← Takaisin työpaikkoihin

Cybersecurity GRC Lead

  • Paikan päällä
  • Suomi
  • Englanti
  • Julkaistu 19.09.26 16:29

Job Description

We are looking for an experienced Cybersecurity GRC Lead to strengthen our cybersecurity governance foundation across SSAB and enable our business to grow with confidence.

In this position, you will act as a primary expert and lead our efforts to further develop our Cybersecurity Management System (ISMS) closely aligned with aligned with ISO 27001 standards. You will be driving audit and compliance activities targeted at improving cybersecurity maturity and reducing business risks. You will act as a trusted advisor to business leaders, IT teams, and cybersecurity stakeholders globally and ensure customers, regulators, and shareholders have high trust in how we run our business.

This is a highly visible expert role with a significant impact on our cybersecurity maturity enhancement journey, enhancing customer trust, and ensuring regulatory compliance.

This role can be based in our Helsinki or Stockholm office and will be reporting to Markus Lalla, Group CISO. Please note that we cannot provide relocation support for this position.

Main Responsibilities

Lead cybersecurity governance, risk, and compliance (GRC) program across the Group and foster shared accountability for cybersecurity matters across all business divisionsDevelop, implement and maintain the Group wide Cybersecurity Management System (ISMS) to ensure that SSAB’s information assets are adequately protected at all timesDrive ISO 27001 standard alignment, customer requirements, and other cybersecurity regulations compliance, including compliance with NIS2 and TISAX and associated risk remediation activitiesDevelop and maintain cybersecurity directives and instructions, enhance our cybersecurity risk management process and establish clear ownership and accountability for security controls across the organizationLead supplier cybersecurity assurance together with ProcurementTake leadership over internal and external audits and 3rd party risk management activities as the primary liaison with auditors, regulators, customers, and certification bodies on cybersecurity governance mattersCoordinate cybersecurity reporting, KPI monitoring and management reviews for executive leadership

About You

You have significant experience (typically 10+ years) in cybersecurity governance, risk, compliance, information security, or IT audit roles preferrable from a manufacturing industry backgroundYou have proven hands-on experience leading an ISO 27001 implementation or certification journey in a larger organizationYou have many times managed and successfully lead external and internal audits, compliance programs, and risk management processesYou have a track record of operating and improving an ISMS in a complex organizationYou possess a strong understanding of ISO 27001, ISO 27002, risk management, and other security management frameworks and are good at driving compliance topics in a matrix environment where maturity around cyber security varies across the organizationYou have good experience evaluating supplier security and third-party risk managementYou act as a trusted advisor and are able to establish lasting working relationships and move the agenda forward with a variety of stakeholders who often highlight your exceptional communication skillsYour colleagues often describe you as someone with strong judgment, integrity, and personal accountabilityYou hold certifications such as CISM, CISA, CRISC, CISSP or ISO 27001 LI/LAYou are fluent in English, both written and spoken. Proficiency in one or more Nordic languages is considered an advantage.

Recruitment Process

ApplyFirst call with a RecruiterMeet the Hiring ManagerMeet the Team and key stakeholdersPre-Offer ChecksSign!

If You Have Questions, Please Contact

Julia Källmar, Group Talent Acquisition Partner, Julia.kallmar@ssab.com

About Us

Becoming part of the SSAB family means joining a journey. A journey that we believe is essential for the sustainability of this planet. Steel has been one of the most important materials for developing our society and it will continue to be so. In the roofs over our heads, in the bridges connecting our cities and in the cars of tomorrow. At SSAB we are proud of our history and leadership in high-strength steel. But we are also aware that the production of steel is one of the largest emitters of greenhouse gases in the world. That has to change. That is why we have developed the world’s first fossil-free steel production and have committed to becoming largely fossil-free. As part of SSAB you will be instrumental in realizing this goal and pushing for the green transformation of the whole steel industry.