WeQuel

Senior Business and System Analyst

WeQuel

Business Consulting and Services · 11-50 employees

8 h ago
Senior (5-10 yrs) Full-time
Log in to apply, save this posting, or score it against your profile with AI.

About the role

You will act as the Information Security Officer for the Production & Logistics area, managing ISMS governance, risk assessments, and compliance. You will also coordinate with stakeholders to improve security documentation and ensure alignment with industry regulations like the Cyber Resilience Act.

What they look for

Information security governance Risk management Compliance ISMS Cybersecurity Stakeholder management Documentation Analytical skills IRAM assessments Cyber Resilience Act IT/OT environments ISO 27001 Communication Project coordination Quality assurance

Requirements

The role requires extensive experience in information security, risk management, and compliance, along with a relevant academic degree. Candidates must possess strong analytical and documentation skills, with the ability to communicate effectively in both Swedish and English.

Benefits

Professional development Collaborative work environment Flat organization structure

Full description

Information Risk and Compliance Officer

We at WeQuel are now looking for an experienced Information Risk and Compliance Officer in Södertälje, where you become an important part of the Production & Logistics organisation with focus on information security governance, risk management and compliance. You act as Information Security Officer for the client's Production & Logistics area, combining strategic and operational security governance with risk management, compliance and structured documentation, and you work in close collaboration with the Cybersecurity Manager and a broad range of stakeholders across Production Units, P&L IT, Maintenance and Logistics.

As a consultant with us, you get the opportunity to work at one of our clients, leading companies within industry, manufacturing and logistics, where you contribute to strengthening security processes, supporting risk assessments and ensuring that procedures, guidelines and documentation are clear, accurate and aligned with security requirements and the client's Information Security Management System (ISMS).

Your responsibilities:

  • Governance and continuous improvement of the ISMS within Production & Logistics
  • Implementation of ISMS requirements and ways of working
  • IRAM assessments and related follow-up activities
  • Information security governance, processes and coordination
  • Preparation and maintenance of security-related documentation, reports and presentations
  • Review, rewriting and improvement of shopfloor IT procedures and guidelines
  • Collaboration with stakeholders across PRUs, P&L IT (IN), Maintenance and Logistics
  • Leadership and coordination of the network of Local Information Security Officers (LISOs)
  • Support to stakeholders in understanding and addressing information security and compliance requirements
  • Assessment of the implications of the Cyber Resilience Act (CRA) for Production & Logistics
  • Quality assurance of structured, consistent and ISMS-aligned governance documentation

You work in a dynamic environment where you independently drive your activities forward while coordinating across multiple technical and operational interfaces within the organisation.

Requirements:

  • Experience within information security, cybersecurity support, risk management or compliance
  • Experience of information security governance, risk and compliance activities
  • Experience of supporting or implementing structured security processes and ways of working
  • Experience of conducting or supporting risk assessments and follow-up activities
  • Experience of supporting governance processes, documentation activities and coordination of security-related work
  • Relevant academic degree or equivalent professional experience within information security, cybersecurity, risk management, compliance or related field
  • Fluent Swedish and English, both spoken and written
  • Strong ability to produce professional documentation and deliverables in English
  • Ability to develop, review and improve security-related procedures, guidelines and documentation
  • Ability to translate complex security and compliance requirements into clear, practical documentation
  • Strong documentation and analytical skills, with ability to structure complex information clearly
  • Strong stakeholder management and communication skills, towards both technical and operational stakeholders
  • Ability to coordinate activities across multiple stakeholders, functions and organisational areas
  • Structured, detail-oriented and quality-focused
  • Proactive and solution-oriented, with ownership of your own activities
  • Ability to independently structure, prioritise and drive assigned activities, including several parallel activities

Meriting:

  • ISO 27000 certification and/or practical experience of ISO 27001 frameworks
  • Knowledge of the Cyber Resilience Act (CRA) and NIS2
  • Experience of Cybersecurity Management Systems (CSMS)
  • Experience from industrial, production or manufacturing environments
  • Experience of IT/OT environments

Assignment details

  • Start date: 2026-09-14 (September 2026)
  • End date: 2027-03-31 (March 2027)
  • Location: Södertälje, Sweden
  • Workload: 100% (full-time)
  • 100% ONSITE
  • Interview format: Remote / Teams interview

We offer: At WeQuel you become part of a consultant team that values people first – we believe success is created through commitment, collaboration and development. We offer a flat organisation with short decision paths, a strong sense of community and the opportunity to influence your own development.