Head of Information Security
RIXT.IT · Amsterdam, North Holland, Netherlands
Apply & track with Apply EdgeAbout the organisationOur client is an international trading organisation active in commodity and energy markets, headquartered in Amsterdam. Alongside its trading activities, the company is building an integrated digital platform with new digital propositions and client-facing technology. Data, technology and AI play an increasingly central role in that development.This growth calls for a mature security function at group level. The organisation is therefore looking for a Head of Information Security who can set the strategic direction for security and help build the new digital activities securely from day one.The roleYou carry overall responsibility for information security across the entire group. This covers the trading business, the new digital units and the platforms used by clients. You report on security to the executive team and the Board.Strategy and governance You develop the group-wide security strategy, based on ISO 27001 and NIST CSF. You set up the governance structure, policies and reporting.Security in products and platforms You make sure security is part of the design of new products and client platforms. You oversee application and SaaS security throughout the development lifecycle.Risk and resilience You lead security risk management, vulnerability assessments and the coordination of incident response.Infrastructure and new technology You secure the cloud and hybrid environment based on Zero Trust principles. You define the security framework for data and AI platforms.Compliance and team You ensure alignment with GDPR and DORA. You lead the security function and further develop the team's capabilities.Your profileBachelor's degree in information security, computer science or a related field10 to 15 years of experience in information security, at least 5 of them at senior levelBroad experience with incident response, cloud infrastructure and complianceSolid knowledge of ISO 27001, NIST CSF and CIS ControlsStrong analytical skills and the ability to engage stakeholders up to board levelNice-to-havesMaster's degree in a relevant fieldCISSP, CISM or CISA certificationExperience in trading, financial services or another highly regulated environmentExperience securing client-facing platforms or digital productsIn-depth knowledge of privacy and regulation, such as DORAWhat does our client offerCompetitive salary plus a performance-based variable componentPension schemeRoom for personal development, including training and career coachingWhy this roleYou build the security function at group level, with direct visibility to the executive team and the Board. The organisation is in the middle of a digital expansion, which gives you real influence on how new platforms and AI applications are set up. This is not a maintenance role. It brings strategy and execution together in a fast-moving international trading environment.