Information Security Officer Department: Security Employment Type: Full Time Location: Enschede, NL Reporting To: René van der Veen Compensation: €70,000 - €90,000 / year Description You’re an excellent candidate for Biz…
Skills: Information Security, Governance Risk & Compliance (GRC), Security Assurance, ISO 27001, SOC 2
Information Security Officer Department: Security Employment Type: Full Time Location: Utrecht, NL Reporting To: René van der Veen Compensation: €70,000 - €90,000 / year Description You’re an excellent candidate for Bizz…
Skills: Information Security, Governance Risk & Compliance (GRC), Security Assurance, ISO 27001, SOC 2
Sign up with Clera and we'll reach out the moment a role actually fits you — no more spraying applications into the void.
$70k–$90k/yr
Full-time
Variable compensation, Premium pension plan, 28 vacation days, Option to buy up to 10 extra vacation days, Hybrid working, NS Business Card or mileage reimbursement
Posted 2d ago
~40 hrs/week
Responsibilities
The role involves owning and managing security frameworks like ISO 27001 and SOC 2 while driving the security assurance program. It also requires acting as the primary security contact for customers and leading risk management and audit activities.
Requirements
Candidates need 3-5 years of experience in Information Security or GRC with strong knowledge of ISO 27001 and SOC 2. Fluency in English and the ability to commute to Enschede twice a week are required.
Full job description
Information Security Officer
Department: Security
Employment Type: Full Time
Location: Enschede, NL
Reporting To: René van der Veen
Compensation: €70,000 - €90,000 / year
Description
You’re an excellent candidate for Bizzdesign because you …
Are based in the Netherlands and can commute to our office in Enschede 2 days per week
Speak fluent English
Have +3 years of experience in a similar role
About the role
This role is designed to play a key role within Bizzdesign’s Security & Compliance function. You will own and drive our security assurance program, covering frameworks such as ISO 27001, SOC 2, and other relevant standards.
In this role, you combine governance, risk & compliance (GRC) with a strong customer-facing component, acting as a trusted security partner for both internal stakeholders and external clients. Following recent mergers, you will have the opportunity to shape and streamline the security posture across the group, driving harmonisation, maturity, and scalability.
What will you do
Own and manage Bizzdesign’s security frameworks (ISO27001, SOC2, etc.) and associated control environment.
Design, implement, and continuously improve security policies, procedures, and controls.
Act as the primary contact for customers and prospects on security topics (RFPs, due diligence, calls) and work with legal on contract reviews.
Translate security requirements into clear, business-friendly responses and solutions.
Drive risk management activities, including identification, assessment, and mitigation tracking.
Lead and coordinate internal and external audits, including preparation, evidence collection, and follow-up.
Work closely with the product teams to ensure controls are practical and effective.
Support and lead security improvement and transformation initiatives across the organisation
What we are looking for
3–5 years of experience in Information Security, GRC, or Security Assurance.
Strong knowledge of frameworks such as ISO27001, SOC 2 (additional frameworks are a plus).
Experience handling customer security questionnaires and discussions.
Ability to balance compliance requirements with practical implementation.
Strong stakeholder management skills, including communication with senior internal and external stakeholders.
Fluent in English, Dutch is a plus.
Nice to have:
Relevant certifications (e.g., CISSP, CISM, ISO27001 Lead Implementer/Auditor).
Experience in a SaaS or product-driven environment.
Experience with Compliance Automation Tools e.g. Vanta, Drata.
What we offer
A base salary complemented by variable compensation.
A premium pension plan to help you build a secure and comfortable future.
28 vacation days to recharge, with the option to buy up to 10 extra days whenever you need more freedom and flexibility.
Hybrid working that truly works: enjoy a balance of 2–3 collaborative in-office days, with the remaining days designed for focused work from home.
Smooth commuting with an NS Business Card or mileage reimbursement. Your journey, your choice.
Top quality IT equipment from day one, plus a personal tech budget so you can tailor or upgrade your setup to your liking.
A monthly work-from-home allowance to help you create your ideal home office environment.
Global collaboration in an international environment, working alongside talented people from all over the world.
The final offer will be positioned fairly within the salary range based on your experience, skills, impact, and scope of responsibilities.
Recruitment process
In this role, you can expect the following interviewing process:
1st Interview with Internal Recruiter (45 minutes)
2nd Interview with our Information Security Manager and Product Security Manager (60 minutes - Online or face to face)
3rd Interview with our Director of Information Security (60 minutes - face to face)
Please note
Please submit your application in English, as it’s our company’s language, and you’ll be using it daily once you’re part of the team.
Please apply through our website or via the LinkedIn job post. Applications sent by email will not be reviewed.
We are not considering agency applications for this position.
We may use AI-based tools to support parts of the recruitment process, such as reviewing applications or resumes. These tools support our recruitment team but do not replace human decision-making, and all final hiring decisions are made by people.
Related keywords
ISO 27001SOC 2GRCCISSPCISMSaaSVantaDrataSecurity AssuranceRisk AssessmentCompliance AutomationInternal AuditExternal AuditRFPDue DiligenceSecurity Posture
Our enterprise architecture software helps complex businesses thrive through change.
Industry
Software Development
Company size
501-1,000 employees
Founded
2000
Headquarters
Enschede
LinkedIn followers
38,677
Bizzdesign is a global enterprise transformation SaaS company, founded over two decades ago. Today, more than 2,000 organisations in banking, insurance, aerospace, energy, government, and beyond trust us to navigate digital complexity and deliver transformation that flows.
In 2025, MEGA International, Alfabet, and Bizzdesign came together under one brand. Together, we now provide the most comprehensive end-to-end enterprise transformation offering in the market.
Our suite spans the full journey from strategy to execution, with integrated AI accelerating insights and outcomes. We take a data-driven approach that helps organizations balance innovation with cost, strengthen governance, and build operational resilience so they can make smarter investments, manage risk effectively, and deliver measurable impact.
We’re present in more than 31 countries, with offices in every major region and a team of 600+ professionals representing 32+ nationalities. Our people combine an understanding of local markets with a global perspective.
At Bizzdesign, we’re constantly building and innovating to stay ahead of the industry. Join us and help shape the future of enterprise transformation.
Offices: Capitool 15, Enschede, 7521 PL, NL · Catharijnesingel 47, Utrecht, 3511 GC, NL · Koloniënstraat 11, Brussels, Brussels Region 1000, BE · Eper Straße 18, Gronau, North Rhine-Westphalia 48599, DE · 52 Grosvenor Gardens, London, England SW1W 9SJ, GB
Business process management (BPM)Enterprise Architecture (EAM)GovernanceComplianceArchiMateBusiness Model Innovation (BMI)TOGAFDigital Business DesignBusiness ArchitectureTechnology Risk Management
Our enterprise architecture software helps complex businesses thrive through change.
Industry
Software Development
Company size
501-1,000 employees
Founded
2000
Headquarters
Enschede
LinkedIn followers
38,677
Bizzdesign is a global enterprise transformation SaaS company, founded over two decades ago. Today, more than 2,000 organisations in banking, insurance, aerospace, energy, government, and beyond trust us to navigate digital complexity and deliver transformation that flows.
In 2025, MEGA International, Alfabet, and Bizzdesign came together under one brand. Together, we now provide the most comprehensive end-to-end enterprise transformation offering in the market.
Our suite spans the full journey from strategy to execution, with integrated AI accelerating insights and outcomes. We take a data-driven approach that helps organizations balance innovation with cost, strengthen governance, and build operational resilience so they can make smarter investments, manage risk effectively, and deliver measurable impact.
We’re present in more than 31 countries, with offices in every major region and a team of 600+ professionals representing 32+ nationalities. Our people combine an understanding of local markets with a global perspective.
At Bizzdesign, we’re constantly building and innovating to stay ahead of the industry. Join us and help shape the future of enterprise transformation.
Offices: Capitool 15, Enschede, 7521 PL, NL · Catharijnesingel 47, Utrecht, 3511 GC, NL · Koloniënstraat 11, Brussels, Brussels Region 1000, BE · Eper Straße 18, Gronau, North Rhine-Westphalia 48599, DE · 52 Grosvenor Gardens, London, England SW1W 9SJ, GB
Business process management (BPM)Enterprise Architecture (EAM)GovernanceComplianceArchiMateBusiness Model Innovation (BMI)TOGAFDigital Business DesignBusiness ArchitectureTechnology Risk Management