> Markdown version of [/jobs/ext/2157487-technical-information-security-officer](https://www.wearedevelopers.com/jobs/ext/2157487-technical-information-security-officer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Technical Information Security Officer - **Company:** Nationale-Nederlanden - **Location:** ROTTERDAM, Netherlands - **Experience:** Expert - **Salary:** €4,527.0 - **Contract:** Permanent contract - **Skills:** Cyber Security, DevOps, Identity and Access Management, Vulnerability Analysis - **Published:** August 21, 2026 - **Apply:** https://www.cooperatiemenzis.nl/werkenbij/vacatures/vacature-details?vacatureId=793&utm_source=careerguide ## About the Role * Strong knowledge of network, endpoint, identity, and cloud security concepts and controls. * Hands-on experience with security monitoring, logging, SIEM/SOAR, and incident response practices. * Proficiency in vulnerability management tools and remediation workflows. * Ability to translate technical findings into actionable risk and control recommendations. * Familiarity with security frameworks and standards (e.g., ISO 27001, NIST, CIS) and secure SDLC principles. * Excellent stakeholder communication, documentation, and prioritization skills. NN Group IT / Enterprise Engineering Technology is looking for an Information Security Officer who is able to take a proactive role in the management of information security risks. The ideal candidate has a strong foundation in IT security and compliance practices, is well versed in relevant industry standards, and actively contributes to the adoption, improvement, and effective implementation of security processes, and controls. You take ownership, work independently where needed, and collaborate closely with stakeholders to embed security into daily operations. You are committed to staying current with emerging security trends, threats, and regulatory developments, and you are able to identify opportunities for new initiatives that further enhance the organization's security maturity and resilience., * You are proactive and result-driven and ensure you meet agreements made * Detail oriented, with the ability to maintain a clear overview of risks, priorities, and objectives * Clear communication style and being able to cooperate with people with various backgrounds * A true team player who is flexible and supportive, and able to adapt to changing priorities * Skilled and experienced, with at least five years of experience in IT and information security. Experience with network connectivity products is preferred. You preferably hold a bachelor's or master's degree in IT, or another relevant technical and/or security-oriented field. CISSP, SSCP, or other relevant security and technical certifications are considered an advantage ## Description Role purpose: Lead and strengthen the organization's technical information security posture by defining controls, reducing risk, and enabling secure operations across systems, networks, and cloud environments., * Develop, implement, and maintain technical security standards, baselines, and hardening guidelines. * Oversee security architecture and engineering reviews for new and existing solutions. * Manage vulnerability management processes, including scanning, prioritization, remediation tracking, and verification. * Monitor and respond to security incidents; coordinate investigation, containment, and lessons learned. * Support risk assessments, threat modeling, and security exception handling with clear documentation. * Ensure security controls align with applicable frameworks, policies, and regulatory requirements. * Partner with IT, DevOps, and business stakeholders to embed security into projects and operations., * Reviewing technical designs and security measures (e.g., IAM, firewalls, according NN security standards) for the designs of the technical environment: network, infrastructure (both cloud and on-premise datacenters), external connections etc * Working with team of information security officers on a wide variety of security and compliance tasks, e.g. periodic control tracking, deep-dive product reviews, threat modelling, vulnerability assessments and supply chain security etc * Working in close cooperation with the DevOps teams to proactively identify risks and support teams to implement the appropriate security measures * Supporting security and compliance projects and initiatives such as automation of security compliancy, Who you will work with Within our organization, all business units are responsible for safeguarding the security of the IT environment. A key challenge for the BSO team is to review, validate, and ensure the correct implementation of technical security measures, while actively supporting DevOps teams in achieving this. The BSO team plays a critical role in balancing residual risks against required security controls, enabling product owners and their teams to make well-informed, risk-based decisions. Continuous improvement of IT security processes and procedures through standardization and automation is essential for increasing quality, reducing manual effort, and enhancing consistency across the organization. As a member of the BSO Team, your role is to review and support the implementation of security standards and guidelines, ensuring a structured, consistent, and well-aligned approach to IT security and compliance. ## Related Videos - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [How to Cause (or Prevent) a Massive Data Breach- Secure Coding and IDOR](https://www.wearedevelopers.com/videos/39-how-to-cause-or-prevent-a-massive-data-breach-secure-coding-and-idor) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [Reporting Active Exploits in 24 Hours: Are You Ready for the CRA?](https://www.wearedevelopers.com/videos/100248-reporting-active-exploits-in-24-hours-are-you-ready-for-the-cra) - [Lessons learned from observing a billion API requests](https://www.wearedevelopers.com/videos/1574-lessons-learned-from-observing-a-billion-api-requests) ## Related Articles - [Best Companies in the Netherlands: Top 25 Companies in 2023 ](https://www.wearedevelopers.com/magazine/193-best-companies-in-the-netherlands-top-25-companies-in-2023) - [The Netherlands – Europe’s powerhouse for software development?](https://www.wearedevelopers.com/magazine/31-the-netherlands-europe-s-powerhouse-for-software-development) - [How to land a developer job in Amsterdam](https://www.wearedevelopers.com/magazine/36-how-to-land-a-developer-job-in-amsterdam) - [Average Salary in The Netherlands](https://www.wearedevelopers.com/magazine/272-average-salary-in-the-netherlands) - [How to Find Tech Jobs in Amsterdam](https://www.wearedevelopers.com/magazine/279-how-to-find-tech-jobs-in-amsterdam) - [Software Developer Salary in The Netherlands [2023]](https://www.wearedevelopers.com/magazine/217-software-developer-salary-in-the-netherlands-2023)