A

Security Engineer

Avaron AB Gothenburg, Västra Götaland County, Sweden

Business Consulting and Services · 2-10 employees

6 h ago
security Mid (2-5 yrs) Full-time Sweden
Log in to apply, save this posting, or score it against your profile with AI.

About the role

You will drive product cybersecurity initiatives throughout the lifecycle while ensuring alignment with regulatory frameworks and internal policies. Additionally, you will collaborate with engineering teams to implement technical controls and maintain security compliance in Microsoft 365 and Azure environments.

What they look for

Cybersecurity Governance Compliance Risk management ISO/IEC 27001 ISO/IEC 42001 NIST Cybersecurity Framework GDPR Microsoft 365 Azure Security-by-design Privacy-by-design Stakeholder management Audit readiness Technical controls Policy development

Requirements

The role requires 4-5 years of experience in security engineering with a strong background in governance, risk management, and compliance. Candidates must possess deep knowledge of ISO standards, NIST, GDPR, and operational experience with Microsoft security technologies.

Benefits

Permanent employment Occupational pension Wellness allowance

Full description

About the Company

At Avaron, you get the security of permanent employment combined with the variety of working at different customers. We place specialists across everything from tech, IT and industry to project management and business support – and whatever the assignment, you have a consultant manager who is there for you and your development.

About the Role

You will help strengthen product cybersecurity in an advanced engineering environment where security, compliance, and governance need to work hand in hand with product development. In this role, you will support cybersecurity initiatives across the full product lifecycle and help turn regulatory and framework requirements into practical controls, processes, and ways of working.

You will work close to engineering and product teams while also contributing to policy development, risk management, compliance activities, and audit readiness. This is a strong opportunity for you if you want a role where you can combine governance, hands-on Microsoft security work, and real influence on security-by-design.

Job Description

  • You will support and drive product cybersecurity initiatives throughout the product lifecycle.
  • You will develop, maintain, and improve cybersecurity policies, standards, procedures, guidelines, and control frameworks.
  • You will help ensure alignment with frameworks and regulations such as ISO/IEC 27001, ISO/IEC 42001, the NIST Cybersecurity Framework, and GDPR.
  • You will perform cybersecurity and compliance assessments for products and services.
  • You will carry out gap analyses and support remediation activities.
  • You will contribute to risk assessments and risk treatment planning.
  • You will translate compliance and regulatory requirements into technical controls and operational processes.
  • You will support the implementation and operation of Microsoft Security and Compliance solutions.
  • You will configure and maintain security and compliance controls in Microsoft 365 and Azure environments.
  • You will support internal and external audits as well as certification activities.
  • You will collaborate with engineering and product teams to define and document cybersecurity requirements.
  • You will contribute to security-by-design and privacy-by-design initiatives.
  • You will monitor regulatory developments and industry best practices in cybersecurity and AI governance.
  • You will prepare reports, documentation, and presentations related to security and compliance initiatives.

Requirements

  • around 4-5 years of experience as a Security Engineer.
  • Experience working with cybersecurity governance, compliance, risk management, or product cybersecurity.
  • Strong knowledge of ISO/IEC 27001, ISO/IEC 42001, the NIST Cybersecurity Framework, GDPR, and Information Security Management Systems (ISMS).
  • Experience writing and maintaining policies, standards, procedures, control frameworks, and security requirements.
  • Experience working operationally with Microsoft security and compliance technologies.
  • Experience with Microsoft 365 and Azure security and compliance controls.
  • Strong stakeholder management and communication skills.
  • Excellent written and verbal English skills.

What We Offer

  • Permanent employment at Avaron AB
  • Occupational pension
  • Wellness allowance of SEK 5,000 per year

Application

Selections are made on an ongoing basis – apply as soon as you can.

Similar roles