Department
Health & Biotech
Category
Health & Biotech
Job type
Full-Time
Experience
Not Mentioned
Description
- You triage and investigate reported security incidents.
- Refine incident management processes and response processes.
- You maintain awareness of emerging threats, vulnerabilities, and security trends to proactively identify and address potential risks, impacting all members of the Roche group.
- Address questions of end users related to IT security topics through our communication channels.
Qualifications
Highest qualification: University
- You hold a Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or at least four years of equivalent work experience in the information security field.
- You have experience driving threat hunting, incident response, or data protection missions and have a solid understanding of the most common security vulnerabilities and attack vectors, as well as their respective mitigation strategies.
- Proficiency with scripting or programming languages such as Python, Powershell/C#, Bash.
- Industry relevant certifications such as BTL1/2, GMON, GCIH, GCFA, GREM, are appreciated but not mandatory.
- You are proficient in clearly articulating technical findings and recommendations to both technical and non-technical stakeholders, and the capability to work independently or as part of a team.
- You have a passion for the field of computer and network security.
Preferred Skills
- You have experience responding to incidents in cloud environments as well as Network and Endpoint security monitoring experience in a large sophisticated environment.
- Demonstrated ability to analyze, triage, and escalate information security incidents as well as being familiar with various defensive and offensive security tool sets.
- You are comfortable challenging the status quo, to improve the security posture of the Roche group and have the ability to work within security frameworks and methodologies (e.g. ATT&CK, STRIDE).
- Experience with Google Workspace, Microsoft Office 365, Entra ID, Sharepoint Online, PAN XDR, Splunk, BigQuery and threat intel platforms such as MISP, OpenCTI
- You are proficient in English, German is a plus as well as experience working with a global team and organization.
