A federal public sector organisation is implementing a NIS2 security programme to reach the NIS2 Essentials compliance level by April 2027. The security project manager will lead ICT security projects across domains such as IAM, endpoint security, network security and central logging, combining security project management with change management and stakeholder alignment. The role connects delivery, service transition and audit-ready evidence so that new security controls become operational and demonstrable.
The mission
The programme covers security initiatives in network security, endpoint security, IAM, central logging, DLP, disaster recovery, PIM and PAM. Each project must meet agreed scope, budget, quality and dependency requirements while producing traceable documentation and evidence for NIS2, ISO27001, NIST or DORA requirements. Together, these deliveries connect technical implementation with compliance reporting, operational ownership and the wider security roadmap.
Your scope runs from requirements and project initiation through implementation and operational handover. You will build WBS-based plans, track dependencies, and report on time, cost, quality, risks and project KPIs. For each delivery, you will define the service transition plan covering support, processes and procedures. You will coordinate management, business units, architects, analysts and operational teams, advising stakeholders and keeping decisions visible.
Your responsibilities
- Deliver ICT security projects against approved scope, timeline, budget and quality criteria, escalating risks and dependencies before they affect outcomes.
- Build and maintain detailed WBS plans, project KPIs and progress reporting for programme governance.
- Lead service transition into operational status, with clear ownership, support arrangements, processes and procedures.
- Centralise and quality-check project documentation, evidence and audit reporting to support NIS2 Essentials compliance and audit readiness.
- Manage change and communication plans, align stakeholders across management and business units, and support adoption of delivered controls.
- Coordinate and coach project contributors, providing technical leadership and maintaining engagement through delivery.
Your profile
Essential skills
- Bring at least 8 years' project management experience covering requirements gathering, detailed planning, WBS-based dependencies, and cost, time, quality and risk control.
- Apply security project management experience across at least three relevant security domains, such as IAM, endpoint security, network security, central logging, DLP, PIM, PAM, threat modelling or secure development.
- Use PRINCE2 or another recognised project management methodology, preferably supported by certification.
- Demonstrate proven experience and/or certification in NIS2, ISO27001, NIST or DORA, and understand how frameworks guide risk treatment and evidence.
- Produce and control project documentation, evidence, audit reporting and operational handover material to an auditable standard.
- Communicate clearly with management, business units and delivery teams, using visual reporting to align stakeholders and support change.
- Coach and coordinate contributors through delivery, applying technical leadership in a pragmatic, structured and results-oriented way.
Languages
- Dutch: CEFR C1-C2 as the primary working language, or B1 passive comprehension as the other national language.
- French: CEFR C1-C2 as the primary working language, or B1 passive comprehension as the other national language.