SaaS InfoSec Officer - Build Trust & Compliance

FinDock

Woerden

Hybrid

EUR 90,000 - 120,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Stock Appreciation Rights
Pension
Hybrid working
Travel allowance
Phone allowance
Volunteer days
Personal learning budget

Job summary

FinDock, the leading Salesforce-native Customer Payment Management platform, is seeking an Information Security Officer to lead our security strategy and ISMS. You will manage certifications, risk governance, and security operations across our cloud-native SaaS environment, collaborating with Product, Engineering, and Operations to embed security by design.

Join FinDock to strengthen customer trust, advance security practices, and shape the security posture as we scale.

Qualifications

  • 2 years of experience in information security, GRC, or DevSecOps.
  • Knowledge of ISO 27001, SOC 2, frameworks and secure software development practices.
  • Proven experience in risk management, including risk assessments, mitigation planning, and maintaining risk registers.
  • Hands-on experience with security tooling (SAST, DAST, Secrets Management, Awareness training).
  • Excellent communication skills and ability to engage with both technical and executive audiences.
  • A proactive, pragmatic, and hands on mindset, with a strong sense of ownership and accountability.
  • Experience in cloud-native SaaS environments, with a solid understanding of modern application architectures, APIs, CI/CD pipelines and Infrastructure as Code.
  • Experience automating security and compliance processes to reduce manual work and improve visibility.
  • Experience running a SOC2 or ISO27001 audit cycle is a pré

Responsibilities

  • Mature and execute FinDock’s information security management system.
  • Execute a security strategy and multi-year roadmap.
  • Manage certifications, leading ISO 27001/SOC 2 cycles and owning internal risk governance.
  • Operate the Information Security Management System including its policies and processes amongst others but not limited to vulnerability management, incident response, awareness sessions and disaster recovery tests.
  • Strengthen customer trust by keeping information security up to date and supporting Sales in effectively communicating FinDock’s security posture.
  • Collaborate cross-functionally with Product, Engineering and Operations to align security with innovation.
  • Embed a security-first culture, leading awareness initiatives, training programs, and security simulations.
  • Stay ahead of emerging threats, evolving security practices and regulatory changes by proactively identifying risks and continuously improving our security posture.

Skills

GRC
DevSecOps
Risk management
Cloud security
Security tooling
Security awareness
ISO27001
SOC 2
Security audits
CI/CD
IaC

Tools

SAST
DAST
Secrets Management
Security Training

Job description

FinDock, the leading Salesforce-native Customer Payment Management platform, is seeking an Information Security Officer to lead our security strategy and ISMS. You will manage certifications, risk governance, and security operations across our cloud-native SaaS environment, collaborating with Product, Engineering, and Operations to embed security by design.

Join FinDock to strengthen customer trust, advance security practices, and shape the security posture as we scale.

Get your free, confidential resume review.

or drag and drop your file here.