
Apotea · Stockholm
Tech Innovation at Apotea Apotea is Sweden’s largest online pharmacy, committed to making healthcare products accessible and efficient for everyone. Our Tech de...
Tech Innovation at Apotea
Apotea is Sweden’s largest online pharmacy, committed to making healthcare products accessible and efficient for everyone. Our
Tech department aims to redefine how AI and automation drive modern businesses — not by forcing AI into traditional workflows, but
by creating AI-driven systems that give humans control, insight, and the ability to apply their expertise where it matters most.
The Core Technology team builds the architectural foundation supporting e-commerce, logistics, data, AI/ML, and customer
experience. We ensure all development aligns with our long-term vision and contributes to Apotea’s growth.
We are now looking for a Lead Security Engineer to take full ownership of Apotea’s security strategy, ensure compliance, and
enable teams to build and innovate securely at scale.
The Role
As Lead Security Engineer, you will define, implement, and evolve security practices across AWS (serverless-first), e-commerce,
logistics, and data platforms. The role combines strategic leadership with hands-on engineering — you will implement security
yourself while empowering others to do so.
You will act as the first-line technical security lead, defining guardrails, monitoring risks, and leading incident response. You
will develop secure practices for coding with AI assistants, ensuring generated code meets security standards, avoids data
leakage, and aligns with regulations. You will also communicate complex security concepts clearly across the organization.
Location: Sveavägen 168, Stockholm, Sweden (On-site)
Key Responsibilities
Security Leadership
Hands-On Security Engineering
Monitoring & Incident Response
Governance & Compliance
Collaboration & Culture
Qualifications
Nice to Have: experience in regulated industries, compliance frameworks (ISO 27001, NIST, PCI-DSS), or red/blue team operations.
Why Join Apotea?
About Apotea
Apotea.se is Sweden’s largest online pharmacy, with the country’s broadest range of over 32,000 non-prescription items and nearly
19,000 prescription drugs for humans and animals. Recognized as Sweden’s most sustainable e-commerce company (Sustainable Brand
Index 2021), we simplify everyday life for our customers with fast deliveries and expert advice. In 2024, Apotea reached a
turnover of SEK 6.5 billion and currently employs about 1,000 people across Stockholm, Lidingö, and Morgongåva.
Apotea is an inclusive employer that values diversity. We welcome all applicants and strive to create a work environment where
people, regardless of background, gender, age, religion, or disability, can thrive and grow.
Recruitment Process
1. Apply
2. Interview: Screening
3. Interview: Technical Capabilities
4. Interview: Culture Fit
5. Background Check: As a pharmacy, we always conduct a background check.
6. Offer Presented
Application
Do not hesitate to send in your application already today. For more information or questions, visit our career page or contact us
at jobb@apotea.se. We do not accept applications via email.
Join Us and Make a Difference - We hope you want to be a part of our team!
Submit your application today—interviews are conducted on an ongoing basis, and the position may be filled immediately. Start date
by agreement.
Welcome to Apotea – where technology meets health and creates magic!
Tech Innovation at Apotea Apotea is Sweden’s largest online pharmacy, committed to making healthcare products accessible and efficient for everyone. Our Tech department aims to redefine how AI and automation drive modern businesses — not by forcing AI into traditional workflows, but by creating AI-driven systems that give humans control, insight, and the ability to apply their expertise where it matters most. The Core Technology team builds the architectural foundation supporting e-commerce, logistics, data, AI/ML, and customer experience. We ensure all development aligns with our long-term vision and contributes to Apotea’s growth. We are now looking for a Lead Security Engineer to take full ownership of Apotea’s security strategy, ensure compliance, and enable teams to build and innovate securely at scale. The Role As Lead Security Engineer, you will define, implement, and evolve security practices across AWS (serverless-first), e-commerce, logistics, and data platforms. The role combines strategic leadership with hands-on engineering — you will implement security yourself while empowering others to do so. You will act as the first-line technical security lead, defining guardrails, monitoring risks, and leading incident response. You will develop secure practices for coding with AI assistants, ensuring generated code meets security standards, avoids data leakage, and aligns with regulations. You will also communicate complex security concepts clearly across the organization. Location: Sveavägen 168, Stockholm, Sweden (On-site) Key Responsibilities Security Leadership Own and evolve Apotea’s security strategy across cloud, applications, and infrastructure. Translate business and regulatory requirements into sustainable security practices. Define guardrails, best practices, and reference implementations for teams. Hands-On Security Engineering Design and implement secure AWS serverless and data-driven systems. Lead IAM practices, enforcing least-privilege and zero-trust. Oversee vulnerability management, penetration testing, and patching. Ensure secure DevSecOps pipelines and IaC security. Monitoring & Incident Response Build and operate monitoring, detection, and alerting systems (SIEM, EDR, GuardDuty, Security Hub). Lead incident response: investigate, contain, and recover from security events. Maintain and test playbooks for emerging threats. Governance & Compliance Ensure GDPR, healthcare regulations, and industry standards compliance. Embed security and privacy by design across development. Partner with legal, compliance, and business units for regulatory readiness. Provide training and frameworks for safe AI usage without compromising security. Collaboration & Culture Work closely with engineers, architects, and product teams to integrate security early. Mentor engineers in secure coding and infrastructure practices. Advocate for a strong security culture. Qualifications Extensive experience as a security engineer and organization’s main security expert. Proven expertise in securing AWS (IAM, networking, serverless, encryption, monitoring). Strong background in designing secure, scalable, cloud-native systems. Hands-on experience with SIEM, EDR, vulnerability scanners, secrets management. Deep knowledge in DevSecOps and IaC (CDK, Terraform, CloudFormation). Programming/scripting skills: Go, TypeScript, .NET, Python, or similar. Nice to Have: experience in regulated industries, compliance frameworks (ISO 27001, NIST, PCI-DSS), or red/blue team operations. Why Join Apotea? Stable company with a meaningful mission: improving healthcare accessibility. Work on cutting-edge AI, ML, and automation impacting millions of customers. Modern cloud-native technologies (serverless, AI, event-driven). Flat, agile organization with minimal bureaucracy. Career growth through training, mentorship, and conferences. End-to-end project ownership from concept to deployment. Culture of experimentation, collaboration, and innovation. About Apotea Apotea.se is Sweden’s largest online pharmacy, with the country’s broadest range of over 32,000 non-prescription items and nearly 19,000 prescription drugs for humans and animals. Recognized as Sweden’s most sustainable e-commerce company (Sustainable Brand Index 2021), we simplify everyday life for our customers with fast deliveries and expert advice. In 2024, Apotea reached a turnover of SEK 6.5 billion and currently employs about 1,000 people across Stockholm, Lidingö, and Morgongåva. Apotea is an inclusive employer that values diversity. We welcome all applicants and strive to create a work environment where people, regardless of background, gender, age, religion, or disability, can thrive and grow. Recruitment Process Apply Interview: Screening Interview: Technical Capabilities Interview: Culture Fit Background Check: As a pharmacy, we always conduct a background check. Offer Presented Application Do not hesitate to send in your application already today. For more information or questions, visit our career page or contact us at jobb@apotea.se. We do not accept applications via email. LinkedIn Instagram Join Us and Make a Difference - We hope you want to be a part of our team! Submit your application today—interviews are conducted on an ongoing basis, and the position may be filled immediately. Start date by agreement. Welcome to Apotea – where technology meets health and creates magic!
Location: Sveavägen 168, Stockholm, Sweden (On-site) Company: Apotea AB – Sweden’s leading online pharmacy Team: Core Technology Tech Innovation at Apotea Apotea is Sweden’s largest online pharmacy, committed to making healthcare products accessible and efficient for everyone. We’re on a mission to build the next generation of e-commerce and logistics, from scratch, but with lots of domain expertise and genuine care for our customers (We have been selected as the best e-commerce in Sweden several years in a row — and for good reason.). Our vision in the Tech department is to redefine how AI and automation power modern businesses — not by forcing AI into traditional workflows, but by creating AI-driven and automated systems that give humans control, insight, and the ability to apply their expertise where it matters most. The Core Technology Team shapes the architectural foundation that supports everything we do — from e-commerce and logistics to data, AI/ML, and customer experience. We ensure that every development aligns with our long-term vision and contributes to Apotea’s growth. We are now looking for a Lead Solution Architect to take end-to-end ownership of Apotea’s solution architecture, ensure technical excellence, and enable our teams to deliver at scale. The Role As Lead Solution Architect, you’ll sit at the heart of Apotea’s transformation. You will define and evolve our architecture across AWS (serverless-first) and help us realize a platform that is scalable, resilient, and ready for continuous innovation. This role combines strategic leadership with hands-on architectural design. At Apotea, engineers are expected to take ownership of the full software development life cycle, so your role will be both to design solutions yourself and enable other engineers to do so effectively. You will work closely with business stakeholders, engineers, and product owners to ensure every technical development is aligned with Apotea’s vision, architectural principles, and best practices. You will also be the first-line responsible person for all technical developments and initiatives in the Tech department, advocating a product mindset and ensuring our architecture enables both speed and sustainability. We believe in balancing fast go-to-market with long-term maintainability: we like the right amount of technical debt, at the right place, and for the right purpose. Part of your role will be to define maturity plans and guide iterations as systems evolve. Finally, you must be able to take complex topics and clarify them, communicating solution designs and execution plans in a way that aligns the whole organization. Key Responsibilities Architectural Leadership: * Own and evolve Apotea’s target architecture with a strong focus on AWS serverless, event-driven, and data-driven systems. * Translate business strategy into modern, sustainable technology roadmaps. * Establish architectural guardrails and best practices for scalability, cost efficiency, and security. Solution Design & Innovation: * Design end-to-end solutions for e-commerce, logistics, and AI/ML-powered workflows. * Enable engineers to take ownership of design and execution, while sometimes leading design work yourself. * Identify and evaluate emerging technologies that can transform customer experience and operational efficiency. * Ensure solutions deliver on availability, observability, performance, and regulatory compliance. * Contribute to Apotea’s architectural “toolbox” — principles, guidelines, standards, and reusable patterns. Collaboration & Leadership: * Work closely with product managers, engineers, and business stakeholders to ensure alignment of technology and goals. * Mentor and coach architects and engineers, fostering a design-first, product-oriented, innovation-driven culture. * Act as a trusted advisor to leadership, balancing risks, trade-offs, and opportunities. Governance & Compliance: * Embed data privacy, sovereignty, and security considerations into all architectural decisions, with close collaboration with Security Engineer. * Ensure solutions comply with healthcare regulations and GDPR. We are looking for someone with: * Extensive experience in solution/software architecture, including previous experience as the main and go-to architect in an organization. * Proven expertise in AWS with deep knowledge of serverless, distributed applications, event-driven and microservices architecture. * Strong background in designing secure, scalable, and high-performance systems. * Ability to balance fast iterations with technical debt management, defining maturity plans for systems. * Familiarity with C4 model or similar for clear architectural communication. * Experience in AI/ML platforms, data-driven architectures, or automation workflows is a plus. * Excellent ability to collaborate across business and tech, with strong communication and leadership skills. * Experience with programming languages such as Go, TypeScript, and .NET. Nice to Have * Experience with MLOps and data lakehouse architectures. * Knowledge of multi-tenant SaaS or distributed e-commerce and logistics platforms. * Exposure to regulated environments such as healthcare, finance, or logistics. * Familiarity with API/Event-first design and Test Driven Development (TDD). Why Join Apotea? * A stable, future-focused company with a meaningful mission to improve healthcare accessibility. * The chance to work on cutting-edge AI, ML, and automation projects that impact millions of customers. * Opportunity to Work with modern cloud-native technologies (serverless, AI, automation, event-driven). * Join a flat, agile organization with minimal bureaucracy * Opportunities for career growth through training, mentorship, and industry conferences. * Collaborate in a cross-functional, transparent environment * Own projects from concept to deployment * Join a culture of experimentation, collaboration, and innovation. About Apotea Apotea.se is Sweden’s largest online pharmacy, with the country’s broadest range of over 32,000 non-prescription items and nearly 19,000 prescription drugs for humans and animals. Recognized as Sweden’s most sustainable e-commerce company (Sustainable Brand Index 2021), we simplify everyday life for our customers with fast deliveries and expert advice. In 2024, Apotea reached a turnover of SEK 6.5 billion and currently employs about 1,000 people across Stockholm, Lidingö, and Morgongåva. Apotea is an inclusive employer that values diversity. We welcome all applicants and strive to create a work environment where people, regardless of background, gender, age, religion, or disability, can thrive and grow. Recruitment Process 1. Apply 2. Interview: Screening 3. Interview: Technical Capabilities 4. Interview: Culture Fit 5. Background Check: As a pharmacy, we always conduct a background check. 6. Offer Presented Application Do not hesitate to send in your application already today. For more information or questions, visit our career page or contact us at jobb@apotea.se. We do not accept applications via email. LinkedIn Instagram Join Us and Make a Difference - We hope you want to be a part of our team! Submit your application today—interviews are conducted on an ongoing basis, and the position may be filled immediately. Start date by agreement. Welcome to Apotea – where technology meets health and creates magic!
Job Description Join our Cyber Security Engineering unit, where innovation and security drive us. We are transforming technology with modern Network Security, integrations and cloud services. We are looking for a highly skilled and experienced Senior Cyber Security Engineer to join our Network Security Engineering team. This role involves architecting, designing, implementing, and maintaining robust security measures to protect our global network infrastructure. The ideal candidate will blend theoretical knowledge with hands-on expertise. This role requires a deep understanding of cybersecurity principles, Network Security technologies, and the ability to collaborate across multiple globally dispersed stakeholders and teams. WHAT YOU’LL DO Lead the development, optimization and integration of network security policies, rules and monitoring across platforms such as NDR, SSE, SD‑WAN and proxy solutions Design and improve network security solutions across branches, stores and data centers, ensuring strong alignment with business and security needs Conduct security architecture reviews, risk assessments and threat modelling, and drive hardening initiatives across our network landscape Modernize network security by transitioning from legacy systems to modern SSE and ZTNA solutions, supported by clear roadmaps, policies and plans Monitor and enhance the performance, availability and reliability of network security solutions, ensuring compliance with ISO, NIST, GDPR and internal standards Design, configure and troubleshoot network security devices and services across on‑prem and cloud environments, providing advanced Level‑3 support when needed WHO YOU'LL WORK WITH You’ll join a friendly and collaborative Network Security Engineering team of seven, soon to be eight, working closely with colleagues across Business Tech. Your daily partners will include network SMEs, Cyber Security Advisors, Core Platforms and Global Infrastructure Services, as well as teams supporting stores, warehouses and new market entries. You’ll also connect with external partners and contribute to cross‑functional projects where network and cyber security come together. This is a highly collaborative environment where your expertise will help shape our security posture and uplift the team’s cyber maturity. WHO YOU ARE 6+ years of experience in cybersecurity engineering, with a focus on network environments Strong, practical knowledge of: Network security technologies (firewalls, IDS/IPS, SWG, SASE, VPN, CASB, ZTNA), Cloud platforms: Azure, GCP, Security architecture methodologies and governance frameworks Expertise in network security solutions and products provided by Cisco, HP Aruba, Zscaler and Citrix NetScaler (proven by certificates) Strong knowledge of risk assessment and security control frameworks (ISO 27001, NIST). Familiarity with security maturity models including C2M2 Excellent ability to translate security requirements into implementable engineering solutions. Strong understanding of IP networking and protocols, including IPsec, HSRP, BGP, OSPF, 802.11, and QoS. Understand regulatory and compliance requirements (GDPR, PCI-DSS, Schrems, etc.). Independent problem-solving, addressing complex security challenges with minimal supervision. Preferred qualifications: CCNP (Security) or higher-level certifications such as the CCIE. CISSP or OSCP security certifications. Azure Security Engineer, or GCP Security Engineer certification. Experience with Agile methodologies and tools (e.g., Jira/Confluence) WHO WE ARE H&M is a fashion brand that offers the latest styles and inspiration, from fashion pieces and unique designer collaborations to affordable wardrobe essentials. Our business idea is fashion & quality at the best price in a sustainable way. Learn more about H&M here. WHY YOU’LL LOVE WORKING HERE Benefits All our employees are included in our H&M Incentive Program (HIP) All our employees receive a staff discount card, which is usable on all our H&M Group brands in stores and online. Brands covered by the discount are H&M (Beauty and Move included), COS, Weekday, Monki, H&M HOME, & Other Stories, ARKET. Work-life balance, 30 days’ vacation and wellness allowance 4000 SEK/yearly Access to Benify, for discounts on e.g. Gym memberships, travel, hotels and many other great deals. Compensation boost during parental leave In addition to our global benefits, all our local markets offer different competitive perks and benefits. Please note that they may differ between employment type and countries. Inclusion & Diversity H&M is a part of H&M Group. At H&M Group, we’re determined to create and maintain inclusive, diverse and equitable workplaces throughout our organization. Our teams should consist of a variety of people that share and combine their knowledge, experience and ideas. Having a diverse workforce leads to a positive impact on how we address challenges, on what we perceive possible and on how we choose to relate to our colleagues and customers all over the world. Hence all diversity dimensions are taken into consideration in our recruitment process. We are committed to a recruitment process that is fair, equitable, and based on competency. We therefore kindly ask you to not attach a cover letter in your application.