
Security Engineer
Basel-Stadt, Switzerland
Apply by 28 Mar 2026
Competitive
Job Ref.: BH-56871
Job Description
- Start date: ASAP
- Latest start date: May 2025
- End date: 12 months contract
- Extension: TBC
- Work location: Basel
- Workload: 100%
- Travelling: N/A
- On Call: N/A
- Team: Governance & Assurance
- Department: Corporate Security
- Group: Governance & Assurance team
Tasks & Responsibilities:
Provide expert advice and operational experience on information security risk and control matters throughout the organisation. This includes:
- Conduct technical control assessments/tests on applications and infrastructure components
- Integrating security into DevOps
- Enhance manual compliance review processes by leveraging automation
- Conduct compliance reviews/audits of the organization’s information assets.
- Review of existing security standards/baselines and creation of new ones
- Review and advise on the security measures to protect the confidentiality, integrity and availability of the Bank’s information assets and critical services.
- Perform risk assessments and contribute to reviews of the assessment methodology
- Contribute to the implementation of industry-recognised key critical controls and contribute to Corporate Security compliance mandate
- Support the team on technical security projects, in particular to develop and enhance the BIS security policies and procedures. Participate in the gathering and analysis of information from security-related sources
Must haves:
- Certification in security-related disciplines and technologies would be an advantage (accreditation such as OSCE, OSCP, OSEP, GPEN, GMOB, GXPN, OSWE, CISSP) (*****)
- Experience with some of the following: (****)
- Scripting and automation / Software Engineering (Basic to Intermediate)
- Enhancements of manual compliance reviews
- Security knowledge in cloud technology, operating system, application security, penetration testing and sound knowledge of cyber governance risk management practices (***)
- Familiarity with industry-recognized frameworks and controls (e.g., NIST CSF, CIS, OWASP, SANS, SWIFT CSP etc…). We are looking for experience in implementing these frameworks. (**)
- Experience with documenting and communicating results that may be consumed by both developers and management-level audiences. (*)
- Self-confident with good collaboration skills
- Able to learn things quickly
- Team player and technically autonomous
Nice to Have:
- Microsoft Azure
- Identity and Access Management
- Openshift Container Platform
- Vulnerability Scanners
- SharePoint Online, DevOps
- Github