NextRaiseNextRaiseFind jobs
Sign inSign up free
Jobs
7 days ago
Apply with autofill
Apply with autofill
CY
Cyberinstinctsab·7 days ago
7 days ago

Senior GRC & Regulatory Compliance Consultant (NIS2/CSL)

Göteborg, SwedenContractOn-siteSenior · 8+ yearsCompliance Specialist

Sign up free to see how well your resume matches this role.

Boost your chances at cyberinstinctsab

How you compare FREE

?
Your scoreYour score: not yet known
→
18
Top 10%Top 10%: 18 out of 100

Top 10% of NextRaise users, across all roles in this function in Sweden.

Must-have skills for this role

  • nis2
  • csl
  • swedish
  • iso 27001

PDF or DOCX · no account needed

Apply faster with autofill FREEThe NextRaise extension autofills your application in one click.careers.example.com/applyAutofillingFull namePriya SharmaEmailpriya.sharma@example.comPhone+49 30 1234567LocationBerlGet the extension

What you'll do

  • Conducting gap analyses between clients' current practices and CSL/NIS2 requirements
  • Translating legislation into concrete, actionable roadmaps - not theoretical reports
  • Supporting governance, risk management, and incident reporting processes required under CSL
  • Assessing third-party and supply chain risk, including vendor and subcontractor dependencies
  • Integrating cybersecurity compliance work with existing information security, data protection, and continuity functions
  • Supporting procurement processes where cybersecurity requirements need to be defined or clarified in contracts and agreements
  • Presenting findings and recommendations to steering groups, management, and non-technical stakeholders

What they're looking for

  • 8+ years of experience in governance, risk & compliance, information security, or IT risk management
  • Documented, current knowledge of NIS2 and Swedish cybersecurity legislation (CSL)
  • Solid grounding in ISO 27001, NIST, or COBIT frameworks
  • Proven reference engagements with Swedish municipalities, regions, or government agencies- this is essential, not preferred
  • Experience conducting GAP and risk analyses and turning them into concrete, auditable requirements
  • Fluent Swedish and English, spoken and written - you'll be presenting directly to Swedish public sector stakeholders

Nice to have

  • Experience with public procurement (LOU) or framework agreements
  • Background in critical infrastructure or samhällsviktig verksamhet
  • Incident reporting process design experience

Summarised by NextRaise from the employer’s description, which follows in full below.

Full description from employer

Cyber Instincts is a Gothenburg-based cybersecurity consultancy helping organizations build digital resilience across IT, OT, and automotive environments. We work with clients across automotive, manufacturing, banking and finance, retail, and healthcare - including public sector organizations navigating new cybersecurity legislation. We're building our senior bench for governance, risk, and compliance engagements centered on Sweden's Cybersäkerhetslag (CSL) and NIS2, with a particular focus on clients in municipal, regional, and public administration contexts.

What the work looks like:

  • Conducting gap analyses between clients' current practices and CSL/NIS2 requirements

  • Translating legislation into concrete, actionable roadmaps - not theoretical reports

  • Supporting governance, risk management, and incident reporting processes required under CSL

  • Assessing third-party and supply chain risk, including vendor and subcontractor dependencies

  • Integrating cybersecurity compliance work with existing information security, data protection, and continuity functions

  • Supporting procurement processes where cybersecurity requirements need to be defined or clarified in contracts and agreements

  • Presenting findings and recommendations to steering groups, management, and non-technical stakeholders

What you'll bring:

  • 8+ years of experience in governance, risk & compliance, information security, or IT risk management

  • Documented, current knowledge of NIS2 and Swedish cybersecurity legislation (CSL)

  • Solid grounding in ISO 27001, NIST, or COBIT frameworks

  • Proven reference engagements with Swedish municipalities, regions, or government agencies- this is essential, not preferred

  • Experience conducting GAP and risk analyses and turning them into concrete, auditable requirements

  • Fluent Swedish and English, spoken and written - you'll be presenting directly to Swedish public sector stakeholders

A plus, not a requirement:

  • Experience with public procurement (LOU) or framework agreements

  • Background in critical infrastructure or samhällsviktig verksamhet

  • Incident reporting process design experience

This is a Sweden-based, on-site role with placements at client sites across the country. Applicants must currently reside in Sweden. You'll be employed or engaged on a freelance basis and placed directly with our clients for the duration of each engagement.

Company

CY
Cyberinstinctsab
Göteborg, Sweden

Company facts come from this company's own listings. We only show what the postings themselves carry.

Sourced from Cyberinstinctsab's careers site·first seen 15 Sept 2026·last verified 15 Sept 2026·How we source jobs

Similar jobs

  • Senior Regulatory Consultant at demojobbustersStockholm, Sweden–match not yet calculated
  • Informationssäkerhetskonsult – operativ implementering och GRC at castraSundbyberg, Sweden–match not yet calculated
  • Compliance Specialist at icagruppenSolna, Sweden–match not yet calculated
  • Senior GRC Engineer at tandem-healthStockholm, Sweden–match not yet calculated

Browse more jobs

  • Compliance Specialist jobs in United States
  • Compliance Specialist jobs in United Kingdom
  • Compliance Specialist jobs in India
  • Retail Sales Associate jobs in United States