Information Security Specialist

Vor 5 Tagen


Zürich, Zürich, Schweiz Octopus Energy Vollzeit

Company Overview

We're a technology company at the forefront of creating a smart, sustainable energy system. Our operating system for energy is transforming the industry around the world in a way that benefits everyone.

It's an exciting time in energy with the industry undergoing its largest transformation since industrialisation at an unprecedented rate of change. We're positioning ourselves to be at the heart of that change, aiming to be the leading global provider of solutions that enable customers to release £30bn of value per annum from distributed energy resources (DERs).

We have already attained a market-leading position and are a recognised thought leader and innovator in the industry. Our efforts haven't gone unnoticed, and we're pleased to announce that we now have the full support and backing of Octopus Energy, an award-winning UK energy supplier who share our passion and values.

Salary

The estimated salary for this role is £85,000-£110,000 per annum, depending on experience.

Job Description

You'll play a crucial role in securing our software development processes, integrating security practices, and shaping a culture of security. This is a creative, collaborative position that's a full-time member of an AWS-focused, agile engineering organisation.

You'll work closely with our development and platform teams to help them follow crucial security principles and industry best practices. If you're passionate about AWS technologies and driving security by design, we encourage you to apply.

Key Responsibilities

  • Automation of security controls, security hardening of the developer and IaC processes (building, testing, release), supply chain security (part of the build process), related metrics and monitoring/audits.
  • Develop robust and secure CI/CD pipelines, and manage integrated security tooling (SAST/DAST/SCA).
  • Actively contribute to addressing security findings by helping teams create comprehensive mitigation plans.
  • Help achieve Shift Left in our software development lifecycle by closely working with our product teams.
  • Organise and perform penetration testing of our products, and collaborate with external parties on those tests.
  • Act as a technical security professional, providing advice and guidance to other team members.
  • Contribute to developing platform and security engineering roadmaps.
  • Help cultivate a strong technical security culture across the company.
  • Setup and maintain monitoring, metrics & reporting systems for our security tooling to achieve fine-grained security observability and actionable alerting.

Requirements

  • A strong technical security background.
  • Technical understanding of topics related to SAST, DAST, SCA, Secret Scanning, IAST, fuzzing, and SDLC hardening.
  • Firm capability of conducting end-to-end security assessment of an application.
  • Multiple years of experience working with cloud technologies, preferably with a security focus. We work with AWS, but we understand the skills are transferable.
  • Strong experience in implementing and automating security best-practices.
  • Proficient with DevOps methodologies such as CI/CD, version control (we use GitHub) and full-stack repeatability.
  • Experience working with teams around the globe.
  • Ability to prioritise tasks and work independently.
  • Experience working with infrastructure as code tools such as CloudFormation, Terraform, and CDK.

Desirable Skills

  • Experience with AWS CodePipeline, CodeBuild, CodeDeploy, CloudFormation, SecurityHub, GuardDuty, Config, Inspector, CloudTrail, and other AWS Security services.
  • Software development experience in either Typescript or Python.

Benefits

Our unique culture is one where people learn, decide, and build quicker. We empower our people to work with autonomy alongside a wide range of amazing co-owners on projects that break new ground. We want your hard work to be rewarded with perks you actually care about.

We're committed to equal opportunities and fairness for everyone. Across Octopus, we're looking for genuinely decent people who are honest and empathetic. Our people are our strongest asset, and the unique skills and perspectives they bring to the team drive our success.



  • Zürich, Zürich, Schweiz Rothschild & Co Vollzeit

    About UsRothschild & Co is a leading global financial services group with a rich history of over 200 years at the centre of the world's financial markets.Our expertise, intellectual capital and global network enable us to provide a distinct perspective that makes a meaningful difference to our clients, communities and planet.We have 4,200 talented...


  • Zürich, Zürich, Schweiz Rothschild & Co Vollzeit

    Rothschild & Co is a leading global financial services group with a rich history of over 200 years. Our expertise and global network enable us to provide a unique perspective to our clients, communities, and planet.We have 4,200 talented specialists on the ground in over 40 countries worldwide, delivering a unique global perspective across our four...


  • Zürich, Zürich, Schweiz Rothschild & Co Vollzeit

    About UsRothschild & Co is a leading global financial services group with a rich history spanning over 200 years.We are a family-controlled business built on relationships, emphasizing the importance of our people and finding the right colleagues to drive our business forward.Role OverviewThe Information Security & Data Protection team is responsible for...


  • Zürich, Zürich, Schweiz Rothschild & Co Vollzeit

    About UsRothschild & Co is a leading global financial services group with a history spanning over 200 years. Our expertise and global network enable us to provide a distinct perspective that makes a meaningful difference to our clients, communities, and planet. With a presence in over 40 countries and 4,200 talented specialists, we deliver a unique global...


  • Zürich, Zürich, Schweiz Rothschild & Co Vollzeit

    Job Description:Rothschild & Co is a leading global financial services group with a rich history spanning over 200 years. We pride ourselves on our expertise, intellectual capital, and global network, which enable us to provide a unique perspective that makes a meaningful difference to our clients, communities, and planet.About UsWe have 4,200 talented...


  • Zürich, Zürich, Schweiz Nicoll Curtin Vollzeit

    Job Title: Information Security ConsultantAbout the Role:As a seasoned Information Security Consultant, you will be responsible for analyzing current processes and designing innovative, technically robust solutions. Your strong background in Information Security Management Systems (ISMS) and familiarity with standards such as ISO 27001 & NIST will be...

  • Security Specialist

    vor 4 Wochen


    Zürich, Zürich, Schweiz Nicoll Curtin Vollzeit

    Are you a seasoned cybersecurity professional with a strong background in Information Security Management Systems (ISMS)? Do you have expertise in standards such as ISO 27001 & NIST? This role is perfect for you if you have the ability to analyze processes, design solutions, and implement them effectively within a team.You will join a dedicated team in a...


  • Zürich, Zürich, Schweiz SIX Vollzeit

    Job SummaryWe are seeking a highly skilled Enterprise Security Specialist to join our team at SIX.About the RoleThe Enterprise Security Specialist will be responsible for operating cryptographic devices and PKI systems, with periodic on-call weekend duties. They will follow defined operational processes, documenting actions and outcomes precisely.Key...


  • Zürich, Zürich, Schweiz Talan Vollzeit

    Job DescriptionTalan is a leading company in the field of technological innovation, with a strong presence in 21 countries. We are seeking a highly skilled Security Architecture Specialist to join our team in Switzerland.Key Responsibilities:Design and implement a comprehensive security strategy tailored to the organization's needs.Collaborate with...


  • Zürich, Zürich, Schweiz Switch Vollzeit

    Wir suchen eine unternehmerisch denkende, kommunikative und fachlich versierte Person als Information Security Manager (80-100% - alle Geschlechter) für unser Team bei Switch.Als Information Security Manager unterstützt du im Geschäftsfeld Security Schweizer Hochschulen bei der Konzeption, dem Aufbau und dem Betrieb von systematischem Information Security...


  • Zürich, Zürich, Schweiz KPMG AG Vollzeit

    Cyber Security at KPMGWe are seeking a highly skilled Cyber Security expert to join our team at KPMG. As a Cyber Security specialist, you will play a key role in helping our clients create a resilient and trusted digital world.Your Key Responsibilities:Assess and improve the effectiveness and quality of our clients' information securityAnalyze complex...


  • Zürich, Zürich, Schweiz Rothschild & Co Vollzeit

    Rothschild & Co is a leading global financial services group with a rich history of over 200 years. Our expertise and global network enable us to provide a unique perspective that makes a meaningful difference to our clients, communities, and planet.We are a family-controlled business built on relationships, and we place a huge emphasis on our people and...


  • Zürich, Zürich, Schweiz Nicoll Curtin Vollzeit

    A seasoned Cyber Security Specialist with expertise in Information Security Management Systems (ISMS) is sought after by Nicoll Curtin. The ideal candidate will have a strong background in security standards such as ISO 2700x & NIST, with the ability to analyze processes, design solutions, and implement them effectively within a team.This role involves a...


  • Zürich, Zürich, Schweiz Switch Vollzeit

    Wir suchen einen erfahrenen Information Security Manager für unser Team bei Switch. Als Sicherheitsmanager für Informationssysteme wirst du bei der Konzeption, dem Aufbau und dem Betrieb von systematischem Information Security Management (ISM) unterstützen. Deine Aufgaben umfassen den Aufbau eines Policy Frameworks für Schweizer Hochschulen, die...


  • Zürich, Zürich, Schweiz Switch Vollzeit

    Aufgaben und VerantwortungsbereicheAls Information Security Manager unterstützt du das Geschäftsfeld Security Schweizer Hochschulen bei der Konzeption, dem Aufbau und dem Betrieb von systematischem Information Security Management (ISM). Deine Ziele sind unter anderem der Aufbau eines Policy Frameworks für Schweizer Hochschulen, die Unterstützung bei...


  • Zürich, Zürich, Schweiz Switch Vollzeit

    Cybersecurity-Spezialist/in fur Schweizer HochschulenWir suchen eine fachlich versierte Person, um unsere Sicherheitsdienstleistungen fur Schweizer Hochschulen und Forschungsorganisationen zu starkeren. Als Information Security Manager tragen Sie dazu bei, dass unsere Kunden die Möglichkeiten der Digitalisierung effektiv und effizient nutzen...


  • Zürich, Zürich, Schweiz ONE Agency | IT Recruitment Experts Vollzeit

    Job Summary: We are seeking an experienced Cloud Security Specialist to join our DevOps team at ONE Agency | IT Recruitment Experts. As a key member of our team, you will be responsible for maintaining and improving Azure platform security, identifying and remediating vulnerabilities, providing cyber security expertise, implementing security controls, and...


  • Zürich, Zürich, Schweiz Epam Vollzeit

    About the RoleWe are seeking a highly skilled Cyber Security Specialist to join our team. The ideal candidate will have experience in designing and conducting executive cyber tabletop exercises. The successful candidate will be responsible for developing realistic cyber scenarios, engaging with colleagues across lines of business, and preparing exercise...


  • Zürich, Zürich, Schweiz RULEMATCH AG Vollzeit

    RULEMATCH is a digital assets trading and clearing venue with world-class partners to meet the specific needs of regulated financial institutions. By offering significantly more capital-efficient and lower latency trading, RULEMATCH is helping increase institutional adoption and enable the next evolution of the crypto and digital asset market.Our trading and...


  • Zürich, Zürich, Schweiz RULEMATCH AG Vollzeit

    Cybersecurity Leader for Digital AssetsRULEMATCH is a digital assets trading and clearing venue that seeks a technically oriented Cybersecurity Leader for Digital Assets to build and lead a holistic IT security function. The role will involve implementing and overseeing the company's IT security framework, ensuring security considerations in every phase of...