Security Officer

Posted 7 Days Ago
Be an Early Applicant
Rotterdam, NLD
In-Office
Senior level
Insurance
The Role
Lead security governance, risk, compliance, and assurance for MSIG Specialty Marine. Translate group CISO policies locally, own the security control framework, oversee security operations (internal teams and external SOC), govern cloud, identity and endpoint security, manage third-party and resilience requirements, and oversee secure software development and DevSecOps practices while engaging senior leadership and auditors.
Summary Generated by Built In
About MSIG Specialty Marine

MSIG Specialty Marine is a leading Managing General Agent (MGA) delivering tailored marine insurance solutions to clients across the globe. By combining multiple carrier options with A-rated capital strength, we provide flexible and innovative insurance solutions in a complex and rapidly evolving market.

With approximately 200 specialist professionals across Europe, we bring together one of the industry’s most experienced teams of underwriters, claims specialists, and risk advisors. Our expertise spans eight core marine insurance product lines, supported by deep technical knowledge, market insight, and a strong client-first mindset.

Our ambition is simple: to be the world-class partner for marine insurance, combining technical excellence with exceptional service. From innovative risk solutions to trusted claims handling, we help our clients navigate uncertainty with confidence.

The Opportunity

We are seeking a Security Officer to lead security governance, risk, compliance, and assurance across MSIG Specialty Marine. This is a high-impact, organisation-wide role that will shape the security posture of the business while ensuring alignment with the security strategy of our global parent organisation.

Acting as the primary interface with the Group CISO, you will ensure global security standards are effectively adopted locally while maintaining independent governance oversight.

Reporting directly to the Chief Financial Officer (CFO), you will own the security control framework and provide challenge, guidance, and assurance across security activities delivered by:

  • Security Analysts

  • Internal IT teams (Architecture, Engineering, Platform & Service Management)

  • External security partners

You will play a critical role in ensuring that security is embedded by design, risks are proactively managed, and controls remain effective, auditable, and continuously improving.

This role offers the opportunity to work closely with senior leadership and technical teams, shaping security strategy in a growing and evolving international business.

Key ResponsibilitiesSecurity Governance & Strategy
  • Lead the development and maintenance of the organisation’s security governance framework.

  • Translate and implement global CISO policies within the MSIG Specialty Marine environment.

  • Define local security policies, standards, and control expectations.

  • Establish effective governance forums and decision-making processes.

  • Ensure accurate reporting of security posture to Head Office.

Risk, Compliance & Assurance
  • Lead the information security risk management framework across the organisation.

  • Ensure compliance with group standards, internal policies, and regulatory requirements.

  • Support internal and external security audits and manage evidence submissions.

  • Maintain a robust assurance programme to monitor control effectiveness.

Security Operations Oversight
  • Provide governance oversight of security operations delivered by internal teams and external SOC providers.

  • Ensure effective threat detection, monitoring, and incident response capabilities.

  • Oversee security incident management, escalation, and root cause analysis.

  • Govern vulnerability management and ensure risk-based remediation.

Security Architecture & Technology Governance
  • Ensure security-by-design principles are embedded across technology solutions.

  • Participate in architecture and design governance forums.

  • Review proposed technology solutions and ensure alignment with security standards.

  • Contribute to security reference architecture development.

Cloud, Identity & Endpoint Security
  • Define governance standards for cloud platforms, Microsoft 365, identity services, and endpoint security.

  • Ensure strong configuration baselines, identity controls, and data protection measures.

  • Oversee cloud security governance including privileged access, monitoring, and network protections.

  • Work closely with the Data Protection Officer to support privacy governance.

Operational Resilience & Third-Party Security
  • Define security requirements for business continuity, disaster recovery, and backup strategies.

  • Ensure resilience plans and testing programmes are effective.

  • Lead third-party security risk assessments and vendor onboarding reviews.

  • Ensure security requirements are embedded within procurement processes.

Secure Software Development Governance
  • Define and oversee the Secure Software Development Lifecycle (SSDLC).

  • Ensure security controls are integrated across development pipelines.

  • Govern application security practices including code scanning and vulnerability management.

  • Support DevSecOps practices across development teams.

What We’re Looking For

We are looking for a strategic security leader who combines strong governance expertise with the ability to influence senior stakeholders.

You will likely bring:

  • Extensive experience in information security governance, risk, and compliance

  • Experience operating within a three lines of defence model

  • A strong track record engaging senior leadership, auditors, and risk committees

  • Experience overseeing security operations and incident governance

  • Knowledge of secure software development lifecycle practices

  • The ability to translate technical risk into clear business language

Experience & Qualifications
  • Senior security governance experience in regulated industries (insurance, financial services, or similar)

  • Strong understanding of frameworks such as ISO 27001, NIST CSF, DORA, and CIS Controls

  • Experience with cloud security (Azure), identity governance, and Zero Trust architecture

  • Proven experience supporting regulatory compliance and audit programmes

  • Bachelor's degree in Information Security, Cybersecurity, Computer Science, or related discipline

Desirable certifications include:

  • CISSP

  • CISM

  • CRISC

  • ISO 27001 Lead Auditor / Implementer

What We Offer

At MSIG Specialty Marine, we believe in supporting both the professional growth and well-being of our people.

Our benefits include:

  • 30 days annual leave (based on a 40-hour work week)

  • 13th-month salary bonus

  • Bike lease scheme for sustainable commuting

  • 50% contribution to additional health insurance

  • Contribution to sports and wellness memberships

  • A modern office environment in central Rotterdam

  • A collaborative and supportive team culture

Why Join MSIG Specialty Marine?

This is an opportunity to take on a strategic security leadership role within a growing international marine insurance business.

You will help shape the organisation’s security governance, resilience, and risk management capability, working closely with both senior leadership and technical teams to ensure security remains a key enabler of the business. If you’re looking for a role where you can influence strategy, strengthen security frameworks, and make a real organisational impact, we would love to hear from you.

Skills Required

  • Extensive experience in information security governance, risk, and compliance.
  • Experience operating within a three lines of defence model.
  • Proven track record engaging senior leadership, auditors, and risk committees.
  • Experience overseeing security operations, incident management, and incident governance.
  • Knowledge and practice of Secure Software Development Lifecycle (SSDLC) and application security.
  • Ability to translate technical risk into clear business language for senior stakeholders.
  • Senior security governance experience in regulated industries (insurance, financial services, or similar).
  • Strong understanding of frameworks such as ISO 27001, NIST CSF, DORA, and CIS Controls.
  • Experience with cloud security (Azure), identity governance, and Zero Trust architecture.
  • Proven experience supporting regulatory compliance and audit programmes.
  • Bachelor's degree in Information Security, Cybersecurity, Computer Science, or related discipline.
  • Experience governing vulnerability management, threat detection, monitoring, and working with SOC providers.
  • CISSP certification.
  • CISM certification.
  • CRISC certification.
  • ISO 27001 Lead Auditor or Implementer certification.
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Brussels
1,686 Employees
Year Founded: 2000

What We Do

We are a specialist insurer and reinsurer with a 100-year record of helping clients navigate the world’s most complex and demanding risks. Part of the global top-10 insurance group, MS&AD, we have operations in Lloyd’s of London, the Middle East and Asia. With deep risk expertise backed by a trusted claims service, we deliver continuity in an uncertain world. Our role places us at the forefront of many of our chosen lines, which include property, marine, casualty, natural resources, and crisis management. If you are looking for one of our sister firms, search for MS Amlin Insurance S.E., MS Reinsurance or MS Amlin Marine.

Similar Jobs

NN Group Logo NN Group

Technical Information Security Officer

Fintech • Payments • Financial Services
In-Office
's-Gravenhage, NLD
21409 Employees
5K-6K Annually

NN Group Logo NN Group

Medior Information Security Officer

Fintech • Payments • Financial Services
In-Office
's-Gravenhage, NLD
21409 Employees
52K-69K Annually

Zscaler Logo Zscaler

Sales Engineer

Cloud • Information Technology • Security • Software • Cybersecurity
Easy Apply
Remote or Hybrid
Netherlands
8697 Employees

Zscaler Logo Zscaler

Account Executive

Cloud • Information Technology • Security • Software • Cybersecurity
Easy Apply
Remote or Hybrid
Netherlands
8697 Employees

Similar Companies Hiring

Globe Life Thumbnail
Insurance • Financial Services
McKinney, TX
3000 Employees
MassMutual India Thumbnail
Big Data • Fintech • Information Technology • Insurance • Financial Services
Hyderabad, Telangana
Granted Thumbnail
Artificial Intelligence • Healthtech • Insurance • Mobile • Financial Services
New York, New York
23 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account