Security Lead for RVM Software
Company Description
TOMRA was founded in 1972, based on the design, manufacturing and sale of reverse vending machines (RVMs) for automated collection of used beverage containers. Today TOMRA provides solutions that enable the circular economy with advanced collection and sorting systems, and food processing by employing sensor-based sorting and grading technology.
The TOMRA Group employs 5500 people globally and is listed on the Oslo Stock Exchange (OSE: TOM). TOMRA was named Norway’s Most Innovative Business in 2023 and 2026.
Shape the Future of Secure Software at TOMRA
The RVM Software department at TOMRA Collection is responsible for developing and maintaining software for TOMRA’s reverse vending machines (RVMs). The department is made up of more than 30 developers, organized into six cross-functional teams where each team owns a functional part of the RVM. Our technology spans from OS-level components and microcontrollers to application development, user interfaces, and advanced computer vision.
We are currently looking for a Security Lead for RVM Software who will help ensure that our software products and development processes meet current and future security requirements. This role will be instrumental in driving compliance with the Cyber Resilience Act and ISO 27001, secure software development practices, vulnerability management, and the continuous improvement of our security initiatives.
Job Description
As Security Lead, you will play a key role in advancing and embedding security practices across RVM Software. You will work closely with development teams, architects, and the DevOps function, as well as key stakeholders such as the ISMS Manager, Group IT, and Digital Software. Through technical leadership, competence building, and the establishing of effective processes, you will help translate security requirements into practical solutions and ensure our teams deliver robust, secure, and future-ready products.
Key Responsibilities
- Drive operational security activities within RVM Software, including vulnerability management and incident response.
- Contribute to compliance with the Cyber Resilience Act (CRA) and other relevant security standards and regulations.
- Establish, maintain, and continuously improve security-related processes.
- Coordinate security related activities across development teams and with relevant stakeholders.
- Contribute to security requirements, architecture reviews, and technical decision-making.
- Plan and follow up on security testing and verification activities.
- Own security documentation and support customer dialogues related to security.
- Build security competence through coaching, training, and awareness initiatives.
Qualifications
Who Are We Looking For?
We believe you have experience in several of the following areas:
- Cybersecurity for software products, with AI serving as a key enabler for analysis, automation, and secure software development.
- Development and security testing, including experience with encryption, authentication, and secure communications.
- Secure development practices, including vulnerability management, incident management, and risk assessments.
- Security standards and frameworks such as ISO 27001 and the Cyber Resilience Act.
Personal Qualities
We are looking for someone who:
- Has strong professional integrity and a genuine passion for security.
- Can translate security requirements into practical and implementable solutions.
- Is an effective communicator and enjoys influencing others without necessarily having formal line management responsibility.
- Enjoy building networks and foster understanding and engagement around security topics across different disciplines.
Additional Information
Why TOMRA?
At TOMRA, you will have:
- A central role in an area of growing importance to our products and customers.
- The opportunity to shape how security is integrated into the software platforms of the future.
- Collaboration with highly skilled technologists.
- An international environment with modern technologies and complex technical challenges.
- The opportunity to contribute to a more sustainable world through technology.
Workplace is Asker (Norway).
Ready to grow your career with purpose? Applications are continually assessed, so we encourage you to apply at your earliest convenience, but no later than 25.10.2026.
If you have any questions, feel free to contact our recruitment partner in CAPUS:
Jonas Rambæk, +47 932 42 133