emagine is looking for an Information Security consultant to our amazing FinTech client in Stockholm
Start: Asap
End: 2026-12-31 - possibility to extension
Location: Stockholm (Hybrid)
What we're looking for
5+ years' experience in Information Security, ideally within FinTech, Payments or Financial Services.
Strong GRC (Governance, Risk & Compliance) background.
Hands-on experience with ISO 27001.
Experience working with DORA, PSD2, NIS2 and/or EBA regulations.
Experience leading projects or teams and working with senior stakeholders.
Strong Third-Party/Vendor Risk Management experience.
Nice to have
CISM, CISSP, CISA or ISO 27001 certifications.
Experience with NIST CSF.
Swedish is a bonus.
Key Responsibilities
Own and improve the ISMS (ISO 27001).
Lead security risk assessments and maintain the risk register.
Manage third-party/vendor security risk.
Support audits, certifications and regulatory compliance.
Oversee Business Continuity, Disaster Recovery and security governance.
Manage security incidents, risk acceptances and security awareness initiatives.

