Get more replies from employers
Send a job-specific resume in minutes.
Sterksen in the Netherlands seeks a Senior Information Security Risk Manager – R&D to lead information security risk and compliance within its IP‑driven R&D environment. You will assess cloud and on‑premise initiatives, translate security requirements into actionable controls, and partner with DevOps and engineering teams to embed security by design.
The role emphasizes cloud initiatives (IaaS/PaaS/SaaS) with SAFe/Agile collaboration, a strong risk management background, and a track record with
Senior Information Security Risk Manager – R&D
PROFILE
Our client is an international, strongly R&D driven technology organisation active in high-end industrial engineering and manufacturing. Intellectual property is the organisation's core asset, and safeguarding it is a top priority.
As Senior Security Risk Manager you manage information security and compliance risks within the R&D domain, a challenging position in an IP driven enterprise.
Within the organisation's security governance model, information security risk management is embedded in the sectors themselves through sector Security Risk Management.
The Security and Compliance team you join operates within the Research & Development domain, covering Design & Engineering, System Engineering, intellectual property and the business lines. The team supports R&D teams in integrating new (public cloud) services into their business processes by providing architectural guidance, controlling costs and ensuring the organisation operates within the R&D risk appetite.
In this role you are responsible for:
The majority of the work focuses on R&D cloud initiatives, with some on-premise projects as well.
RESPONSIBILITIES
Ensure security risks do not exceed the risk appetite by timely identification and assessment of risks, and by proposing mitigating controls in line with best practice, policies and standards. Identify gaps, propose improvements and update or create policies, standards, means and methods. Monitor and report on adherence to required security controls. Drive business awareness of security processes and initiatives, and define key guidelines to resolve recurring gaps.
The role focuses on information security within the engineering related departments, among other things by performing information security risk management activities in cloud initiatives across the various project phases to ensure security by design. Alongside these domains you are expected to perform or assist in generic security risk assessments and to support the Information Management department as a whole. Stakeholder management across the R&D business is essential in order to gather security priorities, present the risk portfolio and secure firm commitment to mitigate. You drive and shape Design & Engineering information management security and compliance initiatives for business absorption, and are influential in adhering to secure by design principles.
JOB DESCRIPTION
EXPERIENCE
PERSONAL SKILLS
OTHER INFORMATION
The position is based in the south of the Netherlands. You will be part of a Security and Compliance team within the Development and Engineering Information Management department, working in an agile team and reporting to the Group Lead Cloud Enablement. You are part of the organisation's wider security community and collaborate with Security Risk Managers in other sectors.
This position may require access to technology that falls under applicable export control regulations. Qualified candidates must be legally authorised to access such technology prior to starting the assignment.