Your mission
[Remote, hybrid Stockholm, Sweden or hybrid Hamburg, Germany]
We are seeking a Director of Information Security (Group) to establish, build, and lead Aonic’s group-wide information security function. This is a foundational leadership role with overall accountability for information security strategy, execution, and maturity across all subsidiaries.
The role is designed as an independent security function with direct access to executive leadership. You will report to the Group CEO/Group General Counsel and work in close partnership with the CTOs of Aonic’s operating companies, the Group Data Privacy Counsel, and senior engineering leadership.
As this is a newly created role, you will build and operate Aonic’s security function from the ground up, operating hands-on in an environment without an existing security team. You will combine strategic leadership with deep execution and independent, second-line security oversight while personally driving critical initiatives.
Key Responsibilities
- Define security strategy, policies, standards, risk management practices, and oversight. Challenge decisions where necessary, assess risk objectively, and ensure consistent implementation across the group, including, for example:
- Build and own incident response policies and procedures.
- Establish and oversee vendor and third-party security risk management.
- Develop security policies and lead internal and external audits aligned with frameworks such as ISO 27001 and NIST as well as independent reviews.
- Provide oversight of secure cloud and application architecture in collaboration with engineering teams.
- Drive security awareness and training across the organization.
- Regularly brief executive leadership and the board (or relevant board committees) on:
- Security posture and maturity.
- Key risks and threat landscape.
- Significant incidents and response outcomes.
- Progress against strategic security objectives.
- Provide clear, concise, and actionable insights to support informed decision-making at the highest level.
- Escalate material security risks and incidents independently and without delay when required.
Your profile
Qualifications & Experience
Why us?
What We Offer
- A rare opportunity to build and own a group-wide information security function from the ground up.
- Direct exposure to executive leadership and meaningful influence on company-wide decisions.
- A collaborative, international technology environment with real scale and complexity.
- Competitive compensation and benefits aligned with senior leadership responsibility.