Information Security Officer

Prothya Biosolutions

Amsterdam

On-site

EUR 59,000 - 85,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

40h workweek
Salary €5,290–€7,604 gross/month
8.33% end-of-year bonus
8.33% holiday allowance
Training budget €2,100 every 3 years
Travel expense contribution from first
Public transport access & parking
Pension plan with Zorg & Welzijn

Job summary

Prothya Biosolutions in Amsterdam is seeking an Information Security Officer to guide the company in protecting confidentiality, integrity, and availability of information across all locations. You will act as the information guardian, implementing security policies, creating protocols, educating staff, and responding to threats.

The role focuses on developing policies, deploying controls (firewalls, authentication, encryption, data classification), conducting risk assessments, and reporting

Qualifications

  • Bachelor or Master degree in computer science, information technology, or cybersecurity.
  • Security certificates such as CISM, CISSP, or C|CISO.
  • More than 5 years in IT roles; over 2 years in information security.
  • Experience with writing and implementing security policies and processes.
  • Familiarity with ISO standards (e.g., ISO27001) and current security regulations (CIS levels, NIS2).
  • Excellent communicative skills to explain information security importance and impact.

Responsibilities

  • Develop a coherent set of information security policies, measures, guidelines, and procedures aligned with the quality management system.
  • Coordinate the implementation of security controls such as firewalls, authentication, access controls, encryption, and data classification.
  • Plan and conduct risk assessments; report findings and recommend policy improvements.
  • Raise awareness through training programs and internal communications on cybersecurity best practices.
  • Investigate security incidents and ensure containment, reporting, and remediation actions.
  • Stay current with evolving threats by following public sources, communities, and events.
  • Monitor networks and systems for suspicious activity; coordinate penetration tests and mitigate findings.
  • Act as the SME for information security; provide guidance across the organization.

Skills

Excellent communicative skills
Motivational skills
Negotiation with stakeholders
Dutch and English writing

Education

Bachelor or Master in computer science / IT / cybersecurity

Job description

The primary purpose of your role as Information Security Officer is to guide Prothya in protecting the confidentiality, integrity, and availability of information at Prothya, with the underlying goal to keep our information secure. This applies to analogue and digital information in all locations where Prothya operates. As an Information Security Officer, you act as our information guardian, which is achieved by implementing security policies and measures, creating protocols and instructions, educating employees, responding to threats and monitoring security events. You are the Subject Matter Expert in information security, and are the one that people can approach with any questions they might have.

Key accountabilities:
1. Developing security policies

Develop a coherent and integrated set of information security policies, measures, guidelines, and procedures, and embed them within Prothya’s quality management system. Ensure these policies and procedures are continuously maintained and regularly updated to remain aligned with both internal changes and external developments.

2. Implementing security measures

Based on policies and risk assessments, coordinate the implementation of the measures and guidelines into tangible security controls. Oversee implementations such as firewalls, authentication methods, access controls, encryption and data classification.

Plan and conduct risk assessments to identify potential threats and vulnerabilities that could compromise information security, and evaluate the likelihood and potential impact of such risks. Clearly report on the findings and use these insights to recommend new or refined policies and measures aimed at effectively mitigating identified risks.

4. Educating and training employees

Raise awareness about cybersecurity threats and best practices through training programs and initiatives, in alignment with policies. For example, share security tips with end users by using available communication methods such as the intranet and information screens.

5. Responding to security incidents

Investigate security incidents—such as data breaches, lost or stolen devices, cyberattacks, and alerts of suspicious behaviour—by following established protocols for analysis, response, and resolution. Ensure thorough and accurate reporting throughout the process, while taking immediate action to contain any damage. Implement appropriate corrective measures and follow‑up actions to prevent recurrence and strengthen overall security resilience.

6. Staying current with evolving threats

Stay up‑to‑date on the latest threats and adapt strategies accordingly, which you accomplish by following public available sources in the information security sector, joining security focused communities and attending security conferences, seminars and events.

7. Monitor & Report

Use various tools and techniques to monitor the network, computer systems and applications for suspicious activity, potential breaches and vulnerabilities. Request penetration tests to review the infrastructure vulnerabilities and oversee mitigating actions by responsible SME’s to counteract for potential security incidents. Report to management on various security metrics based on aggregated security data.

8. Resource for information about cybersecurity

Act as the Subject Matter Expert on information security at Prothya, providing clear and reliable guidance across the organization. Serve as the primary point of contact for all cybersecurity‑related questions, offering expert advice and support to colleagues at all levels, and positioning yourself as the go‑to resource for anything related to information security.

Your profile:
  • Bachelor or Master degree in computer science, information technology, or cybersecurity.
  • Relevant security certificates such as “CISM”, “CISSP” or “C|CISO”.
  • > 5 years of experience in information technology jobs in general.
  • > 2 year of experience in the field of information security or cybersecurity.
  • Experience in writing and implementing security policies and processes.
  • Experience with ISO standards (for example: ISO27001).
  • Be familiar with actual and relevant security regulations, e.g. CIS-levels and NIS2.
  • Excellent communicative skills to explain the importance of information security.
  • Good motivational skills.
  • Skilled in negotiating with a variety of stakeholders.
  • Good writing skills in Dutch and English.
What we offer:
  • Full‑time employment (40h) with flexible working hours in consultation. Working part‑time can be discussed.
  • Salary between € 5.290,02 and € 7.604,37 euro gross per month based on full‑time employment
  • 8.33% end‑of‑year bonus and 8.33% holiday allowance.
  • A personal training budget of €2,100 every three years to foster professional growth and development.
  • Contribution to travel expenses from the first kilometer.
  • Excellent accessibility by public transport and private parking available.
  • A pension plan with Zorg & Welzijn, providing security for your future.
  • A dynamic, safe, and challenging working environment with ample opportunities to grow, innovate, and learn, all while making a meaningful impact on the health of millions.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Project Manager IT
Project Manager IT

Prothya Biosolutions • Amsterdam

On-site
EUR 59,000 - 85,000
Full-time 40h
Salary up to €7,604.37 gross/ month
8.33% holiday allowance
+5
Information Security Officer
Information Security Officer

Telindus • Netherlands

Hybrid
EUR 60,000 - 80,000
Uitstekend salaris
25 vakantiedagen
Pensioenregeling
+1
Technical Information Security Officer
Technical Information Security Officer

Qabird • Delft

On-site
EUR 70,000 - 100,000
Profit sharing
Flexible hours
Vacation add-on
+2
Information Security Officer
Information Security Officer

Thirona • Netherlands

Hybrid
EUR 90,000 - 120,000
Hybrid working
27 vacation days
8% pension allowance
+1
Information Security Officer (CGRC)
Information Security Officer (CGRC)

Heerema • Netherlands

On-site
EUR 70,000 - 100,000
Strong compensation & benefits
Annual bonus tied to company performance
30 days off
+2
Information Security Officer
Information Security Officer

Pancompany • 's-Hertogenbosch

On-site
EUR 65,000 - 95,000
Auto, laptop en telefoon
Opleidingen, trainingen en certificiër
Onbeperkte vakantiedagen
+2
Information Security Officer
Information Security Officer

Samotics B.V. • Netherlands

Hybrid
EUR 70,000 - 110,000
Pension scheme
Parental leave
Hybrid working
+2
Information Security Officer
Information Security Officer

Zuydermarkt • Eindhoven, Heerlen

Hybrid
Maand vakantiegeld
Eindejaarsuitkering
Variabele beloning
+1
Information Security Officer
Information Security Officer

FutureXL • Zoetermeer

Hybrid
Premievrij pensioen met gratis advies
Flexibele mobiliteitsregeling
Winst-onafhankelijke kwartaalbonus
+3
Information Security Officer (ISO)
Information Security Officer (ISO)

Quality • Capelle aan den IJssel

On-site
25 vakantiedagen
100% premievrije pensioenregeling
Opleidingsbudget van €3.500,-
+3