Threat and Vulnerability Management Lead

Vor 7 Tagen


Zurich, Schweiz BitMEX Vollzeit

BitMEX is the world's leading cryptocurrency derivatives trading platform, which has pioneered cryptocurrency trading through relentless commitment to change, and continues to set benchmarks for innovation, liquidity, and security today.

As the world's most advanced peer-to-peer crypto-products trading platform and API, BitMEX gives knowledge, confidence, and precision to hundreds of thousands of traders, transacting billions of USD a day.

**Overview**

We are seeking a Threat and Vulnerability Management Lead with a bias for action mindset and a focus on exceeding expectations.This role requires thought leadership experience in the Cloud and DevSecOps domains in addition to technical leadership experience managing some of the brightest software security experts and thought leaders in our field.

**Key Responsibilities**
- Take ownership of the Application, Infrastructure and Data security portfolio, helping to drive best practices, conducting security testing (automatic, manual), creating new ways to solve security issues, integrating security tools and implementing security controls
- Validate vulnerability findings from External Pentesters and Security Researchers from Bug Bounty Platforms
- Provide advisory to the development and infrastructure teams on how to reduce their surface of attack
- Manages a team of Security SMEs in identifying, developing, implementing and maintaining information security processes across the organization to identify threats, reduce risks, and decrease exposure.
- Implements tools and strategies to ensure the secure implementation of the SDLC and DevOps Program.
- Communicates effectively with lines of business and clients to address complex information security issues.
- Reviews documentation created by team members and peers to provide constructive feedback.
- Prepares and reviews activity reports as requested by management.
- Responsible for technical information security architecture, network and system security designs, implementation and management of information security systems and/or programs for the protection of the environment.
- Keeps senior management apprised on the status of information security issues and initiatives.

**Qualifications**
- 15+ years of security industry experience, 8+ years in an appsec role
- Working knowledge of Amazon Web Services,
- Hands on experience with the top Cloud concerns:

- Identity and Access Management
- Strategies to ensure adequate Compute, Network and Storage Security controls in cloud environments
- Secrets and Credentials Management solutions
- Centralized Logging
- Container Security
- Incident Response, Disaster Recovery and Cloud Forensics
- Compliance as Code
- Cloud automation frameworks like Terraform, Ansible, Chef etc. is also a plus
- Strong software development skills with a background in some combination of Python, Ruby, Golang, NodeJS
- Strong understanding of common appsec controls, such as CSP, SRI, the same-origin policy, cookie security, etc
- #LI-CH1_

Join us, as we build a thriving cryptocurrency ecosystem through strategic investments in emerging cryptocurrency technology, and create the future of digital financial services.



  • Zurich, Schweiz coni+partner AG Vollzeit

    Our client is a bank in Zurich. We are searching for a IT security professional (m, f, d) as a Vulnerability and Cyber Risk Manager Aufgaben Contribute to the definition, management and coordination of initiatives around the Bank's IT Security / Contribute to the optimization of the information security strategy and define requirements for optimal...


  • Zurich, Schweiz ABB Vollzeit

    **Global Cybersecurity Lead, E-mobility**: **Take your next career step at ABB with a global team that is energizing the transformation of society and industry to achieve a more productive, sustainable future. At ABB, we have the clear goal of driving diversity and inclusion across all dimensions: gender, LGBTQ+, abilities, ethnicity and generations....


  • Zurich, Schweiz Avaloq Vollzeit

    Company Description **Writing the future. Together.** Avaloq is a value driven, fast-paced financial technology and services company and we are committed to developing the banking solutions of tomorrow. **Job Description**: **Your team** In this role you will work within the Chief Information Security Office in close collaboration with our Security...


  • Zurich, Schweiz Google Vollzeit

    Minimum qualifications: - Experience with managing risk and compliance programs, or the execution of security risk assessments, or IT audits in a cloud service provider environment. - Experience with cloud computing regulatory and compliance requirements related to security, privacy, sovereignty, extended workforce, and third party management, including...


  • Zurich, Schweiz SGS Vollzeit

    Company Description **SGS is the world's leading inspection, verification, testing and certification company. We are recognised as the global benchmark for quality and integrity. With more than 89,000 employees, we operate a network of more than 2,600 offices and laboratories around the world.** **Job Description**: Our Forestry Services are a small team of...


  • Zurich, Schweiz IVY Partners Vollzeit

    **About us**: Ivy Partners is a Swiss advisory company that contributes to the evolution of companies in their strategic, technological and organisational challenges. Our mission is to provide our employees with a fulfilling and supportive career environment, where everyone is valued and empowered through training and opportunities for growth. As an...


  • Zurich, Schweiz UBS Vollzeit

    Switzerland - Zürich - Information Technology (IT) - Group Functions **Job Reference #** - 267100BR **City** - Zürich **Job Type** - Full Time **Your role** - Have you successfully participated in a cyber security red team testing service? - Do you understand how red team exercises work? - Are you familiar enough with the tech details to be fluent when...


  • Zurich, Schweiz ABB Vollzeit

    **Financial Planning and Analysis Cash Leader**: **Take your next career step at ABB with a global team that is energizing the transformation of society and industry to achieve a more productive, sustainable future. At ABB, we have the clear goal of driving diversity and inclusion across all dimensions: gender, LGBTQ+, abilities, ethnicity and generations....


  • Zurich, Schweiz Google Vollzeit

    Minimum qualifications: - Bachelor's degree or equivalent practical experience. - Experience with information security topics (threat modeling, detection, or prevention mechanisms, breach investigation). - Experience communicating technical concepts to a variety of audiences. Preferred qualifications: - Experience operating within cross-functional teams...


  • Zurich, Schweiz ABB Vollzeit

    **Global Sustainability and Compliance Lead, Supply Chain Management (flexible location)**: **Take your next career step at ABB with a global team that is energizing the transformation of society and industry to achieve a more productive, sustainable future. At ABB, we have the clear goal of driving diversity and inclusion across all dimensions: gender,...