{"data":{"id":182950,"slug":"it-security-officer","type":"job","title":"IT Security Officer","description":"Nordnet redefined the financial world as the first digital bank in Europe. Now we are about to do it again and the aim is to create the next generation of bank, in the cloud. We know that this requires great people, great teams, and great technology. Do you want to join us and build the new Nordnet?\nIn Brief\nAt Nordnet we want to democratize savings and investments by giving our customers access to the best tools and information whether you are a professional investor or a small saver. With modern technologies and speed of delivery, we are building the next generation investment platform.\nThis is part of the role\nNordnet is a company with tech as its primary focus, currently rebuilding its entire platform in the cloud to enhance innovation and scalability. As a member of our security team, you will ensure that security is an integrated part of our infrastructure and operations. You will embrace our guiding principles of automation and simplicity, reducing repetitive tasks through orchestration to allow more time for proactive threat hunting and continuous improvement.\nAs an IT Security Officer, your main responsibilities are related to detection engineering, monitoring, and automation, such as:\n\nDetection Engineering: Design, develop, and maintain advanced detection rules within our SIEM to identify sophisticated cyber threats and anomalous behavior across cloud and on-premise environments.\n\n\nSOAR & Automation: Drive the automation of repetitive security tasks and incident response workflows to reduce Mean Time to Respond (MTTR), integrating our security tools into a cohesive response fabric.\n\n\nContinuous Monitoring & Log Governance: Drive the continuous security monitoring of Nordnet's IT infrastructure by ensuring high-quality log ingestion and the integrity of audit trails. You will be responsible for maintaining the health of log sources and ensuring that security-critical events are correctly aggregated and analyzed to protect Nordnet's digital assets.\n\n\nIncident Response: Serve as a technical lead during security incidents, utilizing SIEM data to conduct forensic analysis and root-cause investigations.\n\n\nThe security team is a central function for all countries that the bank operates in, and you will be reporting directly to the Head of Security at Nordnet. Within the security team there are operational Team Leads. The Team Lead for the IT Security Officers is currently temporarily assigned and you will have the possibility to apply for the permanent Team Lead position if you want to.\nAs part of our commitment, members of the Security team participate in a rotating on-call schedule. The on-call responsibility is to be the initial point of contact in the event of a critical security incident.\nThis is you\nTo succeed in this role, we believe that you take great pride in your work, are curious and continuously want to learn and grow. Believing in collaboration and discussing ideas and concepts with your colleagues, you will serve as the first point of contact for our IT Operations organization.\nWhat you'll bring to the team:\n\nExtensive experience managing enterprise SIEM platforms, specifically in writing complex queries and tuning detection logic.\n\n\nProven experience in automation\/scripting to build SOAR playbooks and streamline security operations.\n\n\nStrong understanding of log source management, including Windows Event Logs, Linux Syslog, Application logs and Cloud-native logging from GCP.\n\n\nWe also require that you speak and write English fluently; Swedish is not mandatory but an advantage.\nWhat we offer\n\nYour expertise and contribution will be appreciated from day one\n\n\nPlenty of opportunities to grow as a security professional\n\n\nCompetitive salary and compensation\n\n\nWe offer you the opportunity to work in a Nordic environment with a strong focus on delivery, product development and technology. Our ambitions are high and you will embark on a fast and challenging journey together with a skillful team of sharp and committed colleagues. Our teams are autonomous and embrace the agile way of working.\nCulture is built and cared for, each day by everyone. We're proud of ours. Having a flat organization where anyone can talk to anyone creates a warm and friendly atmosphere worth protecting. We believe in a culture where every effort counts and where everyone is being recognized. A culture embracing our core values \u2013 passion, simplicity and transparency on all levels, no matter who you are or what you do.\nWe are over 900 employees located in Stockholm, Oslo, Helsinki, Copenhagen and Frankfurt.\nVisit us on: career.nordnetab.com\/\nQuestions & Applications\nPlease note that we only accept applications through our recruitment system, hence no email applications will be considered.\nIf you have questions, please contact Talent Acquisition Partner Lovisa Malmberg at lovisa.malmberg@nordnet.com\nWe want to inform you that Nordnet conducts mandatory credit and background checks, as well as drug testing as a part of our recruitment process.\nWe look forward to receiving your application!","language":"sv","is_translated":true,"title_original":"IT Security Officer","description_original":"Nordnet redefined the financial world as the first digital bank in Europe. Now we are about to do it again and the aim is to create the next generation of bank, in the cloud. We know that this requires great people, great teams, and great technology. Do you want to join us and build the new Nordnet?\nIn Brief\nAt Nordnet we want to democratize savings and investments by giving our customers access to the best tools and information whether you are a professional investor or a small saver. With modern technologies and speed of delivery, we are building the next generation investment platform.\nThis is part of the role\nNordnet is a company with tech as its primary focus, currently rebuilding its entire platform in the cloud to enhance innovation and scalability. As a member of our security team, you will ensure that security is an integrated part of our infrastructure and operations. You will embrace our guiding principles of automation and simplicity, reducing repetitive tasks through orchestration to allow more time for proactive threat hunting and continuous improvement.\nAs an IT Security Officer, your main responsibilities are related to detection engineering, monitoring, and automation, such as:\n\nDetection Engineering: Design, develop, and maintain advanced detection rules within our SIEM to identify sophisticated cyber threats and anomalous behavior across cloud and on-premise environments.\n\n\nSOAR & Automation: Drive the automation of repetitive security tasks and incident response workflows to reduce Mean Time to Respond (MTTR), integrating our security tools into a cohesive response fabric.\n\n\nContinuous Monitoring & Log Governance: Drive the continuous security monitoring of Nordnet\u2019s IT infrastructure by ensuring high-quality log ingestion and the integrity of audit trails. You will be responsible for maintaining the health of log sources and ensuring that security-critical events are correctly aggregated and analyzed to protect Nordnet\u2019s digital assets.\n\n\nIncident Response: Serve as a technical lead during security incidents, utilizing SIEM data to conduct forensic analysis and root-cause investigations.\n\n\nThe security team is a central function for all countries that the bank operates in, and you will be reporting directly to the Head of Security at Nordnet. Within the security team there are operational Team Leads. The Team Lead for the IT Security Officers is currently temporarily assigned and you will have the possibility to apply for the permanent Team Lead position if you want to.\nAs part of our commitment, members of the Security team participate in a rotating on-call schedule. The on-call responsibility is to be the initial point of contact in the event of a critical security incident.\nThis is you\nTo succeed in this role, we believe that you take great pride in your work, are curious and continuously want to learn and grow. Believing in collaboration and discussing ideas and concepts with your colleague, you will serve as the first point of contact for our IT Operation organisation.\nWhat you\u2019ll bring to the team:\n\nExtensive experience managing enterprise SIEM platforms, specifically in writing complex queries and tuning detection logic.\n\n\nProven experience in automation\/scripting to build SOAR playbooks and streamline security operations.\n\n\nStrong understanding of log source management, including Windows Event Logs, Linux Syslog, Application logs and Cloud-native logging from GCP.\n\n\nWe also require that you speak and write English fluently, Swedish is not mandatory but an advantage.\nWhat we offer\n\nYour expertise and contribution will be appreciated from day one\n\n\nPlenty of opportunities to grow as a security professional\n\n\nCompetitive salary and compensation\n\n\nWe offer you the opportunity to work in a Nordic environment with a strong focus on delivery, product development and technology. Our ambitions are high and you will embark on a fast and challenging journey together with a skillful team of sharp and committed colleagues. Our teams are autonomous and embrace the agile way of working.\nCulture is built and cared for, each day by everyone. We\u2019re proud of ours. Having a flat organization where anyone can talk to anyone creates a warm and friendly atmosphere worth protecting. We believe in a culture where every effort counts and where everyone is being recognized. A culture embracing our core values \u2013 passion, simplicity and transparency on all levels, no matter who you are or what you do.\nWe are over 900 employees located in Stockholm, Oslo, Helsinki, Copenhagen and Frankfurt.\nVisit us on: career.nordnetab.com\/\nQuestions & Applications\nPlease note that we do only accept applications through our recruitment system, hence no email applications will be considered.\nIf you have questions, please contact Talent Acquisition Partner Lovisa Malmberg at lovisa.malmberg@nordnet.com\nWe want to inform you that Nordnet conducts mandatory credit and background checks, as well as drug testing as a part of our recruitment process.\nWe look forward to receiving your application!","price":null,"currency":"SEK","status":"active","noindex":true,"location":{"address":"Alstr\u00f6mergatan 39","full_address":null,"city":"Stockholm","country":"SE","latitude":59.335940943978,"longitude":18.028363602859},"metadata":{"region":"Stockholms l\u00e4n","duration":"Tills vidare","employer":"Nordnet Bank AB","postcode":"11247","positions":1,"profession":"IT-s\u00e4kerhetstekniker","salary_type":"Fast m\u00e5nads- vecko- eller timl\u00f6n","employer_url":"https:\/\/career.nordnetab.com","scope_of_work":"100\u2013100 %","working_hours":"Heltid","employment_type":"full_time","occupation_field":"Data\/IT","employer_workplace":"Nordnet","experience_required":true,"employment_type_label":"Vanlig anst\u00e4llning"},"user_id":null,"is_sponsored":false,"views_count":0,"ai_views_count":3,"ai_vendor_counts":{"meta":1,"other":1,"anthropic":1},"visibility":"public","submission_source":null,"submission_ai_name":null,"has_owner_email":true,"can_contact_owner":true,"phone":null,"owner_email":"lovisa.malmberg@nordnet.com","images":[],"published_at":"2026-09-01T16:47:15+00:00","expires_at":"2027-02-28T23:59:59+00:00","created_at":"2026-09-02T03:18:13+00:00","updated_at":"2026-09-03T03:16:31+00:00"}}