Only AI Jobs


Information Security Officer

ID: 3234

Type: Full-time

Category: Security and Safety

Company Name: Sendcloud

Location: Eindhoven - Eindhoven - Netherlands

Education Level: senior

Visit company vacancy
Job Description
Functieomschrijving

Information Security Officer (ISO)

Eindhoven HQ

Eindhoven (Hybrid - 2 days/week onsite) | Full-time

This is what you tell people at parties

"At Sendcloud, we build Europe's leading shipping automation platform - helping over 25,000 e-commerce businesses grow. I help make sure we can scale fast and safely: keeping our ISO 27001 security program strong, turning security risks into clear decisions, and working with Engineering, Platform, IT, Legal/Privacy and Support to protect our customers, our people, and our business. Security here is a business enabler - not a checkbox.

"

What you will do in this role

We're looking for an Information Security Officer who can combine pragmatic governance with hands-on program leadership . You'll own our information security program and help ensure our ISO 27001 ISMS stays healthy and audit-ready - while driving real security improvements across the company.

This is a role for someone who enjoys building clarity, influencing stakeholders, and making sure important work actually gets done.

You'll be involved in:

Owning our ISO 27001 ISMS (and keeping it always-on) → internal audits, evidence, management reviews, corrective actions, and external audit readiness

Running security risk management that leads to decisions → maintaining a living risk register, driving mitigations with owners and timelines, and enabling explicit risk acceptance when needed

Driving security governance that teams can actually use → practical policies and standards for access, data handling, vendor risk, and incident response

Leading security incident governance → classification, escalation, post-incident learning loops, and preventing repeats (in partnership with Platform/Engineering/Support)

Managing third-party and vendor security risk → risk tiering, due diligence, and working with Legal on security requirements and ongoing assurance

Enabling safe use of AI and agentic workflows → clear guardrails for AI tooling and automation so we can adopt AI safely without slowing teams down (including visibility on shadow IT/AI in collaboration with IT/Platform)

Being at the table for architecture decisions with security impac t → you'll participate in relevant architecture forums as a required security reviewer (not the decision maker), especially around identity/auth migrations, service-to-service patterns, and high blast-radius platform changes - to help teams catch security implications early and keep delivery moving

Reporting and stakeholder alignment → clear updates to leadership on security posture, top risks, incidents, audit outcomes, and progress

Our perfect match

  • 3+ (typically 5+) years of relevant experience , with provenownership of an ISMS/audit cycle (ISO 27001 or equivalent) and the ability to drive cross-functional remediation independently (ideally in SaaS/tech or a fast-paced scale-up). This is not an entry-level role - you'll be expected to lead audits, run risk governance, and influence Engineering leadership (EM to VP)
  • Proven experience operating or significantly contributing to an ISO 27001 ISMS and driving audit readiness and remediation
  • Strong stakeholder management - you can influence, challenge, and drive follow-through across Engineering, Product, Platform, IT, and senior leadership
  • Pragmatic mindset: you balance security, speed, and customer impact using risk-based thinking
  • Strong written and verbal communication in English - you can turn complex topics into clear actions and decisions
  • A hands-on, ownership mentality: you don't just write policies - you help make them real

Nice-to-have ✨

  • Experience preparing for SOC 2 readiness or similar assurance frameworks
  • Familiarity with AI governance / AI risk management concepts and modern GenAI risks (or strong curiosity to learn fast)
  • Certifications like CISSP, CISM, CISA, Security+, ISO 27001 Lead Implementer/Auditor (helpful, not required)
  • Experience with vendor security reviews, security questionnaires, and enterprise customer trust requirements

You share our core values

No bullshit : We value honesty, transparency, and openness. Mistakes are for learning.

Grow & Win : Keep learning and improving - from each other, from challenges, and from feedback.

Have fun : Be yourself! We work hard together and enjoy the ride as a team.

What we offer

  • A high-impact role with real ownership and visibility across the company
  • The opportunity to shape how Sendcloud scales trust and security in 2026+
  • Work closely with Engineering, Platform, IT, Legal/Privacy, Support and leadership - no siloed "security department
  • "
  • Support for professional development and relevant certifications
  • Flexible hybrid work model + €500 home office budget
  • 28 holidays per year (based on full-time) + a free day off around your birthday
  • 4-week paid sabbatical after 3 years at Sendcloud
  • €2,000 annual study budget
  • Access to the Sendcloud gym & weekly Bootcamp and Boxing sessions
  • Pension scheme
  • Health insurance discount


Opleidingsniveau: HBO
Carrièreniveau: Ervaren
Uren: 1 - 32 uur per week
Company Information

Company Name: Sendcloud

Company Website: https://www.sendcloud.com

Sendcloud is a technology company that provides a cloud based shipping automation platform designed for ecommerce businesses. The platform functions as a multicarrier shipping solution that connects online stores with a broad network of shipping carriers, enabling merchants to compare rates, generate shipping labels, print customs documents, and streamline the entire fulfillment workflow from a single integrated interface. By unifying order data from multiple sales channels and automating routine shipping tasks, Sendcloud helps merchants reduce manual work, minimize errors, and achieve faster delivery times for customers. The company positions itself as a critical enabler of modern ecommerce operations, aiming to simplify what can be a complex last mile process and to improve the post purchase experience for shoppers through transparent tracking and efficient returns management. Sendcloud’s approach centers on an API first, cloud based software philosophy, with a focus on reliability, scalability, and a smooth developer and user experience for merchants, agencies, and logistics partners alike. The platform is designed to support growth from small online shops to larger, multi channel brands that require more sophisticated fulfillment orchestration across multiple warehouses or marketplaces. Core business activities of Sendcloud include the ongoing development and maintenance of its shipping platform, delivering product updates, and expanding the network of compatible carriers and ecommerce integrations. The company also emphasizes customer success, onboarding and training, and technical support to ensure merchants can deploy and optimize the solution in real world workflows. An important aspect of their business is building and maintaining integrations with a variety of ecommerce platforms and marketplaces, as well as with enterprise resource planning (ERP) and enterprise management tools, to enable seamless data flow and end to end automation from order capture to delivery confirmation. The commercial model typically centers on software as a service, with merchants paying for access to the platform based on usage and feature sets, plus potential value added services around implementation, optimization, and dedicated support. Main products and services offered by Sendcloud span several key capabilities that address common ecommerce shipping needs. At the core is the shipping label printing engine, which automates the creation of carrier compliant labels and the associated documentation for domestic and international shipments. The platform provides rate shopping and smart routing, enabling merchants to compare carrier prices and service levels in real time and to automatically select the best option for each order. This capability often includes automatic packaging and service level recommendations, helping merchants optimize costs and ensure reliable delivery windows. Automation and workflow management are central to Sendcloud. Merchants can configure rules that govern how orders are processed, routed, and fulfilled, reducing manual intervention and enabling consistent, repeatable operations. The solution typically includes multi channel order synchronization, so orders from stores, marketplaces, and other channels are consolidated for processing, with updates pushed back to customers as shipments move through the lifecycle. The platform also supports pre populated customs documents for international shipments, making it easier for retailers to comply with import and export requirements across different regions. Tracking and customer visibility are important components. Sendcloud offers branded tracking pages and automated notifications to customers, so buyers receive timely updates about status, delays, or delivery attempts. Returns management is another core feature, providing merchants with tools to authorize and process return shipments efficiently, issue refunds or exchanges, and reintegrate returned goods into inventory when appropriate. Analytics and reporting capabilities give merchants insight into shipping performance, cost per order, carrier performance, and delivery reliability. By aggregating shipment data and presenting it in dashboards and reports, the platform helps managers identify optimization opportunities, evaluate the impact of rate changes, and measure customer satisfaction related to delivery. The availability of an API allows developers to extend functionality or build custom integrations, enabling merchants to tailor the platform to unique fulfillment workflows or to connect Sendcloud with internal systems and external partners. Industry positioning and ecosystem context show that Sendcloud operates in the ecommerce technology space with a strong focus on shipping and logistics optimization. The company routinely describes itself as a European leader in ecommerce shipping technology, reflecting a combination of market reach, product maturity, and a broad partner network. Its platform is relevant to a range of customers, from small and medium sized online retailers to growing brands that sell across multiple channels and require scalable, efficient fulfillment operations. The emphasis on multicarrier support, automated processes, and end to end visibility aligns with current industry trends where merchants seek to reduce operational complexity, cut shipping costs, and deliver superior post purchase experiences to their customers. Geographically, Sendcloud evidences a footprint that spans Europe and beyond, with a Netherlands based origin and a focus on serving ecommerce merchants across the region. While the specifics of office locations are not always disclosed in public-facing materials, the company presents itself as a cloud native provider optimized for cross border shipping and cross platform integrations, which is particularly relevant for merchants operating in multiple markets. The headquarters is publicly associated with the Netherlands, reflecting the company’s roots and core market orientation in European ecommerce. In practice, this regional focus translates into a strong understanding of the logistics ecosystems in European countries and familiarity with carrier networks and compliance requirements in the EU and adjacent regions. From a data privacy and security perspective, Sendcloud positions itself as a responsible SaaS provider that aligns with applicable data protection laws such as the EU General Data Protection Regulation. The platform is designed to handle sensitive shipment information, customer data, and order details, and the company typically emphasizes security best practices, access controls, and data governance as part of its standard operating model. In addition to privacy considerations, the shipping platform stresses reliability and performance to ensure that merchants can depend on consistent label generation, accurate rate calculations, and timely status updates across high volumes of shipments. The combination of partner integrations, robust automation, and strong data handling capabilities positions Sendcloud as a strategic tool for merchants seeking to optimize their last mile operations while maintaining control over the customer experience. In summary, Sendcloud stands as a mature, technology driven shipping platform that helps ecommerce businesses of varying sizes connect with carriers, automate fulfillment tasks, and deliver efficient, transparent shipping experiences to customers. By centralizing order data, enabling real time rate comparisons, automating label generation and documentation, and providing robust tracking and returns functionality, the platform addresses many of the most challenging aspects of modern ecommerce logistics. Its architecture supports growth and adaptation as merchants expand across channels and regions, while its integrations with ecommerce platforms and carriers create a streamlined workflow that reduces manual work and operational risk. As ecommerce continues to evolve toward faster delivery, better visibility, and more seamless returns, Sendcloud positions itself as a critical enabler for merchants seeking to scale their shipping operations with confidence, cost efficiency, and a superior shopper experience.
Visit company vacancy