Head of Group IT Security/CISO for Confirma Software

3 days ago


Solna Municipality, Sweden DL Software Oy Full time

Confirma Software is a new Nordic platform acquiring strong enterprise software companies with specialized offerings for SME customers and public sector. The group currently consists of 25 acquired companies. We anticipate continued growth, through acquisition, of 3-6 companies on an annual basis.

Confirma Software is backed by Abry Partners, a private equity fund based in Boston, MA.

Founded in 2019

Co-workers 520+

Turnover 100 M€

Role Description

This is an opportunity to join a quickly growing dynamic organization in the early stages of development into a pan-Nordic powerhouse in enterprise software.

We are looking for a person who is part of a current CISO, IT or IT security team in an organization but feels it's time to start your own journey as a Head of Group IT Security in an organization that is growing rapidly by acquisitions.

The Head of Group IT Security will be responsible for establishing and maintaining the enterprise-wide security strategy, managing security risks, ensuring compliance with industry regulations, and leading the development of security architectures for a complex landscape that spans software solutions, payment systems, IoT/OT, and SaaS platforms. The individual will be a hands-on leader who can effectively communicate with senior management while empowering and guiding teams across multiple subsidiaries to enhance the organization's cybersecurity posture.

Confirma Software is on a rapid growth journey and this is a corporate role. As a candidate, you will have to be flexible and adapt to the different situations as they arise.

This is a full-time role. We expect the successful candidate to be located in Sweden, Norway, Denmark, or Finland. As the group has operating companies in many locations within the Nordic region, the specific location in the Nordics is of lesser importance but travel within the region will be necessary.

Key Responsibilities

Risk Management & Governance

  1. Oversee the identification, assessment, and prioritization of cybersecurity risks, implementing risk management strategies across business units.
  2. Ensure compliance with relevant industry standards and frameworks, including NIST Cybersecurity Framework (CSF), ISO 27001/27002, CIS Controls, and PCI/DSS, as applicable to different parts of the business.
  3. Lead security governance efforts, ensuring that relevant policies, processes, and procedures are in place and followed throughout the organization.

Compliance & Regulatory Oversight

  1. Together with each business, ensure adherence to relevant regulations (GDPR, PCI/DSS, etc.), maintaining secure and compliant operations in debt collection, payment solutions, and public sector software.
  2. Oversee data privacy and protection efforts, especially in businesses involving sensitive customer and financial data.
  3. Conduct regular audits and assessments to ensure compliance with internal and external standards.

Security Architecture & Technology

  1. Develop and maintain the security architecture for IT systems, IoT/OT environments, SaaS platforms, and software solutions.
  2. Oversee the implementation of cybersecurity technologies such as firewalls, SIEM, encryption, IAM, endpoint protection, and secure development practices.
  3. Provide technical guidance to development teams, ensuring DevSecOps and secure coding practices are adhered to.

Incident Response & Threat Management

  1. Lead, mentor, and develop cybersecurity teams within the various companies, ensuring that they are equipped with the latest skills and knowledge.
  2. Foster a culture of cybersecurity awareness across the organization through training programs, security drills, and awareness campaigns.
  3. Drive a collaborative security environment, empowering team members to lead security initiatives while providing strategic guidance and oversight.

Key Qualifications

Experience

  1. 8+ years of experience in IT and information security, with at least 4 years in a leadership role (CISO, deputy CISO or team lead).
  2. Experience in leading security efforts in diverse environments, including software development and SaaS. Experience also with IoT/OT and payment systems is an advantage.
  3. Proven track record of implementing security strategies across multiple subsidiaries or companies with varying business models.
  4. Strong knowledge and experience with security operations, risk management, incident response, and security architecture.
  5. It is an advantage if you have knowledge or experience from the financial sector.
  6. It is an advantage if you have experience from enterprise IT architecture.

Certifications

  1. Professional certifications such as CISSP, CISM, CISA, or CRISC are desired.
  2. Certifications specific to compliance and governance frameworks (e.g., ISO 27001 Lead Auditor, PCI/DSS QSA) are highly preferred.

Standards and Frameworks

  1. In-depth knowledge of NIST Cybersecurity Framework (CSF), ISO 27001/27002, CIS Controls, and PCI/DSS standards.
  2. Experience in aligning security programs with legal and regulatory requirements (GDPR, CCPA, etc.).

Technical Knowledge

  1. Hands-on experience with security technologies such as SIEM, firewalls, encryption, IAM, and endpoint protection.
  2. Strong understanding of DevSecOps practices and secure coding methodologies.
  3. Familiarity with the security challenges related to IoT/OT systems, including securing embedded systems and industrial networks.

Leadership and Communication Skills

  1. Proven leadership abilities to manage cross-functional security teams and drive change across the organization.
  2. Strong communication skills, with the ability to convey complex security concepts to non-technical stakeholders, including senior management and board members.
  3. A collaborative leader with the ability to influence and lead through others, fostering teamwork across distributed teams.

Personal Attributes

  1. Hands-On Leadership: Able to roll up sleeves and directly contribute to security operations while guiding teams in our operating companies.
  2. Strategic Thinker: Capable of aligning cybersecurity initiatives with the broader business strategy, managing risks without hindering innovation.
  3. Proactive Problem Solver: Able to anticipate security challenges and proactively implement solutions.
  4. Collaborative and Adaptable: Able to work across our operating companies with differing needs, fostering a security-first culture.
  5. Language: Fluent ability to communicate verbally and in writing in English is required.
#J-18808-Ljbffr

  • Solna Municipality, Sweden DL Software Oy Full time

    We are looking for a seasoned cybersecurity expert to join our team as the Head of Enterprise Cybersecurity. In this role, you will be responsible for developing and implementing an enterprise-wide security strategy that addresses the complex security needs of our diverse business landscape.The ideal candidate will have a strong background in IT and...


  • Solna Municipality, Sweden DL Software Oy Full time

    We operate in a highly competitive market where security threats are becoming increasingly sophisticated. As the Head of Enterprise Cybersecurity, you will play a critical role in protecting our digital assets and reputation by developing and implementing an enterprise-wide security strategy that addresses the complex security needs of our diverse business...


  • Solna Municipality, Sweden DL Software Oy Full time

    Demanding growth and innovation require robust security measures to protect our digital assets and reputation. As the Head of Enterprise Cybersecurity, you will be instrumental in developing and implementing an enterprise-wide security strategy that addresses the complex security needs of our diverse business landscape.We operate in a dynamic and fast-paced...


  • Solna Municipality, Sweden DL Software Oy Full time

    DL Software Oy is a rapidly growing technology company acquiring strong software companies with specialized offerings for SME customers and public sector. The group currently consists of 25 acquired companies, each with its own unique culture and technical landscape.We are seeking a seasoned cybersecurity expert to join our team as the Head of Enterprise...

  • Head of Security

    7 days ago


    Solna Municipality, Sweden NCC Industry AB Full time

    Vill du vara en del av vår driftiga och ambitiösa organisation? Sök nu efter rollen som Head of Security - NCC, där du blir en nyckelperson i att säkra vår verksamhet.I rollen som Head of Security på NCC Industry AB, ansvarar du för det övergripande ansvaret för säkerhetsfunktionen inom företaget. Du kommer att ha nära samarbete med...

  • Head of IT

    2 weeks ago


    Solna Municipality, Sweden Cabonline Group AB Full time

    Company DescriptionAt Cabonline, we are at the forefront of the taxi industry in the Nordic region, revolutionizing the way transporters operate. Our comprehensive platform optimizes booking, dispatch, and payment processes, allowing our partners to excel in service delivery.Catering to a broad spectrum of customers, including B2C, B2B, and B2P, we are...

  • Head of IT

    2 weeks ago


    Solna Municipality, Sweden Cabonline Group AB Full time

    Company DescriptionAt Cabonline, we are at the forefront of the taxi industry in the Nordic region, revolutionizing the way transporters operate. Our comprehensive platform optimizes booking, dispatch, and payment processes, allowing our partners to excel in service delivery.Catering to a broad spectrum of customers, including B2C, B2B, and B2P, we are...

  • Head of IT

    2 weeks ago


    Solna Municipality, Sweden Cabonline Group AB - Solna Full time

    UtbildningKravEftergymnasial utbildning två år eller längre inom DataCompany DescriptionAt Cabonline, we are at the forefront of the taxi industry in the Nordic region, revolutionizing the way transporters operate. Our comprehensive platform optimizes booking, dispatch, and payment processes, allowing our partners to excel in service delivery.Catering to...


  • Solna Municipality, Sweden NCC Industry AB - Solna Full time

    Sista ansökningsdag Sun Apr 06 2025 21:59:59 GMT+0000 (GMT)NCC söker Head of SecurityKorta fakta om jobbetVaraktighet: Tills vidareAnställningsform: Tillsvidare- eller tidsbegränsad anställningKvalifikationerMeriterandeSäkerhetschef - 5 års erfarenhet eller merNCC söker Head of Security till Business Area Industry.I rollen som Head of Security till...


  • Solna Municipality, Sweden Signpost AB Full time

    NCC söker Head of Security till Business Area Industry.I rollen som Head of Security till Business Area Industry som kommer att ha det övergripande ansvaret för säkerhetsfunktionen inom NCC:s affärsområde, Industry.Du rapporterar till Head of Finance and Strategy Business Area Industry samt en streckad rapporteringslinje till Head of Security för NCC...


  • Solna Municipality, Sweden NCC Industry AB Full time

    NCC söker Head of Security till Business Area Industry.I rollen som Head of Security till Business Area Industry kommer du att ha det övergripande ansvaret för säkerhetsfunktionen inom NCC:s affärsområde, Industry.Du rapporterar till Head of Finance and Strategy Business Area Industry samt har en streckad rapporteringslinje till Head of Security för...


  • Järfälla Municipality, Sweden SAAB Full time

    Competing in the international market requires a strong global presence. We continue to strengthen our presence in key markets, develop innovative solutions and acquire companies in prioritized areas. Saab's products are sold to over 100 countries and we currently operate in over 30 countries.Deputy Head of Security to Saab BA SurveillanceDo you want to take...

  • Head of IT

    1 week ago


    Solna Municipality, Sweden Cabonline Full time

    Company DescriptionAt Cabonline, we are at the forefront of the taxi industry in the Nordic region, revolutionizing the way transporters operate. Our comprehensive platform optimizes booking, dispatch, and payment processes, allowing our partners to excel in service delivery.Catering to a broad spectrum of customers, including B2C, B2B, and B2P, we are...


  • Järfälla Municipality, Sweden SAAB Full time

    About the PositionWe are seeking a highly skilled Head of Security and Compliance to join our team at Saab Surveillance. In this role, you will work closely with cross-functional teams to develop and implement security policies and procedures that align with Saab's global standards.You will be responsible for ensuring compliance with relevant laws,...


  • Lidingö Municipality, Sweden Polarium Full time

    We're on a journey to change the way the world uses energy and accelerate the transition to renewable energy through our market-leading energy storage systems. We operate in nearly every continent, and the cornerstone for our company's rapid growth is making products that matter for society. In our international team, you'll have a key responsibility to...


  • Solna Municipality, Sweden Tieto Denmark AS Full time

    Head of Education, Software Product UnitTietoevry is a leading digital services and software product company, dedicated to creating digital advantage for businesses and society. With a global presence and Nordic values, Tietoevry serves enterprises and public sector customers in over 90 countries.The Education Software Product Unit vision is to simplify...

  • Head of Security

    1 day ago


    Solna Municipality, Sweden NCC Industry AB Full time

    I rollen som Head of Security för Business Area Industry kommer du att ha ansvar för att driva och utveckla säkerhetsarbete inom NCC:s industrio-branch.Du kommer att arbeta nära affärsområdets ledning för att säkerställa att kundkrav och förväntningar uppfylls, samtidigt som du genererar goda affärer. Ditt arbete kommer även att inkludera att...


  • Nacka Municipality, Sweden Epiroc Group Full time

    Information Security SpecialistFunctional area: OtherOnsite or Remote: HybridPrimary Skills: Critical Thinking, Problem-solving, Bias to ActionCountry/Region: SELocation: Nacka, Stockholm County, SE, 131Company name: Epiroc ABDate of posting: Mar 13, 2025Epiroc is seeking a driven and analytical Information Security Specialist. The function of this role is...


  • Partille Municipality, Sweden Karriärguiden Group Sweden AB Full time

    Vi söker för kunds räkning. För att ansöka till tjänsten, vänligen besök https://karriarguiden.se/sv/jobb/iam-solution-architect-to-husqvarna-group. Vi ser fram emot din ansökanAs an IAM Solution Architect, you'll play a key part in shaping Husqvarna Group's identity and access management (IAM) landscape – an opportunity to make a real difference,...


  • Solna Municipality, Sweden SAS Cargo Group AS Full time

    IT Security for Cloud EnvironmentsWe are seeking a highly skilled IT Security Professional for Cloud Environments to join our team at SAS. As a key member of our Cloud Platform Team, you will be responsible for designing and implementing effective security solutions to protect our cloud infrastructure and applications.You will work closely with product teams...