
Nordnet Bank AB · Stockholm
Nordnet redefined the financial world as the first digital bank in Europe. Now we are about to do it again and the aim is to create the next generation of bank,...
Nordnet redefined the financial world as the first digital bank in Europe. Now we are about to do it again and the aim is to create the next generation of bank, in the cloud. We know that this requires great people, great teams, and great technology. Do you want to join us and build the new Nordnet?
At Nordnet we want to democratize savings and investments by giving our customers access to the best tools and information whether you are a professional investor or a small saver. With modern technologies and speed of delivery, we are building the next generation investment platform.
This is part of the role
Nordnet is a company with tech as the primary focus. In our agile and autonomous teams, you will be working with engaged colleagues that love to share their knowledge. As a cloud security engineer, you will drive automation and integrate DevSecOps into our cloud-based platform by embedding security in Continuous Integration/Continuous Delivery (CI/CD) pipelines, enhancing infrastructure security and ensuring secure software development practices.
As a Cloud Security Engineer acting autonomously and with a clear mandate, you will:
Develop and enforce cloud and Infrastructure As Code (IaC) security policies.
Improve cloud security monitoring by building and managing detections.
Collaborate with engineering teams to ensure security best practices and Secure Software Development Life Cycle SSDLC (Shift-Left).
Facilitate threat modelling sessions, secure code review and vulnerability assessments.
Coordinate penetration testing efforts and track remediations.
Enable developers to ship fast by automating security
Balance security rigor with business agility; we don't just secure, we enable.
This is you
To succeed in this role, we believe that you take great pride in your work, are curious and continuously want to learn and grow. Believing in collaboration and discussing ideas and concepts with your colleague, you will serve as the first point of contact for our Platform teams as a Cloud Security Subject Matter Expert to enable the delivery of great products.
Offensive security mindset ideally with former red teamer or penetration tester experience
Knowledge of Google Cloud Platform (or equivalent experience with other Cloud providers)
Google Security Command Centre (SCC)
Google Kubernetes Engine (GKE)
Identity and Access Management (IAM)
Infrastructure As Code (Terraform)
Github
Ability to work independently and as part of a team
Strong stakeholder management skills, ability to work with both technical and non-technical stakeholders
Ability define and implement security requirements in cloud environments
Experience with security best practices and vulnerability management process.
Familiarity with programming and major frameworks (Java, Spring, React)
What we offer
Your expertise and contribution will be appreciated from day one
Access to the latest AI tools with cutting edge models to support your daily work.
Plenty of opportunities to grow as a security professional
Competitive salary and compensation
Opportunity to shape the architecture, influencing the security design of Europe’s next-generation digital bank from the ground up.
Access to training opportunities such as professional certifications (e.g., GCP Security, OSCP, OSAI+, CISSP), industry conferences, and dedicated time for skills development.
You won't just follow a checklist; you’ll have the mandate to build and own your security automation roadmap.
We offer you the opportunity to work in a Nordic environment with a strong focus on delivery, product development and technology. Our ambitions are high and you will embark on a fast and challenging journey together with a skillful team of sharp and committed colleagues. Our teams are autonomous and embrace the agile way of working.
Culture is built and cared for, each day by everyone. We’re proud of ours. Having a flat organization where anyone can talk to anyone creates a warm and friendly atmosphere worth protecting. We believe in a culture where every effort counts and where everyone is being recognized. A culture embracing our core values – passion, simplicity and transparency on all levels, no matter who you are or what you do.
We are over 900 employees located in Stockholm, Oslo, Helsinki, Copenhagen and Frankfurt.
Visit us on: career.nordnetab.com/pages/engineering Learn more about Nordnet in our brand movie This is Nordnet, that describes our identity. Questions & Applications
Please note that we will start reviewing applications after the summer holidays. To ensure a fair process and that your data is handled securely, we only accept applications through our recruitment system, applications sent via email will not be considered.
If you have questions, please contact Hiring Manager Ralph Benton at ralph.benton@nordnet.se
We want to inform you that Nordnet conducts mandatory credit and background checks, as well as drug testing as a part of our recruitment process.
We look forward to receiving your application!
RaySearch develops innovative software solutions to improve cancer care. About 1000 clinics in more than 40 countries use RaySearch software to improve treatments and quality of life for patients. RaySearch was founded in 2000 and is listed on Nasdaq Stockholm. The headquarters is located in Stockholm, with subsidiaries in the US, Europe and Asia - Pacific. Today we are more than 400 employees with a common vision of improving cancer care with innovative software. Our great staff is crucial for our success and we offer a fantastic working environment in modern offices, flexibility and good opportunities for development. We believe in equal opportunities, value diversity and work actively to prevent discrimination. Are you passionate about ensuring that complex medical software is secure, resilient, and fully compliant with international standards? As Risk Manager, you will take ownership of identifying and mitigating risks within cybersecurity and information security across our products. With a structured mindset and keen attention to detail, you will play a central role in maintaining the integrity, reliability, and compliance of our software solutions. About the job As Risk Manager, you will be responsible for identifying, assessing, and mitigating cybersecurity and information security risks across all RaySearch products. As part of a smaller cybersecurity group, you will work with all aspects of cybersecurity for our product delivery including compliance, threat modelling, developer training, penetration testing, tooling and more. Your responsibilities will span the entire product lifecycle, with a particular focus on cloud-based solutions and secure software development practices. You will collaborate closely with development teams across the organization and work alongside other Risk Managers to ensure comprehensive risk management and compliance with international standards. Main responsibilities Participate in project planning together with the project management team. Support the development team with risk management related tasks, e.g., ensuring that the risk management process is applied, taking part in design and risk analysis of new and changed functionality and ensuring that risks are appropriately mitigated and tested. Own and maintain the project’s risk management documentation. Coordinate cybersecurity management activities within product development and the secure software development life cycle (SSDLC). Own the development and maintenance of cybersecurity documentation for regulated products, including FDA-related cybersecurity requirements and frameworks. Your profile We are looking for someone who understands the importance of risk management in medical software and is motivated by working in this field with all the responsibilities it entails. You are responsible, meticulous and structured, with a strong personal drive and the ability to work independently in a highly organized and efficient manner. You have experience working with or alongside software development teams and possess a strong technical understanding of software development processes, enabling you to navigate complex software environments and collaborate effectively with technical stakeholders. Requirements: BSc or MSc degree in engineering, or equivalent. 3+ years' experience working in a software development environment with complex software products. Excellent written and spoken communication skills (English and Swedish). Meriting: Experience from the medtech industry or other regulated or safety critical industries. Experience of device risk management. Experience with product safety standard requirements for medical devices (IEC/ISO standards, e.g., ISO 14971). Leadership or project management experience. Experience as a system developer. Our Culture Culture at RaySeach is the driving force behind our organization, where everything we do is driven by a shared passion for innovation and the fight against cancer. Our dedication is reflected in our ability to deliver exceptional results, pay close attention to detail, and consistently go the extra mile. Our employees stand out as experts in their field, driven by a relentless focus on solving problems - no matter how complex. At RaySearch, we take pride in leading the way in cancer treatment, leveraging cutting-edge technology to develop innovative solutions that make a real difference in patient care. Our Offer At RaySearch, we offer a diverse and inclusive work environment, fostering openness, sincerity, and collaboration. Located in Hagastaden, Stockholm's Life Science Hub, our modern and creative workspace includes an in-house gym, yoga, and social activities like ping pong, table football, and regular after-work events. Our bistro serves a fantastic lunch buffet, and we offer morning- and afternoon-fika every day. Our rooftop terrace also provides a stunning 360-degree view of Stockholm, enhancing the work experience. All of this comes attached with a competitive compensation and benefits package. Application Please apply to the position through the application form below. Selection and interviews will be ongoing. We do not accept applications by email.
Som Cloud Security Engineer på Svenska Spel är du med och bygger grunden för ett effektivt säkerhetsarbete. Genom data, automation och smarta integrationer ser du till att rätt information finns på rätt plats när den behövs som mest. Gillar du att lösa komplexa problem med hjälp av data, automation och modern teknik? Då kan det här vara rollen för dig. Vad är det du ska göra? Som Cloud Security Engineer stärker du Svenska Spels cybersäkerhet genom att säkerställa att rätt säkerhetsdata finns tillgänglig när den behövs. Genom integrationer, automation och smart användning av loggar och telemetri omsätter du säkerhetsinsikter till tekniska lösningar som förbättrar detektion, analys och incidenthantering. Du arbetar nära säkerhetsanalytiker, utvecklings- och plattformsteam och blir en viktig brygga mellan säkerhetsanalys, teknik och plattform. Tillsammans vidareutvecklar vi vår förmåga att upptäcka, analysera och hantera säkerhetshändelser i komplexa och moderna miljöer. En viktig del av rollen handlar om att säkerställa att rätt säkerhetsdata finns tillgänglig, håller hög kvalitet och kan användas effektivt i det dagliga säkerhetsarbetet. Du bygger integrationer, utvecklar pipelines och skapar förutsättningar för bättre detektion och snabbare respons. Rollen omfattar även att utforska hur AI kan användas för att effektivisera säkerhetsarbetet – samtidigt som vi hanterar de risker som tekniken för med sig. Du kommer bland annat att: * Bygga och vidareutveckla datainsamling, integrationer och pipelines för loggar, händelser och telemetri * Säkerställa datakvalitet genom parsers, normalisering, datamodeller och korrelationslogik * Omsätta säkerhetsbehov till use cases, larm, detektioner och automatiserade arbetsflöden * Utveckla tekniska förmågor för detektion, analys och respons på säkerhetshändelser * Automatisera manuella moment och arbeta med scripting när standardlösningar inte räcker till * Samarbeta nära säkerhetsanalytiker, utvecklings- och plattformsteam * Bidra till AI-stödda arbetssätt och ett säkert införande av AI-lösningar Är du den som ska göra det? För att trivas i rollen tror vi att du gillar att lösa problem, göra saker smartare och bygga lösningar som håller över tid. Du är nyfiken på hur saker fungerar, gillar att grotta ner dig i detaljer när det behövs och har samtidigt förmågan att lyfta blicken och se helheten. Du tycker om att samarbeta med andra och trivs i skärningspunkten mellan människor, data och teknik. Du förstår behoven bakom en detektion eller ett larm för att sedan skapa lösningen som gör den användbar i praktiken. Att dela kunskap, hitta bättre arbetssätt och hjälpa kollegor att lyckas är en naturlig del av hur du jobbar. Du behöver inte kunna allt från början, men vi tror att du har erfarenhet av några av följande områden: * Säkerhetsplattformar som SIEM, SOAR, XDR eller EDR * Molnmiljöer och logginsamling i Azure eller GCP * Integrationer, automation, API eller Infrastructure as Code * Ramverk och verktyg som MITRE ATT&CK, Sigma, YARA, KQL eller SPL * Incidenthantering, threat hunting eller AI-relaterat säkerhetsarbete Vi värdesätter nyfikenhet, problemlösningsförmåga och viljan att fortsätta utvecklas minst lika mycket som erfarenhet av specifika tekniker. Vi behöver dig som motiveras av att bidra till säkerhetsförmågan i en verksamhet med höga krav på tillgänglighet, säkerhet och förtroende. Varför Svenska Spel och Cyber Security Operations? För oss är säkerhet och tillgänglighet inte en sidofråga utan en förutsättning för förtroendet för vår affär. Våra tjänster används av miljontals människor och vi hanterar stora mängder data, höga tillgänglighetskrav och avancerade digitala plattformar. Hos oss blir du en del av ett team som varje dag arbetar för att skapa trygga och säkra digitala upplevelser för miljontals människor. Här finns komplex teknik, höga ambitioner och stora möjligheter att utvecklas – men framför allt kollegor som gärna delar med sig av sin kunskap och hjälper varandra framåt. Vi lär oss varje dag, får saker att hända tillsammans och bygger säkerhetsförmågor som gör verklig skillnad för våra kunder, vår verksamhet och samhället i stort. Vi hanterar 10 miljoner transaktioner om dagen, året runt och utvecklar, driftar och supportar ett av världens mest avancerade spelsystem. Vi är med andra ord ett techbolag som sysslar med spel - inte tvärtom. Det här kommer med ett ansvar, både för folkets drömmar och spänning, men även för deras spelande. Vi vill att fler ska spela hållbart hos oss och vår verksamhet ska bedrivas på ett socialt, ekonomiskt och miljömässigt ansvarsfullt sätt. Vi är Sveriges största idrottssponsor och investerar nära 300 miljoner kronor årligen i svensk idrott. Är du nyfiken på våra förmåner? Då hittar du dem här! Ansökan och kontaktuppgifter Tjänsten är en tillsvidareanställning med placering i Stockholm eller i Visby. För frågor om tjänsten är du varmt välkommen att kontakta Tonny Hultberg, Chef Cyber Security Operations, på tonny.hultberg@svenskaspel.se För frågor om rekryteringsprocessen, kontakta Team TA; teamta@svenskaspel.se 🏖️ Vi arbetar med urval löpande fram till och med vecka 28. Därefter väntar några veckors semester för oss som jobbar med processen, vilket innebär att återkopplingen kan dröja under sommaren. Vecka 33 kliver vi ur hängmattan och är tillbaka igen, redo att fortsätta processen. Så skicka in din ansökan och njut av glass och värme, så hörs vi igen senast i mitten augusti.
500M+ downloads. 80M+ monthly users. A decade of building – and we’re still accelerating. Flo is the world’s #1 health & fitness app worldwide on a mission to build a better future for female health. Backed by a $200M investment led by General Atlantic, we became the first product of our kind to reach a $1B valuation in 2024 – and we’re not slowing down. With 7M paid subscribers and the highest-rated experience in the App Store’s health category, we’ve spent 10 years earning trust at scale. Now, we’re building the next generation of digital health – AI-powered, privacy-first, clinically backed – to help our users know their body better. The job THE SCALE OF THE CHALLENGE At Flo we don't just have users, we have a global community. We are the #1 women's health app, in the last month alone, we saw 8.6M new installs and a 2.8M increase in active users. When millions of people trust you with their most personal health data, security isn't a feature — it's a foundation. We are looking for a Cloud Security Engineer to join Velocity, our Internal Platform team. Your mission is to ensure that every system, pipeline, and tool our engineers rely on is secure by default — so they can ship fast without ever compromising trust. THE MISSION: VELOCITY The Velocity team exists to eliminate friction. We build and own the foundation everything else runs on: cloud infrastructure, developer tooling, and SRE practices. You will: * Embed Security Into the Platform: Bake security, compliance, and best practices into the core stack so they're invisible to developers and impossible to skip. * Automate Everything: Drive security-as-code across infrastructure, CI/CD pipelines, and container lifecycles — making manual gates a thing of the past. WHAT YOU WILL DO * Cloud Security Posture: Own and continuously strengthen Flo's AWS security posture using tools like GuardDuty, Inspector, Security Hub, and SSM Patch Manager. * Container & Supply Chain Security: Harden container image security end-to-end — patch vulnerabilities automatically with Copacetic, sign and verify images with Cosign/Sigstore, and enforce policies at admission with Kyverno. * Policy as Code: Manage CI/CD security across the organisation using policy-as-code tooling (Kyverno, Checkov), ensuring standards are enforced programmatically. * Security Observability: Build visibility into security performance by measuring and visualising actionable metrics using tools like Databricks Dashboards or Looker. * High-Scale Privacy: Support the infrastructure for industry-leading privacy features, such as our TIME-recognised "Anonymous Mode." * Culture & Thought Leadership: Shape Flo's broader security culture through proactive engagement, documentation, and cross-team collaboration. WHAT YOU BRING * Experience: 7+ years in Infrastructure Security, Cloud Security, or Security Engineering roles. * Cloud Native Mastery: Deep expertise in AWS security services and best practices is essential. * Infrastructure as Code: Proficient in Terraform and Terragrunt — you run everything as code. * Container Security: Strong knowledge of Kubernetes security, image hardening, and admission control. * Identity & Access: Solid understanding of identity management principles — SSO, OAuth, JWT, SAML. * Automation Mindset: Comfortable scripting in Python, Bash, or similar to automate security workflows. * Network Security: Understanding of modern network security principles and their practical application. * SSDLC: Experience building Secure Software Development Lifecycle phases into engineering workflows. BONUS POINTS * Experience with security monitoring and event correlation systems (IDS/IPS, SIEM, AWS-native tooling). * Knowledge of Zero Trust Architecture and its implementations (e.g., Cloudflare). * Familiarity with secret management processes and tools. * Experience in multi-cloud environments (AWS and preferably GCP). * Understanding of business continuity principles (BIA, DRP). * Professional accreditations such as AWS Security Specialty, CKS, or CISSP. WHY JOIN FLO? * High Impact: Your work directly protects the health data of millions - Flo is rewriting women's health, and you'll make sure it's done securely. * Autonomy: We hire experts and empower you to deliver. * Cutting-Edge Stack: Work with modern security tooling (GuardDuty, Kyverno, Cosign, Elastic Cloud Security) deployed on real production infrastructure at massive scale. How we work We’re a mission-led, product-driven team. We move fast, stay focused and take ownership – from brief to build to impact. Debate is encouraged. Decisions are shared. We care about craft, ship with purpose, and always raise the bar. You’ll be working with people who take their work seriously, not themselves. It takes commitment, resilience, and the drive to keep going when things get tough. Because better health outcomes are worth it. What you'll get We support impact with meaningful reward. Here’s what that looks like: * Competitive salary and annual reviews * Opportunity to participate in Flo’s performance incentive scheme * Paid holiday, sick leave, and female health leave * Enhanced parental leave and pay for maternity, paternity, same-sex and adoptive parents * Accelerated professional growth through world-changing work and learning support * In-person collaboration and work in a hybrid model, with 3 days per week spent in the office * 5-week fully paid sabbatical at 5-year Floversary * Flo Premium for friends & family, plus more health, pension and wellbeing perks Diversity, equity and inclusion Our strength is in our differences. At Flo, hiring is based on merit, skill and what you bring to the role – nothing else. We’re proud to be an equal opportunity employer, and we welcome applicants from all backgrounds, communities and identities. Read our privacy notice for job applicants.