Skip to content
New Job?Nejo!

Your personal AI career agent

AOAO Foundation

Senior IT Security Engineer(m/w/x)

Davos
Full-timeOn-siteSenior

Engineering automated SOC runbooks and detection rules using Microsoft Sentinel/XDR for a medical non-profit. 2 years hands-on SOC L1/L2/L3 experience and deep Microsoft security product familiarity required. Additional vacation days, higher pension contributions.

Requirements

  • Bachelor's degree in IT, Computer Science, or related field
  • 5 years professional experience in relevant field
  • Minimum 2 years hands-on SOC L1/L2/L3 experience
  • Programming skills in Python or Powershell
  • Deep familiarity with Microsoft security products (Sentinel, Defender XDR, KQL)
  • Strong understanding of Azure infrastructure, identity, security architecture
  • Understanding of security baselining, network hardening, zero trust
  • Ability to work in cross-functional DevSecOps environment
  • Fluency in English
  • Fluency in German or other languages (added value)
  • Microsoft security certifications (SC-200, SC-300)
  • Experience with agentic AI standards and responsible AI practices
  • Familiarity with governance models and risk assessment frameworks
  • Understanding of structured threat intelligence, enrichment workflows
  • Familiarity with MITRE ATT&CK mapping, detection coverage
  • Familiarity with detection-as-code pipelines, version control
  • Familiarity with WAF principles and rule tuning

Tasks

  • Develop and maintain automated SOC Level 1 and Level 2 runbooks and playbooks using Logic Apps, Power Automate, and AI Foundry
  • Engineer detection rules in Microsoft Sentinel and XDR platforms
  • Engineer workbooks in Microsoft Sentinel and XDR platforms
  • Engineer playbooks in Microsoft Sentinel and XDR platforms
  • Integrate and optimize Microsoft Defender for Endpoint, Identity, Cloud, and Office 365 within XDR
  • Apply AI-driven threat detection and response using Microsoft Copilot for Security and related tools
  • Collaborate with internal teams and external partners to embed security into CI/CD pipelines and IT delivery models
  • Provide SOC Level 3 support for complex incidents
  • Perform forensic analysis for complex incidents
  • Perform threat containment for complex incidents
  • Contribute to the DevSecOps organization
  • Support implementation of ISO 27000-aligned ISMS
  • Assist with governance and compliance efforts

Work Experience

  • 5 years

Education

  • Bachelor's degree

Languages

  • EnglishBusiness Fluent
  • GermanBusiness Fluent

Tools & Technologies

  • Python
  • Powershell
  • Microsoft Sentinel
  • Defender XDR
  • KQL
  • Azure
  • MITRE ATT&CK
  • WAF

Benefits

More Vacation Days

  • Additional vacation days

Retirement Plans

  • Higher pension contributions

Learning & Development

  • Further training culture
  • Support for individual development
Find the original job posting in its most current version here. Nejo automatically captured this job from the website of AO Foundation and processed the information on Nejo with the help of AI for you. Despite careful analysis, some information may be incomplete or inaccurate. Please always verify all details in the original posting! Content and copyrights of the original posting belong to the advertising company.

  • SwissPromed

    Leitender Arzt Neurologie(m/w/x)

    Full-timeOn-siteExperienced
    Davos Dorf
  • Spital Davos AG

    Rettungssanitäter:in Wintersaison 2026-27(m/w/x)

    Full-time/Part-timeTemporary contractOn-siteNot specified
    Davos
  • Praxiszentrum Davos AG

    Medizinische:r Praxisassistent:in(m/w/x)

    Full-timeTemporary contractOn-siteExperienced
    Davos
  • Spital Davos AG

    Rettungssanitäter:in(m/w/x)

    Full-time/Part-timeOn-siteNot specified
    Davos
  • Spital Davos AG

    Dipl. Radiologiefachperson HF(m/w/x)

    Full-timeTemporary contractOn-siteExperienced
    Davos
View all 40+ similar jobs

Nejo is an AI – results may be incomplete or contain mistakes