SENIOR SYSTEMS ENGINEER - CYBERSECURITY FOCUS
KNET Human Resources S.r.l.
- Lugano, Tessin
- Befristet
- Vollzeit
- Manage identity and access controls: Administer and configure Azure AD (Entra ID), MFA, and RBAC; monitor user activity, manage privileged access, and enforce secure device management via Intune.
- Maintain email security: Configure SPF, DKIM, DMARC, manage email filtering and allow/block lists, respond to phishing threats, and conduct user training simulations.
- Oversee Endpoint Detection and Response solutions, configure DHCP, VLANs, port-based protection, and monitor for suspicious device behavior.
- Implement and maintain SIEM systems (e.g., FortiSIEM), conduct incident investigations, preserve forensic evidence, and produce post-incident reports.
- Develop and enforce information security policies and lead awareness campaigns to promote user security education.
- Support systems infrastructure including Windows Server 2019, VMware vSphere, and Azure with data backups using Veeam, following GFS strategy.
- Maintain network technologies: Cisco FirePower, Checkpoint, manage network configurations (DHCP, VPN, VLAN).
- Monitor and analyze infrastructure using PRTG, VeeamOne, Zabbix, setting alerts, and tracking system performance and threat detection.
- Develop and maintain scripts and automation solutions using PowerShell, Bash, and Python to streamline infrastructure, security, and process management.
- Minimum of 5 years of strong experience in information security, along with a solid foundation in infrastructure management.
- In-depth knowledge and hands-on experience with:
- Azure AD (Entra ID), Microsoft 365, Intune
- Network technologies (Cisco, Fortinet, CheckPoint)
- Backup systems (Veeam)
- Virtualization systems (VMware vSphere)
- SIEM and EDR solutions
- Strong understanding of Zero Trust principles, RBAC, and network segmentation.
- Proficiency in PowerShell, Bash, Python for scripting and automation.
- Fluency in English is required; knowledge of Italian and/or Russian is a plus.
- Relevant certifications such as CISSP, CISM, SC-200, AZ-500, Fortinet NSE, or similar are considered an advantage.