ING

Head of Security Operations (Deputy CISO)GJA 23

HBP (Amsterdam - Haarlerbergpark) Full time

Lead the frontline of ING’s global cyber defense. In this role, you’ll transform strategy into world‑class execution—integrating threat intelligence, detection and response, attack surface management, and identity and access management into a single, high‑performing operation. If you’re energized by building automation, driving measurable resilience, and staying ahead of emerging threats with data‑driven insight, this is where you’ll make your impact.

The Team

You will be part of the Global CISO organization, reporting directly to the Global Chief Information Security Officer (CISO). This is a senior leadership role (GJA 23).
You will lead and integrate multiple global teams—Cyber Threat Management, Attack Surface Management, Security Detection & Response, and Identity & Access Management—into a cohesive, intelligence‑driven security operations function.
Projects focus on elevating ING’s operational resilience, improving speed and accuracy through automation and AI, strengthening control effectiveness, and aligning with regulatory expectations. Our culture is transparent, accountable, and collaborative—built on continuous learning, measurable outcomes, and a unified global way of working.

Roles and Responsibilities

In this role, you will convert strategic direction into operational excellence and measurable resilience.

  • Leading global security operations as the CISO’s delegate, ensuring strategic delivery across all operational domains.
  • Translating strategy into actionable plans with clear outcomes, accountable ownership, and consistent delivery.
  • Partnering with the CISO to define the operational roadmap aligned with regulatory expectations, business priorities, and enterprise risk appetite.
  • Integrating threat management, attack surface management, detection and response, and identity and access into a unified, intelligence‑led operation.
  • Driving consistency, efficiency, and rapid response across global teams to enable a unified defense posture.
  • Defining and tracking key performance and risk metrics that guide executive decisions and demonstrate resilience progress.
  • Embedding continuous improvement through automation, AI, and process optimization to increase speed, reduce cost, and improve accuracy.
  • Anticipating and responding to emerging threats with precision, strengthening red teaming, detection engineering, and proactive defense.
  • Reducing mean time to detect (MTTD) and mean time to respond (MTTR) through tighter collaboration across intelligence, detection, and response teams.
  • Modernizing the security technology stack in partnership with architecture, leveraging automation and machine learning.
  • Establishing operational governance aligned with the Governance function to ensure accountability, transparency, and traceability.
  • Reporting robust, data‑driven insights to the Global CISO, executive committees, and—when required—regulators.
  • Aligning operations with risk and compliance frameworks in partnership with Governance, CISO Risk, and Enterprise Risk.
  • Building and leading a diverse, high‑performing global team with strong accountability and a continuous learning mindset.
  • Developing leadership bench strength, ensuring succession readiness and talent growth.
  • Fostering collaboration between country CISOs and global teams to ensure operational excellence across regions.

How to Succeed

We hire smart people like you for your potential. Our biggest expectation is that you’ll stay curious. Keep learning. Take on responsibility. In return, we’ll back you to develop into an even more awesome version of yourself.

  • Leading large‑scale global security operations or threat management in complex, regulated environments.
  • Delivering measurable improvements in resilience (e.g., MTTD/MTTR) through automation and AI‑driven solutions.
  • Mastering cyber threat intelligence, detection and response, attack surface management, and IAM governance.
  • Navigating financial sector regulations and operational resilience frameworks (e.g., DORA, ECB, NIST, ISO 27001).
  • Influencing senior stakeholders with clear, simple communication of complex concepts and data‑driven insights.
  • Building and scaling high‑performing global teams with strong accountability and succession readiness.

Questions?

Contact the HRBP Helin Yilmaz for more information about this role. Ready to apply? Upload your CV and motivation letter by clicking the ‘Apply’ button.