Build your career on Magnet.me
Create a profile and receive smart job recommendations based on your liked jobs.
Group CISO is looking for a first line IT security risk officer who can play a key role in strengthening how the organisation understands, reports, evidences, and improves its IT and cyber risk position.
The role is responsible for coordinating and improving key risk and assurance reporting activities, including Group Technology Risk Reporting, internal and external cybersecurity audits, the Group IT In Control Statement, quarterly reporting across the Cyber Risk Domains, and the further development towards a more SOC 2-based assurance reporting model for all departments in the Group IT organization.
You operate close to the (Business Unit) Security Officers, senior management, second line risk functions (IRM/ORM), internal audit (CAS), external auditors, and other stakeholders across NN Group. Your focus is to translate complex IT and cyber risk information into clear, reliable, traceable, and actionable reporting.
What you are going to do
This role is to help NN Group IT demonstrate that it is effectively managing IT and cyber risks from a first line perspective. This includes improving the quality of risk reporting, defining and maintaining key risk indicators, ensuring timely collection and validation of evidence, supporting audit readiness, and providing senior management with clear insight into risk posture, control status, and required actions.
This role helps ensure that IT and cyber risk reporting is clear, consistent, timely, traceable, and decision-ready. It supports management accountability by bringing together risk data, audit evidence, control status, and cyber risk domain reporting into a coherent assurance view.
Risk reporting and assurance
Cybersecurity audits
Stakeholder alignment
Planning, coordination, and improvement
What we offer you
Who you are
The preferred candidate has a strong basis in risk reporting and a clear affinity with IT and cyber risk. The role does not require deep technical expertise, but it does require a thorough understanding of cybersecurity and associated risk, enabling you to ask the right questions, recognize weak answers, and translate technical input into reliable risk reporting.
Furthermore, you have:
For this role, strong data and reporting skills are important. The candidate should be comfortable working with:
Who you will work with
You will report directly to the Head of Information Security and Governance. In this role, you will collaborate closely with all teams within Group CISO and other security officers within NN. You will engage with a wide range of stakeholders across the organization. Your expertise will be valued not only within the Dutch business units, but also across NN Group’s international organization, giving you the opportunity to make a broad impact.
NN Group is an international financial services company, active in 10 countries, with a strong presence in a number of European countries and Japan. Our roots lie in the Netherlands, with a rich history that stretches back 175 years. With our 16,000 employees, NN provides retirement services, pensions, insurance, reinsurance and banking to approximately 18 million customers. NN Group includes Nationale-Nederlanden, ABN AMRO Insurance, Movir, AZL, BeFrank, OHRA and Woonnu.
View what's on offer:
Change language to: Dutch
This page is optimised for people from the Netherlands. View the version optimised for people from the UK.