Information Security Officer (CGRC)
Job Description

Job description

Cybersecurity is essential to keeping our global offshore operations safe and reliable. As Information Security Officer (CGRC), you set the governance and risk foundation that protects our IT, OT, and information assets.


Your role in the story:

As Information Security Officer (CGRC), you lead cybersecurity governance across IT and OT at Heerema. You define policies and standards, drive risk assessments, and ensure compliance with regulations such as ISO, NIS2, and GDPR, working closely with IT, OT, and the business to embed security controls into daily operations and projects.


What you will be working on:

  • Defining and maintaining the cybersecurity governance framework, including top‑level security directives, policies, and supporting standards
  • Establishing clear CGRC roles and responsibilities (RACI) across IT, OT, and the business
  • Planning,executing and maintaining cybersecurity risk assessments, including project and third‑party risk
  • Mapping security requirements to external frameworks and regulations (e.g. ISO/IEC 27001/2, NIST CSF/800‑53, IEC 62443, GDPR, NIS2, IMO)
  • Coordinating internal and external audits and managing audit findings and remediation
  • Defining CGRC KPIs, maturity metrics, dashboards, and management reporting
  • Developing and delivering role‑based cybersecurity awareness and training
  • Maintaining cybersecurity incident response governance, post‑incident reviews, and regulatory reporting in collaboration with relevant teams
  • Building strong partnerships across IT, OT, Legal, Compliance, Quality, HR, and external stakeholders


Key ingredients for success:

  • HBO or WO degree; relevant certifications such as CISSP, CISM, ISO 27001 Lead Implementer/Auditor, or IEC 62443 are preferred
  • 5+ years of experience in information security, risk, or compliance roles with demonstrable GRC leadership across IT and/or OT
  • Hands‑on experience with security frameworks (ISO/IEC 27001/2, NIST CSF/800‑53), privacy (GDPR), EU directives (e.g. NIS2), and IMO cybersecurity requirements
  • Strong understanding of risk methodologies, control testing, audit practices, and evidence management
  • Ability to structure policies and standards and operate governance processes across complex organizations
  • Strong communication skills, able to translate between technical and non‑technical audiences in English and Dutch
  • Comfortable working across IT, OT, and operational environments, balancing regulatory obligations with business realities


Your future colleagues:

Of course you are curious to meet us as well! In this role, you will work closely with colleagues from the IT & Digital organization, the IT Security team, the Cyber Defense Center (CDC), Vessel and OT teams, and business stakeholders across Heerema.


Your Foundation for Success

At our core, we champion an entrepreneurial spirit and a relentless pursuit of growth. We seek individuals who excel in personal development, seize opportunities where others see challenges, and turn them into success. Whether you're a creative problem‑solver, an ambitious go‑getter, or someone who thrives in collaboration, we cultivate a culture of passion, dedication, and continuous improvement. Personal leadership and initiative are non‑negotiable: you own your growth and the impact you make. If you tackle challenges with a creative yet practical mindset, drive goals with determination, and add value to diverse teams, you'll thrive with us. Together, we create impact and drive meaningful change, always focused on results.


Here’s why people love working with us:

  • Strong compensation & benefits, including an annual bonus plan tied to company performance
  • Bonus basis = your annual gross salary + 13th month + 8% holiday allowance
  • Future‑proof pension: gross scheme covering base + 13th month + holiday allowance, with no mandatory contribution up to €72,488.52
  • 30 days off to recharge, with the option to buy 10 extra days
  • Free access to our in‑house gym, including fitness classes
  • Activities to connect with colleagues (e.g. our Friday‑afternoon get‑together)
  • A modern and easily accessible office in Leiden


Is this your dream job? Put in your application now! 

Please submit your application by 9 April. 

The application process consists of two interviews, an online assessment, and an employment offer.

For Fleet, the first interviews will be conducted via Teams; for other positions, we prefer interviews at our office in Leiden, although video interviews via Teams are also possible.

Are you ready to make the impossible possible?

A unique maritime adventure

A unique maritime adventure At Heerema Marine Contractors, we deliver the world’s most challenging offshore projects in the energy sector. From designing and engineering to transporting, installing, and removing offshore structures, we make the impossible possible — safely and sustainably.

Our success is built on the expertise and dedication of our diverse team, working together across offshore, onshore, and office-based roles. We value teamwork, innovation, and a can-do mindset, and we are proud of our culture where colleagues support and inspire each other to achieve excellence.

Join Heerema and become part of a world-class team shaping the future of the offshore industry.

Information at a Glance

Highlights

At Heerema Marine Contractors, we offer offshore jobs, engineering careers, and office opportunities worldwide. Join our team and make the impossible possible.

Base Salary:  104,261.00 EUR
Job Location:  HMC Leiden
Business area:  IT & Digital
Standard Weekly Hours:  40.00
Job Level:  Intermediate
Req Id:  719