> Markdown version of [/jobs/ext/1053120-information-security-specialist](https://www.wearedevelopers.com/jobs/ext/1053120-information-security-specialist). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Security Specialist - **Company:** TACTON, INC. - **Location:** Stockholm, WI, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Cyber Security, Identity and Access Management, Systems Integration, Information Technology - **Published:** June 30, 2026 - **Apply:** https://careers.tacton.com/jobs/7426991-information-security-specialist ## About the Role * 5+ years in cybersecurity, information security, IT risk, or security architecture * Hands-on experience with threat modelling, risk assessments, and vendor security reviews * Strong technical foundation in cloud, networking, identity & access management, and system integrations * Familiarity with ISO 27001 and SOC 2 Type II * Awareness of AI security risks and how AI adoption changes the compliance and threat landscape * Strong communication and stakeholder management skills - you work across IT, Engineering, and Legal * Certifications such as CISSP, CISM, or CISA are a plus * Degree in Computer Science, Engineering, or a related field, You combine technical rigour with genuine people skills - comfortable owning a threat model one day and a policy document the next. You are pragmatic, hands-on, and motivated by outcomes. You communicate clearly across audiences, thrive with broad responsibilities, and are proactive about improving both yourself and the way things are done. ## Description You will be the hands-on security specialist responsible for keeping our internal digital landscape secure - across systems, integrations, cloud environments, data flows, and our vendor ecosystem. This role reports into the CISO office, directly to the CISO & Compliance Manager. You will combine security architecture thinking with practical execution: threat modeling, technical risk assessments, vendor due diligence, and governance work. You will partner closely with IT, Engineering, and Legal, acting as the internal security expert stakeholders turn to. You will also play a key role in how we secure our growing use of AI - an area that brings both significant opportunity and significant risk. This is a high-impact, cross-functional role for someone energized by the full breadth of security work - from technical assessments to policy and standards. What You Will Do * Lead security assessments of systems, integrations, and data flows * Conduct technical risk analyses for system implementations and vendor onboarding * Perform threat modelling and security architecture reviews * Define and implement security requirements for infrastructure and cloud environments * Assess and manage third-party and supplier security risks * Evaluate and manage security risks related to AI systems and AI-integrated products * Maintain alignment with ISO 27001 and SOC 2 Type II; contribute to policies, standards, and guidelines * Support incident investigations and act as a subject matter expert in audits * Help establish security guardrails across identity, access, encryption, and integrations ## Related Videos - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Enabling intelligent logistics automation: home-grown Industrial IoT platform at Austrian Post](https://www.wearedevelopers.com/videos/2018-enabling-intelligent-logistics-automation-home-grown-industrial-iot-platform-at-austrian-post) - [AI Agents & Agentic AI](https://www.wearedevelopers.com/videos/2017-ai-agents-agentic-ai) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Navigating the AI Shift](https://www.wearedevelopers.com/magazine/629-navigating-the-ai-shift) - [Trustworthy AI Starts at Deployment: 5 Checks Before You Ship](https://www.wearedevelopers.com/magazine/753-trustworthy-ai-starts-at-deployment-5-checks-before-you-ship) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Stephan Gillich - Bringing AI Everywhere](https://www.wearedevelopers.com/magazine/489-stephan-gillich-bringing-ai-everywhere)