Security GRC Analyst

2 days ago


Stockholm, Stockholm, Sweden Juni Full time

Juni who?
At Juni, we're busy building the future of banking. We want to help businesses do more with less and get access to the financial tools they need to operate, grow, and win globally.

How & Why We Do It
We give our people the same thing we're building for our customers: freedom. Freedom to be 100% yourself. Freedom to explore your potential and what's more – make the most of it. We truly believe we're making the world a better place for online businesses, and we want you to be a part of that mission.

Your role at a glance
Juni is seeking a Security GRC (Governance, Risk, and Compliance) Analyst to play a crucial role in aligning our information security posture with industry best practices, regulatory requirements, and internal policies. As a Level 2 analyst, you will demonstrate significant independence in your work, taking ownership of maintaining and improving our security governance framework. This role is key to managing risks, ensuring compliance, and fostering a strong security culture across the organisation. You will work closely with various departments to implement, monitor, and enhance our security controls.

Your Responsibilities
In this role, you'll:

Governance & Documentation

  • Maintain and update core security documentation, including policies, procedures, and instructions, ensuring they remain current and relevant.
  • Identify, collect, and analyse data to track key security performance indicators (KPIs) and metrics, generating reports and dashboards to communicate security performance to stakeholders

Risk Management

  • Maintain the risk register and support daily risk management activities with growing independence.
  • Follow up on the remediation of risks identified in new projects, third-party engagements, and other business initiatives.
  • Conduct thorough security posture assessments of new vendors and perform periodic reviews of existing ones.
  • Support our 3rd party procurement process.

Compliance & Controls

  • Monitor the implementation and effectiveness of security controls across the organisation.
  • Coordinate and support activities to maintain key security certifications, including PCI-DSS and ISO 27001.
  • Coordinate and support the implementation of remediation plans to address identified compliance gaps.
  • Provide support in responding to security-related questions during partner due diligence and assist in providing necessary information for cyber insurance renewals.
  • Coordinate and support internal audits by providing requested information and addressing audit findings.

Collaboration & Business Acumen

  • Develop and implement tailored security training and awareness programs for different roles, complementing existing initiatives.
  • Contribute to the development and implementation of the Digital Operational Resilience Strategy.
  • Understand the business context behind the team's work and make decisions aligned with overall team and company objectives.

Tooling

  • Slack
  • G-suite
  • Formalize
  • Linear
  • Vanta

Qualifications

  • 2 to 4 years of experience in information security governance, risk, or compliance roles.
  • Demonstrated experience with compliance frameworks and regulations (e.g., PCI DSS, ISO 27001, GDPR, PSD2, EBA outsourcing and DORA).
  • Degree in Cybersecurity or Information Systems or similar
  • Knowledge of security frameworks (e.g., CIS Controls, NIST CSF).
  • Solid understanding of risk assessment methodologies and hands-on experience with risk registers and third-party risk management.
  • Experience in coordinating activities for security certifications and audits.
  • Ability to develop and track security metrics (KPIs).
  • Strong analytical, problem-solving, and organisational skills.
  • Excellent communication skills, comfortable presenting to various stakeholders.
  • A proactive and independent worker who is also a strong team player.
  • Experience in the financial services or fintech industry is a plus.

Your people
Our team is as ambitious as our amazing customers. We aim high and we move with speed to make our vision a reality. We care deeply about building a better future for our customers and each other. Here, you can work with people at the top of their game and who didn't get there by playing games. You can help us create a whole new category in financial services.

Your Benefits
We're freedom-first. Transparent. Caring. Empowering. So our benefits are too.

  • We work hybrid. We'll see you in one of our offices in Stockholm or Gothenburg at least two days per week.
  • Swap 2D for 3D. Meet all Junis IRL at the company onsite each year.
  • Diversity is at our core. We're part Swedish. Part Canadian. Part French. Part Indian. Part Italian. Part British. Part Portuguese. You get the idea.
  • Great players can stay great players. Progress your career whether you choose to manage people or not.
  • Stock options. We can't promise you'll make a fortune. But we'll give it our very best shot.
  • Vacation. 30 days.
  • Private Health insurance. You know. Just in case
  • Beautiful offices in central Gothenburg and Stockholm, front row sea view

Additional Information

  • Please note that we are unable to sponsor work visas at this time. Therefore, having a valid work permit for Sweden is a requirement for this role.
  • Dear recruitment agencies: we love your enthusiasm, but no calls, emails, or carrier pigeons, please. We're keeping this one in-house

At Juni, we're building the future of banking. We want to help businesses do more with less and get access to the financial tools they need to operate, grow, and win globally.



  • Stockholm, Stockholm, Sweden HiQ Full time

    Nu söker vi fler kollegor till vårt växande Cyber Security-team på HiQ. Här finns möjligheten att tillsammans med ett starkt team hjälpa intressanta företag, och i förlängningen privatpersoner, att leva i en säkrare digital framtid. På HiQ arbetar vi i framkant med cybersäkerhet, under en nationell satsning inom organisationen bygger vi upp ett...


  • Stockholm, Stockholm, Sweden Combitech Sverige Full time

    Vill du vara med och forma framtiden för ett växande affärsområde, driva affärer och samtidigt utveckla människor och verksamhet? Vi söker en erfaren ledare till vårt kontor i Stockholm som kombinerar affärsfokus med omtanke, nyfikenhet och förmåga att skapa en lärande organisation.Din roll som resultatenhetschefTill Combitechs resultatenhet...


  • Stockholm, Stockholm, Sweden Professional Galaxy AB Full time

    Professional Galaxyär ett IT och teknikkonsultbolag som tillhandahåller högspecialiserad kompetens inom IT, utveckling, elektronik och mekanik konstruktion. Vi arbetar med seniora experter och levererar strategiskt värdeskapande kompetens till några av Sveriges mest komplexa och samhällskritiska projekt. Vårt fokus ligger alltid på hög kvalitet,...


  • Stockholm, Stockholm, Sweden Munters Full time

    Title: Senior OT Security Engineer & Security AnalystLocation: Munters HQ in Kista, Stockholm (preferable) / GlobalReports to: CISOAbout MuntersMunters is a global leader in energy-efficient air treatment and climate solutions. We operate a diverse portfolio of factories and industrial environments worldwide. As we accelerate our Smart Factory and...


  • Stockholm, Stockholm, Sweden Integrity360 Full time

    Title: Senior Cyber Incident Response AnalystLocation:  Sweden(remote)Salary: Negotiable / DOEAbout UsIntegrity360 is the largest independent cyber security provider in Europe, with a growing international presence spanning the UK, Ireland, mainland Europe, Africa and the Caribbean. With over 700 employees, across 12 locations, and six Security Operations...


  • Stockholm, Stockholm, Sweden H&M Full time

    Job DescriptionWHAT YOU'LL DO​The Cyber Defence Centre (CDC) is a key security function at H&M Group, forming the last line of defence verifying and supporting other security controls, safeguarding company staff and assets 24/7.  This role will strengthen our Cyber Defense Engineering capability as demand; regulatory requirements and assistance are...


  • Stockholm, Stockholm, Sweden H&M Group Full time

    Job Description WHAT YOU'LL DO​ The Cyber Defence Centre (CDC) is a key security function at H&M Group, forming the last line of defence verifying and supporting other security controls, safeguarding company staff and assets 24/7.  This role will strengthen our Cyber Defense Engineering capability as demand; regulatory requirements...

  • Solutions Architect

    7 days ago


    Stockholm, Stockholm, Sweden Veritaz Full time

    Please Note - Candidates who are fluent in Swedish and in Sweden with valid work permit may only apply.What you will work on:Lead solution design and implementation in strategic initiatives within Governance, Risk and Compliance (GRC), Third Party Risk Management (TPRM), Contract Lifecycle Management (CLM) and securityTranslate business and security...


  • Stockholm, Stockholm, Sweden Veritaz Full time

    Mission StatementWe are looking for a Senior IT Business Analyst to play a central role in a major transformation journey, where next-generation payment solutions are being developed.You will work cross-functionally, gather and analyze requirements, and collaborate closely with business teams, product management, architects, developers, operations and QA.In...

  • Fraud Analyst

    2 weeks ago


    Stockholm, Stockholm, Sweden Xoala Full time 50,000 - 90,000 per year

    COMPANY OVERVIEW:XOALAis a Leading provider of Payment Solutions, committed to empowering businesses with innovative, secure, and efficient financial services. As we continue to expand, we're seeking a talented individuals to drive our growth, develop strategic relationships, and build a high-performing partnerships.JOB OVERVIEW:We are seeking a...