Job Description
IT- Säkerhetstekniker - Göteborg
Heltid
We're now looking for a Security & Compliance Specialist who wants to help strengthen our work within governance, risk, security, and compliance. If you enjoy turning regulatory requirements into practical business solutions and collaborating across both business and technology, we'd love to hear from you.
About the Role
As a Security & Compliance Specialist, you will play an important role in developing and strengthening Bjorn Lunden Group's work within information security, compliance, governance, and risk management.
Working closely with our Security & Compliance Officer and colleagues across IT, Development, Operations, Product, and Management, you will help ensure that our processes, controls, and regulatory requirements are translated into practical and effective ways of working.
This role offers the opportunity to work at the intersection of business, technology, and regulation, supporting initiatives within ISO 27001, NIS2, DORA, GDPR, ISAE 3000, and AI governance while helping strengthen security and compliance across the Group.
You will:
Support control monitoring, audit readiness, and ongoing compliance activities
Maintain and improve policies, documentation, and governance processes
Support process owners and stakeholders in strengthening governance, controls, and risk-based ways of working
Contribute to compliance initiatives related to ISO 27001, NIS2, DORA, GDPR, and the EU AI Ac
Monitor regulatory developments and help assess their impact on the business
Perform gap analyses and follow up on improvement initiatives
Advise stakeholders across the business on security, risk, and compliance matters
Support customer audits, security questionnaires, and compliance inquiries
Create awareness and training materials that strengthen security culture across the Group
This is an excellent opportunity for someone who wants to build broad expertise within information security and compliance while working close to both technology and business.
Mandatory requirements
We're looking for someone who combines analytical thinking with strong collaboration and communication skills. You enjoy bringing structure to complexity and can translate security and compliance requirements into practical actions that support the business.
We believe you have:
1-3 years of experience within information security, compliance, audit, risk management, privacy, or IT governance
Knowledge of frameworks and regulations such as ISO 27001, SOC 2, ISAE 3000/3402, GDPR, or similar
A structured and detail-oriented way of working
Strong communication skills and the ability to engage both technical and non-technical stakeholders
The confidence to challenge existing processes and identify opportunities for improvement
Fluent Swedish and strong written and verbal communication skills in English. Proficiency in Dutch or Danish is considered an advantage.
A degree within information security, IT, business administration, law, risk management, audit, or a related field is preferred, but we also value equivalent work experience and practical knowledge.
Certifications such as ISO 27001 Foundation, CISA, CRISC, CISSP, CISM, CIPP/E, CIPT, or similar are considered an advantage. Most importantly, you have a genuine interest in continuous learning and professional development within the security and compliance field.