Business Information Security Officer (BISO)
Amsterdam - Netherlands
Job Summary
Job Description & Summary
Do you want to shape how PwC Netherlands protects its people clients and data in a rapidly changing regulatory landscape Are you ready to take ownership of security governance risk and compliance across one of the countrys leading professional services firms
In this roleyoulllead the CISO offices work on internal control audit readiness and the implementation of frameworks like ISO 27001 SOC 2 NIS2 and DORA.Youllalso help shape PwC NLs approach to AI governance and driveourannual security risk assessment.Itsa visible role withdirectimpact on how we manage security risk across the member firm.
This is whatyoulldo
Youlljoin the CISO office a team of informal and ambitious professionals who work closely together on meaningful firm-wide security topics.Youllact as a subject matterleadon internal security risk and control initiatives translating global policy into practical standards and ways of working for PwC NL.Youllwork hands-on with auditors business stakeholders and technology teams to embed security into our day-to-day operations while also driving forward strategic programs around resilience regulatory readiness and AI governance.Youllreport regularly to senior stakeholders on control status audit findings regulatory readiness and risk themes.
Lead the CISO offices work on the internal PwC control framework and act asSMEfor internal audit including preparation evidencetesting remediation tracking and control maturity improvement.
Drive the implementation upkeep and continuous improvement of ISO 27001 SOC 2 NIS2 and DORA and manage the CISO office pillar of PwC NLs internal IT Unified Control Framework.
Lead the global and local annual security risk assessment and manage PwC NLs security awareness campaigns.
Implement andmaintainthe firms approach to AI governance and risk management including policy development risk assessment control definition and oversight of responsible use.
Partner with internal committees and lines of service to ensure security risk and control requirements are understood workable and embedded across the business.
You recognize yourself in this
Yourea proactive professional who combines a structured consultative approach with a hands-on delivery mindset. You communicatepractivelyandclearly with both technical teams and business stakeholders and you know when tosetfirm guardrails and when flexibility is the smarter choice.
5 years of professional experience in information security IT governance compliance risk management and internal control.
Hands-on experience implementing andmaintainingISO 27001 SOC 2 and NIS2 (notonlyadvising onthem); security project management experience is a strong plus.
Solid understanding of internal audit processes control testingissueremediation and how to build evidence that meets regulator and auditor standards.
Knowledge of AI governance AI risk and emerging technology controls plusprevioushands-onITor cybersecurity experience as a strong advantage.
Previoushands-on IT or cybersecurity experience duringyourearly career stages is a strong advantage.
Fluent in Dutch at a professional level.
What we offer
Withusyou get the chance to be yourself bring out the best in yourself in a high-performance organization and grow within our global network. We offer you among other things:
A competitive salary in line with your experience an annual bonus (depending on results and personal development) and the opportunity to grow further in your career;
A permanent contract from day one and a motivating work environment where collaboration with ambitious colleagues and recognition of your contributions are central;
A wide range of tailor-made training programs focused on professional growth and leadership development;
Theoptionto use various mobility providers (OV) via one convenient app;
32 vacation days and theoptiontopurchaseadditionalleave;
At PwC your well-being is our priority.Thatswhy we offer a personal well-being budget to support your physical and mental health as well as access to the well-being platform OpenUp;
The opportunity to work on challenging and meaningful client engagements use leading technology including AI tools learn from the best and be supported through coaching. Together we work as an inclusive team to make real impact;
The flexibility of hybrid working including a fully equipped home office and a monthly net expense allowance for internet and other costs;
Curious about everything else we have to offer Discover all our benefits and ex
tras on our website.
Getting started at PwC
Are you interested in this vacancy Let us know what motivates you andsubmityour details.
After your application:
Youllreceive an immediate confirmation in your inbox;
If your qualifications match our profilewellcontact you within two weeks for a short introductory conversation;
If everyone is enthusiasticwellscheduleanshort call. Depending on the outcomeyoullreceive an invitation for a first interview.
Would you like more information about the role at PwC Peter de Vries is happy to talk with you by email.
Peter de Vries Lead Recruiter
#LI-PD1
Required Experience:
Unclear Seniority
About Company
At PwC, our purpose is to build trust in society and solve important problems. We’re a network of firms in 155 countries with over 284,000 people who are committed to delivering quality in assurance, advisory and tax services. Find out more and tell us what matters to you by vis ... View more