Summary
Overview
Work History
Education
Skills
Certification
Languages
Hobbies:
Timeline
Hi, I’m

Marc Franken

Information Security Officer
Haarlem,NH
Marc Franken

Summary

Skilled in implementing robust security protocols to safeguard organizational assets, I utilize advanced risk assessment techniques to proactively identify and mitigate potential threats. With a strong understanding of regulatory compliance and best practices in information security, I am well-equipped to handle complex security challenges. Expertise lies in conducting thorough risk assessments, analyzing threats, and effectively responding to incidents. Through strong team collaboration and adaptability, consistently deliver reliable performance in dynamic environments. Track record demonstrates a proven ability to implement security protocols and effectively safeguard critical data.

Overview

40
years of professional experience

Work History

IDEMIA Haarlem

Information Security Officer
05.2024 - 04.2025

Job overview

  • I am hired as information security officer for 2nd line risk & security. I am responsible for internal audits ISO27001/14298 and ETSI 319-401, 411-1, 411-2. I also handle security incidents and manage findings from internal and external audits. I performed risk analysis for ISO27001 and ISO14298. The 2nd line is just new and still needs to take shape. I work together with another internal ISO and a new hired CISO, resorting under the risk & compliance manager we address topics on cyber & physical security for the IDEMIA site in Haarlem. IDEMIA produces passports and identity cards. Such as the Dutch passports and the Dutch Defense ID card. For this function I am VGB-B screened.

ABN AMRO Clearing bank

Information Security Officer
06.2022 - 04.2024

Job overview

  • The Information Security Officer is part of the Global Cyber Security Team of ABN AMRO Clearing Bank (AACB) that works closely with IT, Business and Risk management and supports the organization in implementing information security. AACB's Information Security Officers have a strong connection to IT auditing, support product owners in IT, Business and Security Services in designing security controls and provide support in implementing the Risk Manager monitoring, control, and testing cycle. I carry out projects for security controls and DLP.

Deloitte

Risk & Security Manager
12.2015 - 05.2022

Job overview

  • Assess products and services in terms of security measures. Oversee the ISO27001 certification for Deloitte NL. For this I maintain the ISMS and do internal audits. Perform BIO assessments for client leads and assignments. Responsible for testing application cyber security and ensuring that applications used by Deloitte NL are tested annually before the application is taken into use. Carry out Phishing tests 3x a year to increase security awareness. Advise business internal contacts in the field of contracts and customer matters involving security assessments and/or content of contracts. Supplier risk assessments. Lead for application security testing EMEA.

Deloitte

Project Manager
04.2009 - 12.2015

Job overview

  • After a short introduction at Deloitte, I supervised the migration of thin clients to a PC environment. At Deloitte I work for IT & Workplace services at the Cyber Center in Amsterdam. The projects I lead are very diverse. From program management for the roll-out of 5000 new laptops to the development and implementation of software. Responsible for the ICT development for Deloittes new location at Zuid-as. On average I have eight projects in my portfolio.

Imtech ICT Brocom

Project Manager
12.2006 - 04.2009

Job overview

  • As part of a team of project managers I deliver hardware-related projects. Complete consolidations of business automation. Migrations and transitions to the management department. Budget responsible for the services realized at the customer. The scope of the work varies from very small (a few days) to 2 to 300 days, total budget € 300,000 Services.

ICT Solutions

Service Project Manager
02.2005 - 12.2006

Job overview

  • Head of the service department of ICT Solutions in Deventer, responsible for service provision to a group of customers from the Energy, Industry, Logistics, Traffic & Transport sectors. I am also responsible for 10 employees. I report directly to the ICT Service Manager.
  • The operational activities include strategic planning, monitoring occupancy rate, short-term planning, evaluation of employees and monitoring of contract obligations.
  • Projects are managed and implemented by me within the framework of the service contracts concluded with our customers. Due to the geographic spread of the ICT customer base, this can be from Groningen to Zeeland.
  • During quotation processes I take care of the realization of the service contract, I make the calculations for this and draft the contract textually. During the acceptance of a project, I also sign the acceptance protocol on behalf of the service department and hold the service department responsible for the delivered product and processing any agreed remaining points.

Vanderlande Industries (secondment for ICT Solutions)

Project manager
04.2003 - 01.2005

Job overview

  • Vanderlande Industries is building a baggage handling system for BAA (British Airport Association) for the new handling terminal at London Heathrow.
  • In this assignment I am responsible for the infrastructure as a project manager. The following teams are my responsibility:
  • - Computers, Networks & CCTV, total 10 people.

ICT Solutions

Project manager
10.2002 - 04.2003

Job overview

  • As a preliminary to commercial projects, software developer ICT carries out internal projects with the aim of using the acquired knowledge. ICT is very successful in this. Produced components such as software, tools and hardware are guided by IP-Services to an acceptable status and stored in a web-based component database.
  • As a project leader, together with a team of acceptance officers, I ensure that this process runs smoothly. The description and the development and acceptance of three websites to support these activities is also part of my task. I also take care of the promotion and represent IP-Services at roadshows.

ICT Embedded BV

Project manager
10.2001 - 10.2002

Job overview

  • In this project for ICT Embedded in Almere, software is being developed to monitor autonomous robots from a "sideline" station by means of reporting and to control them by means of a control unit written in Java.
  • The aim is to deliver working robots this year to participate in the World Cup in Japan. The goal is to have a robot team play against a human team in 2050 and win.
  • As a project manager I lead a changing team of professionals, mainly programmers and architects. I take care of the planning, lead the meetings, and provide periodic discussions and assessments. I report to the account manager of the relevant part of ICT Embedded.

Ministry of Housing, Spatial Planning, and the Environment Department of Automation (VROM)

Change manager
07.2001 - 10.2001

Job overview

  • Within the Ministry of Housing, Spatial Planning, and the Environment, except for a few policy matters, all automation-related tasks have been placed within an ITIL structure. Changes requested in accordance with ITIL procedures are assessed and processed by the Change Controller acting as delegated Change Manager. The resulting changes are tested for feasibility, applicability, and employability. Any policy-sensitive matters can be handled by means of a mandate and submitted to a Change Committee.

Farrington BV

Project manager
05.1998 - 07.2001

Job overview

  • Farrington BV (now Ricoh Nederland) focuses on the archiving, imaging, and capture market with a few software products. The product is put on the market with concept marketing and e-business. It is the task of the project manager to convert the sold concepts into a product and to bring it to a successful conclusion with an acceptance process.

KLM

Documentalist, Material Planner, ICT Systems Manager, Project Manager
05.1985 - 05.1998

Job overview

  • Various IT systems, network, and Unix systems. Migration from Novell Netware to MS.

Education

Hogeschool Van Amsterdam
Amsterdam

Bachelor of Science from Project Management

Skills

  • General: ISO27001, ISO22301, ISO14298, ETSI, NETSEC, eIDAS, SOC2, CISSP, CISM, CAA, Prince2, IPMA-C, AGILE, SCRUM, GDPR
  • Tools & Applications: Office365, MS Products, ServiceNow, audit board, IBM Open pages
  • Screenings: VGB-B, EU-Secret, VOG
  • Compliance management
  • Application security
  • Security policy development
  • Cybersecurity management
  • Risk assessment

Certification

  • CISM certificate
  • CISA - trained
  • CISSP - trained
  • Agile - trained
  • GDPR Essentials - certificate
  • IPMA-C 2015, certificate
  • Prince2 Foundation, 2006, certificate
  • ITIL Foundation, 1999, Diploma
  • AMBI HE0, HE1, HB1, HB2, 1996, certificate
  • English translation, advanced 1985, certificate
  • Statistics, 1987, degree

Languages

Dutch (mother language), English, German

Hobbies:

Cycling, running, swimming.

Timeline

Information Security Officer

IDEMIA Haarlem
05.2024 - 04.2025

Information Security Officer

ABN AMRO Clearing bank
06.2022 - 04.2024

Risk & Security Manager

Deloitte
12.2015 - 05.2022

Project Manager

Deloitte
04.2009 - 12.2015

Project Manager

Imtech ICT Brocom
12.2006 - 04.2009

Service Project Manager

ICT Solutions
02.2005 - 12.2006

Project manager

Vanderlande Industries (secondment for ICT Solutions)
04.2003 - 01.2005

Project manager

ICT Solutions
10.2002 - 04.2003

Project manager

ICT Embedded BV
10.2001 - 10.2002

Change manager

Ministry of Housing, Spatial Planning, and the Environment Department of Automation (VROM)
07.2001 - 10.2001

Project manager

Farrington BV
05.1998 - 07.2001

Documentalist, Material Planner, ICT Systems Manager, Project Manager

KLM
05.1985 - 05.1998

Hogeschool Van Amsterdam

Bachelor of Science from Project Management
Marc FrankenInformation Security Officer