Job
- Level
- Experienced
- Job Field
- IT, Security
- Employment Type
- Full Time
- Contract Type
- Permanent employment
- Location
- Seefeld
- Working Model
- Onsite
Job Summary
In this role, you will analyze and manage cybersecurity vulnerabilities in critical systems, conduct risk assessments, and develop solutions for security improvements within an international team.
Job Technologies
Your role in the team
- The Security Engineering Team is responsible for the overall vulnerability management of critical systems across different segments (e.g., GCS, GMS) as well as remote sites.
- The team continuously monitors the threat landscape to identify vulnerabilities applicable to operational systems and ensures timely remediation through patching, mitigation measures, and risk management activities.
- This role requires a strong technical and engineering background combined with a deep understanding of modern cyber threats and attacker capabilities, including emerging risks driven by advancements in Artificial Intelligence.
- Monitor, assess, and manage vulnerabilities affecting operational systems and remote sites.
- Perform vulnerability analysis and risk assessment using industry-standard methodologies, including CVSS.
- Review and analyze security procedures and applications used in daily operations, including access control, encryption mechanisms, configuration management, vulnerability assessment, malware detection, and database security activities.
- Ensure prompt remediation of identified vulnerabilities through patching, mitigation measures, or compensating controls.
- Identify, investigate, and classify system anomalies within the local security environment and develop corrective actions and solution concepts.
- Identify potential threats to information and communication systems, define response plans, review implementation of security measures, and develop operational solutions ready for approval and deployment.
- Escalate security incidents, policy violations, and critical vulnerabilities when required.
- Maintain and continuously update the Security Risk Register through the identification of new cyber security risks and threats.
- Conduct regular reviews of systems against customer-defined security requirements, document compliance status, and develop corrective action plans for identified deviations.
- Provide regular reporting to the Cyber Security Manager and System Evolution & Security Manager, ensuring rapid escalation of critical security situations.
- Support the preparation of security training materials and conduct regular cyber security awareness sessions for project personnel.
- Define, implement, and support new cyber security projects and technical solutions.
- Contribute to the continuous improvement of security monitoring, analysis, and reporting tools.
- Support secure engineering practices throughout the system lifecycle and collaborate with multidisciplinary teams to enhance the overall security posture.
This text has been machine translated. Show original
Our expectations of you
Qualifications
- Good programming skills in Python.
- Knowledge of virtualization technologies such as VMware, Hyper-V, and Proxmox.
- Knowledge of the Common Vulnerability Scoring System (CVSS).
- Understanding of cryptographic principles and security technologies.
- Strong knowledge of systems engineering processes and methodologies.
- Strong analytical and problem-solving capabilities.
- Excellent communication and interpersonal skills.
- Ability to work independently and within multidisciplinary teams.
- Fluent in English, both written and spoken.
Experience
- Minimum 2 years of professional experience in IT Systems Security, Cyber Security, or a related field.
- Strong experience working with Linux operating systems (Debian, Ubuntu) through the command line.
- Experience with scripting languages such as Bash or PowerShell.
- Experience in vulnerability management, security monitoring, and risk assessment activities.
This text has been machine translated. Show original
What we offer
- This position is based in Weßling-Oberpfaffenhofen, Germany.
- Candidates must be eligible to obtain a German Ü2 security clearance.
- An exciting and dynamic international working environment awaits you!
This text has been machine translated. Show original
Benefits
Work-Life-Integration
More net
Health, Fitness & Fun
Topics that you deal with on the job
Job Locations
This is your employer
Sopra Banking Software
Sopra Banking Software is a leading provider of software and services to banks and financial institutions around the world. With a team of over 5,000 experts and a pro forma turnover in 2018 of € 373.7 million, we have one of the deepest and broadest portfolios of software and services available. Our unique ability to address the requirements of any size or scope bank allows them to innovate and expand their services offerings.
Description
- Company Size
- 250+ Employees
- Founding year
- 2012
- Company Type
- Digital Agency
- Working Model
- Hybrid, Onsite
- Industry
- Banking, Finance, Insurance, Internet, IT, Telecommunication