Your personal AI career agent
Senior IT Security Engineer(m/w/x)
Engineering automated SOC runbooks and detection rules using Microsoft Sentinel/XDR for a medical non-profit. 2 years hands-on SOC L1/L2/L3 experience and deep Microsoft security product familiarity required. Additional vacation days, higher pension contributions.
Requirements
- Bachelor's degree in IT, Computer Science, or related field
- 5 years professional experience in relevant field
- Minimum 2 years hands-on SOC L1/L2/L3 experience
- Programming skills in Python or Powershell
- Deep familiarity with Microsoft security products (Sentinel, Defender XDR, KQL)
- Strong understanding of Azure infrastructure, identity, security architecture
- Understanding of security baselining, network hardening, zero trust
- Ability to work in cross-functional DevSecOps environment
- Fluency in English
- Fluency in German or other languages (added value)
- Microsoft security certifications (SC-200, SC-300)
- Experience with agentic AI standards and responsible AI practices
- Familiarity with governance models and risk assessment frameworks
- Understanding of structured threat intelligence, enrichment workflows
- Familiarity with MITRE ATT&CK mapping, detection coverage
- Familiarity with detection-as-code pipelines, version control
- Familiarity with WAF principles and rule tuning
Tasks
- Develop and maintain automated SOC Level 1 and Level 2 runbooks and playbooks using Logic Apps, Power Automate, and AI Foundry
- Engineer detection rules in Microsoft Sentinel and XDR platforms
- Engineer workbooks in Microsoft Sentinel and XDR platforms
- Engineer playbooks in Microsoft Sentinel and XDR platforms
- Integrate and optimize Microsoft Defender for Endpoint, Identity, Cloud, and Office 365 within XDR
- Apply AI-driven threat detection and response using Microsoft Copilot for Security and related tools
- Collaborate with internal teams and external partners to embed security into CI/CD pipelines and IT delivery models
- Provide SOC Level 3 support for complex incidents
- Perform forensic analysis for complex incidents
- Perform threat containment for complex incidents
- Contribute to the DevSecOps organization
- Support implementation of ISO 27000-aligned ISMS
- Assist with governance and compliance efforts
Work Experience
- 5 years
Education
- Bachelor's degree
Languages
- English – Business Fluent
- German – Business Fluent
Tools & Technologies
- Python
- Powershell
- Microsoft Sentinel
- Defender XDR
- KQL
- Azure
- MITRE ATT&CK
- WAF
Benefits
More Vacation Days
- Additional vacation days
Retirement Plans
- Higher pension contributions
Learning & Development
- Further training culture
- Support for individual development
Not a perfect match?
- SwissPromedFull-timeOn-siteExperiencedDavos Dorf
- Spital Davos AG
Rettungssanitäter:in Wintersaison 2026-27(m/w/x)
Full-time/Part-timeTemporary contractOn-siteNot specifiedDavos - Praxiszentrum Davos AG
Medizinische:r Praxisassistent:in(m/w/x)
Full-timeTemporary contractOn-siteExperiencedDavos - Spital Davos AG
Rettungssanitäter:in(m/w/x)
Full-time/Part-timeOn-siteNot specifiedDavos - Spital Davos AG
Dipl. Radiologiefachperson HF(m/w/x)
Full-timeTemporary contractOn-siteExperiencedDavos
Senior IT Security Engineer(m/w/x)
Engineering automated SOC runbooks and detection rules using Microsoft Sentinel/XDR for a medical non-profit. 2 years hands-on SOC L1/L2/L3 experience and deep Microsoft security product familiarity required. Additional vacation days, higher pension contributions.
Requirements
- Bachelor's degree in IT, Computer Science, or related field
- 5 years professional experience in relevant field
- Minimum 2 years hands-on SOC L1/L2/L3 experience
- Programming skills in Python or Powershell
- Deep familiarity with Microsoft security products (Sentinel, Defender XDR, KQL)
- Strong understanding of Azure infrastructure, identity, security architecture
- Understanding of security baselining, network hardening, zero trust
- Ability to work in cross-functional DevSecOps environment
- Fluency in English
- Fluency in German or other languages (added value)
- Microsoft security certifications (SC-200, SC-300)
- Experience with agentic AI standards and responsible AI practices
- Familiarity with governance models and risk assessment frameworks
- Understanding of structured threat intelligence, enrichment workflows
- Familiarity with MITRE ATT&CK mapping, detection coverage
- Familiarity with detection-as-code pipelines, version control
- Familiarity with WAF principles and rule tuning
Tasks
- Develop and maintain automated SOC Level 1 and Level 2 runbooks and playbooks using Logic Apps, Power Automate, and AI Foundry
- Engineer detection rules in Microsoft Sentinel and XDR platforms
- Engineer workbooks in Microsoft Sentinel and XDR platforms
- Engineer playbooks in Microsoft Sentinel and XDR platforms
- Integrate and optimize Microsoft Defender for Endpoint, Identity, Cloud, and Office 365 within XDR
- Apply AI-driven threat detection and response using Microsoft Copilot for Security and related tools
- Collaborate with internal teams and external partners to embed security into CI/CD pipelines and IT delivery models
- Provide SOC Level 3 support for complex incidents
- Perform forensic analysis for complex incidents
- Perform threat containment for complex incidents
- Contribute to the DevSecOps organization
- Support implementation of ISO 27000-aligned ISMS
- Assist with governance and compliance efforts
Work Experience
- 5 years
Education
- Bachelor's degree
Languages
- English – Business Fluent
- German – Business Fluent
Tools & Technologies
- Python
- Powershell
- Microsoft Sentinel
- Defender XDR
- KQL
- Azure
- MITRE ATT&CK
- WAF
Benefits
More Vacation Days
- Additional vacation days
Retirement Plans
- Higher pension contributions
Learning & Development
- Further training culture
- Support for individual development
About the Company
AO Foundation
Industry
Healthcare
Description
The company is a not-for-profit organization specializing in the surgical treatment of trauma and musculoskeletal disorders.
Not a perfect match?
- SwissPromed
Leitender Arzt Neurologie(m/w/x)
Full-timeOn-siteExperiencedDavos Dorf - Spital Davos AG
Rettungssanitäter:in Wintersaison 2026-27(m/w/x)
Full-time/Part-timeTemporary contractOn-siteNot specifiedDavos - Praxiszentrum Davos AG
Medizinische:r Praxisassistent:in(m/w/x)
Full-timeTemporary contractOn-siteExperiencedDavos - Spital Davos AG
Rettungssanitäter:in(m/w/x)
Full-time/Part-timeOn-siteNot specifiedDavos - Spital Davos AG
Dipl. Radiologiefachperson HF(m/w/x)
Full-timeTemporary contractOn-siteExperiencedDavos