Zürich
Cyber Defence Engineer (m/f/d)
- 26 September 2026
- 80 – 100%
- Permanent position
- German (Fluent)
- 8001 Zürich
About the job
We have developed a web-based online platform for job searching and talent acquisition that digitalises the application process and supports companies in quickly recognising talents in the market and securing them for the long term. With a digital Rocken profile, every applicant can quickly and easily connect with market-leading companies and share their profile.
Our work places people at the centre both technologically and organically. Rocken® offers executive search and talent management consulting to address the personal and individual needs of each person and to implement these optimally in recruitment and career planning.
Cyber Defence Engineer (m/f/d)
Our ROCKEN partner is a leading insurance group based in Switzerland specialising in health and accident insurance. Their focus is on providing health and accident insurance for individuals, families, and businesses. Our partner places great emphasis on innovation, customer proximity, and quality in their services.
Role:
You don’t just analyse alerts – you want to understand what lies behind them. This position is aimed at technically skilled security specialists who want to detect cyber threats, analyse attack patterns, and continuously improve existing protection mechanisms. An exciting prospect for professionals who want to combine IT security with engineering and threat intelligence.
Responsibilities:
Further development of a modern cyber defence landscape
Analysis of security-relevant events across different systems and platforms
Triage and technical investigation of security incidents
Correlation of logs, events, and telemetry data to detect suspicious activities
Development and optimisation of detection rules and use cases
Support in automating security and incident response processes
Technical investigation of potential attacks and compromises
Coordination of appropriate response measures for security-critical events
Conducting technical post-analyses and deriving sustainable improvements
Evaluation of the effectiveness of existing security controls
Identification of detection gaps and improvement of technical coverage
Monitoring current attack techniques, exploits, and cyber threats
Use of threat intelligence to assess new attack scenarios
Analysis of tactics, techniques, and procedures of potential attackers
Support in security assessments, hardening measures, and technical reviews
Collaboration in the further development of security architecture and cyber defence processes
Documentation of findings, incidents, and technical recommendations
Qualifications:
Several years of experience in IT operations, system engineering, software engineering, or cyber security
Strong technical interest in cyber defence and information security
Experience with security monitoring, incident response, or threat detection is an advantage
Good understanding of networks, servers, operating systems, and modern cloud infrastructures
Knowledge of SIEM, EDR, XDR, or comparable security platforms is a plus
Experience with log analysis, threat intelligence, or detection engineering is advantageous
Interest in frameworks such as MITRE ATT&CK and modern cyber defence methods
Ideally, initial experience with security automation and SOAR
Strong analytical skills and a systematic approach
Ability to grasp complex technical issues and present them clearly
High degree of personal responsibility and strong willingness to learn
University degree in a technical field, preferably computer science, cyber security, or computer science
ROCKEN Jobs:
https://rocken.jobs
Create profile:
https://rocken.jobs/application/profil-erstellen/
Work location
Zurich
Contact
Joshua de Boers,
+41443852112