×
Register Here to Apply for Jobs or Post Jobs. X
More jobs:

Incident Engineer (w​/m

Job in 1226, Thônex, Genève, Switzerland
Listing for: Ärztekasse Genossenschaft
Full Time position
Listed on 2026-08-19
Job specializations:
  • IT/Tech
    Cybersecurity
Salary/Wage Range or Industry Benchmark: 120000 - 180000 CHF Yearly CHF 120000.00 180000.00 YEAR
Job Description & How to Apply Below
Position: Incident Engineer (w/m)

Ärztekasse Genossenschaft provides business process outsourcing and eHealth solutions to health professionals so they get relief from administration and can focus on medical work.

Ärztekasse is renewing its entire datacenter and the products affected by this transformation. To support this digitalization step, we are looking for smart and experienced engineers to contribute and shape clever and creative solutions for a meaningful industry.

Pensum: 80-100%
Start: immediately or by appointment
Duration: unlimited

Location:

Geneva area (Thônex) or Zurich area (Urdorf)

Main Tasks
  • Triage, investigate and resolve endpoint security alerts from Microsoft Defender across employee machines
  • Detect, analyse and respond to security incidents across our endpoints, infrastructure and applications
  • Lead incident response activities and coordinate remediation with engineering and operations teams
  • Tune detection rules to reduce false positives and continuously improve alert quality
  • Develop and maintain incident response playbooks, processes and tooling
  • Monitor security events and alerts (Microsoft Defender, SIEM, IDS/IPS) and drive continuous detection improvements
  • Conduct post-incident reviews and root-cause analysis, and track corrective actions
  • Implement security best practices and harden systems against emerging threats
  • Participate in future on-call rotation
Requirements
  • 3+ years of experience in security incident response, SOC or a similar role
  • Hands-on experience with Microsoft Defender for Endpoint (EDR) and endpoint security
  • Strong understanding of security monitoring, SIEM and detection engineering
  • Knowledge of attack techniques and incident handling frameworks (e.g. NIST, MITRE ATT&CK)
  • Experience with Windows and Linux security;
    Kubernetes is a plus
  • Scripting and automation skills, preferably in Bash, Python or Go
  • Relevant certifications (e.g. GCIH, GCIA, OSCP) are a plus
  • Analytical, calm under pressure and a strong communicator;
    English required, German and French a plus
Further information

A stimulating environment helps to find cool solutions to challenging complex requirements. We work in small agile teams where you can have impact and influence. You will find sharp engineers to have inspiring discussions with. We are solution-driven, but we don’t neglect the fun factor.

#J-18808-Ljbffr
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary