Job matched to your search
Information Security / IT Risk & Compliance Consultant
ITSync · Amsterdam
Free · Join 5,000+ job seekers using Qarera
How well do you match this role?
Tap the skills you already have — then see your real match score, what’s missing, and your resume fixed for this job.
Job description
Job Information
- Date Opened 07/08/2026
- Industry Health Care
- Salary € 6.576,00 – € 8.200,54
- Job Type Full time
- City Amstelveen
- Province Noord-Holland
- Country Netherlands
- Postal Code 1181
Job Description
We are looking for a Senior Information Security / IT Risk & Compliance Consultant.
In this role, you will help strengthen information security, risk management and compliance across multiple European entities. Working closely with IT Operations, IT Security, Quality, Privacy and business stakeholders, you will translate regulatory requirements and industry standards into practical, measurable and effective controls.
You will operate at the intersection of Information Security, IT Operations, Risk Management and Compliance within a highly regulated international environment. This senior role combines strategic involvement with hands-on implementation and gives you the opportunity to contribute to security, compliance and risk management initiatives that directly contribute to the organisation's cyber resilience, regulatory compliance and operational excellence across Europe.
What will you be doing?
As a Senior Information Security / IT Risk & Compliance Consultant, you will take an active role in strengthening security governance, managing risk and driving compliance initiatives across the organisation.
Your responsibilities include:
- Continuously improving the Information Security Management System (ISMS) in line with ISO/IEC 27001;
- Translating security frameworks and regulatory requirements into practical controls, procedures, implementation plans and measurable improvements;
- Supporting security governance and the integration of security controls into IT Operations, software development and change management processes;
- Performing IT risk assessments, identifying security, compliance and operational risks, and coordinating or supporting their remediation;
- Driving and supporting compliance initiatives related to ISO 27001 and NIS2;
- Preparing for and supporting internal and external audits, including evidence collection, control validation and remediation tracking;
- Monitoring risks, audit findings, non-conformities and corrective actions, and reporting progress to stakeholders and management;
- Supporting governance processes, risk management activities and continuous improvement initiatives;
- Advising IT teams and business stakeholders on information security, compliance and risk-related matters;
- Supporting the development and maintenance of policies, standards, procedures and awareness programmes; Contributing to the implementation, operationalisation and effectiveness monitoring of security controls across the organisation.
What makes this role interesting?
This role combines governance, risk management, compliance and operational security within an international environment.
You will have the opportunity to:
- Be directly involved in strategic information security and compliance programmes;Work with regulatory and security frameworks, including ISO 27001 and NIS2;
- Contribute directly to large-scale ISO 27001 and NIS2 maturity and compliance programmes across multiple European entities;
- Influence security governance, risk management and control implementation across the organisation;
- Influence both strategic decision-making and hands-on implementation activities;
- Work with a high degree of ownership, autonomy and visibility;
- Collaborate with international stakeholders from IT, Security, Privacy, Quality and Business functions, as well as external vendors; Work on a long-term assignment with the opportunity to create sustainable improvements.
Requirements
What do you bring?
We are looking for an experienced professional with extensive experience in Information Security, IT Risk, IT Audit and/or Compliance.
You have:
- Minimum 10 years of relevant experience in Information Security, IT Risk, IT Audit and/or Compliance;
- Proven experience leading and implementing information security and compliance programmes;
- Proven experience leading ISO 27001 implementation or certification programmes;
- Experience managing audits, remediation programmes and regulatory compliance initiatives;
- Demonstrable experience with ISO/IEC 27001 and risk-based security management;
- Knowledge of security and control frameworks such as ISO 27001, NIST CSF, CIS Controls and PCI DSS;
- Understanding of European regulatory requirements, including NIS2;
- Experience supporting audits, control testing and remediation programmes;
- Demonstrable experience implementing security controls and compliance improvements within an operational IT environment;
- Experience coaching junior consultants and leading workstreams;
- The ability to influence senior stakeholders and drive organisational improvements;
- The ability to engage effectively with senior management and executive stakeholders;
- Strong stakeholder management and communication skills;
- The ability to translate complex requirements into pragmatic and implementable solutions;
- Professional working proficiency in English;
- Dutch language skills are preferred; You are currently living in the Netherlands.
Preferred Qualifications
- CISM certification (strong preference);
- CISSP, CRISC, CISA, ISO 27001 Lead Implementer and/or ISO 27001 Lead Auditor certification;
- Experience within healthcare, medical technology, life sciences or other highly regulated industries; Experience with security governance, risk management and compliance reporting
Benefits
What we offer
- A one-year contract, with a strong possibility of extension based on performance and team needs;
- 40 hours per week
- A competitive salary of € 6.576,00 – € 8.200,54 gross per month based on 40 hours per week)
- Competitive vacation scheme and standard employment benefits Hybrid working arrangement with home-office flexibility
Work Environment
You will work in an international and collaborative environment where information security, quality, privacy and regulatory compliance are business-critical disciplines.
You can expect:
- Hybrid working model (2 days onsite, 3 days remote);
- International and collaborative team environment;
- Professional organisation focused on quality, innovation and continuous improvement;
- Dynamic and pragmatic culture with short communication lines and significant stakeholder engagement;
Why this role?
This role is ideal for an experienced professional who is passionate about transforming security and compliance requirements into measurable business value, improved resilience and sustainable organisational change.
You will have the opportunity to combine your information security expertise with governance, risk management and compliance leadership, while driving initiatives and contributing hands-on to their implementation in a dynamic international environment.
Please note: This position is only open to professionals who are currently living in the Netherlands. As the organisation is looking for someone who can start onsite at short notice, candidates who require relocation to the Netherlands cannot be considered for this role.
Ready to bring your Information Security, Risk & Compliance expertise to an international environment where you can make a direct impact? We look forward to hearing from you.
More jobs in Amsterdam
Browse related jobs
Don’t just read the job — see if you’ll get it.
Get your match score, a resume tailored to this exact role, and jobs like it — free.
Check my fit for this job