Cybersecurity Expert
Ticino, Lugano, Switzerland
FORFIRM
FORFIRM is a consulting firm in the areas of IT, Finance, Governance, Risk & Compliance in Swiss territoryFORFIRM is providing solutions to real business challenges for our clients through innovation and deep industry understanding. We pride ourselves on being a knowledge-based company, with no barriers or pre-built solutions – we listen to our clients and solve their unique problems.
At FORFIRM, we are creating a culture where each person can define their own role parameters and speak their mind without any hesitation. We are a true meritocracy, where individual results define each person’s career path.
We are seeking a qualified Cybersecurity Expert with specific expertise in cloud environments. This position requires strong technical experience, problem-solving skills, and a proactive approach to managing cyber risks.
Main responsibilities
Design and implement security architectures for cloud environments (AWS, Azure, GCP).
Conduct risk assessments and security audits to identify vulnerabilities and propose solutions.
Configure and manage cloud security tools, such as firewalls, SIEMs, IAMs, and intrusion detection systems.
Monitor and respond to security incidents, conducting post-incident analysis to prevent future threats.
Collaborate with IT and DevOps teams to integrate security practices into development and deployment (DevSecOps) processes.
Provide training and awareness to staff on security risks and best practices.
Draw up technical documentation and reports for internal and external audits.
Requirements
Bachelor's degree in Computer Science, Cybersecurity, Engineering or related field (or equivalent experience).
Minimum of 5 years of experience in cybersecurity roles, with at least 3 years of specific experience in cloud environments.
Preferred certifications : CISSP, CCSP, PCI QSA, AWS Certified Security, Azure Security Engineer, CISM, or similar.
Deep knowledge of cloud platforms (AWS, Azure, GCP) and related security tools.
Experience in managing PCI DSS requirements, including audits and implementing controls.
Proficiency in monitoring and security tools such as Splunk, Qualys, CrowdStrike, or equivalent.
Familiarity with security frameworks (NIST, ISO 27001, CIS Controls).
Ability to analyze logs, identify threats, and respond quickly to incidents.
Excellent communication skills, both written and oral, to interact with technical and non-technical stakeholders.
Basic knowledge of scripting languages (Python, Bash) for automating security tasks is a plus.
Soft skills
Problem-solving orientation and attention to detail.
Ability to work in teams and manage projects in dynamic environments.
Proactive approach to risk management and continuous updating of skills.
Ability to manage stressful situations and respond effectively to critical incidents.
What We Offer :
Opportunity to work on international multi-disciplinary projects for leading brands from day one.
Highly meritocratic environment – points-based bonus and promotion system.
A focus on knowledge building with regular internal and external training opportunities.
Supportive and dynamic team.
FORFIRM is an equal opportunities employer that values diversity within the company. Qualified applicants will receive consideration for employment without discrimination about race, religion, colour, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Audits AWS Azure Bash CCSP CISM CISSP Cloud Computer Science CrowdStrike DevOps DevSecOps Firewalls GCP Intrusion detection ISO 27001 Monitoring NIST PCI DSS PCI QSA Python Qualys Risk assessment Risk management Scripting SIEM Splunk Vulnerabilities
Perks/benefits: Career development
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.