About this role
Locatie Lijnden Aantal uren Part-time Opleidingsniveau MBO Geplaatst: 25-08-2026 Bedrijf Just Brands - HQ Provincie Noord-Holland Werkveld Detailhandel Make security and privacy real, practical, and business-ready. Lijnden (Amsterdam Area) | IT (Information Security / GRC) | 40 hours | Full-time At Just Brands, we build menswear brands with character. PME Legend, Cast Iron and Vanguard each have their own voice, their own audience and their own place in the market. As we operate across retail and e-commerce, the stakes around information security and data privacy keep rising. Threats move fast, regulations are complex, and the impact of getting it wrong is real: disruption, reputational damage, and GDPR/AVG exposure. But what really sets us apart is how we work together. We're team first. No ego, no unnecessary layers, no endless talking, no corporate theatre. We back each other, speak up, take ownership and keep pushing for better. We work hard, stay sharp and make sure there's room to enjoy the ride too. That's where you come in. Why this role matters This is where GRC (Governance, Risk & Compliance) becomes resilience. As our Security & Privacy Officer (Information Security / GRC), you set the governance standards that keep our business safe and compliant without slowing it down. You translate security and privacy risks into clear, business-relevant decisions, drive the right priorities at MT level, and embed security and privacy into daily operations and projects. You are not here to write policies that no one follows. You are here to make sure risk is understood, controls work, and the organization stays compliant and prepared. What you'll do - Own and maintain security and privacy governance (policies, standards, lifecycle) aligned with ISO 27001 and NIST CSF; - Own the cyber risk register , risk scoring and treatment plans, and run MT-level risk review rhythms; - Lead the Business Impact Analysis (B...