Jobs and Careers
NO

Technology-oriented Senior Security Officer, Nordea's Chief Security Office

Nordea
Finlandfull_timeVerifiedPosted 30 Nov 2023

About the role

Job ID: 20577 

 

Would you like to play a key role in ensuring that Nordea is protected against Cyber security threats? We are now looking for a Security Officer with a passion for tech combined with regulatory expertise to run our technology security governance activities.

 

At Nordea, we’re committed to being a partner our customers and society can count on. Compliance and integrity go hand in hand. Joining us means you’ll have an impact on how we do banking – today and tomorrow. So, bring your ideas, skills and unique background. With us, you’ll be in good company with plenty of opportunities to collaborate, grow and make your mark on something bigger. 

 

About this opportunity

 

Welcome to the Technology Security Oversight. We are a specialized security team working within Nordea Group Risk, in the second line of defense. We are overall responsible for Cyber security monitoring, control and reporting, and that Nordea has an effective security governance and management process in place.

 

We add value to Nordea and to our customers by managing the information security risks and enabling managers and employees to act correctly in protecting the confidentiality, integrity and availability of information. We do that in strong collaboration with Business Areas and Group Functions such as our Cyber Security, IT Operations and IT Development organisations. Our unit supports the entire Nordea Group.

 

Our mission is to:

  • Build upon the development of the risk landscape, regulatory changes, the business strategy, the risk appetite, internal, external and regulatory findings, results from benchmarking assessments (e.g. an external NIST assessment) and considers the ongoing implementation of earlier security objectives,
  • Improve transparency on cyber risks and maturity of Nordea’s cyber defense capabilities, Build up on international standards and best practices where possible,
  • Further improve Nordea’s cyber defense capabilities to drive the risk of Cyber threat within our risk appetite,
  • Keep Nordea compliant with regulatory requirements.

 

You will play a valuable role in driving and implementing strong governance of security technology, e.g. in governance of vulnerability management, patch management, security testing, CSOC, Detection and response, Cloud security, Artificial intelligence, application and infrastructure security and Secure DevOps. You will be part of a team of highly skilled colleagues and work very closely with business lines and other colleagues across the organisation.  

 

What you’ll be doing:

  • Provide oversight of first line security posture,
  • Challenge and proactively advise the first line on security processes, regulatory compliance and control appropriateness,
  • Define and demonstrate prudent application and infrastructure security oversight.

 

The role can be based in Poland or Finland.

 

Who you are

 

Collaboration. Ownership. Passion. Courage. These are the values that guide us in being at our best – and that we imagine you share with us.

 

To succeed in this role, we believe that you:

  • Have a sound, competent and fine-tuned security risk judgement and ability to bridge the technical and the regulatory requirements,
  • Have a passion/interest for IT security combined with the understanding of regulatory requirements,
  • Hold integrity and trust as your core values, and have excellent collaboration and stakeholder management skills,
  • Demonstrate structured thinking and are comfortable working with complex assignments, 
  • Are a proactive, pragmatic and solution oriented individual,
  • Possess strong presentation and documentation skills and the ability to produce management oversight and reporting.

 

Your experience and background:  

  • Proven track record within technology security,
  • Combine background within IT compliance or security, with solid experience in infrastructure processes and regulatory compliance,
  • Fluency in spoken and written English.

 

It would be ideal if you also (following qualifications are well regarded – but not a requirement for applying):

  • Hold a relevant Bachelor's or Master's Degree in a technical subject,
  • Hold any of the relevant security qualifications (e.g. CRISC, CISM, CISSP),
  • Have prior project management experience.

 

If this sounds like you, get in touch!

 

Next steps

Submit your application no later than 14/12/2023.

At Nordea, we know that an inclusive workplace is a sustainable workplace. We deeply believe that our diverse backgrounds, experiences, characteristics and traits make us better at serving customers

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Nordea

View company profile →