Sonrysa
IT Security Engineer
SonrysaSwitzerland10 days ago
Full-timeInformation Technology

📍 Location : Avry, Fribourg


We are looking for a security engineer to design, implement, and maintain comprehensive security solutions across both on-premises and cloud environments. The role includes identity and access management, incident response, and vulnerability management, ensuring the organization meets compliance standards while strengthening its overall security posture. The ideal candidate works collaboratively with infrastructure teams and provides guidance to IT teams, projects, and end users.


🔧 Key Responsibilities


  • Design, implement, and maintain security solutions including SIEM, EDR/XDR, IDS/IPS, vulnerability management, and cloud-native security controls.
  • Manage and administer IAM systems: Active Directory, Entra ID, MFA, Conditional Access, RBAC, and PAM.
  • Monitor security events, analyze alerts, and perform incident triage, investigation, and response.
  • Conduct vulnerability assessments, coordinate remediation activities, and track improvements across on-premises and cloud environments.
  • Implement and maintain security baselines, hardening guidelines, and compliance controls (NIST, ISO 27001/42001, CIS Benchmarks).
  • Collaborate with infrastructure teams to secure Windows servers, network components, virtual environments, and workplace systems.
  • Develop and maintain security documentation: policies, procedures, configuration standards, and incident reports.
  • Perform root-cause analysis for security incidents and recommend long-term corrective actions.
  • Research emerging threats, evaluate new security technologies, and propose enhancements to strengthen overall security posture.
  • Provide security expertise and guidance to IT teams, projects, and end users.


🎯 Requirements / Profile


  • Bachelor’s degree in Computer Science, Cybersecurity, Engineering, or equivalent experience, with 3+ years in IT security engineering, operations, or infrastructure security.
  • Strong expertise in Identity & Access Management (AD, Entra ID, MFA, Conditional Access, RBAC, PAM) and hands-on experience with SIEM/Sentinel, EDR/XDR, IDS/IPS, firewalls, vulnerability scanners, DLP.
  • Solid technical understanding of Windows Server security, Azure cloud security, networking fundamentals, and endpoint protection, with strong analytical and troubleshooting skills.
  • Excellent communication and documentation skills, able to work independently and collaboratively, ideally holding security certifications (AZ-500, SC-200, CISSP, CEH, Security+, etc.).

Key Skills

Ranked by relevance