Northmill Bank is a challenger bank at the intersection of technology and finance, committed to revolutionizing the way people
manage and protect their financial well-being. We are creating a different kind of banking experience, digital yet personal.
Northmill Bank was founded in 2006 and have grown to over 240 employees in 3 countries and over 270 000 customers. We use the
latest technology to develop safe, smart, and user-friendly products for our customers. They are the sole reason why we do what we
do. We are a 100% cloud-based product company where technology is the driver to create smarter banking products.
Grab this opportunity to be a part of us and our journey!
About the role
The Information Security Officer is subject matter expert, and a member of the Information Security team in the second line of
defense. The team is tasked to provide governance, oversight and guidance, meaning to ICT write policies, and monitor and control
first line’s compliance towards these policies. The team also has a number of security capabilities that we provide ourselves,
such as technical security scanners or security training activities.
While the team’s primary responsibility is governance, oversight, this is a small bank and you will also play a hands-on role in
driving security initiatives, designing procedures, and building security capabilities. You will directly influence the secure
design of systems, support risk management, and respond to security incidents.
You will have a blank canvas to modernize our security framework, moving us from legacy documentation to a lean, ISO 27001-aligned
'Version 2.0.' This is a rare opportunity to use your experience to directly shape the Bank’s ways of working, risk appetite, and
long-term security posture.
What you will do
or strategies. Northmill is both a bank and payment provider in multiple European regions, and also has a number of business
requirements affecting information security.
GDPR, PSD2, FFFS, Visa, Swift, Swish, Bankgirot, Rixbanken, etc.
Keep track of that recurring tasks are performed as needed.
functions, ICT Risk assessments, Data Protection Impact Assessments, IA-act risk assessments, NPAP, and various GAP analyses.
What we are looking for
Certifications such as CISM or ISO 27001 Lead Implementer are meritorious, but not required.
What we offer
Apply today and be a part of Northmill!
Se alla lediga jobb, rekryteringshistorik & bolagsfakta, eller bevaka nya tjänster.
Fler lediga tjänster som liknar denna i och runt Stockholm