Risk Manager – Information Security

1 week ago


Stockholm, Stockholm, Sweden Extenda Retail AB Full time

Imagine something you can do today that you couldn't do in the past – like paying for groceries without opening your wallet. Extenda Retail is a Market -leading company with extensive retail and logistics knowledge. Our innovations touch everyday lives. Join a company that simplifies shopping and inspires retailers and logistics businesses to go further.

We are looking for you, a confident leader with a passion for security and privacy to join our IT & IS team as our new Risk Manager - Information Security. We believe you are an excellent communicator and that you have a passion for thought leadership, guiding an organization within your field of expertise and have an ability to present your plans in a convincing way. You will fit into this position if you are seriously concerned over how data of organizations and individuals can be protected in the increasingly digital world.

As an InfoSec Risk Manager at Extenda Retail you will operationalise the Extenda Retail Risk Management, Privacy and Information Security Policies which outlines our high level ambitions around GRC with a particular focus on InfoSec (ISMS based on ISO/IEC 27001), Privacy (GDPR) and Corporate IT Governance. The scope of this role entails all business operations and products areas of Extenda Retail, including our SaaS products and services that we deliver to our clients.

Key responsibilities of the role:

  • Define, operationalise and implement key aspects of the Extenda Retail Policy & Procedures framework; to mature our Risk Management practises and the ISO/IEC 27001 based ISMS.
  • Oversee and conduct security risk assessments, including periodically reviewing results of security assessments and other security-related activities to ensure compliance with regulatory mandates, corporate security policies and frameworks and adherence to best practices.
  • Frequently communicate and work with various teams, including business, IT, cross-functional groups, key stakeholders, business development, client solutions, and engineering teams.
  • Make sure that our products follow compliance rules, help with data privacy, and support the use of security technologies and application safety during development and maintenance.
  • Provide reporting material for senior management and the board of directors to facilitate risk based decision making.
  • Engage with our Client Success & Product organization to assist in security audits, solution delivery audits/assessments, product security and solution security.
  • Supplier governance and to oversee and conduct 3rd party risk assessments
  • Establish and ensure close collaboration with our IT teams and our Legal function.

We Offer You

We believe that your success is our success. That's why we care for you, love that you are innovative and trust that you will succeed. Here are some of the perks we offer you:

  • We want you to feel safe and focus on what makes you thrive, that's why we offer you strategic training in leadership, flexibility, solid insurance, and health initiatives.
  • We want you to find room for your innovative ideas and will support you to reach your potential. For that, you will have a plan and support for your development.
  • We want you to trust yourself, feel excited to lead yourself and deliver with quality. That's why we promote a balance between work and life, and a feedback culture where you dare to question and push for your ideas.

Required Skills and Experience

  • At least 5 years of work experience in a similar position.
  • Bachelor's degree in a relevant field (e.g., Information Security, Cybersecurity, Risk Management) or equivalent work experience.
  • In depth expertise and experience of relevant industry regulations and compliance standards (e.g. ISO27001, NIS/NIS2, GDPR).
  • Familiarity with control and security techniques involving password and access management, logging and monitoring, data encryption, data backup and recovery, supplier management, business continuity disaster recovery management, etc.
  • Proficiency of the English language.

Nice To Have

  • Experience with agile project management and process improvement methodologies.
  • Relevant experience in conducting audits.
  • Knowledge of legal and regulatory requirements related to data protection and privacy.
  • Familiarity with network infrastructure such as VPNs, firewalls, switches, routers, LANs, Intrusion Detection, and vulnerability scanning.

Getting an idea of our current tech stack

You will have the opportunity to work with a wide range of vendors. As a heavy adopter of cloud we have solutions in both Google GCP, Azure and AWS. In our corporate tech stack you will also find G-suite, MS SQL/SSIS/Power BI, Salesforce CRM (sales cloud, experience coud, pardot etc.), Dynamics Business Central, Atlassian suite (Jira/Confluence), Slack etc. Our Hii Retail product is built in native Google Cloud.

  • Continue developing a comprehensive set of retail services
  • Google's complete catalogue of modular cloud
  • Collaboration with Google Cloud to run its next generation of cloud-native retail
Together, we change and improve the way retail works

Become part of a market-leading company on a journey to build a world-class team, and develop yourself professionally in the exciting, ever-evolving retail technology industry.

#J-18808-Ljbffr

  • Stockholm, Stockholm, Sweden Epiroc Full time

    Epiroc is a leading productivity partner for the mining, infrastructure and natural resources industries. With cutting-edge technology, Epiroc develops and produces innovative drill rigs, rock excavation and construction equipment, and provides world-class service and consumables. The company was founded in Stockholm, Sweden, and has passionate people...


  • Stockholm, Stockholm, Sweden Hamlyn Williams Full time

    Our client is a Cyber Security Consultancy is undergoing massive growth and they are looking for a number of Information Security Officers / Consultants (Medior & Senior) to join their team in StockholmJob DescriptionDocumenting and managing risks related to IT systems and compliance with internal and external requirementsPerform both consulting, advisory...


  • Stockholm, Stockholm, Sweden Cambio Full time

    Cambio is one of the Nordics' leading suppliers in e-health with a comprehensive offering for the entire health and care chain.Our e-health solutions support healthcare professionals in their daily work and offer patients safer and more easily accessible care.We are proud to be an important part of Swedish healthcare.We are growing continuously and now have...


  • Stockholm, Stockholm, Sweden TRUESEC AB Full time

    Do you want to be at the forefront of protecting our society against cyber threats? We are looking for an Information Security Officerto team up with the most dedicated team of cyber specialists.About Truesec – A Leading Cybersecurity CompanySince 2005, Truesec has been a native cybersecurity company, driven by one single purpose: Creating safety and...


  • Stockholm, Stockholm, Sweden Wolt Development Sverige AB Full time

    Wolt is looking to expand its Security team by hiring an Information Security Specialist to help us build an even more secure Wolt Perhaps we could do that with your help? You'll be joining Wolt's security team's Governance, Risk and Compliance (GRC) focus area, developing our information security management system to the next level. At Wolt we believe that...

  • Risk Manager

    1 week ago


    Stockholm, Stockholm, Sweden Extenda Retail Full time

    Imagine something you can do today that you couldn't do in the past – like paying for groceries without opening your wallet. Extenda Retail is a Market -leading company with extensive retail and logistics knowledge. Our innovations touch everyday lives. Join a company that simplifies shopping and inspires retailers and logistics businesses to go further.We...


  • Stockholm, Stockholm, Sweden Wolt Full time

    Job DescriptionWolt is seeking to expand its Security team by hiring an Information Security Specialist to help enhance the security measures at Wolt. You'll join Wolt's security team's Governance, Risk, and Compliance (GRC) focus area. Your role involves developing the information security management system to a higher standard. At Wolt, we believe in...

  • Risk Manager

    1 week ago


    Stockholm, Stockholm, Sweden FCG Risk & Compliance Oy Full time

    Om jobbet Vi sökerenmedarbetareinom Risktill vårt affärsområdet Försäkring. Är du en person erfaren av att arbete med riskså erbjuder vi stora möjligheter att utvecklas vidare i din roll som konsult hos oss. AffärsområdetFörsäkring arbetar utifrån sex konceptuella nischer, varav Risk är ett konceptområdevilketutgörs av 5 konsulter på olika...


  • Stockholm, Stockholm, Sweden Bambuser AB Full time

    Ready for a new adventure building the next-generation retail experience?Bambuser is a leading company in live video streaming with a passion for innovation and technology. We strive to deliver top-notch solutions that revolutionize how businesses and consumers interact. With our headquarters in the heart of Stockholm, we offer a dynamic and creative work...


  • Stockholm, Stockholm, Sweden TUI Cruises GmbH Full time

    As a Group Security Operations Manager (SOM) you will be accountable and responsible for the Security Management System across the group relating to your area of responsibility, as well as being regional single points of contacts for geographical sections of the globe 'Divide the World'. Whilst having a specialism, you will also need to have a broad...


  • Stockholm, Stockholm, Sweden TUI AG Full time

    Security Operations Manager - Destinations Location: Rijswijk, NL, 2288 GC Workplace: Hybrid Type of contract: Permanent Working time: 37.5 Job ID: As a Group Security Operations Manager (SOM) you will be accountable and responsible for the Security Management System across the group relating to your area of responsibility, as well as being regional...


  • Stockholm, Stockholm, Sweden FCG Risk & Compliance Oy Full time

    Advisense Risk & Finance has been redefining the finance industry since 2008 and continues to grow. We are building a market-leading GRC (governance, risk, and compliance) practice in Europe and strive to be the best place to work for GRC experts. As a Quantitative Risk Consultant,you will work independently and in a team supporting our clients in the...


  • Stockholm, Stockholm, Sweden Keolis Full time

    Om rollen Keolis Sverige AB söker nu efter en Information Security Manager som vill vara med och arbeta brett med säkerhet i hela organisationen, då området påverkar samtliga nivåer i bolaget. Vi söker dig som är intresserad av att arbeta med information- och cybersäkerhet på en strategisk och operativ nivå, och som vill spela en viktig roll i...


  • Stockholm, Stockholm, Sweden Nordea Bank Full time

    Job ID: 24925 Would you like to help the bank manage Technology risks? We are now looking for a Technology Risk Manager to coordinate and drive risk and compliance activities within the Domain.At Nordea, we see that the world is changing fast – and we want to be one step ahead of the curve. That's why we're deeply committed to providing the financial...


  • Stockholm, Stockholm, Sweden FCG Risk & Compliance Oy Full time

    About Algorithmica:Algorithmica, an Advisense company since 2020, is a software and services business delivering quantitative analytics, risk and data management solutions to the financial services industry. With major financial institutions as clients across Europe and the UK, Algorithmica is an established and well-respected player in its...


  • Stockholm, Stockholm, Sweden Nordea Bank Full time

    Job ID: 24506 Would you like to help the bank manage Technology risks? We are now looking for a Technology Risk Manager to coordinate and drive risk & compliance activities within the Domain. At Nordea, we're committed to being a partner our customers and society can count on. Compliance and integrity go hand in hand. Joining us means you'll have an...

  • Security Officer

    1 week ago


    Stockholm, Stockholm, Sweden Orange Business Services Full time

    Orange Cyberdefense is on a mission to build a safer digital society. We are looking for you who wants to make a difference and appreciates working in an organization encouraging innovation and a self-driven mindset. How we work As our Security Officer you will hold a very important role in supporting the whole organization within information security,...


  • Stockholm, Stockholm, Sweden Headquarter Stockholm - Strawberry Full time

    We are Strawberry. With over 225 hotels, 120 restaurants, 20 spas and more, we create thousands of experiences every day. With urban Comfort Hotel, warm Quality HotelTM, stylish Clarion Hotel and cosy Clarion Collection Hotel and more than 40 unique independent hotels, our guests can pick and choose. Our team of passionate individuals from more than 120...


  • Stockholm, Stockholm, Sweden H&M Full time

    Job DescriptionThis is a unique opportunity to lead one of our Global Engineering teams, focused on Security Controls and drive our delivery and services portfolio for cloud security controls, data protection and other security controls throughout the whole H&M Group and all our brands. You will report to the Head of Cyber Security Engineering Unit. We are...


  • Stockholm, Stockholm, Sweden H&M Group Full time

    Job Description This is a unique opportunity to lead one of our Global Engineering teams, focused on Security Controls and drive our delivery and services portfolio for cloud security controls, data protection and other security controls throughout the whole H&M Group and all our brands. You will report to the Head of Cyber Security Engineering Unit. ...