Senior Compliance Specialist

Permanent employee, Full-time · Luxembourg - Esch-sur-Alzette

Who we are
Luxembourg National Data Service (LNDS) is a brand of PNED G.I.E. an organisation created by the Luxembourg Government, to implement Luxembourg’s strategies in research, innovation, and digitalisation. LNDS enables value creation from secondary use of data, for public and private partners and supports the sharing and re-use of public sector data, in a trustable manner. The LNDS service portfolio includes know-how, capabilities, tools, infrastructure, and data services. Through efficient & responsible use of data and improving the secondary use of data, LNDS will support the acceleration of economic, ecological, and societal transitions.
www.lnds.lu | LNDS on LinkedIn
Purpose of the job / project
LNDS is seeking a Senior Compliance Specialist to ensure our organisation remains compliant with internal and external standards, certifications, and legal obligations. This role is pivotal in maintaining our certifications under the Information Security Management System (ISMS) and Privacy Information Management System (PIMS), specifically ISO 27001 and ISO 27701. It also includes coordinating internal policy and procedure management, overseeing legal and compliance matters related to our governance and partnerships, and ensuring alignment with emerging regulatory frameworks such as the NIS2. Reporting directly to the CEO, the Senior Compliance Specialist will work across departments to embed compliance into our daily operations, using plan-do-check-act, daily management and problem-solving techniques to instil a culture of continuous improvement. The ideal candidate will bring seniority, initiative, and a hands-on approach to drive compliance forward in a pragmatic and collaborative way.

What Success Looks Like

• LNDS maintains and renews its ISO 27001 and ISO 27701 certifications with zero major nonconformities.
• Compliance responsibilities are streamlined across departments with a single, integrated framework.
• Teams view compliance as an enabler of trust and quality, not an administrative burden.
What you will do
Compliance and Certifications

• Maintain compliance with ISO 27001 and ISO 27701 through regular internal audits, external auditcoordination, and corrective action follow-up.
• Monitor and prepare for new regulatory frameworks, including NIS2.

Governance and Legal

• Oversee internal legal obligations related to LNDS’ legal form as an Economic Interest Grouping(EIG), Board governance, and statutory requirements.
• Liaise with external legal advisors when necessary and ensure timely updates to governance documentation.
• Handle external compliance documentation for LNDS’ partners, including KYC, AML, and otherlegal or organisational forms, as well as documentation for European Commission calls and Luxembourg government or public sector compliance.
• Act as the point of contact for compliance-related queries from external stakeholders.

Policy and Risk Management

• Manage internal policy and procedure lifecycle by validating, updating, and publishing them within a comprehensive compliance framework for all relevant functional areas.
• Remind and support teams in fulfilling their obligations under the ISMS and PIMS.
• Maintain a central repository for all approved documents, including ISMS/PIMS, human resources(HR), gender, diversity, and other organisational policies.

Continuous Improvement and Culture

• Consolidate and centralise compliance responsibilities currently shared across the Data Protection Officer, IT Security and Ethical, Legal and Social Implications (ELSI) teams.
• Develop practical tools, templates, and guidance to support compliance implementation across LNDS.
• Promote Lean and daily management practices to embed compliance into our culture. 
Who you are
• Master’s degree in law, public administration, compliance, or a relevant field.
• 10–15 years of relevant experience in compliance, legal operations, or internal control, ideally in a public sector, research, or technology environment.
• Demonstrated experience maintaining ISO 27001/27701 or similar standards, including audit coordination and certification maintenance.
• Relevant professional certification (CISA, CISM, CCEP, CIPP, ISO 27001 Lead Auditor /Implementor).
• Strong understanding of internal governance, legal structures, and compliance obligations in multi-stakeholder organisations.
• Experience with ISO 9001 or NIS2
• Experience with Agile, Scaled Agile and Lean management practices.
• Experience managing policy lifecycles and coordinating cross-functional compliance efforts.
• Excellent organisational and communication skills, with the ability to translate complex compliance requirements into actionable steps.
• Proactive, hands-on approach with a strong sense of ownership and accountability.
• Fluent in English; proficiency in French is a plus.
• Cultural intelligence and diversity consciousness.
About us
What we offer
  • Dynamic and innovative work environment
  • Collaboration with diverse stakeholders
  • Inclusive and diverse culture
  • European recognition and impactful projects
  • Shape the future of the data revolution

What sets us apart 
The Luxembourg National Data Service is a modern and dynamic undertaking. We embrace a Lean and Agile mindset, combining the entrepreneurial spirit of a startup with the responsibility of a public body on a national mission. We will be a partner of society and industry, collaborating with a hugely diverse group of stakeholders in public research, public authorities, European institutions, academic and private institutions, and small, medium and large companies. Therefore, we have an international and multilingual character. Even in this rather ambitious context, we preserve a warm and personal atmosphere. 
Inclusion and diversity are some of our key values. We ensure that everyone has employment and career opportunities in accordance with their skills and aspirations, respecting and being mindful of their individual characteristics.  
Join LNDS and revolutionise the data economy! 
Be part of our dynamic team driving innovation and making a tangible impact. Collaborate on cutting-edge projects, gaining European recognition in the prestigious European Data Spaces initiative. Shape a transformative future in the data revolution. 

Apply now! 
 
Information for Recruitment Agencies: 
LNDS as well as all related entities do not accept any candidate submission from unsolicited third parties. Candidates presented by unsolicited third parties (such as recruitment agencies, head hunters etc.), will not be entered into the recruitment process and will not be considered further. Further on, no contractual relationship will result out of such a submission between LNDS and a third party. LNDS is not obligated nor willing to pay any fee to third parties submitting candidates in this manner. Your data is handled according to the compliance guidelines of LNDS. 
 
Data Processing: 
LNDS is proud to be an equal opportunities employer. We are committed to providing equal access to employment opportunities to all prospective employees within the recruitment process. LNDS complies with and supports all national and local laws pertaining to non-discrimination. Please note that LNDS is supported by Serendi for Talent Acquisition Services. As LNDS's Recruitment Process Outsourcing provider, Serendi is exclusively in charge of the above-mentioned position. Your data is handled according to the compliance guidelines of LNDS. Please see the Recruitment Data Privacy Statement for more information. If you have any questions your recruiter will be happy to help. www.serendi.com
We are looking forward to hearing from you!
Thank you for your interest in LNDS!
Please fill out the following short form.
Should you have difficulties with the upload of your data, please send an email to Recruitment@lnds.lu.
Uploading document. Please wait.
Please add all mandatory information with a * to send your application.