Threat and Vulnerability Management Lead
Vor 7 Tagen
BitMEX is the world's leading cryptocurrency derivatives trading platform, which has pioneered cryptocurrency trading through relentless commitment to change, and continues to set benchmarks for innovation, liquidity, and security today.
As the world's most advanced peer-to-peer crypto-products trading platform and API, BitMEX gives knowledge, confidence, and precision to hundreds of thousands of traders, transacting billions of USD a day.
**Overview**
We are seeking a Threat and Vulnerability Management Lead with a bias for action mindset and a focus on exceeding expectations.This role requires thought leadership experience in the Cloud and DevSecOps domains in addition to technical leadership experience managing some of the brightest software security experts and thought leaders in our field.
**Key Responsibilities**
- Take ownership of the Application, Infrastructure and Data security portfolio, helping to drive best practices, conducting security testing (automatic, manual), creating new ways to solve security issues, integrating security tools and implementing security controls
- Validate vulnerability findings from External Pentesters and Security Researchers from Bug Bounty Platforms
- Provide advisory to the development and infrastructure teams on how to reduce their surface of attack
- Manages a team of Security SMEs in identifying, developing, implementing and maintaining information security processes across the organization to identify threats, reduce risks, and decrease exposure.
- Implements tools and strategies to ensure the secure implementation of the SDLC and DevOps Program.
- Communicates effectively with lines of business and clients to address complex information security issues.
- Reviews documentation created by team members and peers to provide constructive feedback.
- Prepares and reviews activity reports as requested by management.
- Responsible for technical information security architecture, network and system security designs, implementation and management of information security systems and/or programs for the protection of the environment.
- Keeps senior management apprised on the status of information security issues and initiatives.
**Qualifications**
- 15+ years of security industry experience, 8+ years in an appsec role
- Working knowledge of Amazon Web Services,
- Hands on experience with the top Cloud concerns:
- Identity and Access Management
- Strategies to ensure adequate Compute, Network and Storage Security controls in cloud environments
- Secrets and Credentials Management solutions
- Centralized Logging
- Container Security
- Incident Response, Disaster Recovery and Cloud Forensics
- Compliance as Code
- Cloud automation frameworks like Terraform, Ansible, Chef etc. is also a plus
- Strong software development skills with a background in some combination of Python, Ruby, Golang, NodeJS
- Strong understanding of common appsec controls, such as CSP, SRI, the same-origin policy, cookie security, etc
- #LI-CH1_
Join us, as we build a thriving cryptocurrency ecosystem through strategic investments in emerging cryptocurrency technology, and create the future of digital financial services.
-
Vulnerability and Cyber Risk Manager
vor 18 Stunden
Zurich, Schweiz coni+partner AG VollzeitOur client is a bank in Zurich. We are searching for a IT security professional (m, f, d) as a Vulnerability and Cyber Risk Manager Aufgaben Contribute to the definition, management and coordination of initiatives around the Bank's IT Security / Contribute to the optimization of the information security strategy and define requirements for optimal...
-
Global Cybersecurity Lead, E-mobility
vor 18 Stunden
Zurich, Schweiz ABB Vollzeit**Global Cybersecurity Lead, E-mobility**: **Take your next career step at ABB with a global team that is energizing the transformation of society and industry to achieve a more productive, sustainable future. At ABB, we have the clear goal of driving diversity and inclusion across all dimensions: gender, LGBTQ+, abilities, ethnicity and generations....
-
Technical Security Lead Switzerland
vor 2 Wochen
Zurich, Schweiz Avaloq VollzeitCompany Description **Writing the future. Together.** Avaloq is a value driven, fast-paced financial technology and services company and we are committed to developing the banking solutions of tomorrow. **Job Description**: **Your team** In this role you will work within the Chief Information Security Office in close collaboration with our Security...
-
Risk Management and Audit Lead, Enterprise Trust
vor 18 Stunden
Zurich, Schweiz Google VollzeitMinimum qualifications: - Experience with managing risk and compliance programs, or the execution of security risk assessments, or IT audits in a cloud service provider environment. - Experience with cloud computing regulatory and compliance requirements related to security, privacy, sovereignty, extended workforce, and third party management, including...
-
Coc Lead Auditor and Support of Product Management
vor 18 Stunden
Zurich, Schweiz SGS VollzeitCompany Description **SGS is the world's leading inspection, verification, testing and certification company. We are recognised as the global benchmark for quality and integrity. With more than 89,000 employees, we operate a network of more than 2,600 offices and laboratories around the world.** **Job Description**: Our Forestry Services are a small team of...
-
Security Consultant in Data Protection
vor 2 Wochen
Zurich, Schweiz IVY Partners Vollzeit**About us**: Ivy Partners is a Swiss advisory company that contributes to the evolution of companies in their strategic, technological and organisational challenges. Our mission is to provide our employees with a fulfilling and supportive career environment, where everyone is valued and empowered through training and opportunities for growth. As an...
-
Physical Red Team Tester
Vor 3 Tagen
Zurich, Schweiz UBS VollzeitSwitzerland - Zürich - Information Technology (IT) - Group Functions **Job Reference #** - 267100BR **City** - Zürich **Job Type** - Full Time **Your role** - Have you successfully participated in a cyber security red team testing service? - Do you understand how red team exercises work? - Are you familiar enough with the tech details to be fluent when...
-
Financial Planning and Analysis Cash Leader
Vor 3 Tagen
Zurich, Schweiz ABB Vollzeit**Financial Planning and Analysis Cash Leader**: **Take your next career step at ABB with a global team that is energizing the transformation of society and industry to achieve a more productive, sustainable future. At ABB, we have the clear goal of driving diversity and inclusion across all dimensions: gender, LGBTQ+, abilities, ethnicity and generations....
-
Zurich, Schweiz Google VollzeitMinimum qualifications: - Bachelor's degree or equivalent practical experience. - Experience with information security topics (threat modeling, detection, or prevention mechanisms, breach investigation). - Experience communicating technical concepts to a variety of audiences. Preferred qualifications: - Experience operating within cross-functional teams...
-
Global Sustainability and Compliance Lead, Supply
vor 2 Wochen
Zurich, Schweiz ABB Vollzeit**Global Sustainability and Compliance Lead, Supply Chain Management (flexible location)**: **Take your next career step at ABB with a global team that is energizing the transformation of society and industry to achieve a more productive, sustainable future. At ABB, we have the clear goal of driving diversity and inclusion across all dimensions: gender,...