Application security governance officer

We, at Enterprise IT Security, are on a mission to secure the IT journey for the Volvo Group. We work closely together with stakeholders across several Business Areas (BAs), Truck Divisions (TDs), and Group Functions (GFs). While the BAs are responsible for driving the business, the TDs provide research, development, manufacturing and assembly. Within Volvo Group, the GFs own the Group agenda, provide strategic direction and have global responsibility.

With Enterprise IT Security you will be part of Group Digital & IT (Group Function). A global and diverse team of highly skilled professionals who work with passion, trust each other and embrace change to stay ahead.

Your main activities and responsibilities
Application security governance officer steers and provides oversight on all application security activities within the Volvo Group. Is setting the goals, supervising the execution and leading verification through network of stakeholders. Governance officer also ensures application security remains an enabler for the business and technology related risks are managed within the organization’s risk appetite.

In your role you will be responsible for:
  • Setting the requirements and high-level goals for application security area in Volvo Group
  • Tailoring and maintaining the application security management framework including legacy and modern SDLC/DevSecOps areas
  • Supporting implementation of the SDLC and DevSecOps in Volvo Group
  • Supervising vulnerability management process for the application area
  • Cooperating with IT delivery units to improve application security posture
  • Responsible to define process measurements and develop measurement system for application vulnerabilities
  • Contributing to reporting function and its execution within application security creation, implementation and risk mitigation processes
  • Cooperating with core Volvo Group D&IT departments and external suppliers to strengthen application security area

Your background
  • You have proven leadership for activities implementing and maintaining application security governance and management system and related controls in the medium/high sized organizations and projects.
  • You have a good understanding of the IT security challenges in the current and future state of large enterprises such as Volvo Group to prepare the organization with the right processes, skills, relationships, and capabilities against growing IT security risks.
  • Your ability to establish and maintain good relations with your internal and external stakeholders will be essential to succeed in this role.

Hard skills and knowledge:
  • Application security framework implementation, SDLC/DevSecOps implementation, SAST/DAST/SCA scan engines implementation, vulnerability management, risk assessment, exemption handling, stakeholders management
  • Applied knowledge of modern application security area concepts like cloud security, container security, api security, IaaS code security, modern IAM concepts like zero trust model or OAuth2/OIDC, etc.
  • Experience in implementation of the cloud related controls in application security area
  • Proven knowledge of one or more well-known cyber-security frameworks (like ISF, NIST, SCF, ISO 27x, OWASP, etc.)

Minimum Education and Experience:
  • Bachelor or Masters Degree in Information Technology, Information Systems, Engineering, a related field or equivalent work experience
  • 10+ years experience in IT Operations, Security & Development

We are looking forward to seeing your application!

Kindly note that due to GDPR, we will not accept applications via mail. Please use our career site.

Application screening will start immediately; we look forward to receiving your application as soon as possible.

The Volvo Group drives prosperity through transport solutions, offering trucks, buses, construction equipment, power solutions for marine and industrial applications, financing and services that increase our customers’ uptime and productivity. Founded in 1927, the Volvo Group is committed to shaping the future landscape of sustainable transport and infrastructure solutions. Countless career opportunities are offered across the group’s leading brands and entities that share a culture of Trust, Passion, High Performance, Change and Customer Success. 

Group Digital & IT has the ambition to enable value creation at scale for the Volvo Group. Digital solutions are becoming more and more key in the industries, where we are operating. The solutions and emerging technologies, provided by Group Digital & IT, enable our customers and their customers to do more with less, better for others and best for the future.

We are 3,600 employees located in more than 30 countries, present at all major Volvo Group locations, and we are working in a completely global organization.

In Group Digital & IT we strive for something bigger, we are truly customer centric, and we collaborate with inclusion, together cross the Volvo Group. We learn to stay ahead, we are curious and eager to acquire new and deeper knowledge, both as individuals and as teams.

We want to get to know you

Application Process


The journey begins! An email confirmation will be sent as soon as you submit your application. After this, it is still possible to update your personal profile by login in to your account. The hiring team will review your application together with the hiring manager. Shortlisted candidates will be contacted with information about the following steps.


Similar jobs

SAP FI-CA/CI Solution Consultant Information Technology Wrocław, Poland Posted: 
SAP CRM Solution Consultant Information Technology Wrocław, Poland Posted: 
SAP ABAP/Integrator Technical Consultant Information Technology Wrocław, Poland Posted: