Information Risk and Compliance Officer
We at WeQuel are now looking for an experienced Information Risk and Compliance Officer in Södertälje, where you become an important part of the Production & Logistics organisation with focus on information security governance, risk management and compliance. You act as Information Security Officer for the client's Production & Logistics area, combining strategic and operational security governance with risk management, compliance and structured documentation, and you work in close collaboration with the Cybersecurity Manager and a broad range of stakeholders across Production Units, P&L IT, Maintenance and Logistics.
As a consultant with us, you get the opportunity to work at one of our clients, leading companies within industry, manufacturing and logistics, where you contribute to strengthening security processes, supporting risk assessments and ensuring that procedures, guidelines and documentation are clear, accurate and aligned with security requirements and the client's Information Security Management System (ISMS).
Your responsibilities:
Governance and continuous improvement of the ISMS within Production & Logistics
Implementation of ISMS requirements and ways of working
IRAM assessments and related follow-up activities
Information security governance, processes and coordination
Preparation and maintenance of security-related documentation, reports and presentations
Review, rewriting and improvement of shopfloor IT procedures and guidelines
Collaboration with stakeholders across PRUs, P&L IT (IN), Maintenance and Logistics
Leadership and coordination of the network of Local Information Security Officers (LISOs)
Support to stakeholders in understanding and addressing information security and compliance requirements
Assessment of the implications of the Cyber Resilience Act (CRA) for Production & Logistics
Quality assurance of structured, consistent and ISMS-aligned governance documentation
You work in a dynamic environment where you independently drive your activities forward while coordinating across multiple technical and operational interfaces within the organisation.
Requirements:
Experience within information security, cybersecurity support, risk management or compliance
Experience of information security governance, risk and compliance activities
Experience of supporting or implementing structured security processes and ways of working
Experience of conducting or supporting risk assessments and follow-up activities
Experience of supporting governance processes, documentation activities and coordination of security-related work
Relevant academic degree or equivalent professional experience within information security, cybersecurity, risk management, compliance or related field
Fluent Swedish and English, both spoken and written
Strong ability to produce professional documentation and deliverables in English
Ability to develop, review and improve security-related procedures, guidelines and documentation
Ability to translate complex security and compliance requirements into clear, practical documentation
Strong documentation and analytical skills, with ability to structure complex information clearly
Strong stakeholder management and communication skills, towards both technical and operational stakeholders
Ability to coordinate activities across multiple stakeholders, functions and organisational areas
Structured, detail-oriented and quality-focused
Proactive and solution-oriented, with ownership of your own activities
Ability to independently structure, prioritise and drive assigned activities, including several parallel activities
Meriting:
ISO 27000 certification and/or practical experience of ISO 27001 frameworks
Knowledge of the Cyber Resilience Act (CRA) and NIS2
Experience of Cybersecurity Management Systems (CSMS)
Experience from industrial, production or manufacturing environments
Experience of IT/OT environments
Assignment details
Start date: 2026-09-14 (September 2026)
End date: 2027-03-31 (March 2027)
Location: Södertälje, Sweden
Workload: 100% (full-time)
100% ONSITE
Interview format: Remote / Teams interview
We offer:
At WeQuel you become part of a consultant team that values people first – we believe success is created through commitment, collaboration and development. We offer a flat organisation with short decision paths, a strong sense of community and the opportunity to influence your own development.