
Senior Expert - Vulnerability Management & Defensive Analytics
- Lachen, Schwyz
- Unbefristet
- Vollzeit
The Security team is responsible for the design and implementation of Octapharma's group security strategy and program. As a privately owned company, we benefit from a stable organizational structure and a long-term strategic vision. This allows us to implement a security program that is genuinely focused on generating business value while protecting Octapharma.
Within our team, you'll have the opportunity to engage in hands-on work, collaborate closely with internal IT teams and external partners, and develop strong business acumen through cross-functional initiatives."There isn't a more key role in Cyber that can orchestrate, conduct and derive a positive security effect from our various System Owners across the globe. In this role, the successful candidate can look forward to coaching the best Cyber performance out of teams."
- Richard Kearney, Group Director Information SecurityWho are you?
- University Degree in Information Security, IT or equivalent
- Desirable: Relevant security certifications such as from ISC2, ISACA, CREST CCTIM or CCIM, SANS and Vendor Certifications.
- 8+ years of professional work experience in IT with relevant roles such as systems developer, network engineering and operations, or security engineering.
- 3+ years of experience in vulnerability management, preferably in organizations which have manufacturing business operations.
- Strong knowledge of vulnerability scanning tools (e.g., Tenable, Qualys, Nexpose) and enterprise remediation workflows.
- Familiarity with MITRE ATT&CK framework, CVSS scoring, and threat modeling.
- Hands-on experience in scripting or automation (e.g., Python, PowerShell) to streamline detection and analysis tasks.
- Strong understanding of Windows, Linux, and network infrastructure vulnerabilities.
- Support Multiple environments: Apply vulnerability management and threat analysis skills across diverse and interconnected environments, including corporate IT, Cloud, and Operational Technology (OT), to ensure comprehensive risk visibility.
- Framework-Guided Hardening: Experience in using industry security benchmarks (such as CIS or NIST) as a reference to help measure security posture and contribute to the development of hardening standards that align with business risks.
- Excellent analytical and communication skills, with the ability to present technical findings to diverse audiences.
- Experience in highly regulated industries (e.g., pharmaceutical, healthcare).
- Exposure to cloud security (AWS, Azure), and container security practices.
- You help save lives - Every day is meaningful as we produce life-saving medicines
- Family values - Long-term perspective for employees and relationships
- Be rewarded with market-related salary and benefits package
- You will have a high level of influence where you can make a difference and leave your footprint
- Work with skilled and fun colleagues in a relatively informal organization
- Skills development - We offer various internal and external employee and leadership trainings, trainee programs and digital solutions
- We will endeavor to review your profile as quickly as possible and provide you with feedback
- The next step is to conduct a phone interview, which takes about 30 minutes.
JobScout24