Purpose of the job / project
LNDS is seeking a Senior Compliance Specialist to ensure our organisation remains compliant with internal and external standards, certifications, and legal obligations. This role is pivotal in maintaining our certifications under the Information Security Management System (ISMS) and Privacy Information Management System (PIMS), specifically ISO 27001 and ISO 27701. It also includes coordinating internal policy and procedure management, overseeing legal and compliance matters related to our governance and partnerships, and ensuring alignment with emerging regulatory frameworks such as the NIS2. Reporting directly to the CEO, the Senior Compliance Specialist will work across departments to embed compliance into our daily operations, using plan-do-check-act, daily management and problem-solving techniques to instil a culture of continuous improvement. The ideal candidate will bring seniority, initiative, and a hands-on approach to drive compliance forward in a pragmatic and collaborative way.
What Success Looks Like
• LNDS maintains and renews its ISO 27001 and ISO 27701 certifications with zero major nonconformities.
• Compliance responsibilities are streamlined across departments with a single, integrated framework.
• Teams view compliance as an enabler of trust and quality, not an administrative burden.
What you will do
Compliance and Certifications
• Maintain compliance with ISO 27001 and ISO 27701 through regular internal audits, external auditcoordination, and corrective action follow-up.
• Monitor and prepare for new regulatory frameworks, including NIS2.
Governance and Legal
• Oversee internal legal obligations related to LNDS’ legal form as an Economic Interest Grouping(EIG), Board governance, and statutory requirements.
• Liaise with external legal advisors when necessary and ensure timely updates to governance documentation.
• Handle external compliance documentation for LNDS’ partners, including KYC, AML, and otherlegal or organisational forms, as well as documentation for European Commission calls and Luxembourg government or public sector compliance.
• Act as the point of contact for compliance-related queries from external stakeholders.
Policy and Risk Management
• Manage internal policy and procedure lifecycle by validating, updating, and publishing them within a comprehensive compliance framework for all relevant functional areas.
• Remind and support teams in fulfilling their obligations under the ISMS and PIMS.
• Maintain a central repository for all approved documents, including ISMS/PIMS, human resources(HR), gender, diversity, and other organisational policies.
Continuous Improvement and Culture
• Consolidate and centralise compliance responsibilities currently shared across the Data Protection Officer, IT Security and Ethical, Legal and Social Implications (ELSI) teams.
• Develop practical tools, templates, and guidance to support compliance implementation across LNDS.
• Promote Lean and daily management practices to embed compliance into our culture.
Who you are
• Master’s degree in law, public administration, compliance, or a relevant field.
• 10–15 years of relevant experience in compliance, legal operations, or internal control, ideally in a public sector, research, or technology environment.
• Demonstrated experience maintaining ISO 27001/27701 or similar standards, including audit coordination and certification maintenance.
• Relevant professional certification (CISA, CISM, CCEP, CIPP, ISO 27001 Lead Auditor /Implementor).
• Strong understanding of internal governance, legal structures, and compliance obligations in multi-stakeholder organisations.
• Experience with ISO 9001 or NIS2
• Experience with Agile, Scaled Agile and Lean management practices.
• Experience managing policy lifecycles and coordinating cross-functional compliance efforts.
• Excellent organisational and communication skills, with the ability to translate complex compliance requirements into actionable steps.
• Proactive, hands-on approach with a strong sense of ownership and accountability.
• Fluent in English; proficiency in French is a plus.
• Cultural intelligence and diversity consciousness.