Chief Information Security Officer (CISO)
Workplace: Stockholm, Sweden
Expires: July 25, 2025
Lead Qliro's Information Security and Risk Management team to protect company assets, ensure compliance, and enhance security posture in a fast-paced environment.
Main requirements:
  • 3-5 years leading an InfoSec team or senior InfoSec role (CISO or Head of InfoSec)
  • Experience in the finance industry, preferably regulated
  • Strong knowledge of information security frameworks and certifications (ISO27001, PCI DSS, CISA, CISSP)
  • Background in technology such as IT auditing, development, or IT operations (highly beneficial)
  • Excellent communication skills to convey security concepts at all organizational levels
  • Experience implementing security controls in cloud environments (plus)
  • Strategic mindset with a hands-on approach to problem-solving
Responsibilities:
  • Manage and coordinate the ISRM team and oversee Qliro’s information security strategy
  • Develop and maintain documentation, processes, and risk management frameworks for InfoSec governance
  • Lead Business Continuity Management including impact assessments, planning, and disaster recovery
  • Drive security and privacy education and awareness programs from employees to the Board
  • Oversee third-party risk management including vendor onboarding and reviews
  • Act as main contact for internal and external auditors; facilitate compliance with PCI DSS and GDPR
  • Assess security maturity and report to stakeholders including Board and executives
  • Participate as InfoSec stakeholder in strategic initiatives like cloud migration and privacy compliance
  • Lead the InfoSec committee and Privacy Forum coordinating cross-functional initiatives
  • Ensure implementation of technical and organizational privacy controls for GDPR compliance
  • Manage physical security processes including security systems and vendor contracts
  • Monitor cybersecurity maturity, implement best practices, and drive continuous improvements
  • Oversee cyber incident response ensuring preparedness and swift action
Required hard skills:
  • Information Security Leadership
  • Risk Management Frameworks
  • Business Continuity Planning
  • PCI DSS and GDPR Compliance
  • Security Awareness Training
  • Third-Party Risk Management
  • Cybersecurity Incident Response
  • Security Auditing and Reporting
Recommended hard skills:
  • Cloud Security Controls
  • IT Auditing
  • IT Development
  • IT Operations
Soft skills:
  • Excellent Communication
  • Strategic Thinking
  • Hands-on Problem Solving
  • Collaboration
  • Leadership
Frameworks:
  • ISO27001
  • PCI DSS
Natural languages:
  • English (Proficient)
Cultural skills:
  • Diversity and Inclusion
  • Hybrid Work Environment
  • Collaboration and Empowerment