Information Security Officer

FinDock

Woerden

Hybrid

EUR 90,000 - 120,000

Full time

12 days ago
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Stock Appreciation Rights
Pension
Hybrid working
Travel allowance
Phone allowance
Volunteer days
Personal learning budget

Job summary

FinDock, the leading Salesforce-native Customer Payment Management platform, is seeking an Information Security Officer to lead our security strategy and ISMS. You will manage certifications, risk governance, and security operations across our cloud-native SaaS environment, collaborating with Product, Engineering, and Operations to embed security by design.

Join FinDock to strengthen customer trust, advance security practices, and shape the security posture as we scale.

Qualifications

  • 2 years of experience in information security, GRC, or DevSecOps.
  • Knowledge of ISO 27001, SOC 2, frameworks and secure software development practices.
  • Proven experience in risk management, including risk assessments, mitigation planning, and maintaining risk registers.
  • Hands-on experience with security tooling (SAST, DAST, Secrets Management, Awareness training).
  • Excellent communication skills and ability to engage with both technical and executive audiences.
  • A proactive, pragmatic, and hands on mindset, with a strong sense of ownership and accountability.
  • Experience in cloud-native SaaS environments, with a solid understanding of modern application architectures, APIs, CI/CD pipelines and Infrastructure as Code.
  • Experience automating security and compliance processes to reduce manual work and improve visibility.
  • Experience running a SOC2 or ISO27001 audit cycle is a pré

Responsibilities

  • Mature and execute FinDock’s information security management system.
  • Execute a security strategy and multi-year roadmap.
  • Manage certifications, leading ISO 27001/SOC 2 cycles and owning internal risk governance.
  • Operate the Information Security Management System including its policies and processes amongst others but not limited to vulnerability management, incident response, awareness sessions and disaster recovery tests.
  • Strengthen customer trust by keeping information security up to date and supporting Sales in effectively communicating FinDock’s security posture.
  • Collaborate cross-functionally with Product, Engineering and Operations to align security with innovation.
  • Embed a security-first culture, leading awareness initiatives, training programs, and security simulations.
  • Stay ahead of emerging threats, evolving security practices and regulatory changes by proactively identifying risks and continuously improving our security posture.

Skills

GRC
DevSecOps
Risk management
Cloud security
Security tooling
Security awareness
ISO27001
SOC 2
Security audits
CI/CD
IaC

Tools

SAST
DAST
Secrets Management
Security Training

Job description

Ready to shape how the world sees security and trust in payments?

Join FinDock as our Information Security Officer

At FinDock, we believe payments should do more than process transactions - they should build trust, deepen relationships, and deliver happiness. As the #1 Customer Payment Management solution built natively on Salesforce, we empower organizations to deliver seamless, secure, and personalized payment experiences.

Trusted by hundreds of organizations worldwide and rated 4.97 stars on the Salesforce AppExchange, we’re shaping the future of payments. That’s why we proudly say:

What’s your role?

FinDock helps organizations manage payments and donations directly on Salesforce. As our customer base and product offering grow, securing our systems, customer data, and platform integrity is more critical than ever.

We're looking for an tech-savvy and hands-on Information Security Officer to lead our security strategy, embed best practices, execute our information security management system and drive trust internally and externally. This is a unique opportunity to mature a security function at the heart of a fast-growing SaaS company.

What you’ll Do:

  • Mature and execute FinDock’s information security management system
  • Execute a security strategy and multi-year roadmap
  • Manage certifications, leading ISO 27001/SOC 2 cycli and owning internal risk governance
  • Operate the Information Security Management System including its policies and processes amongst others but not limited to vulnerability management, incident response, awareness sessions and disaster recovery tests
  • Strengthen customer trust by keeping information security up to date and supporting Sales in effectively communicating FinDock’s security posture
  • Collaborate cross-functionally with Product, Engineering and Operations to align security with innovation
  • Embed a security-first culture, leading awareness initiatives, training programs, and security simulations
  • Stay ahead of emerging threats, evolving security practices and regulatory changes by proactively identifying risks and continuously improving our security posture.

What makes you the perfect fit?

You combine technical security knowledge with a pragmatic mindset. You enjoy working across teams, know how to balance security with business needs, and are comfortable taking ownership of a broad security domain.

You bring:

  • 2 years of experience in information security, GRC, or DevSecOps
  • Knowledge of ISO 27001, SOC 2,frameworks and secure software development practices
  • Proven experience in risk management, including risk assessments, mitigation planning, and maintaining risk registers
  • Hands-on experience with security tooling (SAST, DAST, Secrets Management, Awareness training)
  • Excellent communication skills and ability to engage with both technical and executive audiences
  • A proactive, pragmatic, and hands on mindset, with a strong sense of ownership and accountability
  • Experience in cloud-native SaaS environments, with a solid understanding of modern application architectures, APIs, CI/CD pipelines and Infrastructure as Code.
  • Experience automating security and compliance processes to reduce manual work and improve visibility
  • Experience running a SOC2 or ISO27001 audit cycle is a pré

Make an impact:

Help shape how FinDock grows securely, serves customers with confidence, and builds trust across the Salesforce ecosystem.

Grow with us:

Grow your influence across systems, teams, and trust. Your voice will shape how we protect, scale, and build secure-by-default practices.

Enjoy our perks:

  • Stock Appreciation Rights
  • Pension and hybrid working
  • Travel and phone allowance
  • Paid volunteer days
  • 5K euros Personal learning budget

Thrive in our culture:

Join a passionate team where learning is constant, progress beats perfection, and support is a given. We challenge with care, celebrate small wins, and work with trust and purpose.

At FinDock, happiness isn’t just for our customers - it’s for our team, too.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SaaS InfoSec Officer - Build Trust & Compliance
SaaS InfoSec Officer - Build Trust & Compliance

FinDock • Woerden

Hybrid
EUR 90,000 - 120,000
Stock Appreciation Rights
Pension
Hybrid working
+4
Information Security Officer - Hybrid (Trust & Payments)
Information Security Officer - Hybrid (Trust & Payments)

FinDock • Netherlands

Hybrid
EUR 90,000 - 150,000
Stock Appreciation Rights
Pension
Hybrid working
+4
Information Security Officer
Information Security Officer

Startup Atlas • Amsterdam

Hybrid
EUR 90,000 - 130,000
Bonus scheme
Shares incentive plan
Office in Amsterdam (cool office)
Information Security Officer (ISO)
Information Security Officer (ISO)

SendCloud • Eindhoven

Hybrid
EUR 70,000 - 90,000
Flexible hybrid work model
€500 home office budget
28 holidays per year
+5
Information Security Officer
Information Security Officer

Mendix • Rotterdam

Hybrid
EUR 75,000 - 90,000
Information Security Officer
Information Security Officer

Siemens • Rotterdam, Den Haag

Hybrid
EUR 75,000 - 90,000
Senior Enterprise Risk & Reporting Lead — EU/Hybrid
Senior Enterprise Risk & Reporting Lead — EU/Hybrid

DutchTechX • Amsterdam

Hybrid
EUR 120,000 - 160,000
Stock options
Remote/hybrid across Europe
Work & Swim Cyprus program
+2
Senior Android Developer (Remote)
Senior Android Developer (Remote)

DutchTech • Amsterdam

Hybrid
EUR 90,000 - 120,000
Stock options
Work & Swim program
Flexible work model across Europe
Enterprise Risk & Reporting Lead
Enterprise Risk & Reporting Lead

DutchTechX • Amsterdam

Hybrid
EUR 120,000 - 160,000
Stock options
Remote/hybrid across Europe
Work & Swim Cyprus program
+2
SECURITY & PRIVACY OFFICER
SECURITY & PRIVACY OFFICER

Just Brands - Fashion & Retail • Lijnden

On-site
EUR 90,000 - 130,000
End-of-year bonus
Lunch provided
Gym access
+2