Sicra Header Logo
  • Careers
  • About us
  • People
EnglishNorsk
Talk to us
  1. Home
  2. Team
  3. Oddbjørn Skauge
<span id="hs_cos_wrapper_name" class="hs_cos_wrapper hs_cos_wrapper_meta_field hs_cos_wrapper_type_text" style="" data-hs-cos-general-type="meta_field" data-hs-cos-type="text" >Oddbjørn Skauge</span>

Oddbjørn Skauge

Chief Information Security Officer
Oddbjørn Skauge is Chief Information Security Officer (CISO) at Sicra. He has extensive experience as a technology and security leader from both national and international organizations, with deep expertise in IT strategy, digital transformation and information security. Previously, he served as Group CIO, CISO and Vice President at StrongPoint ASA. He has also held key roles at companies including Schibsted and ITverket/Omegapoint, where he was responsible for large transformation and outsourcing programs in complex international environments. 

At Sicra, Oddbjørn is responsible for the company’s internal information security, secure handling of customer data and advisory services related to security, compliance and modern security governance. He leads Sicra’s professional environment for security management and is team lead for the company’s security managers and CISO advisors. He also contributes to business critical customer deliveries at the intersection of business, technology and security.

What does the role of CISO at Sicra involve?

The role is largely about ensuring that we have secure and robust processes, both internally and in our customer deliveries. This includes everything from internal information security and security culture to regulatory compliance and secure data handling.

At the same time, it is about making security understandable and practical. Good information security should support the business and create business value, not make everyday work unnecessarily complicated.

In addition, I work closely with Sicra’s security managers and CISO advisors to further develop services, expertise, methodologies and how we help our customers with security governance in practice.

What is the biggest security challenge organizations face today?

Many organizations experience that requirements related to security, documentation and compliance are becoming increasingly complex. At the same time, they must manage rapid technological change, cloud transformation, AI and increasingly advanced threats.

The challenge is often not a lack of technology, but a lack of holistic thinking and maturity. Many organizations have individual solutions, but lack alignment between security, operations, leadership and business goals.

You work extensively with NIS2 and regulatory requirements. What does this mean for Norwegian organizations?

NIS2 will impact far more organizations than previous regulations. It is not only about IT security, but about organizations’ ability to protect critical societal services and manage risk in a structured way.

For many, this means stricter requirements for governance, risk management, supplier control, incident management and documentation. But the most important thing is not the compliance aspect itself, the most important thing is building resilient organizations that can actually withstand incidents.

How should organizations think about information security?

The best organizations succeed in making security a natural part of business governance. Security cannot exist in isolation within the IT department. It must be anchored in leadership and integrated into how the organization works with technology, people and processes.

At the same time, solutions must be practical and understandable. If security becomes too complicated, people often find shortcuts, and much of the effect disappears.

What are you particularly focused on professionally?

I am very focused on the connection between technology, security and business. Good security is not only about technical controls, but about understanding risk, maturity and how technology is actually used within the organization, and how investments in security and technology align with the group’s strategic goals.

I am also focused on how organizations can modernize IT operations and security without losing control or creating unnecessary complexity.

As leader of Sicra’s security governance environment, I am focused on developing advisors who understand technology, regulatory requirements and business governance. It is at the intersection of these areas that the best security decisions are made.

You have experience with major transformation and outsourcing projects. What do you learn from that?

You learn how important people, communication and culture are in technology projects. Technology alone rarely solves the challenges. To succeed with change, you need to bring the organization with you, build trust and create understanding for why the changes are necessary.

As Group CIO at StrongPoint, I led a group wide IT improvement program across 8 countries and 24 offices, from consolidating three regional operations partners into one global partner to achieving a group wide ISO 27001 certification that created direct business value through new international customers. At Schibsted, I served as deputy project manager for the IT outsourcing program to IBM across more than 35 companies and 3,600 employees. A common factor across all of these initiatives is that leadership anchoring, clear governance models and business justification matter more than the technology choice itself.

What characterizes a strong security environment?

A strong security environment combines high competence with collaboration and pragmatism. The best environments succeed in balancing security, business needs and user experience without making things unnecessarily complicated.

It is also about a culture of knowledge sharing and continuous learning. The threat landscape changes constantly, so you need to stay curious and willing to evolve.

What do you want customers to experience when working with Sicra?

I want customers to experience Sicra as a trusted and highly competent partner that understands both technology and business. We will help organizations navigate an increasingly complex security landscape in a way that is practical, realistic and value creating.

What motivates you in your work?

What motivates me most is creating improvements that truly matter for organizations and people. I enjoy building structures, processes and solutions that make organizations safer and more resilient over time.

Is there something people may not know about you?

I am very passionate about hunting, fishing and outdoor life, and I spend a lot of time in nature. My interest in hunting and fishing has also led to a strong interest in cooking and growing my own ingredients.

I actually also hosted a podcast about gardening and cultivation together with a friend. We talked about everything from tomatoes and berry bushes to roses and vegetable gardens, which is perhaps a slightly broader set of interests than people expect from a CISO.

 

Certifications

  • Arctic Wolf Sales Training
  • Arctic Wolf MDR 101
  • MSP
  • ITPP - IT Project Professional
  • RISK Management
  • SCRUM master
  • PRINCE 2 Foundation
  • PRINCE 2 Practitioner

Courses

  • Course in communication and management
  • Presentation and speach technique
  • E-business

Summary

Oddbjørn serves as the CISO for Sicra AS.

Oddbjørn have a proven record of leading IT operations and digital transformation across international organizations. He drives modernization and alignment of IT with business objectives, and has delivered large-scale projects and programs within IT infrastructure, application and infrastructure consolidation, ERP initiatives, Salesforce, cloud solutions, and managed services transitions and transformations. His leadership includes ISO 27001 certification, ISMS implementation, GDPR compliance, and NIS2 preparation, ensuring both operational efficiency and regulatory alignment. Experienced in digitalization, AI adoption, and cost optimization, he combines strong IT governance with a practical approach to simplifying complex IT landscapes. His expertise spans from IT infrastructure, IT/OT security, and global program management, making him a strong asset in creating reliable, secure, and future-ready IT environments.

Subject areas

  • CIO
  • CISO
  • IT Strategy
  • IT Infrastructure
  • Project Management
  • Cyber security
  • Digital Transformasjon
  • ISO27001
  • IT Transition & transformation
  • IT Outsourcing
  • IT Technology

Summary

Senior technology and digital transformation executive with extensive experience leading large-scale IT, digital, and security initiatives across complex, international organizations. Proven track record as CIO and CISO, turning technology, data, and platforms into measurable business value through clear strategy, strong governance, and disciplined execution.

Deep expertise in driving enterprise-wide digital transformation, IT operating model modernization, and major transition and transformation programs including ERP, cloud platforms, managed services, application consolidation, and global sourcing. Known for building strong partnerships with executive leadership, aligning technology investments with business priorities, and delivering results in highly regulated and high-complexity environments.

Combines strategic vision with hands-on leadership to ensure robust delivery, cost efficiency, risk-aware decision-making, and scalable digital capabilities. Particularly strong in bridging business, technology, and security to create reliable, future-ready organizations that can execute change at pace.

Subject areas

  • CIO
  • IT Strategy
  • IT Infrastructure
  • IT Transition & Transformation
  • Digital transformation
  • IT Outsourcing
  • IT Technology
  • Project Management
  • Change Management
  • Product Development

Competence

  • IT strategy and management

    CIO, CISO, Digital transformation / transition, Change Management, Purchase and contract negotiation, Supplier Management, Budgeting, Business case and analysis, Reporting and governance systems, AI
  • Cybersecurity and compliance

    ISO27001, ISMS, PAM, IAM,MFA, NIS2, GRC, Internal audit, risk assessment, gap analysis, Cybersecurity & IT security, RISK analysis, Awareness training, certification processes, Firewall, VPN, SD-WAN, Check Point, Sophos, Disaster Recovery & BCP
  • Project and program management

    Project management, Program management, Scope management, Product owner, Test lead, PRINCE2, SCRUM, Jira, Confluence, Azure DevOps, Process and development methodology, Team leadership, Workshop facilitation
  • Architecture and solution design

    IT architecture, Solution architecture, System architecture, DB architecture, Infrastructure and operations (incl. server migration, hybrid environments, private/public cloud), data warehousing
  • Technology and platform competencies

    Digital collaboration platforms, Public & private cloud (Azure, Intune, Salesforce, ERP, CRM, CMS), Product development, Development support: Deployment Pipeline System, TFS, Web & content management solutions, Microsoft Azure
  • Advisory and analysis

    Customer journey, Advisory (CISO-for-hire / strategic IT), User training, User manuals, Facilitation

Stay updated
Receive the latest news

Links
SustainabilityFAQPartnersCertifications and awardsCareerPress & brand
Contact
Tel: +47 648 08 488
E-mail: firmapost@sicra.no

Posthuset, Biskop Gunnerus’ gate 14A, 0185 Oslo, Norway

Follow us on Instagram

Follow us on LinkedIn
Certifications
iso27001-white
ISO 27001 compliance
miljofyrtarnlogo-hvit-rgb
Eco-Lighthouse
iso9001-white-removebg-preview
ISO 9001 compliance
Sicra Footer Logo
Sicra © 2025
Privacy Policy