-
View all jobs
As Senior Information Security Engineer within the Data & Applications domain, you are responsible for designing, implementing and improving security controls across both high-code and low-code application landscapes. You combine deep technical expertise with a pragmatic security mindset, ensuring secure-by-design development practices while enabling innovation and speed. You work closely with DevOps teams, platform engineers and architects to embed security in application development pipelines, cloud platforms and low-code ecosystems. You translate policies and risk requirements into concrete technical implementations, automation and guardrails that protect PostNL's data and critical business processes.
Uitdagingen
The Data & Applications team is part of the PostNL Cyber Security Office (CSO). We operate as a second-line function while working closely with DevOps and platform teams across PostNL.
As Senior Information Security Engineer, You
Je verantwoordelijkheden
Wat bezorgen we jou?
We support our people with a motivating work environment and enthusiastic colleagues, a commitment to promoting from within and a belief that every employee deserves a productive life outside of work.
Uitdagingen
The Data & Applications team is part of the PostNL Cyber Security Office (CSO). We operate as a second-line function while working closely with DevOps and platform teams across PostNL.
As Senior Information Security Engineer, You
- Design and implement security-by-design principles in high-code (e.g., custom development) and low-code environments (e.g., Power Platform, Mendix, OutSystems or similar).
- Define and enforce secure coding standards and CI/CD security controls (SAST, DAST, dependency scanning, IaC scanning).
- Implement automated security controls within DevSecOps pipelines.
- Advise on secure architecture patterns for APIs, integrations and data platforms.
- Perform deep technical security reviews and threat modeling on new and existing applications.
- Strengthen identity & access management integrations, secrets management and encryption implementations.
- Support vulnerability remediation and structural improvement of recurring findings.
- Contribute to the development of reusable security patterns, guardrails and reference architectures.
- Act as senior sparring partner for architects, lead developers and platform owners.
Je verantwoordelijkheden
- Impact: You directly strengthen the technical security posture of business-critical data platforms and applications.
- Innovation: Work in a hybrid landscape of cloud-native high-code development and rapidly growing low-code platforms.
- Visibility: Security is high on the IT board agenda. Your expertise influences architectural decisions.
- Ownership: You help define secure development standards and technical security baselines.
- Development: Opportunity to deepen expertise in DevSecOps, cloud security and platform security engineering.
- Bachelor or Master degree in Computer Science, Cybersecurity or similar.
- 5+ years of experience in application security engineering or DevSecOps roles.
- Strong hands-on experience with secure coding practices (e.g., OWASP Top 10, API security, authentication flows).
- Experience implementing security tooling in CI/CD pipelines (SAST, DAST, SCA, container scanning).
- Experience with cloud environments (Azure preferred) and cloud-native security controls.
- Experience securing low-code platforms and defining governance models for citizen development.
- Knowledge of ISO27001, NIST CSF and CIS benchmarks.
- Experience with threat modeling and security architecture reviews.
- Certifications such as CISSP, CSSLP, CCSP, AZ-500 or equivalent are a plus.
- Excellent English communication skills; Dutch is considered a plus.
Wat bezorgen we jou?
We support our people with a motivating work environment and enthusiastic colleagues, a commitment to promoting from within and a belief that every employee deserves a productive life outside of work.
- This position is on scale 12 (between € 5.200,- and € 7559,- a month), depending on experience.
- Full-time working week of 37 hours.
- 8% holiday pay and 25 holiday days (full-time).
- Flexible working hours to support work/life balance.
- Hybrid working model from home and from our head office next to Den Haag – Hollands Spoor station.
- NS Business Card for business travel and commuting.
- Collective health insurance and pension via the PostNL pension fund.
- Strong internal training and development opportunities.
Key Skills
Ranked by relevance
cloud
devops
cicd
technical expertise
cyber security
cloud security
cybersecurity
cissp
owasp
ccsp
nist
cis
Related Jobs
3 roles aligned with this opportunity
View Job Details
Related
Senior Software Engineer (.NET | Azure | Full Stack)
2026-05-21
Full-time
Not Applicable
Argentina
Transportation
Engineering
View Job Details
Related
Backend Software Engineer
2026-05-08
Full-time
Mid-Senior
Netherlands
Transportation
Engineering
View Job Details
Related
Computer Vision Engineer | Den Haag
2026-04-12
Full-time
Associate
Netherlands
Transportation
Engineering
Login to Apply
- Posted
- Feb 24, 2026
- Type
- Full-time
- Level
- Mid-Senior
- Location
- The Hague
- Company
- PostNL
Industries
Transportation
Logistics
Supply Chain
Storage
Categories
Information Technology
Related Jobs
3 roles aligned with this opportunity
View Job Details
Related
Senior Software Engineer (.NET | Azure | Full Stack)
2026-05-21
Full-time
Not Applicable
Argentina
Transportation
Engineering
View Job Details
Related
Backend Software Engineer
2026-05-08
Full-time
Mid-Senior
Netherlands
Transportation
Engineering
View Job Details
Related
Computer Vision Engineer | Den Haag
2026-04-12
Full-time
Associate
Netherlands
Transportation
Engineering