IT Security Architect (a) - Secure Development, Threat & Vulnerability Management 80-100%
- Employment type
- Full-time
- Location
- Dübendorf
- First posted
Do you want to design security architectures, define security standards, and anchor security sustainably in the software development process? Do you want to contribute your expertise in a motivated team and raise Helsana to a new security level? Then Lenka and her three-person IT Security Architecture team look forward to your reinforcement.
What awaits you
• Developing and optimizing target images and standards as well as creating concepts and blueprints for Secure Development (primary) and Threat & Vulnerability Management (secondary)
• Integrating security requirements into the entire SDLC and advising on Secure Coding, code analysis, security testing, and CI/CD pipeline security
• Collaboration with the Cyber Defense Center for Threat Intelligence as well as building and maintaining the Threat Landscape
• Shaping the methods and guardrails for Threat Modeling and supporting their effective implementation
• Advising IT projects as well as assessing IT solutions regarding security aspects within the framework of Security Architecture Reviews and approvals
What you bring
• Completed studies in computer science or comparable qualification
• Several years of experience in IT Security architecture, sound practical experience in Secure Development, and very good knowledge in Threat & Vulnerability Management
• Proven knowledge in Secure Coding, CI/CD Security, code analysis tools, threat modeling, vulnerability management
• Sound knowledge of frameworks (e.g., OWASP, MITRE ATT&CK), standards (ISO27002, NIST CSF), and best practices
• Strong-communication personality with a flair for consulting and high initiative
Do you have questions about the application process?
Christian Wieland
HR Consultant
+41 58 340 66 56
LinkedIn
Job-ID: 34210
Recruitment process without a cover letter
*We exclusively accept online applications. Additionally, we are filling this position without external personnel service providers.*
Automatically translated from the original.
Posted yesterday