Chief Information Security Officer (CISO)
Workplace: Stockholm, Sweden
Expires: July 25, 2025
Lead Qliro's Information Security and Risk Management team to protect company assets, ensure compliance, and enhance security posture in a fast-paced environment.
Main requirements:
- 3-5 years leading an InfoSec team or senior InfoSec role (CISO or Head of InfoSec)
- Experience in the finance industry, preferably regulated
- Strong knowledge of information security frameworks and certifications (ISO27001, PCI DSS, CISA, CISSP)
- Background in technology such as IT auditing, development, or IT operations (highly beneficial)
- Excellent communication skills to convey security concepts at all organizational levels
- Experience implementing security controls in cloud environments (plus)
- Strategic mindset with a hands-on approach to problem-solving
Responsibilities:
- Manage and coordinate the ISRM team and oversee Qliro’s information security strategy
- Develop and maintain documentation, processes, and risk management frameworks for InfoSec governance
- Lead Business Continuity Management including impact assessments, planning, and disaster recovery
- Drive security and privacy education and awareness programs from employees to the Board
- Oversee third-party risk management including vendor onboarding and reviews
- Act as main contact for internal and external auditors; facilitate compliance with PCI DSS and GDPR
- Assess security maturity and report to stakeholders including Board and executives
- Participate as InfoSec stakeholder in strategic initiatives like cloud migration and privacy compliance
- Lead the InfoSec committee and Privacy Forum coordinating cross-functional initiatives
- Ensure implementation of technical and organizational privacy controls for GDPR compliance
- Manage physical security processes including security systems and vendor contracts
- Monitor cybersecurity maturity, implement best practices, and drive continuous improvements
- Oversee cyber incident response ensuring preparedness and swift action
Required hard skills:
- Information Security Leadership
- Risk Management Frameworks
- Business Continuity Planning
- PCI DSS and GDPR Compliance
- Security Awareness Training
- Third-Party Risk Management
- Cybersecurity Incident Response
- Security Auditing and Reporting
Recommended hard skills:
- Cloud Security Controls
- IT Auditing
- IT Development
- IT Operations
Soft skills:
- Excellent Communication
- Strategic Thinking
- Hands-on Problem Solving
- Collaboration
- Leadership
Frameworks:
- ISO27001
- PCI DSS
Natural languages:
- English (Proficient)
Cultural skills:
- Diversity and Inclusion
- Hybrid Work Environment
- Collaboration and Empowerment