CareerPlanGet AI match score →

Informationssäkerhetsspecialist (Business Information Security Officer)

Solna, Sweden💼 Full-time🗓 2026-06-29 → 2026-07-31

Core

Business Information Security Officer responsible for strategic information and cybersecurity governance, compliance, and risk management for critical Nordic hydropower infrastructure.

Role type

Senior IC Business Information Security Officer (BISO)

Builds

Strategic cybersecurity frameworks, compliance programs, and resilience plans for hydropower operations.

Domain

Energy / Hydropower / Cybersecurity & National Security

Deliverable

production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work

Required skills

Information security strategy, regulatory compliance (Swedish Security Act, NIS2, CER), risk assessment, incident analysis, stakeholder communication, Swedish language proficiency, English language proficiency.

Preferred skills

Experience with classified information handling, OT security coordination, security awareness training.

Technologies

N/A

Responsibilities

Interpret and apply the Swedish Security Act and regulations like NIS2 and CER; support systematic information security work in critical areas like dam safety; coordinate IT and OT security activities; contribute to Security Risk Assessments (SRA) and annual security resilience plans; represent the organization in cross-functional security forums.

Seniority

Senior, hands-on IC

Rewrite
## Company Description Vattenfall Vattenkraft is responsible for Vattenfall's 90 hydropower plants and approximately 300 dams in the Nordic region. With around 580 employees in Sweden and Finland, the company has its headquarters in Luleå. Hydropower production is a key part of creating a climate-smart society, playing a vital role in enabling a sustainable energy system for the future. Our production accounts for about 25 percent of Sweden's total electricity demand. To deliver high availability in our production, we continuously challenge ourselves, develop our working methods, and leverage digital opportunities. ## Responsibilities - As an Information Security Officer, you will be a key member of the security department, a staff function within the Nordic hydropower organization. You will work broadly with security and preparedness, including physical protection of critical infrastructure, security risk analysis, incident analysis, information security, and total defense. - You will interpret and apply the Security Act and other regulations, including directives such as NIS2 and CER. - Support the business in systematic information security work, especially in critical areas such as dam safety. - Contribute to development projects and ensure that our routines and processes are current, efficient, and well-established in the business. - Lead strategic development of information and cyber security work, including analysis, planning, implementation, and follow-up of goals. - Ensure that information and cyber security is handled in a relevant, realistic, and compliant manner. - Identify, interpret, and follow up on requirements, legislation, and security measures related to information and cyber security. - Promote awareness, support communication, and provide training. - Provide advisory support and active follow-up on issues and incidents related to information and cyber security. - Coordinate and follow up on the organization's 'second line' activities in information and cyber security. - Coordinate activities with coordinators around IT and OT issues. - Contribute to Security Risk Assessments (SRA) in information and cyber security and to the annual plan for security and resilience. - Represent Vattenfall Vattenkraft at business area and corporate level, such as in the Generation Information and Cyber Security Forum. ## Requirements - You should have solid experience in information security and thrive in a role that combines analysis, collaboration, and development. - You should be confident in your expertise and comfortable navigating complex environments where many perspectives meet. - Required qualifications include post-secondary education in information security or equivalent practical experience in the field. - Several years of experience in information security, including developing and driving a systematic security work and contributing to business development. - Good knowledge of the Security Act is a requirement. - Experience in working with analyses, investigations, and audits in the security field. - Experience handling classified security information. - Good communication skills in Swedish and English, both in writing and speaking. - B-license (travel is part of the job). ## Nice to Have - Additional skills or experience that would be beneficial but not essential for the role. ## Benefits - Working in a critical infrastructure environment with a strong focus on security and resilience. - Opportunities to contribute to strategic development and business growth. - A supportive and collaborative work environment with a focus on safety and security. - The chance to work in a dynamic and evolving industry with a clear vision for the future. - A role that has a direct impact on the security and reliability of the energy supply in the Nordic region.
Sourced via jobtech · Listed on CareerPlan, which tracks 70,000+ jobs from 20+ sources.
Apply on JobTech ↗