jobportalschweiz.ch
← All jobs

Senior Cyber Security Engineer (a), 100%

INSELSPITAL

Employment type
Full-time
Location
Bern
First posted
Apply now
Security Engineering that must work in everyday life Cyber Security is not a theoretical discipline for us. Our infrastructure supports the daily operation of a large hospital environment and connects classic ICT with clinical systems, medical devices, imaging systems, and high-availability services. Our environment is technically diverse and partly grown historically. Therefore, we are looking for an experienced personality who understands connections, remains calm even during complex disruptions, and not only conceives but also effectively operates and further develops security solutions. For our Network & Connectivity team, we are looking for a Senior Cyber Security Engineer with a focus on firewall, proxy, incident processing, and security engineering. What to expect from you • Together with the team, you are responsible for the operation and further development of our central security platforms with a focus on firewall and proxy. • You work in a high-availability environment with around 60 virtual firewall instances in our Data Centers. • You analyze and process demanding incidents and technical disruptions in the extended second-level environment and at the interface to third-level topics. • You plan and implement updates, changes, and technical improvements, taking into account security requirements, network architectures, and operational dependencies. • You review and optimize rules, configurations, and technical processes and develop them in a sustainable manner. • You contribute your experience to projects, especially in the further development of network segmentation and the implementation of our zone concept. • You support complex questions regarding VPN, Web Application Firewall, and cloud-adjacent security services. • You are a technical sparring partner for less experienced colleagues and pass on your knowledge in daily work. • You work together with internal specialist departments, the business, and external partners and translate requirements into viable technical solutions. What you bring with you • Completed training in computer science, ideally with further education at HF or FH level, or a comparable qualification with corresponding practical experience. • Several years of experience in the engineering and operation of security solutions in an enterprise environment, especially in the area of firewall and proxy. • Very good understanding of networks, network architectures, routing, communication flows, and technical dependencies. • Experience with incidents, changes, updates, and structured operational processes. • Good knowledge of VPN technologies and their integration into complex network environments. • Experience with Web Application Firewalls is an advantage. It is important that you understand their way of functioning, integration, and typical sources of error. • Knowledge in cloud-adjacent security topics, Microsoft 365, Zero Trust approaches, or modern secure access concepts is welcome, but not a requirement. • Good German skills as well as good technical English. • Experience in a hospital environment or in another regulated or high-availability environment is a plus. What is personally important to us You work pragmatically, reliably, and solution-oriented. Even in the case of complex disruptions, you proceed in a structured manner and stick to a problem until the cause and solution are comprehensible. You take responsibility and enjoy not only designing solutions but also implementing and operating them. In doing so, you enjoy working in a team, but can also drive demanding technical topics forward independently. You do not have to have an answer to every problem immediately. The decisive thing is that you communicate openly, analyze cleanly, and share your knowledge with others. Our offer • A technically demanding role with direct impact in a highly critical hospital environment. • A versatile infrastructure with an extraordinarily broad portfolio of devices, systems, and applications that must be protected. • A task that combines engineering, incident processing, operation, and further development. • The opportunity to actively further develop our network and security architecture. • Exciting projects regarding segmentation, zone concept, and central security services. • Collegial cooperation in an environment in which security, availability, and clinical reality are considered together. • A hybrid working model with up to 40 percent home office. For collaboration in the team and for operational topics, regular presence on site in Bern is important. • No on-call service. Planned assignments outside of usual working hours may be occasionally required for updates or larger changes. Good to know This role is not a SOC analyst position. Our team does not primarily monitor and evaluate threats, but is responsible for the technical implementation and operation of central security measures. We operate and change the platforms on which firewall rules, proxy services, network segmentation, and other protection mechanisms are implemented. In doing so, we create, among other things, the technical prerequisites for requirements from the SOC and other security specialist departments. The role is also not a pure architecture, governance, or project management position. It fits you if you enjoy working technically, take responsibility in operations, and want to make an existing environment better step by step. Direct applications will be treated preferentially. Reference number: 19409

Automatically translated from the original.

Posted 1 week ago

Location

View on Google Maps