Information Security Specialist
About the Role
You will be the hands-on security specialist responsible for keeping our internal digital landscape secure — across systems, integrations, cloud environments, data flows, and our vendor ecosystem. This role reports into the CISO office, directly to the CISO & Compliance Manager.
You will combine security architecture thinking with practical execution: threat modeling, technical risk assessments, vendor due diligence, and governance work. You will partner closely with IT, Engineering, and Legal, acting as the internal security expert stakeholders turn to. You will also play a key role in how we secure our growing use of AI — an area that brings both significant opportunity and significant risk.
This is a high-impact, cross-functional role for someone energized by the full breadth of security work — from technical assessments to policy and standards.
What You Will Do
- Lead security assessments of systems, integrations, and data flows
- Conduct technical risk analyses for system implementations and vendor onboarding
- Perform threat modelling and security architecture reviews
- Define and implement security requirements for infrastructure and cloud environments
- Assess and manage third-party and supplier security risks
- Evaluate and manage security risks related to AI systems and AI-integrated products
- Maintain alignment with ISO 27001 and SOC 2 Type II; contribute to policies, standards, and guidelines
- Support incident investigations and act as a subject matter expert in audits
- Help establish security guardrails across identity, access, encryption, and integrations
What Will Help You Thrive
- 5+ years in cybersecurity, information security, IT risk, or security architecture
- Hands-on experience with threat modelling, risk assessments, and vendor security reviews
- Strong technical foundation in cloud, networking, identity & access management, and system integrations
- Familiarity with ISO 27001 and SOC 2 Type II
- Awareness of AI security risks and how AI adoption changes the compliance and threat landscape
- Strong communication and stakeholder management skills — you work across IT, Engineering, and Legal
- Certifications such as CISSP, CISM, or CISA are a plus
- Degree in Computer Science, Engineering, or a related field
Who We're Looking For
You combine technical rigour with genuine people skills — comfortable owning a threat model one day and a policy document the next. You are pragmatic, hands-on, and motivated by outcomes. You communicate clearly across audiences, thrive with broad responsibilities, and are proactive about improving both yourself and the way things are done.
What to Expect During the Recruitment Process
- Screening call with Global Talent Acquisition Partner
- First Interview with our Hiring Manager
- Personality and logical ability test
- Second Interview with AI specialist peers
- Third Interview & assignment
- Final Interview with senior management
- Reference and Background checks
Why Tacton?
- At Tacton, we’ve been building CPQ software for over 20 years. We’re a stable company with global customers and a product that’s central to how manufacturers sell
- We offer competitive benefits, flexibility in how we work, and a culture that values learning and collaboration
- A solid and stable company with over 20 years of industry experience.
- Flexible hybrid setup - 3x a week at the office
- <
Findigo hittar jobben och fyller i ansökan. Du klickar Skicka.
Visa jobbet och ansökUrsprunglig annons: careers.tacton.com