Group Chief Information Security Officer, CISO
Summary
The Group CISO will lead and develop Skanska's cybersecurity and information security strategy across its international operations. This senior leadership role involves managing cyber risks, overseeing governance and compliance, and advising executive leadership on security resilience.
Help shape and protect Skanska’s secure digital future
Skanska is looking for an experienced and strategic Group Chief Information Security Officer, CISO, to define, lead and continuously improve our information security and cybersecurity capabilities.
This is a senior leadership role with Group-wide responsibility for protecting Skanska’s information assets, ICT services and business-critical operations against cyber threats. You will ensure that our security capabilities meet relevant legal, regulatory and business requirements, while supporting a secure and resilient digital environment. The position is part of Group Function IT and reports to the SVP IT.
Responsibilities
As Group CISO, you will lead and continuously develop Skanska's cybersecurity and information security capabilities across the Group. You will define the security strategy, oversee governance, risk management and compliance, strengthen cyber resilience, and ensure security is embedded in business operations, projects, and technology initiatives.
You will lead the Group's response to major cybersecurity incidents, advise senior leadership on cyber risks and opportunities, and drive a strong security culture through collaboration, awareness, and capability development across the organization.
In this role, you will help ensure that:
- Cybersecurity risks are effectively managed and communicated.
- Security requirements are implemented consistently across the Group.
- Critical incidents are handled with minimal business impact.
- Cyber resilience and security maturity continue to improve.
- Security supports business objectives while protecting people, information, and operations.
What we are looking for
- Extensive leadership experience in cybersecurity, information security or technology risk
- A proven track record of developing and implementing enterprise security strategies
- Strong experience in risk management, governance, compliance and incident management
- Experience communicating cybersecurity matters to executive leadership and boards
- Strong leadership and stakeholder management capabilities
Qualifications
- Experience from a large, international and decentralized organization, together with knowledge of ISO 27001,
- CISSP, CISM or CRISC
- NIST Cybersecurity Framework and related security frameworks
What we offer
This is an opportunity to shape and lead cybersecurity for one of the world's leading project development and construction companies. You will have a strategic role with significant influence, working closely with senior leadership to strengthen security, resilience and risk management across an international organization.
At Skanska, you will combine the challenge of protecting a complex and evolving business with the opportunity to make a tangible impact on people, projects and society. We offer a collaborative culture, strong values and the chance to lead a function that is critical to the company's long-term success.
Location is flexible across the Nordic region, with the role based in Sweden, Norway or Finland.
Please submit your application no later than 20 September. We look forward to hearing from you.