Information Security and Privacy Advisor
A reliable information management system requires more than just good systems and processes. Information must be processed securely, and personal data carefully protected. Within operational services, where large volumes of government information are handled daily, information security and privacy must be well embedded. You will work within a public organization focused on future-proof information management.
Within a specific unit, a new Operations Office is being established, responsible for direction, implementation, quality assurance, and compliance within operational services. As an advisor, you will ensure that information security and privacy frameworks actually work in practice. You will help identify risks early and support colleagues in handling information securely and diligently.
The Operations Office is in full development, requiring professionals who show initiative and want to contribute to its further professionalization.
What you will do.
- You are the first point of contact for information security and privacy (IB&P) within operational services.
- You ensure that processes, systems, and teams operate according to applicable frameworks, including the Baseline Informatiebeveiliging Overheid (BIO), the General Data Protection Regulation (GDPR), and internal security guidelines.
- You work closely with the CISO and translate policy and strategic frameworks into daily practice.
- You advise colleagues and teams, identify risks, and take initiative in handling data breaches.
- You coordinate the follow-up of findings and measures from DPIAs, audits, penetration tests, and incident investigations.
- You support the handling of data breaches and other IB&P incidents.
- You translate policies and frameworks into practical procedures, work instructions, and awareness activities.
- You ensure that IB&P is incorporated from the start in new services, pilots, and change processes, and monitor its application.
Profile
- You are a meticulous and analytical professional who can make information security and privacy understandable and applicable.
- You understand frameworks and regulations but also have an eye for daily practice.
- You know when a risk requires attention, what expertise is needed, and how to reach a workable solution with colleagues.
- You communicate easily with specialists, managers, and operational teams and can translate complex requirements into clear agreements and working methods.
- You feel at home in a developing environment and help bring structure.
What they ask
- HBO or university level of thinking and working, for example, in Information Science, Security, Privacy, Law, Business IT, or a similar field.
- Minimum two years of relevant experience in information security, privacy, information management, or an operational environment where IB&P plays a significant role.
- Knowledge of BIO, GDPR, risk assessment, and security measures, and the ability to apply this knowledge practically.
- Ability to analyze risks and complex IB&P issues and translate them into clear and actionable measures.
- Strong communication skills and the ability to connect different disciplines and interests.
- Willingness to be regularly present at various organizational locations.
How to apply
View the full assignment text and application details once your tailored application is ready.
Order a tailored application to view the full assignment and application details.
More context, less searching.
You get enough context to judge whether this job is relevant. The full brief, client details and next steps stay available inside the app.