Employment type
Permanent
Industry
Infrastructure
Area
IT
Location
German-speaking Switzerland
Remote from abroad?
No
Home office?
Flexible
01
Tasks and responsibilities
- Design, implement, and continuously improve security controls within the Azure cloud environment
- Own the cloud security architecture and ensure alignment with enterprise cybersecurity strategy
- Conduct cloud risk assessments and threat modeling for new and existing services
- Translate security policies and regulatory requirements into technical cloud controls
- Define and enforce security baselines, guardrails, and governance standards in Azure
- Lead remediation efforts for identified cloud vulnerabilities and misconfigurations
- Support DevOps teams with secure-by-design architecture and DevSecOps practices
- Implement automated security controls using Infrastructure as Code and CI/CD pipelines
- Collaborate with central cybersecurity, infrastructure, and application teams
- Maintain cloud security documentation, standards, and operational runbooks
- Drive continuous improvement of cloud security posture management
- Monitor emerging threats and evaluate new security technologies for cloud adoption
- Provide internal consulting and advisory services for cloud-related initiatives
- Contribute to incident response activities related to cloud environments
- Deliver knowledge transfer sessions and technical training to stakeholders
02
Must-have criteria
- Master’s degree in Cyber Security, Computer Science, or a related technical discipline
- Proven professional experience in cloud security engineering
- Hands-on experience securing Microsoft Azure environments
- Strong understanding of SaaS, PaaS, IaaS, and associated cloud-native security services
- Demonstrated experience in risk assessment and mitigation within cloud platforms
- Solid knowledge of security frameworks such as ISO 27001/27002 or NIST
- Practical experience implementing security controls using Infrastructure as Code (e.g., Terraform)
- Experience working with Git-based workflows and CI/CD automation
- Background in security testing, vulnerability management, or offensive security techniques
- Ability to design scalable, resilient, and compliant cloud security architectures
- Strong analytical skills and the ability to manage complex system dependencies
- Experience collaborating in agile or DevOps-driven environments
03
Nice-to-have criteria
- Microsoft Azure security certifications (e.g., AZ-500, SC-100)
- Experience with Azure Kubernetes Service (AKS) security
- Strong expertise in Identity and Access Management (IAM) and Zero Trust concepts
- Experience with container security and cloud-native workload protection
- Exposure to SIEM, SOAR, or cloud security posture management (CSPM) tools
- Hands-on penetration testing or CTF participation
- Knowledge of critical infrastructure or highly regulated environments
- Experience in hybrid cloud or multi-cloud architectures
- Familiarity with automation frameworks and policy-as-code
- Experience contributing to security audits or compliance assessments
- Prior experience in highly available, mission-critical environments
04
Language requirements
- Fluent English (written and spoken)
- Fluent German (written and spoken)
05
Application form