Tillbaka till jobbBrådskandesam@veritaz.se
ISO 27001 Lead Implementer - 19548
ITSenior
Stockholm, SwedenFull-time · On-site Publicerad 18 september 2026 Ansök senast 22 september 2026
Språk: SwedishMinsta erfarenhet: 5 år
Sam Agassi
HR Administrator
Efterfrågade kompetenser
ISMSRisk Register & Statement of ApplicabilityISO/IEC 27001:2022 Implementation
Om tjänsten
Assignment Description
We are looking for an experienced ISO/IEC 27001 Implementation Lead to drive a large organisation toward ISO/IEC 27001:2022 certification readiness in Stockholm.
The role is strongly hands-on and delivery-focused. You will own the implementation program, develop ISMS documentation and risk-management artefacts, coordinate cross-functional teams and establish the evidence required for certification audits.
The organisation has already completed a full gap analysis, so the focus is on formalisation, implementation, documentation and audit readiness, including preparation for Stage 1 and Stage 2 certification audits.
What You Will Work On
- Own and drive the ISO/IEC 27001:2022 implementation
- Establish risk assessment methodology and maintain risk registers
- Develop the Statement of Applicability (SoA)
- Create and operationalise ISMS policies, processes and procedures
- Drive implementation across all Annex A domains
- Coordinate IT, HR, Legal, DPO, Procurement and Facilities stakeholders
- Establish processes for access governance, JML, incident management and disaster recovery
- Develop business continuity and supplier security processes
- Establish security KPIs, internal audit and management review processes
- Build and organise audit evidence for certification
- Support IAM/access governance and asset inventory/CMDB implementation
- Prepare and support the organisation through Stage 1 and Stage 2 audits
What You Bring
- Proven experience implementing ISO/IEC 27001 from start to certification
- Ideally at least two successful ISMS implementations resulting in certification
- Expert knowledge of risk assessment, risk registers and SoA
- Strong hands-on experience developing and operationalising ISMS documentation
- Experience driving complex cross-functional security programs
- Experience coordinating IT, HR, Legal, Procurement and Facilities
- Hands-on experience preparing organisations for external Stage 1 and Stage 2 audits
- Strong understanding of ISO/IEC 27001:2022 and Annex A
- Professional working proficiency in Swedish and English
- Strong stakeholder management and communication skills
- Pragmatic, structured and highly self-driven approach