27 Vacatures voor Cybersecurity Specialist in de Nederland
Cybersecurity Specialist voor Cyberdefensie
Vandaag
Taak bekeken
Functieomschrijving
We zoeken een cybersecurity specialist voor de rol van OT cyberdefensie. Als OT cyberdefensie expert zul je verantwoordelijk zijn voor het beveiligen van onze kritieke systemen.
VerantwoordelijkhedenHet uitvoeren van risicoanalyses en security level assessments volgens IEC 62443-norm, adviseren projectteams en systeemeigenaren op een toegankelijke manier, implementeren van veiligheidsmaatregelen om kwetsbaarheden te dichten, communiceren over beveiligingsrisico's en voeren van incidentbeheer.
Je hebt sterke communicatieve vaardigheden, zowel schriftelijk als mondeling, en ervaring met security architectuur en projectbegeleiding.
We zoeken iemand die complexe problemen kan omzetten in praktische oplossingen.
Vereisten- Goede kennis van security architectuur en IT-veiligheid - Sterke communicatieve vaardigheden - Ervaring met projectbegeleiding - Kennis van Nederlandse taal (schriftelijk en mondeling)
Als cybersecurity specialist bij ons krijg je de mogelijkheid om je kennis en vaardigheden te ontwikkelen en toe te passen in diverse projecten.
We bieden een stimulerende werkomgeving waarin je jouw expertise kunt inbrengen en groeien.
AanmeldenWe zijn geïnteresseerd in kandidaten die zelfstandig kunnen werken en nauw samenwerken met andere teams.
Security Analyst
6 dagen geleden geplaatst
Taak bekeken
Functieomschrijving
At bunq, we're not just building a banking app; we're reshaping how people around the world experience financial freedom. As our Security Analyst, you’ll be instrumental in upholding our promise to Make Life Easy for our users, by safeguarding our platform. Collaborate with our dynamic team to prevent security incidents, monitor performance, and build effective automations to track risks.
Take Ownership
As a Security Analyst, you’ll play a critical role in making sure we keep our promises to our users by strengthening our security posture.
Drive our vulnerability management program by identifying, analyzing, and prioritizing security vulnerabilities to keep our systems secure.
Enhance our security operations by developing and automating processes to monitor performance and track all types of risks effectively.
Lead security incident handling from detection to resolution, ensuring minimal impact and continuous improvement of our response capabilities.
Dig deep into our first line ownerships, analyzing performance and processes to proactively identify and mitigate potential security gaps before they become incidents.
You are deeply familiar with core security principles and best practices.
You have proven expertise in handling security operations processes and leading incident response.
You possess strong skills in analyzing and managing security vulnerabilities.
Fluent in English – Communicate effectively in a global team, ensuring collaboration and clarity across all project stages.
Curious to see how we make life easy? - try the bunq app , it only takes 5 minutes to sign up.
Your space to perform
We give you the space and the tools you need to succeed
Senior Security Analyst
Vandaag
Taak bekeken
Functieomschrijving
Who We Are
Digidentity is a fast growing technology company. Our mission is to protect and enable people's digital lives.
We do this in a number of ways and via a suite of products relating to digital identities. Everything we do is user-centric, high assurance and with trust, security and privacy at the forefront of our design.
We work closely with both government and private sector clients in Europe, Asia Pacific and North America. In The Netherlands and the UK we are a leading provider of digital identity solutions that can be used for online identification, authentication and authorization. Our digital identities are also used for electronic signing of documents with the highest levels of trust.
The Role
The Security, Risk & Compliance (SRC) Analyst at Digidentity is tasked with maintaining Digidentity information security, quality and business continuity policies, processes and procedures and implementing them within Digidentity. The SRC Analyst will translate and communicate compliance requirements between SRC and other stakeholders within Digidentity. Furthermore the SRC Analyst will assist in various assessments and consult on remediation actions.
The SRC Analyst will work in cross-functional capacity to extend the communication capabilities of SRC to other stakeholders within Digidentity. The SRC Analyst will work together with and report to the Chief Security Officer (CSO).
What You'll Do
Monitor, perform or participate in assessments, tests, reviews and audits (internal and external).
Monitor the quality of services of Digidentity.
Oversee remediation of nonconformities identified in reviews, assessments (self- and automated) and audits (internal and external).
Monitor current threats and trends and determine their possible impact including communication to relevant stakeholders.
Document and deploy security training specific to Digidentity (e.g. PKI)
Define and implement processes and procedures linked to security, quality and business continuity.
Ensure the quality of security assessments, tests, reviews and audits.
Inform the CSO about information security status and incidents and present improvement proposals.
Test elements of the incident, response and/or continuity plan.
Support the CSO with identification of newly identified IT risks and issues.
Analyze risks and issues including rating, periodic reporting, tracking, and validation of controls effectiveness.
Ensure cross-department collaboration and communication to ensure appropriate processes, procedures and tools are installed, monitored, and effectively operating and alerting
Ensure adequate registration, analysis and reporting of information security incidents
Participate in vulnerability and penetration assessments, monitor endpoint protection solutions and tools.
Maintain compliance baseline and participate in enforcement of compliance baseline.
Maintain Digidentity's information security (ISO27001), quality (ISO9001) and business continuity (ISO22301) management systems
Participate in creation and maintenance of security documentation to meet compliance requirements.
Document and conform to processes related to security monitoring and detection.
Senior Data Protection Consultant
Vandaag
Taak bekeken
Functieomschrijving
At Avanade, Data Protection (Senior) Consultants are innovators, risk-takers and challengers of the status quo. We're seen as one of the leaders in the data protection space by Microsoft and are highly valued by our clients. If you're an experienced Data Protection consultant, who can help our clients solve complex data protection challenges, this might be the perfect opportunity for you. Don't miss out on this opportunity to join our dynamic, curious and diverse team and become part of the leading force on data protection.
Come join us
In this role, you'll work on exciting projects that transform our client's data protection capabilities through the design and implementation of predominantly Microsoft data protection technologies, with a focus on Microsoft Purview and Microsoft 365 Security capabilities. You'll become part of our dynamic security practice, where you'll have the opportunity to work with both Avanade and Accenture clients, ranging from medium to large global enterprises. We foster a culture of collaboration and knowledge-sharing, encouraging innovation and continuous learning to stay at the forefront of Microsoft Security technology. Together with the team, you'll drive the design and implementation of cutting-edge security technologies, honing your technical skills through hands-on experience, particularly focused on Microsoft data protection capabilities and leading market vendors. Combining these technical skills with soft skills to provide clients with guiding advise and articulate security concepts clearly to mature their security landscape.
What you'll do
As a Data Protection Consultant, you will be working on some of the largest and leading-edge projects. This is a customer facing role and you will play an active role in transforming our client's Security, Compliance and Governance platforms through designing and implementing data protection technologies and aiding the business in changing their business processes across HR, Security and IT to adopt the many benefits of data protection and compliance solutions. You are comfortable meeting clients and (co-) leading workshops across Information Technology, Security, Compliance, and Application Owners. You're experienced in managing workstreams and delivering tangible value to clients whilst meeting project deliverables and timelines. As we foster a culture of knowledge-sharing, you'll share knowledge and experience with your peers and local teams.
Skills and experiences
To become successful in this role, you have
* Experience in consulting and client advisory roles.
* Experience with data confidentiality and data integrity principles.
* Experience with performing discovery, analysis, design, build, test and deployment of data protection solutions throughout the project lifecycle, across endpoints, email and the internet.
* Experience with Microsoft Purview Information Protection, Data Loss Prevention, Insider Risk management, Communication Compliance, and Data Security Posture Management.
* Proven ability to collaborate effectively within teams and take initiative independently.
* Knowledge of data classification and data protection.
* Knowledge of data loss prevention solutions.
* Knowledge of the wider Microsoft ecosystem, the Microsoft security portfolio and Data Protection baseline.
* Familiarity with data protection best practices, standards and regulations.
* Familiarity with business, privacy, security, and compliance challenges surrounding data protection, including being able to research and understand data privacy requirements.
* Good problem-solving skills and risk management.
* Good knowledge of the Microsoft Office productivity suite and the broader Microsoft Security ecosystem.
We consider it a plus when you have
* Have hands-on experience implementing DLP, classification and data protection solutions.
* Knowledge of best practices and standards such as ISO/IEC 27001, ISO/IEC 27018, ENISA Technical Guidelines on Security Measures, NIST Cybersecurity Framework (SP 800-53), CSA STAR, COBIT and PCI/DSS.
* Knowledge of GDPR, ePrivacy Regulation, DORA, NIS2 and more generally of EU and national regulations in the field of data protection.
About you
Characteristics that demonstrate success for this role include:
* You have 2-5 years of foundational experience in the Cybersecurity industry.
* You are experienced in working on medium to large projects and within project teams.
* You are experienced with managing deliverables and being responsible for delivering against critical milestones.
* You have some experience in solution architecture surrounding data protection.
* You might have experience with developing and maintaining long-term strategic client relationships.
* You might have experience with leading client engagements.
* You possess one or more Cybersecurity industry-recognized certifications and are eager to validate your skill through certification.
* You are aware of emerging technologies in the data protection space and keep an eye on the future.
Enjoy your career
Some of the best things about working at Avanade
* You get the chance to work for Microsoft's Global Alliance Partner of the Year, with outstanding development and training opportunities, including a minimum of 80 hours per year for training and paid certifications.
* You have real-time access to technical and skilled resources from around the world.
* A dedicated career advisor is available to support and encourage your growth.
* You'll be surrounded by engaged and helpful coworkers who are genuinely interested in you and your success.
* Amazing colleagues that are the best of the best personally and in their job/skills.
* A buddy system to get you on the way, or just to socialize. Within Avanade you are never alone.
* Limitless possibility to study or improve yourself in your career. Varies from soft skills and technical (including but not limited to Microsoft and ISC2) training and certification.
* 1:1 Career Advisor to help you in your career path, achieve your personal goals while you improve and climb the ladder.
* Flexibility to work from home, client or office.
* Company lease car or traveling budget.
* Company laptop and phone.
* Equipment to enable your work from home setup (chair, desk, screen, etc.).
Find out more about some of our benefits (1) Employee Benefits at Avanade | Avanade.
A great place to work
As you bring your skills and abilities to Avanade, you'll gain distinctive experiences, limitless learning opportunities, and ambitious growth. As we continue to build our diverse and inclusive culture, we become even more innovative and creative, helping us better serve our clients and communities. You'll join a community of smart, supportive collaborators who will lift, mentor, and guide you, while also leaning on your expertise. Avanade is purpose-built for business-critical, leading-edge technology solutions, committed to improving the way humans work, interact, and live. It's all here, so take a closer look!
We aim to create a future for our people by:
* Expanding your thinking
* Encouraging courageous experimentation
* Embracing learning and pivoting
We inspire greatness in our people by:
* Empowering every voice
* Encouraging boldness
* Celebrating progress
We accelerate the impact of our people by:
* Amazing the client
* Prioritizing what matters
* Acting as one
At Avanade, we work hard to provide an inclusive, diverse culture with a deep sense of belonging for all our employees. We believe that everyone is entitled to equal employment opportunities, and we do not discriminate against our employees, applicants, or job seekers based on race, color, gender, religion, national origin, disability, veteran status, age, marital status, sexual orientation, genetic information, gender identity, or any other protected group status as defined by law.
Learn more
Avanade is the leading global provider of digital, cloud, AI and advisory services, industry solutions and design-led experiences across the Microsoft ecosystem. Founded in 2000 as a joint venture between Accenture LLP and Microsoft Corporation, Avanade has more certifications, Gold-level competencies and most valued professionals (MVPs) than any other Microsoft partner. Every day, our 60,000 professionals in 26 countries innovate responsibly to make a genuine human impact for our clients, their employees and their customers.
To learn more about the types of projects our Security team works on check out this info:
*
*
*
*
*
Interested in knowing what's going on inside Avanade? Check out our blogs:
*
*
References
Visible links
1. work hard to provide an inclusive, diverse culture with a deep sense of belonging for all our employees. Avanade believes that all persons are entitled to equal employment opportunities, and we do not discriminate against our employees, applicants, or job seekers because of their race, color, gender, religion, national origin, disability, veteran status, age, marital status, sexual orientation, genetic information, gender identity, or any other protect group status as defined by law.
Senior Security Operations Center Analyst
Vandaag
Taak bekeken
Functieomschrijving
Our client, a renowned IT service integrator, is seeking a Senior Security Operations Analyst/Team Lead, on a Freelance basis.
As a
Senior SOC Analyst Team Lead
, you will be responsible for:
- Managing the SOC team and ensuring effective detection, analysis and response to cybersecurity incidents.
- You will combine in-depth technical knowledge with leadership to contribute both operationally and strategically to the security of our digital environment.
Tasks and responsibilities:
- Managing a team of SOC analysts (levels 1 to 3)
- Coordinating daily SOC operations, including monitoring, triage and incident response
- Analysing and handling complex security incidents (SIEM, EDR, IDS/IPS)
- Developing and maintaining incident response procedures and playbooks
- Acting as an escalation point for serious security incidents
- Reporting to the Security Manager on trends, risks and mitigation
- Working closely with other teams within the organisation (both nationally and internationally)
- Supporting forensic investigations and root cause analyses
- Encouraging continuous knowledge development within the SOC team
- Evaluating and implementing new tools, techniques and processes
- Being available for periodic on-call duties
Job requirements:
- Education and certification:
- Higher professional education (HBO) or university education (WO) level (preferably in Computer Science, Cybersecurity or similar)
- At least 5 years of experience in a SOC environment
- Experience in a managerial or coordinating role
- In possession of relevant certifications such as:
SANS GIAC (such as GCIH, GCIA, GCFA)
- Incident Response certifications (such as SANS 504 or 508)
- Microsoft SC certifications, such as:
SC-200: Microsoft Security Operations Analyst
SC-100: Microsoft Cybersecurity Architect
- CISSP, CISM or similar is an advantage
Technical skills:
- In-depth knowledge of SIEM platforms (such as Microsoft Sentinel, Splunk, QRadar)
- Experience with EDR solutions (such as Microsoft Defender for Endpoint, CrowdStrike, Carbon Black)
- Familiar with MITRE ATT&CK framework, Kill Chain and TTPs
- Experience with scripting (Python, PowerShell) is an advantage
- Thorough knowledge of network protocols, log analysis and malware analysis
Soft skills:
- Strong communication and coaching skills
- Proactive attitude and ability to work under pressure
- Strong analytical skills and decisive
- Team player with natural leadership qualities
- Fluent in Dutch and English (spoken and written)
Further details of the role:
- This will be a long-term Freelance Opportunity, 6 months + 2/3 years extension.
- 2/3 Days a week on site in IJsselstein, From January 2026 work will be delivered from Amstelveen.
For further details of the role please reach out to myself directly :
-
|
Information Security Specialist
Vandaag
Taak bekeken
Functieomschrijving
Are you an experienced Information Security Specialist that is available shortly for a new challenge? Do you also bring experience with IAM, audit processes, and compliance frameworks? Then this challenge might be just for you
This role is focused on ensuring the information security and ICT compliance of the European subsidiary of a global bank. The Information Security Specialist will be responsible for executing, managing, and improving a wide range of security-related processes. These include identity and access management (IAM), security risk assessments, compliance monitoring, vulnerability and patch management, business continuity, and training. The role also involves coordination with external auditors and IT suppliers, participating in development processes, and reporting security metrics to management.
Are you interested? Let's get in touch as soon as possible
We are looking for a skilled and motivated Information Security Specialist to join the IT & Operations Division. In this role, you will play a key part in strengthening our information security landscape and ensuring compliance with internal and external standards. You will collaborate across departments, manage key security processes, and help drive a security-first culture throughout the organization.
- Maintain and develop policies and procedures related to ICT and security processes;
- Execute and manage Identity and Access Management (IAM) processes, including access request approvals and rights reviews;
- Conduct Business Impact Analyses, Security Risk Assessments, and Supplier Risk Assessments;
- Coordinate internal and external ICT audits, security audits, and penetration tests (including phishing simulations);
- Manage relationships with IT and security service providers;
- Monitor and follow up on issues and findings from audits and penetration tests;
- Ensure ICT and security compliance with legal and contractual requirements;
Conduct gap analyses related to ICT and security compliance.
Minimum 3 years of experience in a relevant information security role within the financial sector;
- Demonstrated understanding of ICT and information security best practices;
- Knowledge of compliance frameworks and regulatory requirements in the ICT/security domain;
- International mind-set with strong intercultural sensitivity;
- Open, transparent communicator with a willingness to learn and grow.
Preferred Certifications:
- Candidates holding or having passed the exams for the following certifications are preferred:
- CISSP, CCSP
- CISM, CISA
- CRISC
- OSCP
- CEH
We offer a salary between €5000 up to €5,945 based on a 37.5-hour workweek. Next to that you the package includes a 13th-month payment and holiday allowance. The final salary will depend on your experience and age. In addition, you arebe eligible for an performance bonus between 6% up to 10%, payable in July at the full discretion of the employer. The initial contract is for one year, with the intention to extend to an indefinite term. You will also enjoy 30 days of holiday annually. The start date is as soon as possible.
How we'll proceed. Within four working days we will let you know if you qualify for the position. We will schedule an introductory interview, either digitally or in-person. During this interview we will inform you as fully as possible about the vacancy, the company and the following steps in the procedure. After consulting with you, we will introduce you to our client and then continue to guide you through the application process. The Independent Recruiters Group has a large team of specialized recruiters. Each recruiter has a strong focus on their own area of expertise. This makes them the ideal sparring partner for both the candidate and the client.
Information Security Officer
Vandaag
Taak bekeken
Functieomschrijving
We are seeking a talented
Information Security Officer
(ISO) to join our creative international team and contribute to the success of our rapidly expanding organization.The ideal candidate is responsible for establishing, implementing, and maintaining the company's Information Security Management System (ISMS) in compliance with ISO/IEC 27001 and other relevant security standards tailored to our company's size and industry.
Key Responsibilities:
- Develop Information Security Management System (ISMS)
- Risk Management
- Compliance and Governance
- Security Operations
- Incident Response
- Security Awareness and Training
- Vendor and Third-Party Management
Qualifications
Education:
- Bachelor's degree in Information Security, Computer Science, Information Technology, or a related field.
- Master's degree or relevant certifications are highly desirable.
- Relevant certifications such as SOC2, CISM, CISSP, ISO 27001 Lead Auditor/Implementer, or CRISC are a strong plus.
Experience:
- 5+ years of experience in information security, with a focus on software or SaaS environments. Experience working with large enterprises, government entities, or critical infrastructure providers is highly desirable.Experience in developing and implementing security strategies, policies, and procedures.
- Proven experience in risk management, incident response, and security operations. Managing and working with an Information Security Management System (ISMS).
Skills and Competencies:
- Strong knowledge of information security frameworks and standards (e.g., ISO/IEC 27001, NIST).
- Excellent understanding of security technologies (e.g., firewalls, IDS/IPS, encryption, SIEM).
- Strong analytical and problem-solving skills.
- Excellent communication and interpersonal skills, with the ability to communicate security-related concepts to both technical and non-technical audiences.
- Ability to work under pressure and handle multiple priorities.
What do we bring to the table:
depending on your experience, a market-conform salary;
flexible working hours and the possibility to partially work from home;
centrally located office next to Rotterdam Central Station;
a lot of growth potential within a fast-growing organization;
collective pension scheme;
25 vacation days per year;
full public transport compensation.
About RailCube
CRX Software builds, delivers and supports an intuitive and innovative ERP solution called RailCube for the railway industry. RailCube targets railway companies seeking reliable operations management and the highest safety standards. Our goal is to enhance operations by continuing to develop intuitive and innovative features, resulting in more efficient and improved business processes for our clients.
Railcube has chosen to take care of the recruitment process itself.
Acquisition by agencies is not appreciated.
Wees de eerste die het weet
Over het nieuwste Cybersecurity specialist Banen in Nederland !
Information Security Officer
9 dagen geleden geplaatst
Taak bekeken
Functieomschrijving
Information Security Officer, bouw jij mee aan een digitaal veilige toekomst?
Ben jij gepassioneerd over cybersecurity en klaar voor een sleutelrol in informatiebeveiliging binnen een professionele organisatie? Dan zoeken wij jou: een gedreven Information Security Officer die beleid, bewustwording en beveiliging samenbrengt.
In deze functie draag je bij aan het versterken van de digitale weerbaarheid van deze organisatie. Jij ontwikkelt, verbetert en implementeert beveiligingsbeleid, bewaakt de naleving en zorgt dat medewerkers de risico's en oplossingen begrijpen. Je bent een betrouwbare schakel tussen techniek, beleid en mensen.
Wat ga je doen als Information Security Officer?
Opstellen en actueel houden van beveiligingsbeleid en -procedures.
Uitvoeren van risicoanalyses en beheersen van dreigingen.
Toezicht houden op de effectiviteit van beveiligingsmaatregelen.
Verzorgen van bewustwordingssessies en securitytrainingen voor collega’s.
Coördineren van incidentrespons en adviseren bij security-incidenten.
Beantwoorden van klantvragen over onze informatiebeveiliging.
Beoordelen van leveranciers op het gebied van informatiebeveiliging.
Ondersteuning bieden op verschillende locaties in Nederland (en soms binnen Europa).
Rapporteren aan de Chief Information Security Officer (CISO).
Wie zoeken wij als Information Security Officer?
Een ervaren securityprofessional die veiligheid niet alleen ziet als techniek, maar ook als cultuur. Je denkt proactief, werkt gestructureerd en weet je boodschap helder over te brengen.
Jij hebt als Information Security Officer:
Minimaal 2 jaar ervaring in een vergelijkbare functie.
Kennis van endpointbeveiliging, netwerksecurity, IAM en cloudbeveiliging (Microsoft 365 is een pre).
Ervaring met risicomanagement, incident response en security audits.
Kennis van regelgeving als AVG, NIS2 en DORA.
Ervaring met ISO27001:2022, NIST CSF of vergelijkbare frameworks.
Sterke analytische vaardigheden en communicatieve kracht.
De mogelijkheid om een VOG (Verklaring Omtrent het Gedrag) te verkrijgen.
Extra punten scoor je met certificeringen zoals:
CISM, CISSP, CEH, of Microsoft SC-200/300/400.
Wat krijg je als Information Security Officer?
Een afwisselende en strategische functie met maatschappelijke relevantie.
Werken aan uitdagende projecten en met moderne technologieën.
Volop kansen voor opleidingen en certificeringen.
Een salaris tot +/- €6.500 en aantrekkelijke secundaire voorwaarden.
Laptop en smartphone van de zaak.
Een omgeving waar jouw kennis en groei centraal staan.
Interesse in deze vacature Information Security Officer?
Ben jij klaar om impact te maken als Information Security Officer? Reageer dan en je hoort snel van ons!
Information Security Officer - Technisch
Vandaag
Taak bekeken
Functieomschrijving
Ben jij iemand die graag complexe vraagstukken omtovert tot praktische oplossingen? Wil jij jouw kennis van OT-cybersecurity op jouw manier inzetten voor de cyberveiligheid van bijna een miljoen dagelijkse reizigers in Amsterdam? Kun jij met jouw technische skills een essentiële rol spelen in het beschermen van onze vitale systemen? Stap over naar de functie van information security officer OT bij GVB! Dankzij jouw inzet zorgen we voor betrouwbare, veilige mobiliteit in de hartslag van onze stad.
Dit ga je doenAls information security officer OT ben jij de verbindende schakel tussen de cybersecurityafdeling en de verschillende modaliteiten van GVB. Je bent verantwoordelijk voor het beveiligen van onze kritieke ot-systemen, die essentieel zijn voor de continuïteit van onze dienstverlening. In projecten neem je de rol van security architect op je en vertaal je cybersecurityeisen naar technische oplossingen die in ontwerp en realisatie worden meegenomen.
Je bent betrokken bij projecten zoals de introductie van nieuwe trams, de modernisering van gelijkrichterstations en de vernieuwing van onze metro- en veerverbindingen. Daarbij krijg je de ruimte om jouw technische cybersecuritykennis praktisch in te zetten én verder te ontwikkelen. Je voert of begeleidt risicoanalyses, stelt plannen op om kwetsbaarheden te dichten en adviseert projectteams en systeemeigenaren op een toegankelijke en overtuigende manier. Ook ondersteun je bij de implementatie van maatregelen en signaleer je afwijkingen om incidenten te voorkomen. Zo zorg jij dat cybersecurity en techniek hand in hand gaan, waardoor we onze reizigers betrouwbaar en veilig kunnen vervoeren.
Dit neem je mee- Academisch werk/denkniveau, een MSc in een relevante opleiding is een pre
- Aantoonbare ervaring met cybersecurity, bij voorkeur in OT
- Proactieve, analytische en samenwerkingsgerichte instelling
- Ongeveer 2 tot 5 jaar werkervaring
- Kennis van de IEC 62443-norm en ervaring met het uitvoeren van risicoanalyses en security level assessments
- (Sterke) communicatieve vaardigheden, zowel schriftelijk als mondeling
- Ervaring met security architectuur en projectbegeleiding
- Goede beheersing van de Nederlandse taal, zowel mondeling als schriftelijk
Bij GVB hechten we veel waarde aan een diverse en inclusieve werkomgeving. Wij geloven dat verschillende perspectieven en ervaringen ons als organisatie versterken en bijdragen aan innovatie en creativiteit. Daarom nodigen we iedereen die enthousiast wordt van de functieomschrijving uit om te solliciteren, ook als je niet aan alle specifieke criteria voldoet.
Hier mag je op rekenenJij zorgt goed voor onze reizigers, dus zorgen wij goed voor jou. Dat merk je aan alles. Wij bieden jou:
- Een salaris van minimaal € 4.274,- en maximaal €6.079,- (schaal 11) op basis van 36 uur. Inschaling vindt plaats op basis van relevante werkervaring en opleiding.
- Een 13e maand, 8% vakantiegeld, 1,5% duurzame inzetbaarheidsuitkering en een goed pensioen bij ABP.
- Gratis onbeperkt reizen met het OV van GVB.
- Gemiddeld 21 vrije dagen per jaar (afhankelijk van je leeftijd) en de mogelijkheid om extra vakantiedagen te kopen.
- Een tegemoetkoming in de ziektekostenverzekering van 0,57 per maand.
- Verschillende opleidings- en doorgroeimogelijkheden.
- Hybride werken, waarbij je de mogelijkheid krijgt om twee dagen per week thuis te werken.
Je maakt onderdeel uit van het nieuwe OT-cybersecurityteam. Het team werkt nauw samen met de Asset- en Vlootmanagers en de projectleiders van Techniek waarmee er korte lijntjes zijn. Het team kenmerkt zich door een open en lerende cultuur waar jouw input en initiatief worden gewaardeerd. Samen zorgen we ervoor dat veiligheid altijd op de eerste plaats komt, terwijl we elkaar helpen complexe uitdagingen te vertalen naar duurzame oplossingen.
Jouw afdelingJe komt te werken op de cybersecurityafdeling van GVB, de drijvende kracht achter de digitale veiligheid van onze hele organisatie. Deze afdeling bevat alle strategische, tactische en operationele werkzaamheden op het gebied van cybersecurity. Het ontwikkelt beleid, voert audits uit en bewaakt het risicomanagement rondom alle IT- en OT-systemen binnen het openbaar vervoer. Jouw input helpt de afdeling om onze OT-systemen weerbaarder te maken en onze reizigers veilig op hun bestemming te krijgen.
Information Security Officer - Technisch
Vandaag
Taak bekeken
Functieomschrijving
Ben jij iemand die graag complexe vraagstukken omtovert tot praktische oplossingen? Wil jij jouw kennis van OT-cybersecurity op jouw manier inzetten voor de cyberveiligheid van bijna een miljoen dagelijkse reizigers in Amsterdam? Kun jij met jouw technische skills een essentiële rol spelen in het beschermen van onze vitale systemen? Stap over naar de functie van information security officer OT bij GVB! Dankzij jouw inzet zorgen we voor betrouwbare, veilige mobiliteit in de hartslag van onze stad.
Dit ga je doen
Als information security officer OT ben jij de verbindende schakel tussen de cybersecurityafdeling en de verschillende modaliteiten van GVB. Je bent verantwoordelijk voor het beveiligen van onze kritieke ot-systemen, die essentieel zijn voor de continuïteit van onze dienstverlening. In projecten neem je de rol van security architect op je en vertaal je cybersecurityeisen naar technische oplossingen die in ontwerp en realisatie worden meegenomen.
Je bent betrokken bij projecten zoals de introductie van nieuwe trams, de modernisering van gelijkrichterstations en de vernieuwing van onze metro- en veerverbindingen. Daarbij krijg je de ruimte om jouw technische cybersecuritykennis praktisch in te zetten én verder te ontwikkelen. Je voert of begeleidt risicoanalyses, stelt plannen op om kwetsbaarheden te dichten en adviseert projectteams en systeemeigenaren op een toegankelijke en overtuigende manier. Ook ondersteun je bij de implementatie van maatregelen en signaleer je afwijkingen om incidenten te voorkomen. Zo zorg jij dat cybersecurity en techniek hand in hand gaan, waardoor we onze reizigers betrouwbaar en veilig kunnen vervoeren.
Dit neem je mee
- Academisch werk/denkniveau, een MSc in een relevante opleiding is een pre
- Aantoonbare ervaring met cybersecurity, bij voorkeur in OT
- Proactieve, analytische en samenwerkingsgerichte instelling
- Ongeveer 2 tot 5 jaar werkervaring
- Kennis van de IECnorm en ervaring met het uitvoeren van risicoanalyses en security level assessments
- (Sterke) communicatieve vaardigheden, zowel schriftelijk als mondeling
- Ervaring met security architectuur en projectbegeleiding
- Goede beheersing van de Nederlandse taal, zowel mondeling als schriftelijk
Bij GVB hechten we veel waarde aan een diverse en inclusieve werkomgeving. Wij geloven dat verschillende perspectieven en ervaringen ons als organisatie versterken en bijdragen aan innovatie en creativiteit. Daarom nodigen we iedereen die enthousiast wordt van de functieomschrijving uit om te solliciteren, ook als je niet aan alle specifieke criteria voldoet.
Hier mag je op rekenen
Jij zorgt goed voor onze reizigers, dus zorgen wij goed voor jou. Dat merk je aan alles. Wij bieden jou:
- Een salaris van minimaal € 4.274,- en maximaal €6.079,- (schaal 11) op basis van 36 uur. Inschaling vindt plaats op basis van relevante werkervaring en opleiding
- Een 13e maand, 8% vakantiegeld, 1,5% duurzame inzetbaarheidsuitkering en een goed pensioen bij ABP
- Gratis onbeperkt reizen met het OV van GVB
- Gemiddeld 21 vrije dagen per jaar (afhankelijk van je leeftijd) en de mogelijkheid om extra vakantiedagen te kopen
- Een tegemoetkoming in de ziektekostenverzekering van 0,57 per maand
- Verschillende opleidings- en doorgroeimogelijkheden
- Hybride werken, waarbij je de mogelijkheid krijgt om twee dagen per week thuis te werken
Jouw team
Je maakt onderdeel uit van het nieuwe OT-cybersecurityteam. Het team werkt nauw samen met de Asset- en Vlootmanagers en de projectleiders van Techniek waarmee er korte lijntjes zijn. Het team kenmerkt zich door een open en lerende cultuur waar jouw input en initiatief worden gewaardeerd. Samen zorgen we ervoor dat veiligheid altijd op de eerste plaats komt, terwijl we elkaar helpen complexe uitdagingen te vertalen naar duurzame oplossingen.
Jouw afdeling
Je komt te werken op de cybersecurityafdeling van GVB, de drijvende kracht achter de digitale veiligheid van onze hele organisatie. Deze afdeling bevat alle strategische, tactische en operationele werkzaamheden op het gebied van cybersecurity. Het ontwikkelt beleid, voert audits uit en bewaakt het risicomanagement rondom alle IT- en OT-systemen binnen het openbaar vervoer. Jouw input helpt de afdeling om onze OT-systemen weerbaarder te maken en onze reizigers veilig op hun bestemming te krijgen.