← Tillbaka till jobb

Information Risk and Compliance Officer

  • På plats
  • Sverige
  • Engelska
  • Publicerad 23.09.26 03:22

We at WeQuel are now looking for an experienced Information Risk and Compliance Officer in Södertälje. You will act as Information Security Officer within the client's Production & Logistics, with a focus on information security governance, risk management and compliance. The assignment combines strategic and operational information security governance with risk management, compliance and structured documentation. You will help strengthen security processes and support risk assessments. You will also make sure procedures, guidelines and documentation are clear, accurate and aligned with security requirements and the client's Information Security Management System (ISMS). You will work closely with the Cybersecurity Manager and a broad range of stakeholders across Production & Logistics, including Production Units, P&L IT, Maintenance and Logistics.

As a consultant with us, you will have the opportunity to work with one of our clients, who are leading companies within the automotive, manufacturing and industrial sectors. There you will help strengthen information security, improve governance and compliance processes, and create sustainable, secure ways of working.

Your responsibilities

Governance and continuous improvement of the ISMS within Production & LogisticsImplementation of the ISMS within Production & LogisticsIRAM assessments and follow-upInformation security governance, processes and coordinationPreparation and maintenance of security documentation, reports, presentations and supporting materialsReview, rewriting and improvement of shopfloor IT procedures and guidelines for clarity, accuracy and complianceCollaboration with Production Units (PRUs), P&L IT (IN), Maintenance and LogisticsLeadership and coordination of the Local Information Security Officers (LISOs) networkStakeholder support on information security and compliance requirementsAssessment of Cyber Resilience Act (CRA) implications for Production & LogisticsStructured, consistent security documentation and governance, aligned with the ISMS

The role calls for a structured, proactive approach. You will drive activities independently while coordinating across multiple technical and operational stakeholders.

Requirements

Experience in information security, cybersecurity support, risk management or complianceExperience in information security governance, risk and compliance (GRC)Experience supporting governance processes, documentation or coordination of security workExperience supporting or implementing structured security processes and ways of workingExperience conducting or supporting risk assessments and follow-upRelevant academic degree, or equivalent professional experience, in information security, cybersecurity, risk management, compliance or a related fieldFluent Swedish and English, spoken and writtenStrong ability to produce professional documentation and deliverables in EnglishStrong documentation and analytical skills, with the ability to structure complex information clearlyStrong ability to develop, review and improve security procedures, guidelines and documentationAble to translate complex security and compliance requirements into clear, practical documentationAble to work effectively with technical and operational stakeholdersAble to coordinate activities across multiple stakeholders, functions and organisational areasStrong stakeholder management and communication skillsAble to structure, prioritise and drive assigned activities independentlyStructured and detail-oriented, with strong analytical skills and a high focus on qualityProactive and solution-oriented; comfortable owning your activities while collaborating across functions and areas of expertiseCommunicates clearly with technical and operational stakeholdersAble to turn complex information, security requirements and governance needs into structured, understandable documentationComfortable handling multiple parallel activities with high accuracy and quality

Meriting

ISO 27000 certification and/or hands-on experience with ISO 27001 frameworksKnowledge of the Cyber Resilience Act (CRA) and NIS2Experience with Cybersecurity Management Systems (CSMS)Experience from industrial, production or manufacturing environmentsExperience with IT/OT environments

Assignment details

Start date: September 2026End date: March 2027Location: Södertälje, SwedenWorkload: 100% (full-time)Remote: 100% ONSITEInterview format: Remote / Teams interview

We offer

At WeQuel, you become part of a consulting team that values people first. We believe success comes from engagement, collaboration and development. We offer a flat organisation with short decision paths, a strong sense of community and the opportunity to shape your own development.