Information Security Advisor (Governance Risk and Compliance)

  • Full-time
  • Compensation: EUR 3770 - EUR 4400 - monthly

Company Description

Ready to help safeguard KPMG's digital services in a rapidly evolving technology landscape? As an information security advisor in Amstelveen, you'll work with cloud technologies, AI-enabled solutions, and external suppliers to strengthen security, manage risk, and help maintain the trust our clients place in KPMG.

Job Description

  • Lead information security risk assessments for applications, infrastructure and third-party suppliers.
  • Advise product owners and stakeholders on security controls, risk mitigation and compliance requirements.
  • Review and improve information security policies, standards and control frameworks.
  • Coordinate internal and external audit activities and support the timely resolution of findings.
  • Evaluate security exceptions and monitor the effectiveness of implemented controls.

 

As an Information Security Advisor, you will be part of KPMG's IT Security Governance, Risk & Compliance (GRC) team. Together with colleagues across Technology, Risk, Privacy and Procurement, you help ensure that security is embedded in everything we do.

You will advise on security risks related to both internally managed systems and externally sourced technology services. This includes conducting risk assessments, reviewing security controls, and helping teams implement improvements that align with KPMG's security standards and industry frameworks such as ISO 27001 and NIST.

A significant part of the role involves partnering with application owners, project teams and suppliers. You challenge where necessary, identify potential vulnerabilities, and help stakeholders make informed decisions that balance security, business objectives and regulatory requirements.

You will also contribute to audit preparation and remediation activities, evaluate security exception requests, and support continuous improvement initiatives across the organisation. This gives you a broad view of KPMG's technology landscape and the opportunity to influence how security is integrated into modern cloud, AI and digital services.

In this role, you will combine technical understanding with strong stakeholder management skills, helping colleagues across the business navigate increasingly complex security and risk challenges

 

Qualifications

  • Bachelor's or master's degree in Information Security, Cyber Security, IT, Risk Management or a related field.
  • Experience with information security frameworks such as ISO 27001, NIST or SOC 2.
  • Experience conducting information security or IT risk assessments.
  • Experience engaging with business stakeholders and translating security requirements into practical solutions.
  • Strong command of English and Dutch, as you will work with local and international internal stakeholders, documentation and suppliers.

Nice to have

  • CISSP, CISM or CISA certification.
  • Experience with supplier security assessments and third-party risk management.
  • Knowledge of data privacy and cloud security.

Additional Information

  • Gross salary between €3,700  and €4,400  per month depending on your work experience, variable performance based reward, a fixed expense allowance and a  fixed working from home allowance per working day.
  • Pension accrual without a compulsory personal contribution.
  • 30 vacation days (on a full-time basis) and the option to buy more days or sell your vacation days.
  • At KPMG we work hybrid, so you can work from home, from the client or at the office.
  • A completely furnished home office.
  • Reimbursement of your travel expenses with a NS business card or travel allowance.
  • A laptop and iPhones.
  • Choice to pick from different courses which contribute to your own personal and professional development.
  • Diversity networks in the areas of pride, gender, ability, cultural diversity, and generations that regularly organize various activities to celebrate differences!
  • Focus on well-being! There is a gym at the Amstelveen office or you can get a discount for a gym near your house and you get access to different health and/or vitality programs.
  • ‘Together’ is one of our core values. So you can count on different social activities, like team events, drinks with colleagues and events with all your KPMG colleagues.

By clicking the link above or any third-party link within this posting, you are leaving this site and going to a third-party website where the third-party website's terms and privacy policy apply

Privacy Notice