ICT Risk & Vendor Specialist

Qred Bank AB · Remote · posted Sep 14, 2026

Open to candidates in Sweden

midfintech

What this role actually asks for

Extracted by RemoteHunt

Must have

  • IT vendor governance, procurement, ICT operational risk
  • Third-Party Risk Management (TPRM) framework
  • DORA compliance
  • Project management for software onboarding
  • Regulated environments (Banking, Financial Services, Fintech)

Nice to have

  • CRISC, CISA, or Certified DORA Compliance Specialist

Worth checking before you apply

  • office-required

The full posting

At Qred, we’re building the world's best bank for small businesses. Since launching 11 years ago, we’ve grown from startup to profitable fintech scale-up, now generating over 1 billion SEK in annual revenue and supporting 50,000+ entrepreneurs across Northern Europe. We combine smart technology, real data, and human judgment to make financing simple, fast, and fair. With bold growth plans and strong momentum across multiple markets, we’re now looking for a ICT Risk & Vendor Specialist for the next phase of growth. About the Role You will take 1st Line ownership of Qred’s IT vendor landscape, procurement processes, and critical financial systems within the CTO organization. This role bridges technical operational oversight, vendor project management, and regulatory compliance to ensure our scaling infrastructure operates securely and efficiently under European banking standards. Key responsibilities Build and execute Qred’s 1st Line Third-Party Risk Management (TPRM) framework, capability mapping, and feature cataloguing to optimize total cost of ownership. Lead operational readiness for DORA compliance by mapping, risk-classifying, and monitoring all critical ICT third-party service providers. Manage end-to-end procurement processes and implementation projects, ensuring full capability utilization and clear understanding of system boundaries. Establish implementation playbooks for onboarding, integration, cutover, and offboarding while translating contract terms into active SLA monitoring workflows. Facilitate cross-functional alignment across Legal, Operations, Cyber Security, and executive leadership, serving as the 1st Line point of contact for ICT audits. What we’re looking for We are looking for someone with a structured approach to third-party risk, strong project management skills, and a drive to build scalable frameworks. You bring the ability to evaluate system capabilities, manage implementation risks, and align technical, legal, and business stakeholders around clear operational standards. Qualifications Several years of experience within IT vendor governance, procurement, ICT operational risk, or third-party risk management. Direct working knowledge of regulatory frameworks impacting financial systems and fintech scale-ups, specifically DORA requirements. Proven track record in project management for software onboarding, implementation planning, and vendor capability mapping. Professional background in regulated environments such as Banking, Financial Services, or Fintech. Industry certifications such as CRISC, CISA, or Certified DORA Compliance Specialist are considered a strong plus. Why Qred? This is the place to be if you’re looking for a place to grow. Qred is growing fast, and our Qredsters along with it. With a non-bureaucratic organization and delegated responsibilities, we make sure there’s a short path from idea to action. In addition to our great culture, you get to work with the latest cutting-edge techniques, full ownership, and last but not least a bunch of great competent colleagues to learn from! One Last Thing This is a full-time, permanent position based in our headquarters in Stockholm. We believe our culture thrives when we work together, which is why we have an office-first approach. To balance this with some flexibility, we have the option of working remotely one day per week. We review applications on a rolling basis and while the start date is flexible, the right candidate can join us immediately. Qred celebrates diversity and does not discriminate based on ethnicity, religion, national origin, gender, sexual orientation, age, disability status, or any other applicable characteristics protected by law. #LI-Onsite

Is this one actually worth your time?

RemoteHunt scores every remote job 0–100 against your own resume, so you apply to the handful that fit instead of the hundred that don't. Free plan, no card required.