Security Risk Manager

Trinamics

Noord-Brabant

On-site

EUR 90,000 - 130,000

Full time

2 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Trinamics seeks a Senior Security Risk Manager to oversee information security and compliance risks within the R&D domain. The role embeds risk management within business sectors, enabling security while preserving agility across cloud and on-prem projects.

You will drive risk assessments, define controls, and partner with DevOps and IT teams to mature security posture in Azure/GCP-centric environments, with a focus on SAFe/Agile methods and secure-by-design principles across R&D

Qualifications

  • 8+ years of experience in information security risk management.
  • Strong knowledge of ISO 27001 risk management framework.
  • Solid knowledge of IaaS, PaaS, and SaaS security risks, especially Azure/GCP.
  • Affinity with Research and Development processes, ways of working, and culture.
  • Bachelor's degree and/or relevant education in Information Security, Audit, and/or Cloud.
  • Holder of valid industry certifications (e.g., CISM, CISA, CISSP, CRISC, CCSP).

Responsibilities

  • Assess and manage information security and compliance risks across cloud and on-prem environments.
  • Deliver risk-mitigating controls and guidance to DevOps teams.
  • Report residual risk to risk owners at the operational and tactical level.
  • Drive security maturity and embed secure-by-design principles in projects.
  • Actively participate in Agile and SAFe ceremonies, ensuring security considerations are part of the continuous improvement cycle.
  • Align with IT security and Risk & Business Assurance on controls.
  • Define and drive security maturity across R&D domains.

Skills

Information security risk management
ISO 27001 risk management
Cloud security (IaaS/PaaS/SaaS)
Azure and GCP security
SAFe/Agile security integration

Education

Bachelor's degree in Information Security/Audit/Cloud

Tools

Siemens Teamcenter

Job description

  • Temporary until 31-12-2026

As a Senior Security Risk Manager, you will manage information security and compliance risks within the R&D domain — a challenging position in an intellectual-property-driven enterprise.

In our security governance model, information security risk management is embedded within the business sectors themselves, through sector-level security risk management functions.

The Hardware Cluster Security and Compliance team operates within the Research & Development domain, which includes D&E, System Engineering, intellectual property, and the Business Lines. The team helps R&D teams integrate new (public cloud) services into their business processes by providing architectural guidance, controlling costs, and ensuring operations remain within the R&D risk appetite.

As part of this information security risk manager role, you will be responsible for:

  • Assessing and advising R&D (cloud/AI) initiatives on information security and compliance risks.
  • Delivering and monitoring security requirements in line with the sensitivity and importance of the subject matter.
  • Communicating and advising security risk management, project teams, business, and IT partners on information security improvements and requirements while ensuring business agility.
  • Driving the adoption of a security and compliance mindset, along with related processes, policies, and standards, across larger R&D departments.

The majority of the work will focus on R&D cloud initiatives but will also include on-premises projects.

RESPONSIBILITIES

(core activities, expected outputs, regulatory & legal requirements)

Ensure security risks remain within the defined risk appetite by timely identifying and assessing risks, and proposing mitigating controls in line with best practices, policies, and standards. Identify gaps, propose improvements, and update or create policies, standards, and methods. Monitor and report on adherence to required security controls. Drive business awareness of security processes and initiatives, and define key guidelines to resolve recurring gaps.

This role focuses on information security within hardware-related departments, including performing information security risk management activities across the various phases of cloud initiatives to ensure security by design. Beyond these domains, you will also be expected to perform or assist with generic security risk assessments and support the Information Management department as a whole. Stakeholder management across the R&D business is essential to gather security priorities, present the risk portfolio, and secure firm commitment to mitigation efforts. You will help drive and shape information management security and compliance initiatives for business adoption, playing an influential role in embedding secure-by-design principles.

Job Description
  • Performing information security risk management and compliance activities across cloud/on-prem environments, projects, and initiatives.
  • Providing risk-mitigating controls and guidance to DevOps teams.
  • Reporting to risk owners on residual risk at the operational and tactical level.
  • Contributing to the improvement of methods and tools related to focus domains.
  • Actively participating in Agile and SAFe ceremonies, ensuring security considerations are part of the continuous improvement cycle.
  • Aligning with other security functions (IT and Business) within the security community.
  • Performing, advising on, and following up on generic risk assessments and identified risks.
  • Driving mitigation of agreed controls.
  • Ensuring compliance with security policies and standards.
  • Aligning with IT security and Risk & Business Assurance on controls.
  • Defining and driving security maturity.
  • Acting as a trusted partner to key decision-makers for security demands, advice, and influence.
Experience:
  • 8+ years of relevant experience in information security risk management.
  • Proven understanding, knowledge, and experience in the IT security domain.
  • Proven experience with the ISO 27001 risk management framework.
  • Solid knowledge of IaaS, PaaS, and SaaS (information) security risks (preferably on Azure and GCP).
  • Affinity with Research and Development processes, ways of working, and culture.
  • At least a bachelor's degree and/or relevant education in Information Security, Audit, and/or Cloud.
  • Holder of valid industry certifications (e.g., CISM, CISA, CISSP, CRISC, CCSP).
  • Preferred: Knowledge of Product Lifecycle Management (PLM) processes and tools (such as Siemens Teamcenter).
  • Preferred: Knowledge of export regulations.
  • Preferred: Experience working in Agile (SAFe) environments.
  • Preferred: Ability to understand and translate IT threats and vulnerabilities into business risk.
  • Preferred: Experience with or affinity for traditional or GenAI solutions, or willingness to develop this.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

R&D Cloud Security Risk Leader
R&D Cloud Security Risk Leader

Trinamics • Noord-Brabant

On-site
EUR 90,000 - 130,000
Security Risk Manager
Security Risk Manager

WestPoint Search • Utrecht

On-site
EUR 90,000 - 140,000
Car allowance
Bonus
Technical Information Security Officer
Technical Information Security Officer

Prime Vision • Netherlands

Hybrid
EUR 104,000 - 130,000
Profit-sharing scheme
Additional vacation days
Snacks & coffee in Grand Café
+2
IT Risk Manager
IT Risk Manager

Selby Jennings • Amsterdam

On-site
EUR 100,000 - 140,000
Senior Security Risk Manager – Sensitive Intellectual Property Domain
Senior Security Risk Manager – Sensitive Intellectual Property Domain

ASML • Veldhoven

On-site
EUR 110,000 - 150,000
Information Security Specialist
Information Security Specialist

Independent Recruiters • Amsterdam

On-site
13th-month payment
Holiday allowance
30 days of holiday annually
+1
Senior Security Program Manager
Senior Security Program Manager

United States Digital Space LLC • Amsterdam

On-site
EUR 110,000 - 150,000
(Senior) Security Consulting Manager Resources
(Senior) Security Consulting Manager Resources

parsionate • Amsterdam

On-site
EUR 70,000 - 90,000
Flexible work arrangements
Annual ski trip
Social events like parties and BBQs
Cyber Security Operations Manager (ID: 3783)
Cyber Security Operations Manager (ID: 3783)

Stafide • Netherlands

On-site
EUR 90,000 - 120,000
Collaborative work environment
Opportunities for operational transformation
Cyber Resilience Act Program Manager
Cyber Resilience Act Program Manager

Jobtailor • Amsterdam

On-site
EUR 90,000 - 130,000