
Nordnet · Stockholm
Nordnet redefined the financial world as the first digital bank in Europe. Now we are about to do it again and the aim is to create the next generation of bank,...
Nordnet redefined the financial world as the first digital bank in Europe. Now we are about to do it again and the aim is to
create the next generation of bank, in the cloud. We know that this requires great people, great teams, and great technology. Do
you want to join us and build the new Nordnet?
At Nordnet we want to democratize savings and investments by giving our customers access to the best tools and information whether
you are a professional investor or a small saver. With modern technologies and speed of delivery, we are building the next
generation investment platform.
This is part of the role
Nordnet is a company with tech as the primary focus. In our agile and autonomous teams, you will be working with engaged
colleagues that love to share their knowledge. As a cloud security engineer, you will drive automation and integrate DevSecOps
into our cloud-based platform by embedding security in Continuous Integration/Continuous Delivery (CI/CD) pipelines, enhancing
infrastructure security and ensuring secure software development practices.
As a Cloud Security Engineer acting autonomously and with a clear mandate, you will:
(Shift-Left).
This is you
To succeed in this role, we believe that you take great pride in your work, are curious and continuously want to learn and grow.
Believing in collaboration and discussing ideas and concepts with your colleague, you will serve as the first point of contact for
our Platform teams as a Cloud Security Subject Matter Expert to enable the delivery of great products.
What we offer
up.
conferences, and dedicated time for skills development.
We offer you the opportunity to work in a Nordic environment with a strong focus on delivery, product development and technology.
Our ambitions are high and you will embark on a fast and challenging journey together with a skillful team of sharp and committed
colleagues. Our teams are autonomous and embrace the agile way of working.
Culture is built and cared for, each day by everyone. We’re proud of ours. Having a flat organization where anyone can talk to
anyone creates a warm and friendly atmosphere worth protecting. We believe in a culture where every effort counts and where
everyone is being recognized. A culture embracing our core values – passion, simplicity and transparency on all levels, no matter
who you are or what you do.
We are over 900 employees located in Stockholm, Oslo, Helsinki, Copenhagen and Frankfurt.
Visit us on: career.nordnetab.com/pages/engineering
Learn more about Nordnet in our brand movie This is Nordnet, that describes our identity.
Questions & Applications
Please note that we will start reviewing applications after the summer holidays. To ensure a fair process and that your data is
handled securely, we only accept applications through our recruitment system, applications sent via email will not be considered.
If you have questions, please contact Hiring Manager Ralph Benton at ralph.benton@nordnet.se
We want to inform you that Nordnet conducts mandatory credit and background checks, as well as drug testing as a part of our
recruitment process.
We look forward to receiving your application!
500M+ downloads. 80M+ monthly users. A decade of building – and we’re still accelerating. Flo is the world’s #1 health & fitness app worldwide on a mission to build a better future for female health. Backed by a $200M investment led by General Atlantic, we became the first product of our kind to reach a $1B valuation in 2024 – and we’re not slowing down. With 7M paid subscribers and the highest-rated experience in the App Store’s health category, we’ve spent 10 years earning trust at scale. Now, we’re building the next generation of digital health – AI-powered, privacy-first, clinically backed – to help our users know their body better. The job THE SCALE OF THE CHALLENGE At Flo we don't just have users, we have a global community. We are the #1 women's health app, in the last month alone, we saw 8.6M new installs and a 2.8M increase in active users. When millions of people trust you with their most personal health data, security isn't a feature — it's a foundation. We are looking for a Cloud Security Engineer to join Velocity, our Internal Platform team. Your mission is to ensure that every system, pipeline, and tool our engineers rely on is secure by default — so they can ship fast without ever compromising trust. THE MISSION: VELOCITY The Velocity team exists to eliminate friction. We build and own the foundation everything else runs on: cloud infrastructure, developer tooling, and SRE practices. You will: * Embed Security Into the Platform: Bake security, compliance, and best practices into the core stack so they're invisible to developers and impossible to skip. * Automate Everything: Drive security-as-code across infrastructure, CI/CD pipelines, and container lifecycles — making manual gates a thing of the past. WHAT YOU WILL DO * Cloud Security Posture: Own and continuously strengthen Flo's AWS security posture using tools like GuardDuty, Inspector, Security Hub, and SSM Patch Manager. * Container & Supply Chain Security: Harden container image security end-to-end — patch vulnerabilities automatically with Copacetic, sign and verify images with Cosign/Sigstore, and enforce policies at admission with Kyverno. * Policy as Code: Manage CI/CD security across the organisation using policy-as-code tooling (Kyverno, Checkov), ensuring standards are enforced programmatically. * Security Observability: Build visibility into security performance by measuring and visualising actionable metrics using tools like Databricks Dashboards or Looker. * High-Scale Privacy: Support the infrastructure for industry-leading privacy features, such as our TIME-recognised "Anonymous Mode." * Culture & Thought Leadership: Shape Flo's broader security culture through proactive engagement, documentation, and cross-team collaboration. WHAT YOU BRING * Experience: 7+ years in Infrastructure Security, Cloud Security, or Security Engineering roles. * Cloud Native Mastery: Deep expertise in AWS security services and best practices is essential. * Infrastructure as Code: Proficient in Terraform and Terragrunt — you run everything as code. * Container Security: Strong knowledge of Kubernetes security, image hardening, and admission control. * Identity & Access: Solid understanding of identity management principles — SSO, OAuth, JWT, SAML. * Automation Mindset: Comfortable scripting in Python, Bash, or similar to automate security workflows. * Network Security: Understanding of modern network security principles and their practical application. * SSDLC: Experience building Secure Software Development Lifecycle phases into engineering workflows. BONUS POINTS * Experience with security monitoring and event correlation systems (IDS/IPS, SIEM, AWS-native tooling). * Knowledge of Zero Trust Architecture and its implementations (e.g., Cloudflare). * Familiarity with secret management processes and tools. * Experience in multi-cloud environments (AWS and preferably GCP). * Understanding of business continuity principles (BIA, DRP). * Professional accreditations such as AWS Security Specialty, CKS, or CISSP. WHY JOIN FLO? * High Impact: Your work directly protects the health data of millions - Flo is rewriting women's health, and you'll make sure it's done securely. * Autonomy: We hire experts and empower you to deliver. * Cutting-Edge Stack: Work with modern security tooling (GuardDuty, Kyverno, Cosign, Elastic Cloud Security) deployed on real production infrastructure at massive scale. How we work We’re a mission-led, product-driven team. We move fast, stay focused and take ownership – from brief to build to impact. Debate is encouraged. Decisions are shared. We care about craft, ship with purpose, and always raise the bar. You’ll be working with people who take their work seriously, not themselves. It takes commitment, resilience, and the drive to keep going when things get tough. Because better health outcomes are worth it. What you'll get We support impact with meaningful reward. Here’s what that looks like: * Competitive salary and annual reviews * Opportunity to participate in Flo’s performance incentive scheme * Paid holiday, sick leave, and female health leave * Enhanced parental leave and pay for maternity, paternity, same-sex and adoptive parents * Accelerated professional growth through world-changing work and learning support * In-person collaboration and work in a hybrid model, with 3 days per week spent in the office * 5-week fully paid sabbatical at 5-year Floversary * Flo Premium for friends & family, plus more health, pension and wellbeing perks Diversity, equity and inclusion Our strength is in our differences. At Flo, hiring is based on merit, skill and what you bring to the role – nothing else. We’re proud to be an equal opportunity employer, and we welcome applicants from all backgrounds, communities and identities. Read our privacy notice for job applicants.
DAS SIND WIR: Who we are: Long story short: Healthcare. Reinvented. Our mission as a thriving start-up is to leverage health care through technology. The software that we create enables patients to have full transparency about their treatment and makes it possible for the clinics to operate and collaborate internally in a brand new way. Patient21's incredible international team of engineers is enjoying daily our tech ecosystem - Kotlin, Spring-Boot, React, TypeScript, RabbitMQ, AWS, Docker, Kubernetes - and we're now investing heavily in applied AI to push the boundaries of what our product can do. Getting out of your comfort zone and realizing your full potential sounds appealing? If yes, you're in the right place - join our experienced engineers and leaders! WIR BIETEN DIR: * Exciting start-up atmosphere. Gone are the days in which you wait for approvals for months. * Make our disruptive product even better. Change how healthcare functions. * Work with state-of-the-art technology. No legacy code. No technological debt. All green fields. * Your workplace—your choice. Office? Great! Home? Sure! Mars? Not sure about the Internet there, but why not. * Flexible working hours. No downtime. High degree of autonomy. * The team. Collaborative. Fun. True professionals. A real team. * Remote work opportunity AUFGABEN: * Monitor our security dashboards, triage findings, and plan and implement remediation steps end to end * Proactively shape our infrastructure architecture and configuration with security and compliance front of mind * Implement infrastructure changes hands-on, applying DevOps practices across infrastructure-as-code, CI/CD, and cloud configuration * Keep track of emerging threats, CVEs, and advisories, and drive timely mitigation across our systems * Partner with engineering teams to embed security into the development lifecycle rather than bolting it on * Help us meet and maintain compliance requirements relevant to healthcare data QUALIFIKATION: * Solid experience in a DevOps, SRE, or cloud security role, with hands-on infrastructure work * Strong knowledge of AWS, containerized workloads (Docker, Kubernetes), and infrastructure-as-code (Terraform) * Hands-on experience with cloud security posture management tooling * A working understanding of vulnerability management and how to prioritize and remediate threats in practice * Familiarity with security and compliance frameworks (eg SOC 2, ISO 27001, GDPR; healthcare-specific frameworks a plus) * Comfortable building and maintaining CI/CD pipelines * A proactive, ownership-driven mindset and the ability to communicate risk clearly to engineers and stakeholders * Proven experience in collaboration with AI tools like Codex or Claude Code * English working proficiency
WHO WE ARE ABOUT STRIPE Stripe is a financial infrastructure platform for businesses. Millions of companies—from the world's largest enterprises to the most ambitious startups—use Stripe to accept payments, grow their revenue, and accelerate new business opportunities. Our mission is to increase the GDP of the internet, and we have a staggering amount of work ahead. That means you have an unprecedented opportunity to put the global economy within everyone's reach while doing the most important work of your career. ABOUT THE TEAM Stripe powers businesses all over the world. We process payments, run marketplaces, detect fraud, help entrepreneurs start a business from anywhere in the world, build world-class developer-friendly APIs, and more. Nearly every system we operate interacts with sensitive financial or personal data—making security a top priority for Stripe. Stripe will succeed at our mission of increasing the GDP of the internet only if we prove ourselves worthy of our users' trust. As an engineer on the Security team, you'll design and develop frameworks, systems, and solutions to ensure the security of Stripe's engineering infrastructure and, most importantly, privacy of our users' data. The Cloud Security team accelerates Stripe's business priorities by building core security controls and services that empower teams to build quickly and securely on top of a well-governed cloud platform and partnering with infrastructure teams to advance select critical business priorities using novel infrastructure or integrations as that platform expands. WHAT YOU'LL DO RESPONSIBILITIES * Design, build, and operate the core security infrastructure used by all of Stripe's engineering teams in close collaboration with other stakeholders and our users * Uphold our high engineering standards and bring consistency to the many codebases and processes you'll encounter * Contribute to team learning by improving engineering standards, tooling, and processes * Design and build durable solutions that will advance Stripe's security beyond the state of the art * Help expand Stripe's cloud footprint on top of secure, paved roads and guardrails * Optimize for security controls that have delightful user experiences * Partner closely with infrastructure and engineering teams building integrations with our cloud infrastructure or adopting new cloud managed services * Make impactful decisions about systems and security—their edge cases, failure modes, and life cycles * Use data to determine appropriate baselines against which to measure security * Define infrastructure that reliably feeds signals to threat teams * Evaluate and prototype new security tools and practices You may work on * Designing and implementing controls that support security invariants and enforce our security principles while providing a surprisingly great user experience * Providing a migration path for newly acquired companies onto the Stripe Secure Platform, embedding with their engineers and biasing for action * CI tooling for platform-related configuration, including IAM roles, SCPs, and associated components * Guardrails and security controls for both commonly used and newer cloud technologies * Expanding our cloud identity infrastructure to provide paved paths for AI and agentic access * Automation tooling for continually driving down permissions and access across our cloud services WHO YOU ARE MINIMUM REQUIREMENTS * Empathy, strong communication skills, and a deep respect for the power of collaboration * A learning mindset, regardless of level or experience * The ability to drive clear next steps when encountering ambiguous spaces without clear lines of ownership * High standards for code quality and a constructive attitude to help others raise the bar * Software engineering experience in a high-stakes production environment * A knack for considering how systems can fail and how to fix them * An ability to think creatively and holistically about reducing risk in a complex environment * Experience with security on one or more of AWS, Azure, or GCP PREFERRED QUALIFICATIONS * Experience conducting threat modeling of software or infrastructure in cloud-native environments * Experience with Linux systems, Kubernetes, and container-based platforms * Prior usage of security monitoring tools (e.g., CSPM, CNAAP) * Experience in a multi-cloud or complex cloud environment * A knack for considering how systems can fail and how to fix them * An ability to think creatively and holistically about reducing risk in a complex environment