hirly

Apply with hirly

Technical Information Security Officer

Msamlin · Amstelveen · Cologne

Upload your resume to see how well you match this job — free, in seconds, no account needed.

Your resume is used only to score it against this job. If you don't create an account, it is deleted within 24 hours.

Let’s talk about the role Within the 2nd line Information Security team of MSIG Europe SE we are looking for an enthusiastic professional with technologic and collaboration skills. The team is established in 2025. This role provides a great opportunity if you get energy from further maturing processes in all areas of information security, and with a European wide scope. The 2nd line Information Security team consists of six individuals, the Chief Information Security Officer and five Information Security Officers. The team is part of the wider Risk, Compliance and Actuarial Second Line teams (around 25 team members) who all report into the Chief Risk Officer. On a day to day basis, you will be responsible for:

  • Support assessing and challenging effectiveness of security controls, giving assurance on compliance with cybersecurity policies, and advising on risk mitigation strategies to protect organizational assets
  • Work alongside the other information security officers to review and challenge the design and implementation of security controls by the first line (e.g. Application management, Platform management) and evaluate technical risk assessments and ensure alignment with the organization’s risk appetite.
  • Work alongside the other information security officers to provide expert input on secure system design, cloud security, and emerging technologies and advise on secure development practices and DevSecOps integration.
  • Monitor cybersecurity key risk indicators (KRIs) and key performance indicators (KPIs), escalating concerns where necessary.
  • Review control testing results and provide independent validation of control effectiveness.
  • Recommend improvements to technical controls based on threat intelligence and incident trends.
  • Interpret and apply regulatory requirements (e.g., GDPR, DORA, ISO 27001, NIST) to technical environments.
  • Review major security incidents and post-incident reports to ensure root causes are addressed and remedial actions are owned by first line.
  • Support second-line input into incident response planning and tabletop exercises.
  • Promote a culture of security through awareness campaigns and technical training.
  • Mentor first-line teams on secure practices and risk-based decision-making. Who are we looking for?
  • A bachelor or master degree in Information Security, Computer Science, Engineering, or a related field (or equivalent experience).
  • 5 – 8 years of experience in information security roles, preferably in corporate or financial services environments.
  • Strong knowledge of cybersecurity principles, risk management, and compliance (e.g., ISO27001, NIST, Solvency II, DORA, GDPR) and the ability to support compliance initiatives.
  • Certifications such as CISSP, CISM, CCSK, or AZ-500 are considered an advantage.
  • Technical understanding of enterprise IT environments, including networks, endpoints, identity and access management, and cloud platforms (especially Azure).
  • Hands-on experience with cloud security best practices and technologies (e.g., cloud posture management, encryption, identity federation).
  • You bring solutions to the table and you aren’t afraid to point out where we’re going wrong.
  • A drive to continuously seek for improving processes and increasing efficiency.
  • Plan and organize own activities leveraging the steer and knowledge from the Seniors and Manager.
  • Proficient in English, being fluent in Dutch, German and/or French is a plus.
  • Strong written and verbal communication skills.
  • Appetite for occasionally traveling given the European wide scope of the Information Security team. What you can expect from us
  • Competitive salary and benefit package
  • Ongoing training and professional development opportunities
  • Collaborative and supportive team environment
  • Flexible working policy About us MSIG Europe is a leading independent provider of corporate insurance in Western Europe. MSIG Europe’s business is organised around two operating segments, Marine and Property & Casualty (‘P&C’). MSIG Europe underwrites business in both its domestic as well as foreign markets, with the countries of the European Union and the United Kingdom being the most important ones. The Company is domiciled in Belgium and therefore the supervisory authority is the National Bank of Belgium. There is a dedicated entity which serves our Marine business, MSIG Specialty Marine NV. At MSIG Insurance, we see an opportunity where others see a challenge. Our experts work every day to deliver unique insurance solutions and an unparalleled service experience to our clients. ​We advance together by turning clients’ risks​​ into opportunities for them to grow and thrive. Please refer to the MSIG Europe website to learn more about our company. The Company is a wholly owned subsidiary of a Japanese company called Mitsui Sumitomo Insurance Co. Limited (‘MSI’). MSI’s immediate and ultimate parent is MS&AD Insurance Group Holdings, Inc., one of the world’s largest general insurers with an overseas network of 50 countries and regions.