Chief Information Security Officer (CISO)
Workplace: Göteborg, Sverige
Expires: June 2, 2025
An executive and experienced CISO is sought to lead the group's work on information security and information governance at Göteborg Energi AB. This role entails leading a department responsible for developing, coordinating, and following up on information, IT/OT, and cybersecurity efforts, as well as leading and coordinating information governance and architecture to optimize the company's use of information. The CISO will ensure the delivery of high-quality and effective security systems and services, revise security strategies, and foster a culture of high performance and continuous learning.
Main requirements:
  • Minimum 5 years of experience in information security or IT security.
  • At least 5 years experience as a leader managing security teams.
  • At least 3 years experience communicating information security/IT security to executive or operational management, preferably in regulated sectors.
  • Experience developing strategies, programs, and plans.
  • Knowledge of relevant regulations and standards with experience ensuring compliance and effective risk management.
  • Experience integrating security into operational models and workflows.
  • Fluent Swedish, both spoken and written.
Responsibilities:
  • Participate in and contribute to the management group for Development and Digitization and its improvement work.
  • Lead and develop the company’s information security and information governance efforts, aligning team's work with developed strategies and overarching policies.
  • Refine and revise security strategies and programs.
  • Ensure quality and effective delivery of IT security systems and services.
  • Strengthen information governance as an established and integrated part of operations.
  • Act as leader and mentor for department staff, encouraging professional development and fostering a culture of high performance and continuous learning.
Required hard skills:
  • Information security and IT security expertise.
  • Strategic planning and program development.
  • Knowledge of regulations and standards related to information security.
  • Risk management skills.
  • Leadership and management of security teams.
  • Communication with executive leadership.
Recommended hard skills:
  • Experience with critical societal and security-sensitive operations and their regulations.
  • Knowledge of secure cryptographic functions (signal protection systems).
  • Relevant professional certifications such as CISM, CGEIT, or CISSP.
  • Experience working with IT organizations and models such as DevSecOps and ITIL.
Soft skills:
  • Forward-looking mindset
  • Strong communication skills
  • Ability to build trust, openness, and transparency
  • Strong drive and ability to get things done
  • Creative problem-solving skills
  • Mentorship and leadership capabilities
Frameworks:
  • DevSecOps
  • ITIL
Natural languages:
  • Swedish (Expert)
  • English (Working knowledge)
Cultural skills:
  • Cross-functional collaboration
  • Work within regulated sectors
  • Adapt to complex and changing environments