Platform Security Engineer at Swisscom World
Switzerland, Manitoba, Switzerland -
Full Time


Start Date

Immediate

Expiry Date

08 Dec, 26

Salary

0.0

Posted On

09 Sep, 26

Experience

0 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Industry

Information Technology & Services

Description

You help shape the way we approach security across the ICP ART, from improving our engagement with the SOC, to refining our security processes, to ensuring that the platform we offer to all Swisscom internal DevOps teams is not just functional, but genuinely hardened. You collaborate across multiple teams and solution trains within Swisscom, bridging the gap between offensive security expertise and the day-to-day realities of a fast-moving cloud platform. Thanks to you, security is not an afterthought, it's built in.


This role would be excellently suited to someone who has been doing a lot of offensive security work, but would like to branch out to both advisory and engineering positions without losing all the offensive fun!


  • In your daily work, you will get in touch with the following tools, services and technologies. The more you are already familiar with the better. Everything else you will learn on the job:
    • Offensive Security & Assessment Tools
      • Penetration testing tools and methodologies (e.g. Burp Suite, nmap, Metasploit or similar)
      • Cloud-specific attack frameworks and enumeration tools (e.g. Pacu, ScoutSuite, Prowler)
      • Kubernetes security assessment tools and attack techniques (e.g. kube-bench, kube-hunter, Trivy)
      • Vulnerability scanning and red team tooling
      • OWASP testing methodologies
    • AWS Security Services
      • CloudWatch, CloudTrail, Amazon Inspector
      • AWS Config, Security Hub, GuardDuty
      • AWS Shield, WAF, Firewall Manager
      • IAM, SCPs, Resource Control Policies
      • AWS Network Firewall, VPC Flow Logs
    • Infrastructure as Code
      • CDK
      • Terraform
    • Beneficial Programming / Scripting Languages
      • Python
      • TypeScript of Java is a plus
    • What we expect
      • 4+ years of experience working with AWS, with a strong focus on security
      • Hands-on experience conducting penetration tests or red team assessments, ideally in cloud environments
      • A solid understanding of both how attacks work and how to defend against them
      • Experience working in agile, cross-functional teams
    • Nice to have
      • Offensive security certifications such as OSCP, CRTO, or similar
      • AWS security certifications (AWS Certified Security — Specialty)
      • Experience with SOC processes, threat detection or incident response
      • Familiarity with compliance frameworks relevant to AWS telco workloads
  • Bachelor's Degree (B.Sc.) with comparable experience in Computer Science
  • Excellent problem-solving skills to develop quick and sound solutions that resolve complex issues
  • Team-oriented, very adaptable, a flair for continuous improvement
  • High level of English

Want to know more about us?


  • We are serving the Swiss market as Switzerland’s leading IT & Telecom company. Thus, we are actively driving digitalization and networking, and tapping new paths for our customers and our employees. Our values are sparking passion, aiming high and standing true.
Responsibilities
Loading...