
DevSecOps Engineer β Client Identity and Access Management 100% (f/m/d)
- WAF
- SAML
- OAuth
- OIDC
- F5
- Cloudflare
- TLS
- Java
- Spring Boot
- React.js
- TypeScript
- Kubernetes
- Splunk
- Elastic
- Linux
- CISSP
- CEH
AtJulius Baer, we celebrate and value the individual qualities you bring, enabling you to be impactful, to be entrepreneurial, to be empowered, and to create value beyond wealth. Letβs shape the future of wealth management together.
Continuously improve the service reliability, security, performance, monitoring, and automation of the Client Identity and Access (CIAM) infrastructure.YOUR CHALLENGE
Work closely with our global team of engineers to ensure the smooth operation andmaintenance of the Client Identity and Access Management Platfrom (CIAM) as well as theWeb Application Firewall (WAF) infrastructure
Develop and enhance authentication flows by utilizing modern authentication protocols todeliver a seamless desktop and mobile login experience for bank clients
Develop and maintain high-quality and secure codebases for multiple Single-PageApplications (SPAs), focusing on delivering seamless and efficient login experiences forclients
Collaborate with various stakeholders globally to onboard new client-facing web applicationsto the global CIAM platform
Review new or changed requirements and assess their feasibility as well as their impact onthe surrounding systems, standards and guidelines
Troubleshoot issues as part of the 2nd and 3rd level support organization and take part inthe on-call duty rotation
Enhance the automation and scalability of the WAF and CIAM infrastructure
Continuously improve the overall service reliability, security, performance and monitoring ofthe WAF / CIAM infrastructure
Continuously improve the service reliability, security, performance, monitoring, andautomation of the WAF / CIAM infrastructure, with a focus on enhancing overall systemavailability and efficiency
YOUR PROFILE
Proven experience in designing and implementing authentication and federation mechanisms,including SAML, OAuth, OIDC, and FIDO, with a strong understanding of identity andaccess management principles
Minimum 4 years of experience in designing, implementing, and managing Web ApplicationFirewall (WAF) and reverse proxy solutions, including products such as F5, Imperva, Nevis,Cloudflare, or open-source alternatives like ModSecurity
Hands-on operational experience with highly available and scalable web infrastructure
Profound understanding of security best practices of web applications and APIs
Solid understanding of web communication protocols such as HTTP, TLS, Websocket, etc.
Experience in software engineering (Java, Spring Boot, React, Typescript) and operationalexperience with Kubernetes-based environments
Strong troubleshooting and structured problem-solving skills
Proficient in log analytics and correlation, with hands-on experience in Splunk, Elastic orsimilar toolings, to detect anomalies and investigate incidents and identify root causes
Good technical foundation of Linux operating systems and its command line tools
Relevant academic background (e.g., Bachelor's or Master's degree in Computer Science,Cybersecurity, or related field) or industry-recognized certifications (e.g. CISSP, CEH) withrelevant practical knowledge
We arelooking forward to receiving your full job application through our online application tool. Further interesting job opportunities can be found on ourCareer site.
Is this not quite what you are looking for? Set up ajob alert by creating a candidate accounthere.
DevSecOps Engineer β Client Identity and Access Management 100% (f/m/d) Β· CH- BJB Bank Julius Baer Co. Ltd.