Bravura Sverige AB - Logo

Information Security Manager with Responsibility for GDPR and Data Protection

Bravura Sverige AB

Stockholms län, Stockholm

Previous experience is desired

54 days left
to apply for the job

Do you want to take responsibility for information security, data protection, and GDPR in a socially vital organization and be a central part of driving development forward? Here you have the chance to influence, improve, and make a real difference!

About the role

This position is a direct hire, meaning the recruitment process is handled by Bravura and you will be employed directly by Energiföretagen Sverige.

About the company

Energiföretagen Sverige is the industry association for electricity, heating, and cooling companies in Sweden. The organization brings together a large part of the energy sector's players and serves as a central voice in matters concerning the development of the energy system, regulations, and the transition to a fossil-free society.

The member companies are responsible for the production, distribution, and trade of energy and work together towards the vision “Sustainable energy for all, always”. As the energy system undergoes a comprehensive transition, issues related to information security, data protection, and regulatory compliance are becoming increasingly important, both for the organization and for the industry as a whole.

Here you will become part of an organization where experts within energy markets, policy, technology, and business development work together. The work is close to the operations with many contact points, both internally and externally, where you collaborate with colleagues, member companies, and other actors within Sweden's energy sector.

Responsibilities

As the Information Security Manager, you have overall responsibility for the organization's work within information security and data protection. You act as the Data Protection Officer (DPO) and ensure that the operations comply with current regulations, while simultaneously developing methods, structures, and governance in the area.

You work closely with IT and other parts of the business, acting as a support, advisor, and requirement setter. The role involves identifying areas for improvement and driving actions, with a clear mandate to ensure compliance.

The role combines strategic work with operational execution, from developing frameworks to conducting controls and handling ongoing incoming inquiries.

Your responsibilities include, among other things:

  • Drive and further develop the organization's GDPR work and ensure compliance
  • Be responsible for ISMS (Stratsys), including implementation, management, and development
  • Drive, implement, and further develop processes related to ISO 27001
  • Conduct controls, follow up on compliance, and drive improvement measures
  • Support the business in information security and data protection matters
  • Handle incoming cases from member companies and external parties in regulatory matters, such as NIS2
  • Monitor the external environment and identify needs for development in the area

Education, experience, and personal qualities

  • Post-secondary education in IT, information security, law, or equivalent
  • At least 3 years of experience in information security and GDPR
  • Experience with ISO 27001 or similar frameworks
  • Experience in independently driving work within information security and data protection
  • Very good Swedish and good English in speech and writing

Meritorious qualifications

  • Experience in the role of DPO/DSA
  • Experience from regulatorily driven operations
  • Certifications in information security/data protection
  • Experience with ISMS, specifically Stratsys
  • Experience related to NIS2/CSL

To succeed in the role, you work both independently and in close collaboration with others. You take responsibility for driving your work forward, structuring what needs to be done, and following up to ensure it is carried out.

You are analytical and can switch between the big picture and details when assessing risks and needs. At the same time, you are confident in your competence and stand by your assessments, even when it means setting requirements for the business.

Your communicative skills mean that you can explain complex issues in a way that makes them understandable to everyone, both internally and externally. You build trust and bring the organization along in matters concerning information security and data protection.

Other information

Start: According to agreement
Location: Stockholm
Salary: According to agreement

We use a competency-based methodology in all recruitment processes to ensure unbiased selection. We also work with ongoing selection, which means we take down the ad when enough candidates have applied. If you are considered for the position, we will contact you for a first telephone interview. Regardless of whether you proceed in the process or not, you will receive feedback on your application.

Do you have questions? Feel free to reach out!

📧 [email protected]

📞 +46 10-171 47 10

We recommend that you submit your application immediately as we conduct ongoing selection.

We look forward to receiving your application!

#Brillante

🖐 Was this job fit for someone?
Share

Other jobs in the same field

Maybe it’s time to broaden the search with these available jobs

Keyword / Occupation
Similar jobs
Latest posts
  • Promocode - Discount code for Timarco SE
    Sat, 25 Jul 2026 - 00:00
  • Public Opinion - Novus Opinion Poll 2026-06-17 – Social Democrats Lose
    Wed, 17 Jun 2026 - 09:35
  • National Debt - National Debt – Level, GDP Share, and Development to 2026
    Mon, 8 Jun 2026 - 09:59
  • Inflation - Inflation May 2026 – KPIF Rises to 1.5 Percent
    Thu, 4 Jun 2026 - 08:30