About the Company
At Avaron, you get the security of permanent employment combined with the variety of working at different customers. We place specialists across everything from tech, IT and industry to project management and business support – and whatever the assignment, you have a consultant manager who is there for you and your development.
About the Role
You will help strengthen product cybersecurity in an advanced engineering environment where security, compliance, and governance need to work hand in hand with product development. In this role, you will support cybersecurity initiatives across the full product lifecycle and help turn regulatory and framework requirements into practical controls, processes, and ways of working.
You will work close to engineering and product teams while also contributing to policy development, risk management, compliance activities, and audit readiness. This is a strong opportunity for you if you want a role where you can combine governance, hands-on Microsoft security work, and real influence on security-by-design.
Job DescriptionYou will support and drive product cybersecurity initiatives throughout the product lifecycle.
You will develop, maintain, and improve cybersecurity policies, standards, procedures, guidelines, and control frameworks.
You will help ensure alignment with frameworks and regulations such as ISO/IEC 27001, ISO/IEC 42001, the NIST Cybersecurity Framework, and GDPR.
You will perform cybersecurity and compliance assessments for products and services.
You will carry out gap analyses and support remediation activities.
You will contribute to risk assessments and risk treatment planning.
You will translate compliance and regulatory requirements into technical controls and operational processes.
You will support the implementation and operation of Microsoft Security and Compliance solutions.
You will configure and maintain security and compliance controls in Microsoft 365 and Azure environments.
You will support internal and external audits as well as certification activities.
You will collaborate with engineering and product teams to define and document cybersecurity requirements.
You will contribute to security-by-design and privacy-by-design initiatives.
You will monitor regulatory developments and industry best practices in cybersecurity and AI governance.
You will prepare reports, documentation, and presentations related to security and compliance initiatives.
Requirementsaround 4-5 years of experience as a Security Engineer.
Experience working with cybersecurity governance, compliance, risk management, or product cybersecurity.
Strong knowledge of ISO/IEC 27001, ISO/IEC 42001, the NIST Cybersecurity Framework, GDPR, and Information Security Management Systems (ISMS).
Experience writing and maintaining policies, standards, procedures, control frameworks, and security requirements.
Experience working operationally with Microsoft security and compliance technologies.
Experience with Microsoft 365 and Azure security and compliance controls.
Strong stakeholder management and communication skills.
Excellent written and verbal English skills.
What We OfferPermanent employment at Avaron AB
Occupational pension
Wellness allowance of SEK 5,000 per year
Application
Selections are made on an ongoing basis – apply as soon as you can.