About this role
About Siemens Digital Industries Software:
The Mendix organization at Siemens Digital Industries Software is seeking a proactive and expert Information Security Officer to join our dynamic team. In this critical role, you will be instrumental in safeguarding our information assets, ensuring compliance with evolving regulatory landscapes, and encouraging a robust security culture across the organization. This position offers a significant opportunity to contribute to the integrity and resilience of our digital infrastructure.
What you'll be doing:
As an Information Security Officer, you will be responsible for a range of strategic and operational security initiatives, including:
Control design & Operating Effectiveness: Design and evaluate the effectiveness of security controls, assessing their ability to mitigate risks and recommending improvements to ensure they operate as intended and achieve desired security outcomes.
Compliance Monitoring & Reporting: Proactively monitor compliance against various security frameworks and regulatory requirements (e.g., NIST, ISO 27001, SOC I & II, C5, ISO 42001). Provide actionable recommendations based on standards and report on progress to relevant stakeholders.
Audit Support: Support internal and external audits by gathering, assessing, and providing necessary evidence to demonstrate compliance.
Evidence lifecycle management: Manage the entire lifecycle of security evidence, from collection and secure storage to version control and eventual archival, ensuring its integrity and availability for audits and compliance checks.
Policy & Standard Development: Research, establish, and maintain robust information security policies, standards, and procedures tailored to specific organizational needs and emerging threats.
Security Culture & Communication: Communicate effectively about information security risks, standards, and policy updates, fostering a strong security-conscious culture across the organization.
Control Implementation & Maintenance: Collaborate with applicable departments to ensure security controls are effectively implemented, maintained, and continuously optimized.
What you'll bring:
We are seeking a dedicated professional with a solid foundation in information security and a proactive approach to risk management.
Skills & Qualifications:
Experience: 3-5 years of progressive experience in an Information Security, IT Audit, or Compliance role, demonstrating a solid understanding of information security principles and practices.
Cloud Security Expertise: Solid understanding of security operations, controls, and best practices within cloud environments (e.g., AWS, Azure, GCP). Experience with cloud security frameworks and tools is highly desirable.
Framework & Regulation Knowledge: In-depth knowledge and practical experience with a range of information security standards, frameworks, and regulations (e.g., ISO/IEC 27001 family, GDPR, SOC 2 Trust principles).
Enterprise IT Familiarity: Familiarity with enterprise data environments, system integrations, and software development lifecycles (SDLC).
Certifications: An independent and active information security certification (e.g., CISM, CISSP, ISO 27001 Lead Implementer, CompTIA Security+) is required.
Analytical & Problem-Solving: Exceptional analytical and problem-solving abilities to perform detailed gap analyses, identify root causes, and develop practical, effective security solutions.
Communication: Excellent written and verbal communication skills in English, with the ability to articulate complex security concepts clearly to both technical and non-technical audiences.
Initiative & Collaboration: High level of initiative, self-direction, and the ability to work independently while also being a strong team player and collaborating effectively across departments.
Frequently Asked Questions
Is the salary disclosed for the Information Security Officer position at mendix?
The salary for this Information Security Officer role at mendix is not publicly listed. Click "Apply Now" to learn more about the compensation package on their official careers page.
Where is the Information Security Officer position at mendix located?
This Information Security Officer role at mendix is based in Rotterdam. The position is listed as on-site or hybrid. Check the full job description or apply directly to confirm the work arrangement.
Is the Information Security Officer role at mendix full-time or part-time?
This is listed as a Full time position. It is posted as a Information Security Officer role in the R&D department at mendix.
Which team or department does the Information Security Officer at mendix belong to?
This Information Security Officer position is part of the R&D department at mendix. See the full job description for more information about the team structure and responsibilities.
How do I apply for the Information Security Officer position at mendix?
Click the "Apply Now" button on this page. You will be redirected to mendix's official application portal hosted on lever where you can submit your application directly.
When was the Information Security Officer job at mendix posted?
This Information Security Officer position at mendix was posted on Jun 15, 2026. Apply as soon as possible — early applications are often reviewed first.