Job Description
As the Information Security Officer (ISO) you are responsible for maintaining and continuously improvingour Information Security Management System (ISMS) ensuring it aligns with group policies a shared way of working and ISO 27001 this role you support information security risk management and Internal audit while helping to build and promote a strong security awareness culture across the organization. You bring experience in ISO 27001 and operating in regulated environments with a good understanding of cloud security and emerging technologies. And every day at work youll be doing your part for all the charities we support.
Ivan Larkins International Team Lead Information Security: What I enjoy most about this role is the balance between responsibility and impact. Youre not just working on controls and frameworks youre helping teams make better decisions every day. Working closely with colleagues across different countries also brings a great exchange of ideas and perspectives. And in an environment like the Lotteries where everything we do supports good causes that makes the work genuinely meaningful and enjoyable.
As Information Security Officer youll:
- Create update review and manage information security policies standards and procedures. You own maintain and continuously improve the ISMS in alignment with ISO 27001:2022.
- Ensure all documentation (e.g. risk assessments incident reports security controls) is up-to-date and audit-ready and coordinate local penetration testing and vulnerability assessments and track remediation progress.
- Monitor track and report on security objectives metrics and KPIs. And align with the group on security awareness initiatives and lead local execution and communication.
- Drive local risk assessments and maintain the risk register in line with group frameworks.
- Collaborate with IT Legal and Compliance to embed security into business processes.
- Oversee user access reviews asset inventories and incident response planning.
- Provide security guidance on projects vendors and third-party tools.
- Own and coordinate the ISO 27001 certification process locally including preparation for internal and external audits managing audit activities and ensuring timely closure of findings and continuous improvement of the ISMS.
Required Experience:
Unclear Seniority
AmsterdamOn-siteJob DescriptionAs the Information Security Officer (ISO) you are responsible for maintaining and continuously improvingour Information Security Management System (ISMS) ensuring it aligns with group policies a shared way of working and ISO 27001 this role you support information sec...
Job Description
As the Information Security Officer (ISO) you are responsible for maintaining and continuously improvingour Information Security Management System (ISMS) ensuring it aligns with group policies a shared way of working and ISO 27001 this role you support information security risk management and Internal audit while helping to build and promote a strong security awareness culture across the organization. You bring experience in ISO 27001 and operating in regulated environments with a good understanding of cloud security and emerging technologies. And every day at work youll be doing your part for all the charities we support.
Ivan Larkins International Team Lead Information Security: What I enjoy most about this role is the balance between responsibility and impact. Youre not just working on controls and frameworks youre helping teams make better decisions every day. Working closely with colleagues across different countries also brings a great exchange of ideas and perspectives. And in an environment like the Lotteries where everything we do supports good causes that makes the work genuinely meaningful and enjoyable.
As Information Security Officer youll:
- Create update review and manage information security policies standards and procedures. You own maintain and continuously improve the ISMS in alignment with ISO 27001:2022.
- Ensure all documentation (e.g. risk assessments incident reports security controls) is up-to-date and audit-ready and coordinate local penetration testing and vulnerability assessments and track remediation progress.
- Monitor track and report on security objectives metrics and KPIs. And align with the group on security awareness initiatives and lead local execution and communication.
- Drive local risk assessments and maintain the risk register in line with group frameworks.
- Collaborate with IT Legal and Compliance to embed security into business processes.
- Oversee user access reviews asset inventories and incident response planning.
- Provide security guidance on projects vendors and third-party tools.
- Own and coordinate the ISO 27001 certification process locally including preparation for internal and external audits managing audit activities and ensuring timely closure of findings and continuous improvement of the ISMS.
Required Experience:
Unclear Seniority
View more
View less