> Markdown version of [/jobs/ext/358992-information-security-expert](https://www.wearedevelopers.com/jobs/ext/358992-information-security-expert). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Security Expert - **Company:** LEVY PROFESSIONALS - **Location:** Amsterdam, Netherlands - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Agile Methodology, Data Analysis, Audit Trail, Authentication Protocols, Software as a Service, Cyber Security, DevOps, Monitoring of Systems, Identity and Access Management, Information Systems Security Architecture Professional, Local Security Policy, Log Files, Role-Based Access Control, Cloud Platform System - **Published:** June 13, 2026 - **Apply:** https://nl.indeed.com/viewjob?jk=175d0b576caa6336 ## About the Role Do you have experience in Supply chain?, You are a highly analytical, detail-oriented security professional who enjoys digging deep into technical systems to identify vulnerabilities and process gaps. You possess strong critical thinking skills and have a talent for translating complex technical findings into clear, non-technical business language for executive stakeholders. You are comfortable working independently in a fast-paced environment and managing diverse stakeholder relationships., * Audit Background: Typically 6-8 years of experience in internal audit, security auditing, IT risk, compliance, or similar specialist roles. * SaaS Expertise: Proven experience auditing SaaS environments and cloud architectures is a strong plus. * Control Evaluation: Demonstrated experience testing actual operational control effectiveness using direct system evidence and technical configurations., * Technical Domain Knowledge: Solid understanding of IT platforms, applications, security architectures, and Identity and Access Management (IAM), including RBAC, PAM, access governance, and user lifecycle controls. * Standards & Frameworks: Strong familiarity with industry standards and compliance frameworks such as ISO 27001, SOC 2, NIST, CIS, and GDPR. * Methodology & Tools: Comfort working in a hybrid, DevOps, and Agile environment. * Logistics & Language: * Full professional fluency in English (the working language of the team). + Ability to work in a hybrid setup (1-2 days per week from the office). + Willingness to travel abroad as required for audit-related activities. ## Description An independent and highly skilled Information Security Expert to join our client's team on an expertise-driven assignment. We are looking for a specialist who can hit the ground running to deliver comprehensive, end-to-end security audits within the critical domain of Supply Chain Security. If you are a self-starter who thrives on delivering deep-dive analyses and structured risk assessments in a collaborative environment, this project is for you., As an Information Security Expert, you are responsible for conducting comprehensive, end-to-end audits of systems, processes, SaaS platforms, and internal controls to ensure compliance, security, operational efficiency, and risk mitigation. This role is centered on specialist audit deliverables rather than ongoing operational responsibilities. You will operate with a high degree of independence, from planning and evidence gathering through to final reporting, while collaborating closely with cross-functional teams. You will: * Conduct detailed technical analyses, evidence gathering, root-cause identification, and actionable reporting. * Evaluate control designs versus actual operational effectiveness using direct system evidence rather than design intent alone. * Provide key insights into technical gaps, emerging security risks, and strategic improvement opportunities., * Audit Execution: Lead and conduct thorough end-to-end audits of systems, processes, SaaS platforms, and third-party vendors. * Technical Reviews: Analyze technical configurations, including access controls, authentication mechanisms, security settings, and system behaviors. * Log & Data Analysis: Review and interpret log files, audit trails, and system monitoring data to validate control effectiveness and locate weaknesses. * Architecture Assessment: Evaluate cloud, SaaS, and platform architectures against shared responsibility models to call out security and ownership gaps. * Stakeholder Engagement: Actively engage and collaborate with internal and external stakeholders, including Risk, Procurement, Contract Owners, and suppliers. * Agile Collaboration: Work aligned with DevOps & Agile methodologies within an international team. ## Related Videos - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [The Software Bug All Stars - and what we can learn from them](https://www.wearedevelopers.com/videos/423-the-software-bug-all-stars-and-what-we-can-learn-from-them) - [Resilient by Design: Building Robust Architectures in High-Stakes Financial Systems](https://www.wearedevelopers.com/videos/2106-resilient-by-design-building-robust-architectures-in-high-stakes-financial-systems) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [DevOps Maturity Check – a way to balance autonomy and alignment](https://www.wearedevelopers.com/videos/58-devops-maturity-check-a-way-to-balance-autonomy-and-alignment) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) ## Related Articles - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [How to land a developer job in Amsterdam](https://www.wearedevelopers.com/magazine/36-how-to-land-a-developer-job-in-amsterdam) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [How to Find Tech Jobs in Amsterdam](https://www.wearedevelopers.com/magazine/279-how-to-find-tech-jobs-in-amsterdam) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market)