Information Security Officer

Information Security Officer

Back to all jobs

ABOUT US

Join Toreon & Data Protection Institute, where your interest in cybersecurity and management consulting converge.

At Toreon, we believe in the positive power of technology and the value of teamwork. Since 2014, we’ve been working with a team of over 60 cybersecurity experts toward a common goal: empowering organizations to operate safely and successfully in the digital world.

We stand for maximum impact and maximum growth—not just for our clients, but also for our people. In everything we do, we combine a winning mentality with integrity and quality. Together, we create solutions that work not only for today but also for the future.

 

ABOUT THE CHALLENGE

You will join a committed security team of around 20 Toreonites that is already working with great enthusiasm on different security projects in various industries. 
 
As an Information Security Officer, you will be the one who sets up risk management frameworks, identifies risks, and can prioritize them within the risk treatment plan.
You will provide updated action plans that allow us to take other companies to a higher level of security maturity.
 
In doing so, you will implement and manage Information Security Management Systems. By defining technical and process security measures in documented policies, processes, and standards, you will succeed in making organizations more secure and help them to obtain a security certificate.
 
To complete your role as an Information Security Officer, you will be the one to perform security and privacy compliance assessments according to specified requirements of a security and privacy framework.  You will be able to identify shortcomings quickly and report them immediately to the customer. You will translate these into concrete measures to meet the requirements. With this, you help the organization to meet legal standards.
 

REQUIREMENTS

  • You are in possession of a relevant Bachelor or Master's degree within economics, IT or equivalent; engineering, sciences, computer sciences, statistics,…
  • One of the following certificates would be a plus: ISO27001 Lead Implementer, ISO27001 Lead Auditor, Certified DPO, CISM, CISSP, and CISA.
  • Knowledge about security risk management methodologies such as: ISO27005, ISO31000, and COSO.
  • Execute security risk analyses, business impact assessments and control assessments.
  • You are able to implement and manage an information security management system (ISMS).
  • Knowledge about the security and privacy standards and governance frameworks such as ISO27001/2, ISO27701, NIST CSF, CIS Controls, CyberFundamentals,... 
  • Knowledge about relevant laws and regulations such as NIS2, DORA, CRA, GDPR, ...
  • Conducting an audit and formulating an assessment plan (in accordance with ISO190011).
  • Validate control measures and report the assessment results.
  • If you have a technical background, you have the edge to make a good translation to the business. It will make it easier on yourself if you have experience in one of the following areas:
    • Identity, Access, Vulnerability and Patch Management
    • Security in the Software Development Life Cycle
    • Cloud security (EMS o365, MS Azure, AWS, ...)
    • Network Technology: Routing and switching standards, VPN,
    • Experience in security domains and standards Cryptography (incl. Key Life Cycle Management) and Public Key Infrastructure.
  • You are able to give professional advice in 2 languages like Dutch and English. French is a plus.
 

INSIDE OUT

You’re a people person who thrives on giving advice and supporting others. You adapt easily to different situations, motivate those around you, and offer valuable insights, always with respect and empathy.

You take ownership of your actions and consistently act with integrity. Your discretion and self-discipline are reflected in the quality of your work. In your projects, your expertise stands out. You’re committed to growing your knowledge and just as eager to share it with others.

 

WHAT TO EXPECT

  • Cybersecurity with impact

We’re focused exclusively on cybersecurity. From day one, you’ll work on meaningful projects with direct client exposure.

 

  • Growth & knowledge sharing

Learn from top experts and grow through mentorship, a buddy system, trainings, and your personal development plan.

 

  • People-first performance culture

Entrepreneurship and performance thrive in a safe, open environment where you can be yourself and take initiative.

 

  • Strong salary package

Competitive salary and a generous training budget to support your ambitions.

 

  • Culture fit over perfection

You don’t need to tick every box. Attitude and motivation matter just as much.

 

Let’s chat — bring your unique self!

Sophie Couvreur

Interested but need more information?

Let's talk!

Sophie Couvreur

Talent Manager
recruitment@toreon.com

Let's talk
Sophie Couvreur

Interested but need more information?
Let's talk!

Sophie Couvreur

Talent Manager
recruitment@toreon.com

Let's talk

Stay tuned with our Inside Out Newsletter

Get more news on our vacancies.

Start typing and press Enter to search

Shopping Cart