Vacant job
- Jobs
- Interim System Owner – ISO 27001 & GRC (50%)
Interim System Owner – ISO 27001 & GRC (50%)
Quest Consulting Sverige ABStockholms län, Sundbyberg
Previous experience is desired
8 days left
to apply for the job
Job Description
In the role of Interim System Owner, you will provide operational and strategic support to the organization's existing system owners. The purpose is to ensure that IT systems meet strict requirements regarding information security, documentation, and governance. You will work closely with the business, IT, and central security functions to maintain robust and traceable system ownership.
Systems and associated assets are documented, classified, and monitored in an established GRC tool used to manage security, risks, and compliance-related processes. The assignment requires a structured and self-reliant person who can translate ISO 27001 requirements into practical management work and propose a long-term lifecycle approach for future system ownership.
Responsibilities
- System Ownership & Governance: Define system scope, purpose, and classification, and prepare and support the organization for internal and external audits (e.g., ISO audits).
- ISO 27001 & Information Security: Ensure compliance with ISO 27001, identify information security risks, and compile, evaluate, and drive improvement work related to security controls.
- Documentation in GRC Tool: Register, update, and maintain systems, assets, and risk registers in the GRC system (iFACTS or equivalent) so that documentation is audit-ready.
- Information Asset Classification (IAC): Ensure that classifications (Confidentiality, Integrity, Availability, Traceability – CIAT) are relevant, up-to-date, and correctly documented.
- Methodology: Develop and propose a structured lifecycle methodology for a sustainable approach to system ownership and information security.
Required Qualifications
- Documented experience in system ownership or a similar governing role for IT systems.
- Good knowledge of and practical experience with ISO 27001 and systematic information security work.
- Experience working in GRC tools (e.g., iFACTS, RSA Archer, ServiceNow GRC, or similar).
- Experience in risk management, asset classification (IAC), and implementation/follow-up of security controls.
- Very good ability to document clearly, structured, and auditably.
- Personal attributes: High degree of independence, strong collaboration skills, and a structured work approach.
Preferred Qualifications
- Experience with audits, reviews, or practical audit preparations.
- Experience from the energy sector, infrastructure, or other large, complex organizations.
- Knowledge of IT architecture, integrations, or IT Governance frameworks.
Other Info
- Assignment Period: Fixed-term assignment (interim) with a desired start in mid-August 2026, until the end of October 2026.
- Scope: Part-time, approx. 50%.
- Location/Working Style: Flexible/hybrid according to agreement with the client, with the possibility of some remote work combined with on-site meetings as needed.
Your Application
Does the role sound interesting and suitable? If so, apply immediately as we are interviewing continuously and the role may be filled before the final application deadline.
We can only receive and process your application by registering your CV in our portal. In accordance with GDPR, we cannot receive applications via email. We warmly welcome your application! The assignment is part of Quest Consulting's staffing services.
About Us
Quest Consulting is an authorized consulting company with collective agreements, insurance, wellness benefits, and occupational pension. We specialize in IT, Technology, HR, Administration, and Finance. Our goal is to be your personal collaboration partner, which is why it is so important for us to work according to our core values: Personal, Innovative, and Professional.
🖐 Was this job fit for someone?
Other jobs in the same field
Maybe it’s time to broaden the search with these available jobs