Information Security Consultant

ITSync

Netherlands

On-site

EUR 73,000 - 92,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Hybrid working
Home-office flexibility
Competitive salary

Job summary

ITSync in Amstelveen, Netherlands, invites applications for a Senior Information Security Consultant responsible for strengthening information security, risk management and regulatory compliance across Europe. You will translate requirements into actionable controls and work with IT Operations, Security, Quality and Privacy teams to drive measurable improvements.

You will lead ISO 27001 and NIS2 initiatives, support audits, and advise senior stakeholders on risk-related matters.

Qualifications

  • Minimum 10 years in Information Security, IT Risk, IT Audit and/or Compliance.
  • Proven experience leading information security and compliance programmes.
  • Experience with ISO 27001 implementation or certification programmes.
  • Experience managing audits, remediation programmes and regulatory initiatives.
  • Knowledge of ISO 27001, NIST CSF, CIS Controls and PCI DSS.

Responsibilities

  • Strengthen ISMS and drive risk-based security improvements.
  • Translate regulatory requirements into pragmatic controls and plans.
  • Support governance and integration of controls into IT Operations and development.
  • Lead IT risk assessments and remediation tracking.
  • Drive ISO 27001 and NIS2 maturity across Europe.
  • Prepare for audits and evidence collection; monitor findings and actions.
  • Advise IT teams and stakeholders on security and compliance matters.
  • Develop and maintain security policies, standards and awareness programs.
  • Contribute to implementation and monitoring of controls across the organisation.

Skills

Information Security
IT Risk
Compliance
Security Governance
Audits
Stakeholder Management
ISO 27001
NIS2
English Proficiency
Dutch (pref.)

Education

ISO 27001 Lead Implementer
ISO 27001 Lead Auditor

Job description

Amstelveen, Netherlands | Posted on 07/08/2026

We are looking for a Senior Information Security Consultant.

In this role, you will help strengthen information security, risk management and compliance across multiple European entities. Working closely with IT Operations, IT Security, Quality, Privacy and business stakeholders, you will translate regulatory requirements and industry standards into practical, measurable and effective controls.

You will operate at the intersection of Information Security, IT Operations, Risk Management and Compliance within a highly regulated international environment. This senior role combines strategic involvement with hands‑on implementation and gives you the opportunity to contribute to security, compliance and risk management initiatives that directly contribute to the organisation's cyber resilience, regulatory compliance and operational excellence across Europe.

What will you be doing?

As a Senior Information Security / IT Risk & Compliance Consultant, you will take an active role in strengthening security governance, managing risk and driving compliance initiatives across the organisation.

Your responsibilities include:

  • Continuously improving the Information Security Management System (ISMS) in line with ISO/IEC 27001;
  • Translating security frameworks and regulatory requirements into practical controls, procedures, implementation plans and measurable improvements;
  • Supporting security governance and the integration of security controls into IT Operations, software development and change management processes;
  • Performing IT risk assessments, identifying security, compliance and operational risks, and coordinating or supporting their remediation;
  • Driving and supporting compliance initiatives related to ISO 27001 and NIS2;
  • Preparing for and supporting internal and external audits, including evidence collection, control validation and remediation tracking;
  • Monitoring risks, audit findings, non-conformities and corrective actions, and reporting progress to stakeholders and management;
  • Supporting governance processes, risk management activities and continuous improvement initiatives;
  • Advising IT teams and business stakeholders on information security, compliance and risk-related matters;
  • Supporting the development and maintenance of policies, standards, procedures and awareness programmes;
  • Contributing to the implementation, operationalisation and effectiveness monitoring of security controls across the organisation.
What makes this role interesting?

This role combines governance, risk management, compliance and operational security within an international environment.

You will have the opportunity to:
  • Be directly involved in strategic information security and compliance programmes;Work with regulatory and security frameworks, including ISO 27001 and NIS2;
  • Contribute directly to large-scale ISO 27001 and NIS2 maturity and compliance programmes across multiple European entities;
  • Influence security governance, risk management and control implementation across the organisation;
  • Influence both strategic decision-making and hands‑on implementation activities;
  • Work with a high degree of ownership, autonomy and visibility;
  • Collaborate with international stakeholders from IT, Security, Privacy, Quality and Business functions, as well as external vendors;
  • Work on a long-term assignment with the opportunity to create sustainable improvements.
Requirements
What do you bring?

We are looking for an experienced professional with extensive experience in Information Security, IT Risk, IT Audit and/or Compliance.

You have:

  • Minimum 10 years of relevant experience in Information Security, IT Risk, IT Audit and/or Compliance;
  • Proven experience leading and implementing information security and compliance programmes;
  • Proven experience leading ISO 27001 implementation or certification programmes;
  • Experience managing audits, remediation programmes and regulatory compliance initiatives;
  • Demonstrable experience with ISO/IEC 27001 and risk-based security management;
  • Knowledge of security and control frameworks such as ISO 27001, NIST CSF, CIS Controls and PCI DSS;
  • Understanding of European regulatory requirements, including NIS2;
  • Experience supporting audits, control testing and remediation programmes;
  • Demonstrable experience implementing security controls and compliance improvements within an operational IT environment;
  • Experience coaching junior consultants and leading workstreams;
  • The ability to influence senior stakeholders and drive organisational improvements;
  • The ability to engage effectively with senior management and executive stakeholders;
  • Strong stakeholder management and communication skills;
  • The ability to translate complex requirements into pragmatic and implementable solutions;
  • Professional working proficiency in English;
  • Dutch language skills are preferred;
  • You are currently living in the Netherlands.
Preferred Qualifications
  • CISM certification (strong preference);
  • CISSP, CRISC, CISA, ISO 27001 Lead Implementer and/or ISO 27001 Lead Auditor certification;
  • Experience within healthcare, medical technology, life sciences or other highly regulated industries;
  • Experience with security governance, risk management and compliance reporting
What we offer
  • A one-year contract, with a strong possibility of extension based on performance and team needs;
  • 40 hours per week
  • A competitive salary of€ 6.576,00 – € 8.200,54gross per month based on 40 hours per week)
  • Competitive vacation scheme and standard employment benefits
  • Hybrid working arrangement with home-office flexibility

You will work in an international and collaborative environment where information security, quality, privacy and regulatory compliance are business-critical disciplines.

You can expect:
  • Hybrid working model (2 days onsite, 3 days remote);
  • International and collaborative team environment;
  • Professional organisation focused on quality, innovation and continuous improvement;
  • Dynamic and pragmatic culture with short communication lines and significant stakeholder engagement;
Why this role?

This role is ideal for an experienced professional who is passionate about transforming security and compliance requirements into measurable business value, improved resilience and sustainable organisational change.

You will have the opportunity to combine your information security expertise with governance, risk management and compliance leadership, while driving initiatives and contributing hands‑on to their implementation in a dynamic international environment.

Please note

This position is only open to professionals who are currently living in the Netherlands. As the organisation is looking for someone who can start onsite at short notice, candidates who require relocation to the Netherlands cannot be considered for this role.

Ready to bring your Information Security, Risk & Compliance expertise to an international environment where you can make a direct impact? We look forward to hearing from you.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Specialist (on-site)
Information Security Specialist (on-site)

Delta Electronics EMEA • Hoofddorp

On-site
EUR 60,000 - 80,000
GRC/IS Consultant
GRC/IS Consultant

Software Search • Netherlands

Hybrid
EUR 9,000 - 11,000
Laptop and phone
Training budget
Events & meetups
+1
Project Manager: Information Security
Project Manager: Information Security

Huxley • Schiedam

Hybrid
27 vacation days
Lease car with NS Business Card
Opportunities for relevant courses and training
+3
Information Security Engineer
Information Security Engineer

Marconi Associates • Amsterdam

Hybrid
EUR 65,000 - 100,000
Information Security Engineer
Information Security Engineer

Doghouse Recruitment • Amsterdam

On-site
EUR 84,000 - 90,000
Pension without contributions
Travel allowance
Internet allowance
+3
Information Security Consultant
Information Security Consultant

Hamlyn Williams • Utrecht

Hybrid
Mobility allowance (lease car or transport allowance)
13th month bonus
Study and training opportunities
Senior Cybersecurity Solutions Consultant
Senior Cybersecurity Solutions Consultant

EPAM Systems • Netherlands

Hybrid
EUR 70,000 - 100,000
Information Security Governance & Compliance Officer
Information Security Governance & Compliance Officer

Vanderlande • Veghel

Hybrid
EUR 60,000 - 80,000
40 vacation days
Flexible working hours
Hybrid workplace
+4
Information Security Manager
Information Security Manager

HW3 • Utrecht

Hybrid
Bonus
Mobility allowance or company car
Pension Scheme
+1
Security & Compliance Officer
Security & Compliance Officer

S[&]T • Delft

On-site
EUR 70,000 - 100,000