills in English.
What we offer you
  • Independent and varied role within an entrepreneurial and innovative organization
  • Yearly salary of € 110.000 - € 120.000 (including holiday allowance), depending on experience
  • Bonus scheme
  • Pension scheme
  • 25 vacation days
  • Laptop and iPhone
  • Training opportunities
  • Working in a team of professionals, where hard work is well combined with humor
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Group InfoSec Officer: Strategy, Risk & Compliance
Group InfoSec Officer: Strategy, Risk & Compliance

TBAuctions • Amsterdam

Hybrid
EUR 110,000 - 120,000
Yearly salary incl holiday allowance
Bonus scheme
Pension scheme
+4
Senior IT Risk Officer - Amsterdam Region
Senior IT Risk Officer - Amsterdam Region

Improven • Amsterdam

On-site
EUR 70,000 - 90,000
16.33% individual choice budget
Over 5 weeks of holidays
€3,000 personal development budget per 3 years
Information Security Officer
Information Security Officer

Doghouse Recruitment • Amsterdam

On-site
EUR 88,000 - 95,000
Up to 95000 EUR OTE per year
Non-contributory pension
Working from home allowance €2.40 per day
+2
Information Security Specialist (on-site)
Information Security Specialist (on-site)

Delta Electronics EMEA • Hoofddorp

On-site
EUR 60,000 - 80,000
Information Security Engineer
Information Security Engineer

Marconi Associates • Amsterdam

Hybrid
EUR 65,000 - 100,000
Information Security Officer
Information Security Officer

Nmbrs BV • Amsterdam

On-site
EUR 64,000 - 78,000
Pension plan 15%
Personal coach
Training budget and development
+3
Information Security Officer
Information Security Officer

Nmbrs • Amsterdam

Hybrid
EUR 64,000 - 78,000
4-day workweek
Pension plan with 15% contribution
Personal coach
+4
Technical Information Security Officer
Technical Information Security Officer

Qabird • Delft

On-site
EUR 70,000 - 100,000
Profit sharing
Flexible hours
Vacation add-on
+2
Information Procurement Negotiator
Information Procurement Negotiator

Atradius The Netherlands • Amsterdam

On-site
EUR 65,000 - 90,000
13th month
Variable pay
Pension scheme
+1
Cyber Risk Officer
Cyber Risk Officer

Vanderlande • Veghel

On-site
40 vacation days including flexible budget
Flexible working hours
Health & Wellbeing budget
+3