Project Manager – ISO 27001 & Information Security Compliance
Digital
(Project) Management
Bachelor, Master
Advanced (5+)
- Location
- Leuven, Flemish Brabant
- Work type
- Consultancy
- Work model
- Fulltime, Hybrid
Our client, a leading organization in the financial sector, is looking for a professional to lead the implementation and certification of their Information Security Management System. This role focuses on driving the ISO 27001 program end-to-end, from initial gap analysis and roadmap definition to certification support and continuous compliance.
Responsibilities
- Lead the implementation and maintenance of an ISO/IEC 27001-compliant ISMS, including scope definition and milestone monitoring.
- Coordinate certification and surveillance audits in collaboration with external auditors and internal assurance teams.
- Conduct gap analyses and risk assessments to ensure alignment with NIS2, DORA, and GDPR regulations.
- Maintain core ISMS documentation, including policies, procedures, risk registers, and the Statement of Applicability.
- Act as the central point of contact for security control implementation across IT and business departments.
- Monitor ISMS performance and track non-conformities to ensure continuous improvement of security practices.
- Prepare management reports and support executive reviews of the information security program.
Requirements
- 5+ years of experience in project management focused on information security, risk, or compliance.
- Hands-on experience with ISO/IEC 27001 implementation, certification, and ISMS concepts.
- Strong knowledge of Annex A controls, Statement of Applicability (SoA), and internal audit procedures.
- You possess an ISO/IEC 27001 Lead Implementer or Lead Auditor certification.
- You bring experience working with external auditors, regulators, and cross-functional teams.
- You're structured, detail-oriented, and proactive with strong stakeholder management skills.
- You are fluent in English.
Nice to Haves
- Experience working within large or financial institutions.
- Knowledge of European regulatory frameworks such as NIS2 and DORA.
- Familiarity with standards or frameworks like ISO 22301, ISO 27701, COBIT, or ITIL.
Offer
- Location: Leuven.
- Contract: open to both permanent employees and freelancers.
# 99544
)