ICT Security Operations Analyst*
- Employment type
- Full-time
- Location
- Bern
- Company
- Universität Bern, Hochschulstrasse 6, 3012 Bern
- First posted
ICT\-Security Operations Analyst*
The UniBE is right in the middle.
With us, you benefit from the central location and transport-friendly sites.
ICT\-Security Operations Analyst*
Start of work
per sofort or by arrangement
Employment relationship
unbefristet
Institute / Place of work
Informatikdienste
This is us
The Universität Bern educates over 19'400 students and employs more than 8'000 people in around 150 institutes as well as the central division.
The Abteilung Informatikdienste plans and realizes the central IT\-infrastructure for students and employees of the Universität Bern. It operates all important IT\-services from the network to cloud services and advises the faculties and institutes in the areas of IT.
In the "Security" team, we are looking for a motivated and committed personality who sets decisive impulses in the Security Operations Center.
In the role as ICT\-Security Operations Analyst*, you are a key figure in the defense of the Universität Bern against cyber threats. In cooperation with the MSSP, the IT specialist departments of the Informatikdienste and the institutes, you monitor the IT\-infrastructure and initiate appropriate protective measures in the event of security-threatening incidents. With the help of vulnerability scans, you discover vulnerabilities and address the remediation with appropriate urgency. With your expertise, you can correctly assess security events in the context of the Universität Bern and excel with recommendations for action.
Tasks
Main activities:
Optimization of the SOC\-processes as well as further development of the SOC\-infrastructure
Simplification and automation of work processes
Initiation and coordination of immediate measures (e.g., protection, transition, bypass and escalation measures) in the event of security-threatening incidents
Regular exchange with the MSSP to improve cooperation as well as to monitor the contractually defined services
Design, implementation and continuous improvement of use cases of the SOC\-monitoring instruments as well as documentation and maintenance of the associated playbooks
Risk-based analysis and prioritization of vulnerabilities as well as proactive support of the IT\-system administrators in the implementation of necessary measures
Validation of the remediation of high-severity vulnerabilities or critical vulnerabilities
Secondary activities:
Analysis of cyber threats in the IT environment with a focus on actor groups, attack targets and methods as well as assessment of the potential impact on the university
Participation in the development of solution approaches and decision bases taking into account security requirements and needs
Assessment of the effectiveness of implemented security measures
Support in the collection and analysis of log data
Requirements
Several years of experience in the field of IT\-Security, ideally in a SOC environment
Experience in the areas of Vulnerability Management, Log Management and Threat Intelligence
Communicative and flexible personality with strong teamwork skills as well as a structured and service-oriented way of working
High degree of independence and sense of responsibility, a quick grasp of things as well as the will for training, further education and specialization in the above-mentioned areas
Very good German and English skills in spoken and written form
Knowledge of Microsoft M365 is an advantage
Experience with a scripting language as well as knowledge of the Kusto Query Language completes the profile
Your Benefits
Team-oriented work
Healthy corporate culture and good working atmosphere
Central location in the heart of Bern
Interdisciplinary cooperation
Working at the UniBE
The Universität Bern offers not only exciting tasks, but also an environment that actively promotes development, diversity and equal opportunities. Discover what distinguishes us as an employer and how you can progress with us.
Application and Contact
Send your detailed application documents (motivation letter, CV stating month/year of employment, certificates, diplomas) in a single PDF\-file by 31\. August 2026 via e-mail to the Sekretariat der Informatikdienste.
Questions about the position?
, Leiter Gruppe Network \& Security
Write e-mail (<>)
Tel.
Questions about the application?
Sekretariat ID
Write e-mail (<>)
Tel. jpid87effdejm jit0832jm jiy26jm
Automatically translated from the original.
Posted 2 weeks ago