Senior GRC Consultant
Are you experienced in Governance, Risk & Compliance (GRC) and looking to join a workplace where knowledge sharing and collaboration are fundamental values? Do you enjoy working as part of a team and driving change with the right priorities and high efficiency? If so, this might be a position for you!
About the Role
The role involves project-based work within IT and information security, helping our clients reduce business risks and strengthen their cybersecurity capabilities. We work during regular business hours, Monday through Friday, and value face-to-face interaction with our clients whenever possible. However, remote work from our offices is also a common part of how we operate.
Depending on the assignment, the role may include both leading and governing initiatives as well as actively participating in transformation and improvement projects.
Examples of responsibilities include:
Conducting cybersecurity maturity assessments for clients.
Performing risk assessments and risk management activities together with clients.
Carrying out compliance reviews and gap analyses within regulatory and governance frameworks.
We Are Looking for Someone Who Has Experience With:
Working with, or a strong understanding of, information security management systems such as ISO 27001, the NIS2 Directive, and frameworks such as NIST CSF 2.0 or CIS Controls.
Data security and information protection.
Coaching and leading colleagues and/or clients.
At least 5 years of experience within IT security and/or information security.
Professional proficiency in both Swedish and English, spoken and written.
Meritorious Experience
The following qualifications are considered an advantage:
Experience in leadership roles within projects, such as Project Manager, CISO, or similar positions.
Experience supporting sales activities or working in a customer-facing sales role.
Relevant cybersecurity certifications, such as CISSP, CISM, or equivalent.
Knowledge of the Cyber Resilience Act (CRA) and the AI Act.
Cloud security experience.
Experience with the Microsoft security product suite, including technologies such as Purview and Data Loss Prevention (DLP).
Who are you?
We are looking for someone who shares and embodies our core values: Simplicity, Humble, Innovation, Respect and Trust.
You are a strong communicator who can build trust with customers, understand their needs, and translate requirements into practical and effective recommendations. You thrive in a dynamic environment, take initiative, and approach challenges with a solution-oriented mindset, viewing them as opportunities to create value and drive improvement.
Collaboration comes naturally to you, and you enjoy working as part of a team where knowledge sharing, mutual support, and collective success are highly valued. Finally, we are looking for someone who thrives in an innovative industry that is constantly evolving and changing.
Who are we?
Orange Cyberdefense is Sweden’s leading cybersecurity company. Our vision is to help secure the digital society. We provide our customers with services across a wide range of areas, from advanced technical solutions to strategic services such as security governance, risk management frameworks, and risk assessments. We are 400 colleagues in Sweden and 3,000 colleagues globally.
At Orange Cyberdefense, we are all different, but we share the same passion for cybersecurity—and that is our greatest strength. We are proud of our diverse perspectives, experiences, and backgrounds, and we firmly believe that creating solutions for everyone requires including everyone. That is why we are committed to ensuring that all applications are assessed fairly and equally.
- Locations
- Borlänge, Sundsvall, Umeå, Östersund
- Remote status
- Hybrid
- Required languages
- English