Information Security Consultant – Operational Implementation and GRC
Castra Group AB · plný úvazek
Landsvägen 50A, Sundbyberg, Švédsko
Do you want to take your consulting to the next level at Sweden's best employer? We know what you're thinking. You've heard it before. But trust us, you haven't. Our cherry on top of the consultant cake is something else. Apply for the job and taste it yourself! At Castra, we're looking for an information security consultant for a position on an exciting assignment with a major organization in Stockholm. The client is facing comprehensive improvement work in information security, cybersecurity, and regulatory compliance, with focus now on moving from identified gaps to actual implementation. You'll become an important part of an existing project team and work closely with a senior lead in information security/NIS2. About the assignment The client has conducted a GAP analysis in areas including information security, cybersecurity/NIS2, governance, risk management, continuity, incident handling, and vendor management. The next step is to translate identified improvement areas into functioning processes, controls, responsibility distribution, and working methods. As an operational information security consultant, you'll be a close collaboration partner to the project's senior lead. You'll contribute execution capacity across several parallel work streams and work together with operations, IT, risk, legal/compliance, procurement, and other key functions. This is a role for someone who wants to work closely with the business and practically handle implementation, anchoring, and follow-up. Example of work tasks Break down information security requirements and identified gaps into concrete activities and action plans. Coordinate and follow up activities across several parallel projects and work streams. Participate in workshops and anchoring work with operations, IT, risk, compliance, and process owners. Contribute to risk analyses, information classification, requirements traceability, and remediation work. Develop and further enhance routines, processes, templates, control points, and documentation. Support implementation of working methods in areas such as continuity management, incident handling, and vendor management. Ensure that new working methods are anchored and can be handed over to the line organization. Translate overarching governance and recommendations into practical implementation. We're looking for you who Have a couple of years of experience with operational information security in larger or complex organizations and are used to working closely with a CISO, Chief Information Security Officer, security function, or equivalent. You understand how requirements and governance need to be translated into functioning activities across different parts of an organization. We'd like to see that you have experience with: Implementation of information security requirements, controls, processes, and working methods. Risk management, information classification, requirements management, and GAP/remediation work. Driving or supporting multiple parallel projects, work streams, or business areas. Regulatory compliance related to, for example, NIS2, the Cyber Security Act, ISO 27001, MSB method support (NCSC Method Support from 2026), GDPR, DORA, or similar frameworks and regulations. Collaboration with both technical and business-oriented stakeholders. It's a merit if you have worked with continuity management, incident handling, or vendor management. Experience from critical infrastructure, regulated, or other complex operations is also highly valuable. Who are you? We place great importance on your personal qualities. You are communicative, confident, and unpretentious, with a natural ability to build trust with people in different roles and perspectives. Practical information Start: Fall 2026 Scope: Approximately 70% preliminarily. Exact scope will be determined in dialogue. Location: Stockholm, with high on-site presence at the client. Language: Very good Swedish in speech and writing, as well as good English. The assignment is subject to confidentiality, which means that further information about the client and assignment will be shared at a later stage of the process. Only the best for the best – our personnel philosophy Castra is a consulting group in IT and Management. Or well, an elite squad you might say. We bring together the sharpest and most experienced consultants, simply because with us they get maximum value in both capacity and quality of life. We operate in Systems Development, IT Infrastructure, IT Governance & Leadership, and IT Security. We've been named Sweden's and Europe's best workplace, for real! It sounds a bit boastful, but it's actually not us who said it. Since 2017, Castra has been certified by Great Place to Work, an award based entirely on employee surveys. Over the last three years, we've been named Sweden's Best Workplace for large companies, and most recently we also took first place among Europe's Best Workplaces. And as the icing on the cake, we're also a Gasell company and Career company! At Castra, we believe in freedom, development, and community. As a consultant, you choose which assignments you take, when you work, if you want to level up any skills, and how much salary and vacation you take. Getting to build your own logo is just a bonus! Did you think that was all? Well, you were wrong. Support from great managers, activities, competent and quick-footed sales team, opportunity for co-ownership, great opportunities to influence the company's future, and wonderful colleagues – the list of what makes Castra a fantastic workplace can be made loooong. The possibilities are practically endless. A win for all parties, we say. Castra has offices in Gothenburg, Stockholm, Malmö, Linköping, Norrköping, Örebro, Jönköping, and Sundsvall. Read more about what it's like to work with us at castra.se/konsulterbjudande/ Have we managed to spark your curiosity? Apply directly via the link or reach out to [email protected]
- Město
- Sundbyberg
- Adresa
- Landsvägen 50A
- GPS
- 59.36003259538, 17.972613461664
- Publikováno
Zeptej se AI
- Je mzda v této pracovní nabídce konkurenceschopná pro tuto pozici a lokalitu?
- Na co se mám zeptat na pohovoru na tuto pozici?
- Jaké dovednosti mám vyzdvihnout v odpovědi na tento inzerát?