Sida 1 av 22
Education is one of the world's most important systems. At Kognity, we develop technology that enhances its effectiveness for both the teachers delivering it and the students who rely on it. The problems are real, the work is challenging, and the results show up in classrooms every day. We're a 125-person EdTech scale-up powering learning in 140+ countries, helping students and teachers thrive through an intelligent platform that combines rich, interactive pedagogy with smart AI and data. Why join Kognity? Work on problems that matter – Your work directly influences the lives of teachers and students in over 100 countries. The scale is global, and the outcomes are tangible. High ownership, high expectations – You are trusted to take initiative, make decisions and drive outcomes. Responsibility comes early, accountability is real, and results matter. A fast-moving, high-performing team – You will work with smart, driven colleagues across the globe on complex problems. Standards and expectations are high, feedback is direct, and the pace is fast. Continuous growth is the baseline – Everyone is expected and supported to learn quickly, improve constantly and raise their own bar. If you enjoy responsibility, momentum and meaningful challenge, you will thrive here. What you'll do As an Information Security Manager you will get a chance to take ownership of Kognity's information security programme, keeping certifications like SOC 2 and ISO live and evolving, and driving incident response and customer trust for a platform used in classrooms across 120+ countries. You will: Take full ownership of Kognity's information security certifications and the policies behind them, turning a complex compliance landscape into a dependable system. Manage Kognity's incident response plan and strategy for data breaches, ensuring the business can respond quickly and confidently if an incident occurs. Oversee the IT and data security of Kognity's web systems, including banking security, keeping customer and company data protected across our platform. Lead customer information security dialogues and respond to RFPs, building Kognity's reputation as a partner customers can trust with their data. Manage physical security across Kognity's premises, keeping security risks to our offices and people to a minimum. Provide day-to-day support to teams across Kognity on information security questions, keeping good security practice a part of how people work rather than an afterthought. What we're looking for Experience working with information security frameworks (SOC2, ISO 27000 and ISO 42000) and ownership of an information security set-up end to end. A collaborative approach, comfortable managing security-related projects across functions such as Legal, Engineering, and Commercial. A commercial mindset, understanding how information security not only protects Kognity but also drives customer trust and business success. A passion for AI and a drive to experiment with new tools to enhance creativity, decisions, and execution. Our Values We take ownership We are transparent We make every week count We obsess over customers We show up with heart How we hire Discovery call with a Recruiter Hiring manager discussion Case study Values discussion Leadership talk References
Education is one of the world's most important systems. At Kognity, we develop technology that enhances its effectiveness for both the teachers delivering it and the students who rely on it. The problems are real, the work is challenging, and the results show up in classrooms every day. We're a 125-person EdTech scale-up powering learning in 140+ countries, helping students and teachers thrive through an intelligent platform that combines rich, interactive pedagogy with smart AI and data. Why join Kognity? * Work on problems that matter – Your work directly influences the lives of teachers and students in over 100 countries. The scale is global, and the outcomes are tangible. * High ownership, high expectations – You are trusted to take initiative, make decisions and drive outcomes. Responsibility comes early, accountability is real, and results matter. * A fast-moving, high-performing team – You will work with smart, driven colleagues across the globe on complex problems. Standards and expectations are high, feedback is direct, and the pace is fast. * Continuous growth is the baseline – Everyone is expected and supported to learn quickly, improve constantly and raise their own bar. If you enjoy responsibility, momentum and meaningful challenge, you will thrive here. What you'll do As an Information Security Manager you will get a chance to take ownership of Kognity's information security programme, keeping certifications like SOC 2 and ISO live and evolving, and driving incident response and customer trust for a platform used in classrooms across 120+ countries. You will: * Take full ownership of Kognity's information security certifications and the policies behind them, turning a complex compliance landscape into a dependable system. * Manage Kognity's incident response plan and strategy for data breaches, ensuring the business can respond quickly and confidently if an incident occurs. * Oversee the IT and data security of Kognity's web systems, including banking security, keeping customer and company data protected across our platform. * Lead customer information security dialogues and respond to RFPs, building Kognity's reputation as a partner customers can trust with their data. * Manage physical security across Kognity's premises, keeping security risks to our offices and people to a minimum. * Provide day-to-day support to teams across Kognity on information security questions, keeping good security practice a part of how people work rather than an afterthought. What we're looking for * Experience working with information security frameworks (SOC2, ISO 27000 and ISO 42000) and ownership of an information security set-up end to end. * A collaborative approach, comfortable managing security-related projects across functions such as Legal, Engineering, and Commercial. * A commercial mindset, understanding how information security not only protects Kognity but also drives customer trust and business success. * A passion for AI and a drive to experiment with new tools to enhance creativity, decisions, and execution. Our Values * We take ownership * We are transparent * We make every week count * We obsess over customers * We show up with heart How we hire 1. We will review your applications on August, 3rd 2. Discovery call with a Recruiter 3. Hiring manager discussion 4. Case study 5. Values discussion 6. Leadership talk 7. References See more about how we collect and process your personal data in our Privacy Notice.
About the Company At Avaron, you get the security of permanent employment combined with the variety of working at different customers. We place specialists across everything from tech, IT and industry to project management and business support – and whatever the assignment, you have a consultant manager who is there for you and your development. About the Role You will lead strategic Information Security initiatives in an international organization where governance, risk, and assurance need to work seamlessly across business and IT. The focus is on strengthening the GRA function, improving operational controls, and reducing risk through projects that create lasting structure and clarity. In this role, you will work closely with business stakeholders, regional IT, and Information Security to turn security priorities into coordinated delivery. You will navigate a complex environment with many dependencies, balance business needs with security requirements, and help drive change in a practical way. This is a great opportunity if you want to influence how security governance is built and executed at scale. Job DescriptionYou will lead Information Security projects within Governance, Risk & Assurance (GRA). You will drive cross-functional initiatives involving business, IT, and Information Security teams. You will manage scope, planning, execution, timelines, risks, and delivery. You will act as a key point of contact between business stakeholders, regional IT, and Information Security. You will establish effective governance through steering committees, reporting, and stakeholder communication. You will identify and handle risks, dependencies, and delivery challenges throughout the project lifecycle. You will support initiatives that strengthen governance, operational controls, and business processes. RequirementsAt least 5 years of experience leading complex projects within global organizations. Proven experience managing cross-functional and geographically distributed project teams. Demonstrated experience leading Information Security or Cyber Security projects. A solid understanding of Governance, Risk & Assurance (GRA/GRC). Good technical understanding of IT environments and system implementations. Strong project management skills, including coordination of timelines, resources, stakeholders, and dependencies. Excellent stakeholder management and communication skills across both technical and business functions. Strong organizational and documentation skills, including project reporting for executive management and steering committees. Fluency in English and Spanish, both written and spoken. Nice to haveSenior project management certification such as PMP, IPMA, or equivalent. Experience supporting governance initiatives, policy implementation, and audit readiness. Technical expertise within Cyber Security. Experience working in highly regulated or international enterprise environments. What We OfferPermanent employment at Avaron AB Occupational pension Wellness allowance of SEK 5,000 per year Application Selections are made on an ongoing basis – apply as soon as you can.
Join Truecaller – The place where innovation meets impact! Truecaller's mission is to build trust in communication by making it safer, smarter, and more efficient. Born in Sweden, trusted by the world, and here’s why we stand out: * We are trusted by over 450 million active users every month across 190+ countries * We identify over 15 billion calls daily, helping users avoid spam and scams * We are powered by a team of 450+ employees from 45+ nationalities We always look for people who take initiative, own their work, and keep raising the bar. An entrepreneurial mindset matters here, especially when it turns bold ideas into real actions. We stay collaborative and focused, always searching for smarter paths forward. If you want to make an impact and grow with a team that inspires millions, you’ll fit right in. The role: As a Senior Cloud Security Engineer, you will act as a technical leader in safeguarding our core cloud infrastructure. You will take ownership of maintaining the highest standards of security controls for our critical systems within Google Cloud Platform (GCP). We're looking for someone who thrives in complex environments, can solve infrastructure security problems where no established patterns exist, and isn't afraid to get their hands dirty. You won't just advise; you will actively build, configure, and fix security controls. You'll leverage your expert understanding of cloud services, infrastructure-as-code, and container security to architect robust security measures and drive systemic improvements across the organization. What you’ll do: * Architect and Lead GCP Security: Take end-to-end ownership of designing and implementing security architectures for our GCP infrastructure. You will look beyond immediate fixes to architect long-term, scalable solutions for networking, compute, storage, and GKE. * Hands-on Remediation & Engineering: You don't just identify risks; you fix them. You will actively write code, create Pull Requests, and apply configurations to resolve security issues, harden infrastructure, and deploy tooling (e.g., EDR, Identity proxies) in production environments. * Drive Systemic Risk Reduction: Identify repeating classes of vulnerabilities or systemic risks (e.g., data exfiltration paths) and drive organizational change to eliminate them, rather than just patching individual issues. * Manage GCP Security Posture: Utilize GCP-native tools (e.g., Security Command Center, Cloud Armor, VPC Service Controls, IAM) to continuously monitor, assess, and improve the security posture of our cloud environment. * Advanced Network & Container Security: Design complex network security controls and Kubernetes (GKE) hardening strategies, balancing strict security requirements with operational velocity. * Mentorship and Technical Sparring: Act as a technical mentor and sparring partner to other engineers. You will elevate engineering standards by guiding colleagues on advanced security concepts and architecture. * Automate Security Operations: Develop advanced automation (using Python, Go, No/Low Code) to eliminate toil, turning manual security reviews into automated policy-as-code checks and high-fidelity alerts. What you bring in: * Technical Experience: Several years of hands-on experience in a senior security engineering role. You have a track record of leading technical designs and influencing decisions across multiple squads. * Security Passion & Threat Awareness: You are passionate about security and stay constantly updated on the evolving threat landscape, emerging vulnerabilities, and attack vectors, translating this knowledge into proactive defense strategies. * Navigating Ambiguity: You excel at breaking down complex, multi-faceted technical problems into actionable components. You are comfortable defining security standards for experimental technologies where internal patterns may not yet exist. * Project Ownership & Grit: Demonstrated ability to drive mid-to-large scale projects from idea to implementation independently, including successful stakeholder alignment and management of external dependencies. * Operational "Doer" Mindset: You are a practitioner who enjoys the craft of engineering. You have recent, deep experience directly configuring infrastructure, writing production-grade code, and debugging complex systems. Once an issue has been identified you have the experience applying the fix either yourself or through collaboration with stakeholders. * Business-Aligned Risk Assessment: Experience weighing risk vs. speed, and making technical decisions that balance short-term delivery with long-term maintainability and business value. * Deep GCP Expertise: Expert-level knowledge of securing cloud infrastructure, with the ability to architect tool-agnostic solutions and evaluate trade-offs in GCP services (GCE, GKE, VPC, IAM, SCC). * Communication: Strong ability to communicate technical security concepts to non-technical stakeholders, clearly articulating business impact (e.g., financial loss, brand reputation) to secure buy-in. What we offer: We support growth through learning resources, leadership programs, mentoring, and real hands-on work. People can move between teams and projects to build new skills and keep things interesting. We offer clear internal mobility and a transparent path for progression, with leaders who stay involved and provide guidance throughout the year. In addition, you will benefit from: * A comprehensive compensation package: We offer a competitive salary, 30 days of paid vacation, private health insurance, parental leave top-up, pension, and wellness contributions. * Modern tools to do your best work: Choose your preferred computer and phone within our budget, so you can work comfortably and efficiently. * A people-focused office culture: We value in-person collaboration and follow an office-first model, with some flexibility. Our offices offer a vibrant environment with opportunities to learn, connect, and recharge, from breakfast, lunch, and well-stocked snack stations and quiet spaces to team activities such as movie nights, tech meetups, and cultural events. There's something for everyone. * Truecaller’s “Lab Days” offer a space for imagination: 5 times per year for 3 days, where everyone steps away from their normal tasks to explore new, bold ideas and build things they’ve always wanted to. It’s a space where curiosity leads the way, and prototypes take shape. Some concepts even make it into production, and a few have grown into real features used by millions today. Lab Days allow you to be creative, learn fast, and help shape Truecaller's future. Come as you are: Truecaller is committed to building a diverse and inclusive team. We believe that a wide range of backgrounds, perspectives, and experiences strengthens our products and our culture. No matter where you're from, what language you speak, or how you identify, we value what makes you unique and would love to get to know you. Check out Life at Truecaller - Behind the code: https://www.instagram.com/lifeattruecaller/ Sounds like a great opportunity? We will fill the position as soon as we find the right candidate, so please send your application as soon as possible. As part of the recruitment process, we will conduct a background check. We only accept applications in English.
Information Security Officer at Saab Naval Want to influence the bigger picture? At Saab, you can realise amazing innovations that keep people and societies safe. Together, we can truly make an impact - and your part matters. Your role Do you want to develop security at one of Sweden's most high-tech companies? At Saab security is prioritized, on top management's agenda and crucial for competitiveness, profitability and trust in a challenging global market. Saab Naval Security Department is looking for a Information Security Officer with responsibility towards our Business Unit (BU) Naval Combat Systems (NCS). Your operational role will be responsibility for information security matters and your main tasks are to support the BU in information security issues. As an Information Security Officer you will also build and strengthen a general security culture within the Business Units and develop security work based on external and internal security protection requirements. You will work closely with the entire Security Department but in particular with the other Security Managers at BU NCS. In addition to this you will liaise and collaborate extensively with other departments internally as well as externally. You will report to Head of Security Operations, Business Area Naval. Your main tasks will be: Coordinating security work at the Business Unit level, being the contact person for information security matters and support regarding classification and handling of information. Develop and maintain our information security policies Provide support regarding risk and information analysis and recommend relevant actions Ensuring regulatory compliance, such as continuously reviewing and evaluating applicable laws, regulations, requirements and agreements for the Business Unit Being the bridge between the Business Unit and authorities in information security-related matters Business Area Naval provides the most efficient platforms on and under the sea, both for the military and civilian domain. The portfolio covers submarines, surface ships, combat boats, under-surface vessels, torpedoes and more. Within Saab Security, we have anchored a Saab wide ambition to become world leading in security risk management and to be referred to by other security professionals as the company having the best practices in place. You will work primarily at our facility in Solna, Stockholm and support BU NCS and their operations there. We are a global company working in an international context meaning both domestic and international travel will be required. Your profile To be successful in this role we believe you: Have a university degree or equivalent competence acquired through work-life experience, related to the Security domain and Information Security Are a socially skilled person who has an easy way of making contacts and cooperating inside and outside the company. You are comfortable in taking decisions and have a high degree of integrity Good communication skills in Swedish and English, verbal and written Have experience from working with security related legislation and legal frameworks We consider it an advantage if you: Have experience of information security both in the national and the international context e.g. ISO27´1 and CMMC Have experience in Swedish Protection Security Act Can take responsibility for your own area and you understand how your part contributes to the greater good Have several years of experience from working for government authorities or in a global company demanding an understanding of security related issues in the business process You are a true team player, and as such you focus on team results. Personal qualities will be of the outmost importance, and it is paramount that you are a trustworthy individual with strong ethics and personal integrity. You understand the need for balanced security in a business-driven environment. As an Information Security Officer at Saab Naval, you are likely to get in contact with classified information. This position requires that you pass a security vetting based on the current regulations around/of security protection. For positions requiring security clearance additional obligations on citizenship may apply. What you will be a part of Explore a wealth of possibilities. Take on challenges, create smart inventions, and grow beyond. This is a place for curious minds, brave pioneers, and everyone in between. Together, we achieve the extraordinary, each bringing our unique perspectives. Your part matters. Saab is a leading defence and security company with an enduring mission, to help nations keep their people and society safe. Empowered by its 28,000 talented people, Saab constantly pushes the boundaries of technology to create a safer and more sustainable world. Saab designs, manufactures and maintains advanced systems in aeronautics, weapons, command and control, sensors and underwater systems. Saab is headquartered in Sweden. It has major operations all over the world and is part of the domestic defence capability of several nations. Read more about us here. If you are interested in what benefits you can take part of as an employee at Saab in Sweden, you can read more about them here. Kindly observe that this is an ongoing recruitment process and that the position might be filled before the closing date of the advertisement.
Want to influence the bigger picture? At Saab, you can realise amazing innovations that keep people and societies safe. Together, we can truly make an impact - and your part matters. Your role We don't build ordinary products. We design and develop advanced fighter aircraft where operational capability and information superiority are critical to national security and the protection of democratic societies. We are now looking for an Information Security Engineer to join the JAS 39 Gripen program, as well as other Aeronautics platforms such as GlobalEye. In this role, you will play a key part in ensuring that our systems meet stringent information security requirements throughout the entire development lifecycle. You will work close to design teams and system architects, and you will influence security decisions from early concept to final implementation. You will help shape how we design secure, resilient and mission-critical systems in highly complex and classified environments. Key responsibilities: Identify and analyze information security requirements for systems and their operational environments Translate security needs into clear, actionable system requirements Define security architecture and design principles for subsystems and platforms Review, assess and validate security functions across subsystems Support development teams in implementing secure design solutions Act as a technical representative within your domain towards customers and regulatory authorities Your profile We are looking for a systems-minded engineer with a strong interest in information security and how it enables robust and resilient defense systems. You are analytical, structured and motivated by solving complex technical challenges in multidisciplinary teams. Required qualifications: Master's degree in Engineering or equivalent Strong analytical and problem-solving skills Excellent communication skills in both Swedish and English (spoken and written) Strong collaboration skills and ability to work across teams and disciplines High level of flexibility and cultural awareness Security clearance is required due to the nature of the work in the defense domain Preferred qualifications: Experience in systems engineering or system architecture Experience working with Swedish defense authorities (FMV, FM MUST) Experience from Gripen E/F or similar complex aerospace systems Experience in technical leadership roles This position requires that you pass a security vetting based on the current regulations around/of security protection. For positions requiring security clearance additional obligations on citizenship may apply. What you will be part of Explore a wealth of possibilities. Take on challenges, create smart inventions, and grow beyond. This is a place for curious minds, brave pioneers, and everyone in between. Together, we achieve the extraordinary, each bringing our unique perspectives. Your part matters. Saab is a leading defense and security company with an enduring purpose, to help nations keep their people and society safe. Empowered by its 28,000 talented people, Saab constantly pushes the boundaries of technology to create a safer and more sustainable world. Saab designs, manufactures and maintains advanced systems in aeronautics, weapons, command and control, sensors and underwater systems. Saab is headquartered in Sweden. It has major operations all over the world and is part of the domestic defense capability of several nations. Read more about us here Kindly observe that this is an ongoing recruitment process and that the position might be filled before the closing date of the advertisement. Please note that due to the current holiday period, feedback on your application may be delayed Contact: Ulf Comstedt, Manager ulf.comstedt@saabgroup.com
Want to influence the bigger picture? At Saab, you can realise amazing innovations that keep people and societies safe. Together, we can truly make an impact - and your part matters. Your role We don't build ordinary products. We design and develop advanced fighter aircraft where operational capability and information superiority are critical to national security and the protection of democratic societies. We are now looking for an Information Security Engineer to join the JAS 39 Gripen program, as well as other Aeronautics platforms such as GlobalEye. In this role, you will play a key part in ensuring that our systems meet stringent information security requirements throughout the entire development lifecycle. You will work close to design teams and system architects, and you will influence security decisions from early concept to final implementation. You will help shape how we design secure, resilient and mission-critical systems in highly complex and classified environments. Key responsibilities: Identify and analyze information security requirements for systems and their operational environments Translate security needs into clear, actionable system requirements Define security architecture and design principles for subsystems and platforms Review, assess and validate security functions across subsystems Support development teams in implementing secure design solutions Act as a technical representative within your domain towards customers and regulatory authorities Your profile We are looking for a systems-minded engineer with a strong interest in information security and how it enables robust and resilient defense systems. You are analytical, structured and motivated by solving complex technical challenges in multidisciplinary teams. Required qualifications: Master's degree in Engineering or equivalent Strong analytical and problem-solving skills Excellent communication skills in both Swedish and English (spoken and written) Strong collaboration skills and ability to work across teams and disciplines High level of flexibility and cultural awareness Security clearance is required due to the nature of the work in the defense domain Preferred qualifications: Experience in systems engineering or system architecture Experience working with Swedish defense authorities (FMV, FM MUST) Experience from Gripen E/F or similar complex aerospace systems Experience in technical leadership roles What you will be part of Explore a wealth of possibilities. Take on challenges, create smart inventions, and grow beyond. This is a place for curious minds, brave pioneers, and everyone in between. Together, we achieve the extraordinary, each bringing our unique perspectives. Your part matters. Saab is a leading defense and security company with an enduring purpose, to help nations keep their people and society safe. Empowered by its 28,000 talented people, Saab constantly pushes the boundaries of technology to create a safer and more sustainable world. Saab designs, manufactures and maintains advanced systems in aeronautics, weapons, command and control, sensors and underwater systems. Saab is headquartered in Sweden. It has major operations all over the world and is part of the domestic defense capability of several nations. Read more about us here Kindly observe that this is an ongoing recruitment process and that the position might be filled before the closing date of the advertisement. Please note that due to the current holiday period, feedback on your application may be delayed Contact: Ulf Comstedt, Manager ulf.comstedt@saabgroup.com
Vill du ta nästa steg i karriären inom cybersäkerhet? Vill du jobba med komplexa problem i teknisk framkant och bidra till samhällsnyttiga projekt? Ta nu chansen i rollen som Information Secuity Engineer hos vår kund inom försvarsindustrin. Om tjänsten Du kommer att spela en central roll inom utveckling och säkerställande av interna IT-system. Ditt arbete kommer att kretsa kring att implementera och förbättra IT-säkerhetsåtgärder, vilket innebär ett nära samarbete med flera tvärfunktionella team. Ett av huvudansvaren är att säkerställa att organisationen ligger i framkant avseende tekniska innovationer och säkerhetsstandarder. Du kommer även att hantera tekniska gränssnitt för att säkerställa att systemen uppfyller både behov och kravställningar inom olika verksamhetsområden. Dina dagliga uppgifter kommer bland annat att inkludera säkerhetstestning, kravanalys och regeltolkning. Arbetet omfattar flera globala regelverk såsom NIST 800-171 Rev.2, NIS2, ISO-standarder samt andra internationella säkerhetsramverk. Du kommer också att vara ansvarig för att följa och implementera regelverk som ISO-standarder och GDPR, vilket är avgörande för att säkerställa organisationens compliance. För att lyckas i rollen krävs det att du har intresse för ny teknologi och en vilja att ständigt utöka din kunskap. Teamet arbetar ibland remote där virtuella verktyg används för samarbete. Det förekommer gemensamma teamdagar där det krävs fysisk närvaro on-site. Det finns möjlighet att arbeta från olika kontor/hubbar beroende på geografisk placering. Sammanfattningsvis erbjuder denna roll en rik möjlighet att bidra till och växa i en dynamisk och framåttänkande IT-miljö, där din insats kommer att vara avgörande för att framtidssäkra verksamheten och dess tekniska lösningar. Vi söker dig som har erfarenhet av en eller flera av följande områden:Säkerhetspraxis (te.x OWASP) Regelverk såsom ISO27xxx, GDPR, SOC2, DORA Kravställning och kravanalys IAM-roll-och-policybaserade behörighetssystem Praktisk erfarenhet av säkerhetstestning (t.ex. MITM) God kommunikation förmåga på svenska och engelska i tal och skrift Det kommer även läggas stor vikt vid personlig lämplighet i rekryteringen. För att trivas i rollen tror vi att du är en engagerad lagspelare med ett driv och vilja att utvecklas. Du kommer ingå i ett team där nyfikenhet och kreativitet uppmuntras, därför tror vi att du gillar innovation och gillar att komma med nya idéer och lösningar. Befattningen kräver att du genomgår och godkänns enligt gällande säkerhetsskyddsbestämmelser. För vissa roller kan detta innebära krav på säkerhetsklassning och i förekommande fall specifika medborgarskapskrav. Urval sker löpande och uppdraget kan komma att tillsättas innan sista ansökningsdatum Om anställningen: Detta är ett konsultuppdrag vilket innebär att du kommer vara anställd av Friday och arbeta som konsult ute hos vår kund. På Friday tror vi att människor som är på rätt plats har störst möjlighet att nå sin fulla potential. Vi är övertygade om att rätt människor, i rätt roller, skapar morgondagar värda att längta till. Övrig info: Omfattning: Heltid Start: Enligt överenskommelse Placering: Utångspunkt i Linköping men går att utgå från andra platser i landet Lön: Marknadsmässig månadslön Kontaktperson: Hampus Kindgren, hampus.kindgren@Friday.se Om Friday På Friday brinner vi för att ge dig som Tech-talang en riktigt bra start på karriären. Genom att lyssna på vad just du vill och drivs av, matchar vi dig med företag och möjligheter som får dig att se fram emot att gå till jobbet. Vi värderar ambition och potential högt och arbetar aktivt för en fördomsfri rekrytering, där alla ges samma chans att lyckas. Vi finns i Stockholm, Göteborg, Malmö, Linköping och Örebro. Varje år genomför vi över 5 000 karriärmöten och matchar kandidater med allt från globala företag till innovativa startups. Öppen för alla Vi fokuserar på din kompetens, inte dina övriga förutsättningar. Vi är öppna för att anpassa rollen eller arbetsplatsen efter dina behov.
Om uppdraget 🚀 Organisationen skalar upp sitt arbete med AI och behöver förstärka inom informationssäkerhet och GRC. Fokus ligger på att hantera risker kopplade till AI, SaaS och integrationer – både operativt och strategiskt. Dina arbetsuppgifter 🛠️ Genomföra riskbedömningar kopplade till AI-initiativ Kommunicera risker och konsekvenser till ledning på ett affärsnära sätt Bidra till att bygga säkra AI-lösningar och relevanta guardrails Stötta utveckling av risk intake-processer Förbättra och strukturera organisationens övergripande riskhantering Förväntade leveranser 📦 Genomförda och dokumenterade riskanalyser inom AI/SaaS Tydliga beslutsunderlag till ledning Etablerade eller förbättrade processer för risk intake Konkreta rekommendationer för säker AI-användning Din profil / Obligatoriska kompetenser ✅ Erfarenhet av risk management och IT-säkerhet Teknisk bredd inom AI, SaaS och integrationer Minst 1–2 års aktuell erfarenhet av AI-/SaaS-relaterade risker Förmåga att översätta tekniska risker till affärspåverkan Flytande engelska i tal och skrift Meriterande färdigheter ⭐ Erfarenhet av att arbeta nära ledningsgrupp Tidigare arbete i organisationer med snabb AI-adoption Erfarenhet av att etablera GRC-processer Personliga egenskaper 🤝 Affärsdriven och kommunikativ Strukturerad och lösningsorienterad Självständig med hög leveransförmåga Övrig information 📍 Plats: Stockholm (onsite) Omfattning: Heltid Start: ASAP (flexibelt) Period: 3–6 månader Språk: Engelska Sway Sourcing är en innovativ rekryteringspartner som specialiserar sig på att matcha rätt talang med rätt företag – snabbt och effektivt. Vårt huvudfokus ligger inom Ekonomi, Administration, HR, Marknad och IT, men vi har även den breda expertis och flexibilitet som krävs för att leverera skräddarsydda rekryteringslösningar inom alla branscher. Trots att vi är en relativt ny aktör har vi redan byggt förtroende hos många av Sveriges största företag och arbetar både nationellt och internationellt. Med baser i Sverige och Spanien erbjuder vi en unik kombination av lokal expertis och global räckvidd. Vårt starka nätverk och djupa branschinsikter gör oss till en självklar partner för företag som vill ligga steget före i sin rekrytering.
Want to shape the entire information security landscape behind one of the Nordics’ most well-known e-commerce marketplaces? At CDON Group, security is a strategic foundation for our growth, data-driven operations, and future innovation. We’re now strengthening our security capabilities and are looking for an Information Security Specialist who wants to take ownership, drive development, and ensure that security is embedded across our products, platforms, and teams. About us Join us at CDON Group, a Swedish listed company with a long history and extensive experience in the e-commerce market. Our mission is to unleash the power of the marketplace to give the best shopping experience in the Nordics. We are dedicated to providing great online shopping experiences and are on the lookout for an Information Security Specialist to join us on this journey for our two Nordic marketplaces: CDON and Fyndiq. About the role This role combines hands-on security work with broader ownership of how we structure, govern, and communicate information security across the company. You will sit within IT but collaborate closely with Legal, Finance etc, as many topics touch on compliance, GDPR, NIS2, the AI Act, and regulatory inquiries. At the same time, we are navigating a unique balance. We are pragmatic, entrepreneurial, and fast-moving, yet also a publicly listed company with expectations on governance, compliance, and structure. This creates an environment where you will help build processes that do not fully exist today, while still working close to the business and making real impact quickly. Some areas of focus include: Helping build security processes and routines, both maintenance and from the ground up Supporting the entire organization with practical, understandable security guidance Working with both technical and non-technical stakeholders Helping raise security maturity while keeping the business moving forward Responsibilities include You will have both structured responsibilities and day-to-day practical tasks. Key areas include: Developing and maintaining information security policies, governance, and documentation Driving risk management activities across systems, suppliers, processes, and new initiatives Ensuring alignment with frameworks such as ISO 27001, NIS2, and GDPR Collaborating closely with Legal on data protection, AI governance, and regulatory communication Supporting IT, infrastructure, and engineering teams with operational security tasks You will also work hands-on with: • Google SecOps and our existing tooling • Vulnerability management • Access and identity management • Coordinating external penetration tests and understanding results • Leading internal training, awareness efforts, and phishing exercises Part of the role also involves presenting findings and explaining why security requirements exist — not just what they are — in ways that engage and motivate colleagues across the business. Qualifications and requirements We are looking for someone who can understand, interpret, and communicate both technical and regulatory requirements. Relevant experience and traits include: A couple of years in information security, IT security, or data protection Relevant degree for the role Understanding of GDPR, NIS2, and IT risk work Strong communication and presentation skills The ability to learn and work with security tools such as Google SecOps Full professional proficiency in Swedish and English Pragmatic mindset and the ability to balance speed with governance Ability to work regularly from Stockholm to collaborate effectively with Legal and support incident handling Some tasks require hands-on IT security understanding, but you do not need to be a programmer. Support is available from backend teams for highly technical areas. What we offer An opportunity to be part of a unique growth journey, actively contributing to the success of the leading e-commerce marketplaces in the Nordics. A collaborative and dynamic work environment, with passionate colleagues who believe in CDON Group’s mission Competitive compensation package, including benefits such as pension and insurance through Max Matthiessen and MyBenefit portal. Career growth opportunities within a rapidly evolving company. Application Process: Please attach your resume and a brief cover letter outlining your interest and suitability for the job. We will be conducting interviews with candidates on an ongoing basis. To ensure a professional and unbiased assessment, we will ask candidates to perform a combination of logical reasoning and personality tests as part of the process.
Vill du ta ansvar för informationssäkerhet, dataskydd och GDPR i en samhällsviktig organisation och vara en central del i att driva utvecklingen framåt? Här får du chansen att påverka, förbättra och göra verklig skillnad! Om tjänsten Den här tjänsten är en direktrekrytering vilket innebär att rekryteringsprocessen sker genom Bravura och du anställs direkt hos Energiföretagen Sverige. Om företaget Energiföretagen Sverige är branschorganisationen för el-, värme- och kylföretag i Sverige. Organisationen samlar en stor del av energibranschens aktörer och fungerar som en central röst i frågor som rör energisystemets utveckling, regelverk och omställning till ett fossilfritt samhälle. Medlemsföretagen ansvarar för produktion, distribution och handel av energi och arbetar tillsammans mot visionen “Hållbar energi för alla, alltid”. I takt med att energisystemet genomgår en omfattande omställning blir frågor kopplade till informationssäkerhet, dataskydd och regelefterlevnad allt viktigare, både för organisationen och för branschen i stort. Här blir du en del av en organisation där experter inom bland annat energimarknad, policy, teknik och affärsutveckling arbetar tillsammans. Arbetet sker nära verksamheten med många kontaktytor, både internt och externt, där du samverkar med kollegor, medlemsföretag och andra aktörer inom energi-Sverige. Arbetsuppgifter Som Informationssäkerhetsansvarig har du ett övergripande ansvar för organisationens arbete inom informationssäkerhet och dataskydd. Du fungerar som dataskyddsansvarig och säkerställer att verksamheten uppfyller gällande regelverk, samtidigt som du utvecklar arbetssätt, strukturer och styrning inom området. Du arbetar nära IT och övriga delar av verksamheten där du fungerar som stöd, rådgivare och kravställare. Rollen innebär att både identifiera förbättringsområden och driva åtgärder, med ett tydligt mandat att säkerställa efterlevnad. Rollen kombinerar strategiskt arbete med operativt genomförande, från att utveckla ramverk till att genomföra kontroller och hantera löpande inkommande frågor. I dina ansvarsområden ingår bland annat att: Driva och vidareutveckla organisationens GDPR-arbete samt säkerställa efterlevnad Ansvara för ISMS (Stratsys), inklusive implementering, förvaltning och utveckling Driva, implementera och vidareutveckla processer kopplade till ISO 27001 Genomföra kontroller, följa upp efterlevnad och driva förbättringsåtgärder Stötta verksamheten i informationssäkerhets- och dataskyddsfrågor Hantera inkommande ärenden från medlemsföretag och externa parter i regulatoriska frågor, exempelvis NIS2 Omvärldsbevaka och identifiera behov av utveckling inom området Utbildning, erfarenhet och personliga egenskaper Eftergymnasial utbildning inom IT, informationssäkerhet, juridik eller motsvarande Minst 3års erfarenhet inom informationssäkerhet och GDPR Erfarenhet av ISO 27001 eller liknande ramverk Erfarenhet av att självständigt driva arbete inom informationssäkerhet och dataskydd Mycket god svenska och god engelska i tal och skrift Meriterande Erfarenhet av roll som DPO/DSA Erfarenhet från regulatoriskt styrda verksamheter Certifieringar inom informationssäkerhet/dataskydd Erfarenhet av ISMS, specifikt Stratsys Erfarenhet kopplat till NIS2/CSL För att lyckas i rollen arbetar du både självständigt och i nära samarbete med andra. Du tar ansvar för att driva ditt arbete framåt, strukturerar upp det som behöver göras och följer upp att det blir genomfört. Du är analytisk och kan växla mellan helhet och detaljer när du bedömer risker och behov. Samtidigt är du trygg i din kompetens och står för dina bedömningar, även när det innebär att ställa krav på verksamheten. Din kommunikativa sida innebär att du kan förklara komplexa frågor på ett sätt som gör dem begripliga för alla, internt såväl som externt. Du bygger förtroende och får med dig organisationen i frågor som rör informationssäkerhet och dataskydd. Övrig information Start: Enligt överenskommelse Plats: Stockholm Lön: Enligt överenskommelse Vi använder en kompetensbaserad metodik i alla rekryteringsprocesser för att säkerställa fördomsfria urval. Vi jobbar också med löpande urval, vilket innebär att vi tar ner annonsen när tillräckligt många kandidater har ansökt. Om du blir aktuell för tjänsten kommer vi att kontakta dig för en första telefonintervju. Oavsett om du går vidare i processen eller inte så kommer du att få återkoppling på din ansökan. Har du frågor? Hör gärna av dig! 📧 info@bravura.se 📞 010-171 47 10 Vi rekommenderar att du skickar in din ansökan omgående då vi gör ett löpande urval. Välkommen med din ansökan! #Brillante
Do you want to help shape information security across one of Scandinavia's leading EdTech companies? At IST, we develop digital solutions that support education and learning for millions of users across Scandinavia. As Information Security Manager, you will play a key role in protecting our information assets, driving compliance initiatives, and strengthening our security culture across the entire IST Group. While the role has a strong focus on our Danish operations and product portfolio, you will work on a Group level, collaborating with colleagues and stakeholders across multiple countries and business areas. This is an opportunity for someone who wants to combine strategic security leadership with hands-on security governance in a company with a meaningful societal mission. The role serves as an important bridge between customers, operations, development, and management when security-related issues occur. About the role As Information Security Manager, you will be responsible for developing, implementing, and maintaining IST's information security framework. You will work closely with product and development departments, customers, auditors, and external stakeholders to ensure that security is embedded throughout the business. You will act as a trusted advisor on information security matters, supporting both operational and strategic initiatives while continuously improving our security posture. These are the key responsibilities: Develop and maintain information security policies, standards, and procedures across the Group. Lead and coordinate information security governance activities. Drive compliance with relevant regulations and frameworks, including GDPR, NIS2, ISO 27001, ISAE 3000, and related requirements. Manage and coordinate security incidents, investigations, and corrective actions. Conduct risk assessments and support enterprise risk management activities. Collaborate with product development teams to embed privacy and security by design. Support audits, security reviews, and due diligence processes. Manage and maintain data processing agreements and security-related documentation. Drive security awareness initiatives and promote a strong security culture throughout the organization. Prepare reports and security metrics for management and key stakeholders. Your profile We believe you have the following competence profile to succeed in this role: A Bachelor’s degree within Information Security, Computer Science, IT, Law, Business, or a related field. Experience working with information security, cybersecurity, risk management and/or compliance. Experience with GDPR and information security governance, ISO 27001, NIS2, ISAE 3000, SOC reporting, or similar frameworks. Experience supporting audits, inspections, or compliance reviews. The ability to communicate complex security topics to both technical and non-technical audiences. Strong stakeholder management and collaboration skills. A proactive, self-driven, and structured working style. Relevant certifications such as ISO 27001, CISSP, CISM, CRISC, or similar are considered an advantage. Why join IST? At IST, you will become part of a company that has been developing digital solutions for the education sector for more than 40 years. We are approximately 400 employees across several countries, united by the ambition to create better opportunities for learning and education. What we offer: A meaningful role with significant influence on the Group's security agenda. The opportunity to work across multiple countries, products, and business areas. A collaborative and supportive international environment. Professional and personal development opportunities. A strong culture characterized by trust, openness, and teamwork. This is a full-time, permanent position. At IST, we apply an office-first policy, meaning we primarily work from the office as we believe physical presence fosters collaboration, innovation, and a strong team spirit. At the same time, we understand the importance of flexibility—if you live farther away, working from the office three days a week with the remaining time remote may be possible. In Scandinavia our offices are located in Stockholm, Växjö, Roskilde and Oslo. Apply Applications are reviewed continuously. For questions, contact Nanna Holm Thyboe, +45 20 72 60 34 or email: nanna.thyboe@ist.com For questions about the recruitment process, contact hr@ist.com Please note! Background check is part of the recruitment process. Welcome to apply!
Do you want to help shape information security across one of Scandinavia's leading EdTech companies? At IST, we develop digital solutions that support education and learning for millions of users across Scandinavia. As Information Security Manager, you will play a key role in protecting our information assets, driving compliance initiatives, and strengthening our security culture across the entire IST Group. While the role has a strong focus on our Danish operations and product portfolio, you will work on a Group level, collaborating with colleagues and stakeholders across multiple countries and business areas. This is an opportunity for someone who wants to combine strategic security leadership with hands-on security governance in a company with a meaningful societal mission. The role serves as an important bridge between customers, operations, development, and management when security-related issues occur. About the role As Information Security Manager, you will be responsible for developing, implementing, and maintaining IST's information security framework. You will work closely with product and development departments, customers, auditors, and external stakeholders to ensure that security is embedded throughout the business. You will act as a trusted advisor on information security matters, supporting both operational and strategic initiatives while continuously improving our security posture. These are the key responsibilities: Develop and maintain information security policies, standards, and procedures across the Group. Lead and coordinate information security governance activities. Drive compliance with relevant regulations and frameworks, including GDPR, NIS2, ISO 27001, ISAE 3000, and related requirements. Manage and coordinate security incidents, investigations, and corrective actions. Conduct risk assessments and support enterprise risk management activities. Collaborate with product development teams to embed privacy and security by design. Support audits, security reviews, and due diligence processes. Manage and maintain data processing agreements and security-related documentation. Drive security awareness initiatives and promote a strong security culture throughout the organization. Prepare reports and security metrics for management and key stakeholders. Your profile We believe you have the following competence profile to succeed in this role: A Bachelor’s degree within Information Security, Computer Science, IT, Law, Business, or a related field. Experience working with information security, cybersecurity, risk management and/or compliance. Experience with GDPR and information security governance, ISO 27001, NIS2, ISAE 3000, SOC reporting, or similar frameworks. Experience supporting audits, inspections, or compliance reviews. The ability to communicate complex security topics to both technical and non-technical audiences. Strong stakeholder management and collaboration skills. A proactive, self-driven, and structured working style. Relevant certifications such as ISO 27001, CISSP, CISM, CRISC, or similar are considered an advantage. Why join IST? At IST, you will become part of a company that has been developing digital solutions for the education sector for more than 40 years. We are approximately 400 employees across several countries, united by the ambition to create better opportunities for learning and education. What we offer: A meaningful role with significant influence on the Group's security agenda. The opportunity to work across multiple countries, products, and business areas. A collaborative and supportive international environment. Professional and personal development opportunities. A strong culture characterized by trust, openness, and teamwork. This is a full-time, permanent position. At IST, we apply an office-first policy, meaning we primarily work from the office as we believe physical presence fosters collaboration, innovation, and a strong team spirit. At the same time, we understand the importance of flexibility—if you live farther away, working from the office three days a week with the remaining time remote may be possible. In Scandinavia our offices are located in Stockholm, Växjö, Roskilde and Oslo. Apply Applications are reviewed continuously. For questions, contact Nanna Holm Thyboe, +45 20 72 60 34 or email: nanna.thyboe@ist.com For questions about the recruitment process, contact hr@ist.com Please note! Background check is part of the recruitment process. Welcome to apply!
Do you want to help shape information security across one of Scandinavia's leading EdTech companies? At IST, we develop digital solutions that support education and learning for millions of users across Scandinavia. As Information Security Manager, you will play a key role in protecting our information assets, driving compliance initiatives, and strengthening our security culture across the entire IST Group. While the role has a strong focus on our Danish operations and product portfolio, you will work on a Group level, collaborating with colleagues and stakeholders across multiple countries and business areas. This is an opportunity for someone who wants to combine strategic security leadership with hands-on security governance in a company with a meaningful societal mission. The role serves as an important bridge between customers, operations, development, and management when security-related issues occur. About the role As Information Security Manager, you will be responsible for developing, implementing, and maintaining IST's information security framework. You will work closely with product and development departments, customers, auditors, and external stakeholders to ensure that security is embedded throughout the business. You will act as a trusted advisor on information security matters, supporting both operational and strategic initiatives while continuously improving our security posture. These are the key responsibilities: Develop and maintain information security policies, standards, and procedures across the Group. Lead and coordinate information security governance activities. Drive compliance with relevant regulations and frameworks, including GDPR, NIS2, ISO 27001, ISAE 3000, and related requirements. Manage and coordinate security incidents, investigations, and corrective actions. Conduct risk assessments and support enterprise risk management activities. Collaborate with product development teams to embed privacy and security by design. Support audits, security reviews, and due diligence processes. Manage and maintain data processing agreements and security-related documentation. Drive security awareness initiatives and promote a strong security culture throughout the organization. Prepare reports and security metrics for management and key stakeholders. Your profile We believe you have the following competence profile to succeed in this role: A Bachelor’s degree within Information Security, Computer Science, IT, Law, Business, or a related field. Experience working with information security, cybersecurity, risk management and/or compliance. Experience with GDPR and information security governance, ISO 27001, NIS2, ISAE 3000, SOC reporting, or similar frameworks. Experience supporting audits, inspections, or compliance reviews. The ability to communicate complex security topics to both technical and non-technical audiences. Strong stakeholder management and collaboration skills. A proactive, self-driven, and structured working style. Relevant certifications such as ISO 27001, CISSP, CISM, CRISC, or similar are considered an advantage. Why join IST? At IST, you will become part of a company that has been developing digital solutions for the education sector for more than 40 years. We are approximately 400 employees across several countries, united by the ambition to create better opportunities for learning and education. What we offer: A meaningful role with significant influence on the Group's security agenda. The opportunity to work across multiple countries, products, and business areas. A collaborative and supportive international environment. Professional and personal development opportunities. A strong culture characterized by trust, openness, and teamwork. This is a full-time, permanent position. At IST, we apply an office-first policy, meaning we primarily work from the office as we believe physical presence fosters collaboration, innovation, and a strong team spirit. At the same time, we understand the importance of flexibility—if you live farther away, working from the office three days a week with the remaining time remote may be possible. In Scandinavia our offices are located in Stockholm, Växjö, Roskilde and Oslo. Apply Applications are reviewed continuously. For questions, contact Nanna Holm Thyboe, +45 20 72 60 34 or email: nanna.thyboe@ist.com For questions about the recruitment process, contact hr@ist.com Please note! Background check is part of the recruitment process. Welcome to apply!
Do you want to help shape information security across one of Scandinavia's leading EdTech companies? At IST, we develop digital solutions that support education and learning for millions of users across Scandinavia. As Information Security Manager, you will play a key role in protecting our information assets, driving compliance initiatives, and strengthening our security culture across the entire IST Group. While the role has a strong focus on our Danish operations and product portfolio, you will work on a Group level, collaborating with colleagues and stakeholders across multiple countries and business areas. This is an opportunity for someone who wants to combine strategic security leadership with hands-on security governance in a company with a meaningful societal mission. The role serves as an important bridge between customers, operations, development, and management when security-related issues occur. About the role As Information Security Manager, you will be responsible for developing, implementing, and maintaining IST's information security framework. You will work closely with product and development departments, customers, auditors, and external stakeholders to ensure that security is embedded throughout the business. You will act as a trusted advisor on information security matters, supporting both operational and strategic initiatives while continuously improving our security posture. These are the key responsibilities: Develop and maintain information security policies, standards, and procedures across the Group. Lead and coordinate information security governance activities. Drive compliance with relevant regulations and frameworks, including GDPR, NIS2, ISO 27001, ISAE 3000, and related requirements. Manage and coordinate security incidents, investigations, and corrective actions. Conduct risk assessments and support enterprise risk management activities. Collaborate with product development teams to embed privacy and security by design. Support audits, security reviews, and due diligence processes. Manage and maintain data processing agreements and security-related documentation. Drive security awareness initiatives and promote a strong security culture throughout the organization. Prepare reports and security metrics for management and key stakeholders. Your profile We believe you have the following competence profile to succeed in this role: A Bachelor’s degree within Information Security, Computer Science, IT, Law, Business, or a related field. Experience working with information security, cybersecurity, risk management and/or compliance. Experience with GDPR and information security governance, ISO 27001, NIS2, ISAE 3000, SOC reporting, or similar frameworks. Experience supporting audits, inspections, or compliance reviews. The ability to communicate complex security topics to both technical and non-technical audiences. Strong stakeholder management and collaboration skills. A proactive, self-driven, and structured working style. Relevant certifications such as ISO 27001, CISSP, CISM, CRISC, or similar are considered an advantage. Why join IST? At IST, you will become part of a company that has been developing digital solutions for the education sector for more than 40 years. We are approximately 400 employees across several countries, united by the ambition to create better opportunities for learning and education. What we offer: A meaningful role with significant influence on the Group's security agenda. The opportunity to work across multiple countries, products, and business areas. A collaborative and supportive international environment. Professional and personal development opportunities. A strong culture characterized by trust, openness, and teamwork. This is a full-time, permanent position. At IST, we apply an office-first policy, meaning we primarily work from the office as we believe physical presence fosters collaboration, innovation, and a strong team spirit. At the same time, we understand the importance of flexibility—if you live farther away, working from the office three days a week with the remaining time remote may be possible. In Scandinavia our offices are located in Stockholm, Växjö, Roskilde and Oslo. Apply Applications are reviewed continuously. For questions, contact Nanna Holm Thyboe, +45 20 72 60 34 or email: nanna.thyboe@ist.com For questions about the recruitment process, contact hr@ist.com Please note! Background check is part of the recruitment process. Welcome to apply!
About Consilium Safety Group At Consilium Safety Group, we don’t just build technology, we create solutions that protect people, assets, and the planet. As a global leader in fire and gas safety, we serve critical industries such as marine, energy, rolling stock, and infrastructure. With more than 100 years of expertise, we combine deep industry knowledge with cutting-edge innovation to shape the future of Safety Tech. Headquartered in Gothenburg, Sweden, and operating in over 55 locations worldwide, we are a fast-growing global organization backed by Antin Infrastructure Partners. With strong financial support and a clear strategic vision, we are on an ambitious journey of growth and transformation, investing in innovation, operational excellence, and talent. This is an exciting time to join us. We are now looking for an Information Security Engineer to join the information security team at Consilium! About the Role As an Information Security Engineer at Consilium, you will combine hands-on security operations with strategic governance and compliance work. In practice, the role is split into two central pillars: Operational Excellence: Working hands-on to implement security controls, managing daily security activities, and acting as an internal subject matter expert. Strategic and Compliance-Oriented Leadership: Developing and driving our security strategy, ensuring we meet regulatory requirements, and continuously strengthening our security posture. You will help protect Consilium’s information assets, lead compliance efforts related to NIS2, and support alignment with frameworks such as NIST CSF, ISO 27001, the EU CRA, and the AI Act. The role works closely with teams across IT, HR, R&D, Sales, and Marketing. Your Main Responsibilities In this role, you will manage day-to-day security operations activities as well as strengthening the ISMS, implement controls aligned with ISO 27001, NIS2, and NIST CSF, coordinate audits, develop policies, and provide risk reporting and advisory support across the business. Qualifications and Experience To succeed in this role, you bring strong technical security knowledge, incident-handling capability, and an interest in governance and compliance. Requirements Technical Environment: Solid understanding of Microsoft Defender suite, Azure/O365, Windows, and Linux. Networking & Security Tools: Strong knowledge of TCP/IP, segmentation, firewalls, SIEM, EDR/EPP, and patch management. Automation: Basic to intermediate scripting skills (PowerShell, Python, Bash, KQL, or Graph API). Incident & Frameworks: Experience with log analysis, incident lifecycles, and frameworks like ISO 27001 or NIST CSF. Communication: Ability to explain technical security concepts clearly to non-technical stakeholders. Meriting Hands-on experience with Microsoft's advanced security stack (Sentinel, XDR, Entra, Intune, Purview/Priva). Cloud security controls (Azure), DevSecOps (GitHub Advanced Security), or direct audit-evidence collection experience. Previous experience working with audits and evidence collection linked to ISO 27001/NIS2/NIST CSF. Who Are We Looking For? We are looking for someone with hands-on experience in IT security and information security compliance, along with a solid understanding of relevant regulations and security frameworks. You are structured, analytical, and able to communicate clearly with a wide range of stakeholders. Personal Attributes You are analytical, proactive, and solution-oriented, with high integrity and a structured way of working. You communicate clearly, work well independently, and build strong relationships across technical and non-technical teams. What We Offer At Consilium Safety Group, you will join an innovative international environment where quality and safety come first. This is a high-impact role with opportunities to shape global security initiatives, along with a competitive salary, benefits, and career development. Apply Now Does this sound like your next challenge? Submit your application as soon as possible, as we review applications on a rolling basis. Consilium Safety Group is an equal opportunity employer committed to diversity and inclusion. Ready to learn more about our journey? Hear from our CEO: Philip Isell Lind af Hageby, Consilium, en mästare på turnarounds - Värdeskaparna | En podd om riskkapital av OPX Partners | Podcast on Spotify
Northmill Bank is a challenger bank at the intersection of technology and finance, committed to revolutionizing the way people manage and protect their financial well-being. We are creating a different kind of banking experience, digital yet personal. Northmill Bank was founded in 2006 and have grown to over 240 employees in 3 countries, 4 000 merchants and 600 000 end users. We use the latest technology to develop safe, smart, and user-friendly products for our customers. They are the sole reason why we do what we do. We are a 100% cloud-based product company where technology is the driver to create smarter banking products. Grab this opportunity to be a part of us and our journey! About the role The Information Security Officer is subject matter expert, and a member of the Information Security team in the second line of defense. The team is tasked to provide governance, oversight and guidance, meaning to ICT write policies, and monitor and control first line’s compliance towards these policies. The team also has a number of security capabilities that we provide ourselves, such as technical security scanners or security training activities. While the team’s primary responsibility is governance, oversight, this is a small bank and you will also play a hands-on role in driving security initiatives, designing procedures, and building security capabilities. You will directly influence the secure design of systems, support risk management, and respond to security incidents. Much of information security material needs a significant rewrite, so this role comes with a great opportunity to use prior experience to influence the Bank’s ways of working, risk appetite and ultimately its risk posture. You will have a blank canvas to modernize our security framework, moving us from legacy documentation to a lean, ISO 27001-aligned 'Version 2.0.' This is a rare opportunity to use your experience to directly shape the Bank’s ways of working, risk appetite, and long-term security posture. What you will do Translating information security requirements into practical, effective, and business-aligned policies, procedures, guidelines or strategies. Northmill is both a bank and payment provider in multiple European regions, and also has a number of business requirements affecting information security. Monitor compliance for our internal information security rules and our applicable business and regulatory requirements. DORA, GDPR, PSD2, FFFS, Visa, Swift, Swish, Bankgirot, Rixbanken, etc. Structure information security requirements in the ISMS in alignment with the ISO 27001 standard. Act as an advisor and lead for information, cyber security, or privacy incidents. Serve as a subject matter expert within privacy and data protection Act as subject matter expert in relation to our PCI-DSS certification and conduct readiness assessments towards the business. Keep track of that recurring tasks are performed as needed. Contribute to reporting towards supervisory authorities (e.g. SFSA, IMY, FIN-FSA) Ensure that the organization has relevant security awareness and training in place Lead and participate in Business Impact Analysis, ICT vendor approval, the Register of Information, Critical and Important functions, ICT Risk assessments, Data Protection Impact Assessments, IA-act risk assessments, NPAP, and various GAP analyses. What we are looking for Experience working as an Information Security Officer or in a similar role Hands-on experience in developing policies, procedures, and security frameworks A pragmatic mindset and a strong understanding of how to balance regulatory requirements with business needs Strong problem-solving skills and the ability to operate in a dynamic environment A collaborative approach and willingness to work closely with different parts of the organization Professional proficiency in both Swedish and English (Finnish or German is a plus) Based in Stockholm, with EU/EEA residency or citizenship Certifications such as CISM or ISO 27001 Lead Implementer are meritorious, but not required. What we offer A fantastic office in a prime Stockholm location with great spaces and views An independent role with the opportunity to make a real impact Great opportunities for professional development Health - 5 000 kr health care allowance Conference abroad every other year Breakfast and fruits every day, as well as "holy fika” each Friday Regular after work and celebrated successes at the office Apply today and be a part of Northmill!
Beskrivning Vi söker nu en Information Security Engineer till ett spännande uppdrag inom utveckling av interna IT-system i en verksamhet som befinner sig i stark tillväxt och driver samhällsviktiga projekt. IT har en central roll i organisationens utvecklingsresa och du blir en viktig del av ett team som arbetar med moderna tekniska lösningar för att framtidssäkra verksamheten. Du blir en del av ett korsfunktionellt team där samarbete, nyfikenhet och värdeskapande står i fokus. Rollen passar dig som trivs i en agil miljö med löpande leveranser, gillar ny teknik och vill arbeta i en organisation med stora utvecklingsmöjligheter. Teamet arbetar huvudsakligen på distans och använder digitala verktyg för samarbete, med viss fysisk närvaro vid behov. Arbetsuppgifter I rollen som Information Security Engineer arbetar du nära flera team och verksamhetsområden för att säkerställa att tekniska lösningar uppfyller verksamhetsbehov, säkerhetskrav och regulatoriska krav. Du ansvarar för att analysera säkerhetskrav, tolka regelverk och bidra med vägledning inom informationssäkerhet till teamet. Du kommer att arbeta som kravställare och analytiker i ett mindre agilt team där du bidrar med kunskapsdelning och säkerställer att arbetet drivs framåt i sprintar med fokus på kontinuerliga leveranser. Rollen innebär även arbete med säkerhetsanalys, uppföljning av interna auditprocesser och hantering av tekniska gränssnitt mellan olika system och funktioner. Du kommer även att bidra i utveckling, test och driftrelaterade frågor tillsammans med teamet för att skapa långsiktigt hållbara och säkra lösningar. Kvalifikationer Skallkrav: Relevant utbildning inom IT, informationssäkerhet eller motsvarande arbetslivserfarenhet Erfarenhet av arbete inom informationssäkerhet Kunskap inom Governance och processarbete Erfarenhet av kravställning och kravanalys Kunskap inom ett eller flera säkerhetsramverk/regelverk såsom ISO 27000-serien, GDPR, SOC2, DORA, NIST 800-171 Rev.2 eller NIS2 Erfarenhet av IAM, inklusive roll- och policybaserade behörighetssystem Praktisk erfarenhet av säkerhetstestning, exempelvis MITM eller liknande tester God kommunikativ förmåga på svenska och engelska i tal och skrift Erfarenhet av att arbeta i agila team och sprintbaserade leveranser Möjlighet att genomgå och bli godkänd enligt gällande säkerhetsskyddsbestämmelser Meriterande kvalifikationer: Erfarenhet av systemutveckling Erfarenhet av driftmiljöer Erfarenhet av arbete i regulatoriskt styrda verksamheter Erfarenhet av arbete i globala organisationer Villkor Placeringsort: Linköping, Malmö eller Stockholm Distansarbete: Ja, huvudsakligen remote Resor/närvaro: Viss närvaro på plats vid behov samt gemensamma teamdagar några gånger per år Uppdragsform: Konsultuppdrag Urval sker löpande och tjänsten kan tillsättas innan sista ansökningsdag CV ska bifogas ansökan Om du är redo att ta dig an en roll inom Information Security Engineering och bidra med din kompetens och erfarenhet – tveka inte att skicka in din ansökan. Bifoga CV i din ansökan som tydligt visar att du har den kompetens och erfarenhet som efterfrågas för det aktuella arbetet. Vi rekryterar kontinuerligt och ser fram emot att höra från dig! Notera: Vi hanterar endast ansökningar som skickas in via vår karriärsida. Vänligen registrera din ansökan där för att säkerställa att den tas emot och behandlas korrekt.
Vill du äga och forma informationssäkerhetsarbetet på ett etablerat techbolag – och samtidigt ha en teknisk grund att stå på? Nu söker vi en Information Security Lead / Senior Sysadmin till vårt kontor i Malmö. Hos oss driver du vårt ISO 27001-arbete, sätter säkerhetsstrategin och blir vår nyckelperson inom informationssäkerhet – både för Netset och i nära samverkan med vår koncern, Movement Software. Vi har under 25+ år blivit marknadsledare inom B2B- och B2G-handelsmjukvara för IT- och telekombranschen. Vår flaggskeppsplattform Nettailer driver webbshoppar, inköpsflöden och distributörsintegrationer för över 350 IT-återförsäljare – från svenska SME-bolag till globala företag som ATEA, Advania, Telia och Vivicta. Om rollen Idag har vi en systemadministratör på plats – nu vill vi bygga ett starkare team med ett tydligare säkerhetsfokus. Som Information Security Lead / Senior Sysadmin får du ett helhetsansvar för vår informationssäkerhet, samtidigt som du tillsammans med din kollega ser till att drift och infrastruktur håller högsta nivå. Du arbetar tätt ihop med vårt team i Malmö, men samarbetar också nära koncernens centrala IT- och säkerhetsteam för att driva ISO 27001 och övriga ramverk gemensamt, med Netset som ditt primära fokus. Du behöver vara tekniskt kunnig nog att förstå serverpark, patchning och nätverk på djupet – det är just kombinationen av strategisk höjd och teknisk förståelse som gör att du kan säkra balansen mellan stabil drift och högsta säkerhetsnivå. Dina ansvarsområden inkluderar huvudsakligen: Informationssäkerhet & Compliance: Äga, driva och vidareutveckla ISO 27001-arbetet på Netset samt säkerställa efterlevnad av relevanta ramverk och regelverk (t.ex. NIS2 och GDPR). Säkerhetsstrategi & riskanalys: Ta fram, presentera och förvalta informationssäkerhetsstrategin gentemot ledningsgruppen samt genomföra löpande riskanalyser, säkerhetsgranskningar och internrevisioner. Incident- och sårbarhetshantering: Etablera och förvalta processer för incidenthantering, sårbarhetsanalys och härdning – och vara den som leder arbetet när något händer. Infrastruktur & drift: Tillsammans med vår sysadmin säkerställa drift, prestandaövervakning och backup av servrar hos våra hostingpartners (mestadels Linux-miljöer) där våra kunders lösningar ligger. Processförbättringar: Se över, härda och förbättra drift-, patch- och säkerhetsprocesser så att säkerhet är inbyggt i vardagen – inte ett tillägg. Teknisk rådgivning & arkitektur: Agera eskalationspunkt och säkerhetsrådgivare mot kunders IT-miljöer/leverantörer samt stötta den interna organisationen och utvecklingsteamet i säkerhetsfrågor. Om dig För att må bra, trivas och bli framgångsrik i rollen är din inställning lika viktig som din erfarenhet. Vi söker en självgående, strukturerad lagspelare med ett starkt eget driv och ett genuint engagemang för informationssäkerhet. Du har förmågan att kommunicera komplexa tekniska säkerhetsfrågor på ett pedagogiskt sätt, oavsett om du pratar med våra utvecklare eller med ledningsgruppen. För att lyckas i rollen ser vi att du har: Erfarenhet av att leda eller aktivt driva ISO 27001-arbete (certifiering, internrevision eller motsvarande). God kännedom om relevanta ramverk och regelverk inom informationssäkerhet, t.ex. NIS2 och GDPR. Erfarenhet av riskanalys, sårbarhetshantering, patchhantering och härdning av servrar. Gedigen erfarenhet av IT-drift i Linux-miljöer (routing, brandväggar, VPN, nätverkssäkerhet). Praktisk erfarenhet av Docker och containerbaserade arbetsflöden. God förståelse för MS SQL (databashantering och prestandaövervakning). Det är meriterande om du har kunskap inom: SIEM, loggning och incidenthantering. Skriptning och automation (Bash, Ansible). Molnsäkerhet och molntjänster (AWS, Azure, Google Cloud). Virtualisering (VMware/KVM), Kubernetes, Tomcat eller Apache/Nginx. Låter det intressant? Låter det här som ett team, en arbetsmiljö och kultur du skulle kunna trivas i – då vill vi gärna höra mer från dig! Sök jobbet, connecta med oss eller dela detta med någon du tror skulle passa in. Har du frågor om tjänsten, teamet eller företaget hör du av dig till Linnea Olsson, People Business Partner på Movement Software. En del av Movement Software Netset är en del av Movement Software – en nordisk mjukvarukoncern med ett tjugotal entreprenörsdrivna bolag inom branscherna fordon, transport & logistik samt integrerad e-handel. Vi drivs av teknisk innovation, med kravet att kundnyttan alltid står i centrum. Sedan 2023 är Movement Software en del av Axcel, ett nordiskt riskkapitalbolag med stort intresse för tech-sektorn. Att vara en del av Movement Software innebär ökade möjligheter för utveckling både för oss som företag och för dig som anställd, och samtidigt större trygghet. Är du som oss, tror vi att du vill känna meningsfullhet på jobbet – och vara med om att göra Netset till ett ännu bättre och roligare ställe att jobba på. För roligt är viktigt – jobbet är en för stor del av livet för att inte ha kul!
Av Umeåborna, för Umeåborna. Vi är ett energi- och kommunikationsbolag som ägs av Umeå kommun och alla som bor här. Med trygga och tillgängliga lösningar ser vi till att ett växande Umeå alltid är uppvärmt, upplyst och uppkopplat. Genom att sprida kunskap, driva samhällsprojekt och stötta ett levande föreningsliv är vi med och formar framtiden. Vi står inför ökade krav kopplat till robusthet, cybersäkerhet och regulatorisk utveckling, vilket gör att du får möjlighet att påverka både struktur, arbetssätt och strategisk riktning. Vill du vara med och stärka informationssäkerheten i en samhällsviktig verksamhet? Som Informationssäkerhetssamordnare får du möjlighet att påverka, skapa struktur och driva utveckling samtidigt som du fungerar som ett stöd till verksamheten. Genom ett nära samarbete med chefer, ledning och medarbetare bidrar du till att informationssäkerhet blir en naturlig del av hur vi arbetar och utvecklas. Din roll i vårt team Du har du en central roll i att driva och vidareutveckla Umeå Energis systematiska informationssäkerhetsarbete. Du arbetar konsultativt tillsammans med chefer, verksamhetsansvariga och specialister för att omsätta krav, risker och regelverk till praktiska lösningar som skapar värde i verksamheten. För att trivas hos oss tror vi att du är en person som gillar att skapa struktur i komplexa frågor, bygger förtroendefulla relationer och har förmåga att få andra att förstå värdet av informationssäkerhet. Du kommer bland annat att: Utveckla och följa upp riktlinjer, processer och arbetssätt för informationssäkerhet. Stötta verksamheten inom informationsklassning, riskanalyser och säkerhetsbedömningar. Vara ett strategiskt stöd till ledning och verksamhet i frågor som rör informationssäkerhet, risk och regelefterlevnad. Bidra till att öka kunskap och bygga en stark säkerhetskultur i organisationen. Följa utvecklingen inom lagstiftning, standarder och regulatoriska krav. Du arbetar nära ledningen och verksamheten i en roll med stor påverkan på bolagets strategiska utveckling. Du kommer att arbeta i bolagets säkerhetsfunktion och ingå i vårt informationssäkerhetsteam. För att lyckas i rollen behöver du: Relevant akademisk utbildning inom exempelvis inriktning mot informationssäkerhet, IT-säkerhet, juridik eller verksamhetsutveckling eller motsvarande erfarenhet. Flerårig erfarenhet av informationssäkerhetsarbete och dataskydd. Goda kunskaper om relevanta lagar, regelverk och standarder, exempelvis NIS2, säkerhetsskyddslagstiftning, offentlighets- och sekretesslagen, GDPR Erfarenhet av riskarbete, informationsklassning och säkerhetsstyrning. God förmåga att kommunicera med såväl verksamhet som ledning. Det är ett plus om du också: Erfarenhet av att leda och samordna arbete kopplat till NIS2/Cybersäkerhetslagen, ISO 27001 eller motsvarande ramverk. Teknisk förståelse eller kunskap inom cybersäkerhetsområdet Erfarenhet av säkerhetsfrågor kopplade till upphandling eller leverantörskedjor Erfarenhet av arbete i samhällsviktig verksamhet, energibransch eller offentlig sektor Erfarenhet av förändringsledning eller utbildningsinsatser inom informationssäkerhetsområdet Hos oss får du mer än ett jobb Som medarbetare är du en viktig del av helheten. Tillsammans skapar vi en arbetsplats där vi trivs, känner oss trygga och får möjlighet att utvecklas. En arbetsplats där vi bryr oss om varandra och om Umeåborna Möjlighet att utvecklas och göra skillnad - på riktigt Förmåner som gör vardagen lite enklare Läs mer om hur det är att arbeta hos oss på jobb.umeaenergi.se Ansök senast 2026-08-16 Har du frågor? Hör av dig till rekryterande chef Malin Arvidsson, 077-533 21 17 Som samhällsviktig verksamhet är det viktigt för oss med en trygg arbetsmiljö för våra medarbetare samt att våra tillgångar och information är skyddade. Som ett led i vårt systematiska säkerhetsarbete genomför vi därför en bakgrundskontroll på slutkandidaten för den här tjänsten. Några av våra roller kräver säkerhetsprövning, om det är aktuellt för tjänsten du sökt så kommer du att få mer information kring det i ett senare skede. Vi ser fram emot att höra från dig! Välkommen till oss! Reklam? Nej tack. Vi har valt partner för rekryteringsannonsering.
Sida 1 av 22