VACANCY

Information Security Manager

The Information Security Manager is responsible for managing the company’s Information Security programme and coordinating security efforts across the organisation. The role leads the development, implementation, and maintenance of an Information Security Management System (ISMS) aligned with ISO 27001, relevant gambling regulations, and other applicable frameworks.

Working closely with multiple teams across the organisation, the Information Security Manager will prioritise, plan, design, and oversee the implementation of appropriate security controls to strengthen the confidentiality, integrity, and availability of the company’s information assets.

Essential Duties

  • Take ownership of and lead the company’s Information Security function to support and achieve business objectives.
  • Contribute to the development of short-term and long-term global security strategies in support of the Group’s overall business goals.
  • Lead the risk management programme across the entire risk lifecycle, from risk assessments through to risk treatment and mitigation.
  • Coordinate the vulnerability management programme from end to end.
  • Ensure the Information Security Management System (ISMS) operates effectively and meets its defined objectives.
  • Maintain Information Security regulatory compliance with applicable gaming and government regulations, contractual obligations, and relevant security standards and frameworks.
  • Drive and continuously improve the company’s Information Security awareness and training programme.
  • Liaise with the global Security Operations Centre (SOC) and coordinate security incident response and escalations as required.
  • Coordinate internal and external audits, assessments, security reviews, and related remediation activities.
  • Collaborate closely with IT teams to design, implement, and ensure the effectiveness of technical security controls.
  • Monitor and report agreed Information Security KPIs periodically to global security leadership and management.
  • Support security-related activities outside normal working hours when required by the systems and services being supported.
  • Carry out assignments provided by Global Information Security leadership, IT leadership, and Management.

Qualifications & Requirements

  • Minimum 5 years of experience across Information Security and IT domains.
  • Strong ability to collaborate effectively with teams across multiple functions and disciplines.
  • Comfortable working within a matrix reporting environment.
  • Experience implementing Information Security and compliance frameworks such as ISO 27001/27002, GDPR, NIST, SOC 2, PCI DSS, and gambling regulations across multiple markets.
  • Hands-on experience conducting risk assessments and developing appropriate risk treatment plans.
  • Project and process management experience, preferably within Agile environments.
  • Experience developing and maintaining Information Security documentation, including policies, procedures, standards, and guidelines.
  • Professional Information Security certification such as CISSP, CRISC, C|CISO, CISM, or another relevant certification.
  • ISO 27001 Lead Auditor or Lead Implementer certification is considered an advantage.
  • Bachelor’s degree in IT, Business, or a related field. A Master’s degree is considered an advantage.
  • Excellent written and spoken English.
  • Ability to communicate technical and security-related information clearly and concisely to non-technical stakeholders.
  • Strong commitment to continuous personal and professional development.

Key Skills & Competencies

  • Strong organisational and results-oriented mindset.
  • Strategic and analytical thinking.
  • Excellent interpersonal and stakeholder management skills.
  • Ability to take initiative and work effectively under pressure.
  • Strong problem-solving and decision-making abilities.
  • Ability to manage multiple priorities and responsibilities simultaneously.
  • Clear and effective communication with both technical and non-technical stakeholders.

Travel Requirements

Travel may be required from time to time according to business needs. The role may also require work outside normal working hours in response to security incidents or the operational needs of supported systems.



    "Disclaimer: Please do not insert any personal identification documents such as a passport or identity card, in your application to a vacancy at Stakelogic. In the case you need to, or you do send such documents, please mark up any personal identifiers such as the passport number, or your picture. This can be done for example with the following tool: KopieID, which can be downloaded in the Netherlands at either the App Store or Google Play Store. If you are unsure how to use this tool, or what tool can be used in your country, you can contact the HR department at Stakelogic under the following email address: hr@stakelogic.com."

    "When you apply for a job on this website, the personal data contained in your application will be controlled by Stakelogic B.V., located at Dr.Holtroplaan 9, 5652XR, Eindhoven, the Netherlands, and/or other affiliates, subsidiaries, holding companies in the Stakelogic company group (jointly referred to as the “Controller”) and can be contacted via email at: hr@stakelogic.com. Your personal data will be processed for the purposes of managing the Controller’s recruitment-related activities, which include setting up and conducting interviews and tests for applicants, evaluating and assessing the results thereof, and other recruitment and hiring processes. Such processing is legally permissible under Art. 6 (1)(f) of Regulation (EU) 2016/679 General Data Protection Regulation (GDPR), as necessary for the purposes of the legitimate interests pursued by the Controller, which are the solicitation, evaluation, and selection of applicants for employment. Your personal data will be shared with third-party HR tools and services to help manage the recruitment and hiring process on the Controller’s behalf. These third-party tools will store and process your data to facilitate communication and keep records of applicants in a recruitment system. Your personal data will be retained by the Controller as long as the Controller determines it is necessary to evaluate your application for employment. Once employed, you can inquire about the employee privacy statement at the HR Department or at hr@stakelogic.com. Under the GDPR, you have the right to request access to your personal data, to request that your personal data be corrected or erased, to request that processing of your personal data be restricted or also object to your personal data from being processed at all. You also have the right to data portability. In addition, you may lodge a complaint with an EU supervisory authority. For more information on what your rights are as a data subject, please refer to the Privacy Policy which can be accessed here: https://stakelogic.com/en/privacy/"

      I hereby agree to the consent form. You can read our consent form here