> Markdown version of [/jobs/ext/3099937-information-security-officer](https://www.wearedevelopers.com/jobs/ext/3099937-information-security-officer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Security Officer - **Company:** Findock - **Location:** Netherlands - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Cyber Security, Salesforce.Com, Software Engineering, Devsecops - **Published:** September 27, 2026 - **Apply:** https://www.uwstadwerkt.nl/woerden/vacature/39361/Information-Security-Officer ## About the Role 5+ years in information security, GRC, or DevSecOps. You've led risk assessments, built mitigation plans, and maintained risk registers. You bring deep knowledge of ISO27001, SOC 2, GDPR, and secure software development practices. Skills: You communicate clearly and engage with both technical and executive audiences. You're hands-on with security tooling and help teams apply it well. You bring structure, collaborate across functions, and support others in working securely. Mindset: You care about quality and trust. You take ownership, stay calm under pressure, and bring clarity to complexity. You're pragmatic, proactive, and help others work securely. ## Description * Align policies with GDPR, CCPA, and customer contracts; own risk governance and certifications (ISO 27001, SOC 2) * Review architecture, guide secure development, and embed security in engineering workflows * Run security tools and processes-vulnerability scans, access controls, security incident response * Promote a security-first culture with training, simulations, and cross-team collaboration * Support Sales and customers with up-to-date trust collateral and clear security positioning when needed ## Related Videos - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) - [Organizational Change Through The Power Of Why - DevSecOps Enablement](https://www.wearedevelopers.com/videos/478-organizational-change-through-the-power-of-why-devsecops-enablement) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [The Overflow: 5 Security and Privacy Tools for Developers](https://www.wearedevelopers.com/magazine/710-the-overflow-5-security-and-privacy-tools-for-developers)