> Markdown version of [/jobs/ext/3211906-technical-information-security-officer-iso](https://www.wearedevelopers.com/jobs/ext/3211906-technical-information-security-officer-iso). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Technical Information Security Officer (ISO) - **Company:** Eye Security - **Location:** Den Haag, Netherlands - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Software System Penetration Testing, Microsoft Azure, Cloud Computing Security, Configuration Management, Cyber Security, Computer Networks, Information Leak Prevention, Data Security, Monitoring of Systems, Log Analysis, Role-Based Access Control, Secure Coding, Security Information and Event Management, Software Vulnerability Management, Data Logging, Data Processing - **Published:** September 2, 2026 - **Apply:** https://nl.indeed.com/viewjob?jk=16412b90ddd98349 ## About the Role * Hands-on experience with AWS, DLP, log analytics, SIEM platforms, and secure configuration management in enterprise environments. * Deep understanding of role-based access control (RBAC), separation of duties principles, and their implementation in modern IT infrastructures. * Expertise in security frameworks and compliance standards, particularly ISO 27001:2022 and EU NIS2 requirements. * Excellent analytical and problem-solving skills with the ability to translate compliance requirements into technical solutions. * Strong communication skills to bridge compliance and technical audiences, including senior leadership and external auditors. * Fluent English (written and spoken); Dutch is a plus. Nice-to-have * Experience with cloud security tools and architectures (Azure, or equivalent). * Experience with bug bounty programs and vulnerability management platforms. * Relevant certifications (e.g., OSCP). * Knowledge of secure development lifecycle (SDLC) practices and secure coding standards. * Experience leading security architecture design in a scaling organization. ## Description We are looking for a Technical Information Security Officer to lead the design and implementation of our IT security architecture, monitoring infrastructure, and technical controls. In this role, you will translate compliance requirements from our CISO office into robust technical solutions, design and deploy security architecture components, manage our log analytics and monitoring platform, and ensure all security controls are functioning as intended. You act as the technical counterpart to our compliance-facing ISO. Where the CISO office defines what controls need to prove compliance, you design and implement how those controls work and ensure they remain operational and effective. This is a senior technical cybersecurity role with strategic influence over Eye Security's security posture., * Design and implement insider threat solutions, such as Data Loss Prevention (DLP), to safeguard sensitive information and prevent unauthorized data exfiltration. * Define and enforce role-based access controls and separation of duties principles to prevent abuse and limit the effect of mistakes across systems and applications. * Establish and maintain secure configurations for systems, applications, and network components in alignment with industry standards and ISO 27001:2022 requirements. * Develop threat models and security design documentation to anticipate and mitigate emerging attack vectors. Log Analytics & Systems Monitoring * Deploy and configure centralized logging infrastructure and SIEM platforms to collect, store, and analyze security events across all systems and applications. * Design and implement alerting rules and monitoring workflows to detect anomalies, suspicious activities, and potential security breaches in real time. * Monitor, investigate, and respond to security alerts in coordination with the CISO office and provide recommendations for remediation. * Optimize log retention, storage, and analytics performance to maintain compliance with regulatory and operational requirements., * Coordinate vulnerability disclosure processes and manage the bug bounty program to identify and remediate security weaknesses in a timely manner. * Coordinate and oversee penetration testing engagements to validate security controls and identify gaps in the security architecture. * Develop and maintain a process for tracking, prioritizing, and remediating identified vulnerabilities and security findings., * Establish and enforce secure coding principles and practices for all internal software development and third-party components. * Implement configuration management processes to ensure systems are deployed and maintained in a secure, consistent, and auditable manner. * Design and implement secure data masking techniques to protect sensitive information in non-production environments and during data processing. Compliance Support & Collaboration with CISO office * Work closely with the Information Security Officers to translate compliance requirements into clear technical specifications for architecture, logging, and monitoring. * Provide evidence and documentation of technical controls to support compliance audits and regulatory assessments for ISO 27001:2022 and EU NIS2. * Support the ISO's in defining technical monitoring requirements and help validate that implemented controls meet compliance objectives. * Develop and support cyber security incident exercises and participate in the Incident Response Team during security breaches., This role is the technical foundation of Eye Security's security posture. While the Information Security Officers formulates what needs to be monitored and evidenced for compliance, you design and implement the technical infrastructure that makes it happen. You will build and lead the IT Security Office, ensuring that security architecture, log analytics, and monitoring capabilities remain aligned with our evolving compliance requirements and threat landscape as Eye Security scales. You will work closely with the ISO's to ensure requirements flow seamlessly from compliance to implementation, and with the Engineering team to maintain operational excellence. ## Related Videos - [ The attacker's footprint](https://www.wearedevelopers.com/videos/375-the-attacker-s-footprint) - [How to Cause (or Prevent) a Massive Data Breach- Secure Coding and IDOR](https://www.wearedevelopers.com/videos/39-how-to-cause-or-prevent-a-massive-data-breach-secure-coding-and-idor) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Crypto-secure Data Management with In-Database Blockchain](https://www.wearedevelopers.com/videos/632-crypto-secure-data-management-with-in-database-blockchain) - [Developers Communities in San Francisco - WeAreDevelopers LIVE from Corgi Cafe](https://www.wearedevelopers.com/videos/2144-developers-communities-in-san-francisco-wearedevelopers-live-from-corgi-cafe) - [GenAI Is a Junior Dev With Root Access](https://www.wearedevelopers.com/videos/100191-genai-is-a-junior-dev-with-root-access) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Best Companies in the Netherlands: Top 25 Companies in 2023 ](https://www.wearedevelopers.com/magazine/193-best-companies-in-the-netherlands-top-25-companies-in-2023) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking)