Remote job
IT Security & Compliance Lead (Amsterdam, NLD)
Job details
About this role
Role overview Lead security governance and compliance across a distributed, multi-region technology environment. The role sets a consistent security baseline, assesses and reduces risk, and coordinates policy, access management, incident readiness, and data protection work as teams and systems operate across different locations and practices.
Responsibilities - Conduct recurring security audits and risk assessments; maintain a prioritized risk register and report maturity using clear metrics. - Establish security standards aligned with a recognized framework and review vendors and technology platforms for risk. - Coordinate penetration testing and vulnerability scanning, and follow remediation with system owners. - Define and monitor identity and access controls, including multifactor authentication, single sign-on, least privilege, and joiner/mover/leaver processes. - Work with regional IT teams on endpoint security and with product, engineering, and data teams on secure-by-design practices. - Maintain information security policies and support incident response and data protection compliance across applicable jurisdictions.
Requirements - The listing describes ownership of security governance, audits, risk assessment, access controls, policy maintenance, and incident coordination. It does not provide enough complete source detail to state required years of experience or specific credentials. - The role requires working across regional IT, technology, engineering, and data teams in a distributed environment.
Benefits and work setup Full-time, 40 hours per week, with no part-time option. The role is remote-first, but candidates must reside in the Netherlands or the UK at the start of employment and be within commuting distance of an office in Amsterdam or London.