Detection Engineer, insider threat program

4 weeks ago


Stockholm, Sweden Swedbank AB Full time

Do you have a passion for Cyber Security and uncovering innovative detection capabilities. In Swedbank you have the opportunity to: - Help protect our people, data, and customers. As part of the Insider Threat Program in Swedbank’s Cyber Defence Center (CDC), you’ll turn insight into practical detections that make a real difference. - Research new techniques and turn them into safe, privacy-aware analytics. - Collaborate with cyber, fraud, and HR teams to build meaningful, privacy-conscious detections. What is needed in this role: - You’re a connector between threat intelligence, threat hunting, and incident response—turning insights into robust, automated detections. You enjoy collaborative problem-solving and working across disciplines. Required qualifications: - 3+ years in operational cyber security roles such as SOC, Incident Response, Red Team. - Understanding of SIEM/SOAR and use-case development. - Strong collaboration and communication with technical and non-technical stakeholders. - Excellent written and spoken Swedish - Excellent written and spoken English. - Bachelor’s in CS/InfoSec or equivalent professional experience. Preferred qualifications: - Familiarity with MITRE ATT&CK and attacker TTPs. - Hands-on with Microsoft Defender, Purview, Sentinel and KQL (or similar). - Experience with Insider Threat, UEBA, or DLP. - Integrating diverse log sources (HR systems, file activity, collaboration tools). - Analytical, detail-oriented, and proactive problem solver. We encourage you to apply even if you don’t meet every single bullet. Studies show many talented people—especially women—self-select out. If this role excites you, we want to hear from you. With us, you can experience: - Personal and professional growth through self-leadership and continuous development. - Meaningful work that positively impacts our workplace, our customers, and society. - An open and collaborative culture that encourages cross-functional teamwork and provides networking opportunities. - A supportive and inclusive environment that promotes a balanced and sustainable work-life, with flexible working conditions when suitable for the role. - Benefits such as our share based reward program Eken, company pension plan, employee offer for banking products, health insurance. "Join our team and... Become part of a collaborative team of cyber security professionals, who work together to protect the bank agains cyber threats and contribute to Swedbank’s position in society” Robert Jonsson, your future manager We look forward to receiving your application by 01.12.2025. Location: Sundbyberg Recruiting manager: Robert Jonsson We may start the selection during the application period and welcome your application as soon as possible. We have made our choice regarding recruitment media and therefore kindly decline contact with ad sellers or sellers of other recruitment services. Swedbank does not discriminate anybody based on gender, age, sexual orientation or sexual identity, ethnicity, religion or disability – everybody is welcome. #LI-MA1 #LI-Hybrid



  • Stockholm, Stockholm, Sweden Canonical - Jobs Full time 120,000 - 180,000 per year

    The Threat Intelligence Lead will own Canonical's threat intelligence strategy and execution, including understanding of which cyber threat actors are targeting Canonical, and the use of intelligence on Tactics, Techniques and Procedures (TTP) to better our products and internal cybersecurity controls. You will collaborate with internal stakeholders as well...

  • DevSecOps Engineer

    4 days ago


    Stockholm, Sweden Stillfront Group AB (publ) Full time

    Join our growing Security Engineering team as a DevSecOps Engineer, where you'll take ownership of security tooling, automation, and infrastructure hardening, not just for the Stillfront Group, but also helping our 20+ game studios across the world. In this role, you won’t just shift left - you’ll sit at the heart of security operations, helping to...

  • DevSecOps Engineer

    3 days ago


    Greater Stockholm Metropolitan Area, Sweden Stillfront Full time 80,000 - 120,000 per year

    Stillfront Groupis a global games company founded in 2010. We develop digital games for a diverse gaming audience and our broad games portfolio is enjoyed by almost 70 million people every month. Stillfront is focused on realizing synergies by connecting and empowering game teams globally through our Stillops platform. We are a fast-growing company and an...


  • Stockholm, Stockholm, Sweden AquaGuard Technologies AB Full time 900,000 - 1,200,000 per year

    Summary (Role Overview):AquaGuard Technologies is seeking an Applied EO/AI Engineer (AI/ML + Geospatial Analysis) to help develop our Trident GEOINT platform — a dual-use maritime and environmental intelligence system that fuses satellite, aerial and AI analytics.The platform focuses on automated detection and classification of ADVs (Abandoned, Derelict...


  • Stockholm, Stockholm, Sweden Lovable Full time 90,000 - 120,000 per year

    TL;DR We are seeking an Application Security Engineer to champion security across our entire development lifecycle. You'll play a pivotal role in reviewing code, designing secure features, and mentoring engineers, ensuring security is at the heart of everything we build. If you're passionate about application security, thrive on close collaboration with...

  • Founding Engineer

    3 days ago


    Stockholm, Stockholm, Sweden CYBRET AI Full time 900,000 - 1,200,000 per year

    Founding Engineer Profiles1.AI Engineer (LLMs / GenAI / Security AI / Infra)Focus:Build the intelligence layer and own everything from model selection to inference infrastructure.Skills:Deep experience with LLM frameworks (LangChain, LlamaIndex, Azure or OpenAI SDKs).Fine-tuning, RAG, embeddings, and retrieval pipelines.Scalable deployment, including...


  • Stockholm, Stockholm, Sweden Bankgirot Full time 900,000 - 1,200,000 per year

    Vi söker nu en Security Engineer med fokus på Endpoint- och sårbarhetsskydd till en växande del av organisationen i Stockholm.Som Security Engineer med fokus på detect & response spelar du en central roll i att säkerställa skyddet för våra klient- och servermiljöer – på ett teknikbolag där vi har ett stort hjärta för uppdraget – och för...


  • Stockholm, Stockholm, Sweden Nordea Bank Full time 100,000 - 150,000 per year

    Job ID: 30485Welcome to Group Technology, where we pride ourselves on engineering solutions and direct Nordea's transformation by providing a holistic technological view and structured understanding of the bank, and its surrounding environment to enable the Customer Vision and the Business Strategy.Are you our new Senior Threat Intelligence Specialist? The...


  • Stockholm, Stockholm, Sweden Nordea Asset Management Portugal Full time 80,000 - 120,000 per year

    Senior Threat Intelligence SpecialistStockholm, SE, 111 46Job ID: 30485Welcome to Group Technology, where we pride ourselves on engineering solutions and direct Nordea's transformation by providing a holistic technological view and structured understanding of the bank, and its surrounding environment to enable the Customer Vision and the Business...


  • Stockholm, Sweden Truesec Full time 450,000 - 700,000 per year

    Do you want to be at the forefront of protecting our society against cyber threats? We are looking for Cyber Security Training & Onboarding Coordinator to team up with the most dedicated team of cyber specialists in our Detect & Disarm domain.About Truesec – A Leading Cybersecurity CompanySince 2005, Truesec has been a native cybersecurity company, driven...