Information Security Specialist

Deephealth
Netherlands
17 days ago
Apply on startup.jobs
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
€5,417.0 - €6,250.0
Working hours
Regular working hours
Job source

Tech stack

Cyber Security Information Systems Information Technology Operations Information Systems Security Architecture Professional Information Technology

Job description

The Information Security Specialist is a strategic role within DeepHealth’s Quality, Regulatory, and Compliance department, responsible for assisting in the development, implementation, and maintenance of comprehensive information security compliance strategies. This position is critical in protecting organizational data, ensuring regulatory adherence, and mitigating potential security risks in the complex digital health landscape., As the Information Security Specialist, this position will work with the Information Security Officer, IT Operations, Sec Operations and the broader Compliance team to:

Information Security Compliance Strategy:

· Develop and implement holistic security compliance programs

· Create comprehensive risk management frameworks

· Design and maintain security policies, procedures, and guidelines

· Continuously assess and update security strategies

· Ensure alignment with organizational objectives and regulatory requirements

Regulatory Compliance:

· Ensure compliance with complex regulatory standards including, but not limited to:

o HIPAA

o GDPR

o CCPA

o ISO 27001

o HITRUST

· Conduct thorough risk assessments and vulnerability evaluations

· Prepare detailed compliance reports and documentation

· Support external and internal audit processes

· Track and implement regulatory changes

Technical Security:

· Perform comprehensive security vulnerability assessment

· Develop and implement security control frameworks

· Monitor and analyze security incidents and breaches

· Design and conduct security awareness training programs

· Manage access control and identity management systems

· Evaluate and recommend security technologies and solutions

Incident Response and Management:

· Develop and maintain incident response plans

· Coordinate rapid and effective responses to security incidents

· Conduct pos-incident analysis and implement preventive measures

· Maintain detailed incident documentation and reporting

Interdepartmental Collaboration:

· Work closely with IT, Legal, Compliance, and Clinical teams

· Provide security guidance and recommendations

· Facilitate cross-functional security awareness and training

· Support technology implementation and security best practices

Please Note: This is not an exhaustive list of all duties, responsibilities and requirements of the position described above. Other functions may be assigned, and management retains the right to add or change duties at any time.

Requirements

  • Bachelor’s degree in Cybersecurity, Information Security, Computer Science or related field (or equivalent experience). Master’s degree or advanced security certifications preferred, such as:

o CISSP (Certified Information Systems Security Professional)

o CISM (Certified Information Security Manager)

o CRISC (Certified in Risk and Information Systems Control)

  • 3-5 years of progressive experience in security compliance with healthcare, medical technology, or highly regulated industries.

  • Proven track record of developing and implementing security strategies.

  • Experience with regulatory compliance in complex environments, including:

o An advanced understanding of security frameworks and compliance standards

o Proficiency in security tools and technologies

o Experience with risk assessment and management tools

  • Excellent written and oral communication and interpersonal skills with the ability to explain complex security concepts to diverse audiences.

  • High level of integrity and confidentiality

Working conditions

  • This position may be based in the European Union in a typical office setting.
  • This position will have the ability to work remotely., This position often requires sitting, standing, walking, bending, twisting, reaching with hands and arms, using hands and fingers, handling, or feeling, speaking, listening, and high-level cognitive thinking. Also, must be able to lift up to 10 pounds occasionally. The position requires the ability to travel (~10% of time), drive a vehicle, and utilize other forms of transportation.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on startup.jobs
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

59 sec

Proving regulatory compliance to auditors and chief officers

Mike Bursell Mike Bursell · World Congress 2026 Europe

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

42 sec

Energy forecasts and resource demands of information technology

Marjolein Pordon · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

2:03 min

Platform compliance and security certifications for sensitive data

Chad Carlson · World Congress 2021

2:46 min

Missing equipment retrieval processes for departing employees

Jasmin Azemović Jasmin Azemović · World Congress 2026 Europe

Videos

See all

Related articles

See all