Lead identity and access management : administer Azure AD (Entra ID), MFA, RBAC , and privileged access; enforce secure device management via Intune .
Maintain and enhance email security : configure SPF, DKIM, DMARC, manage filters and allow / block lists, respond to phishing threats, and run user awareness training.
Oversee the Endpoint Detection and Response (EDR) solution (Checkpoint), monitor devices, and investigate suspicious activity.
Implement and manage a SIEM system (e.g., FortiSIEM), conduct incident investigations, preserve forensic evidence, and produce post-incident reports.
Develop, implement, and enforce information security policies, promoting a security-first culture across the company.
Drive cybersecurity projects, including recommendations from audits and mobile device management initiatives.
Minimum 5 years of experience in cybersecurity , with hands-on knowledge of IT infrastructure.
Strong practical experience with :
Azure AD (Entra ID), Microsoft 365, Intune
Network security technologies ( Cisco, Fortinet, CheckPoint )
SIEM and EDR solutions
Proficiency in scripting and automation (PowerShell, Bash, Python) - a plus
Self-starter, flexible, performance-oriented, able to work independently and act quickly in a dynamic environment.
Fluent in English ; any other languages a plus
Information Security • Lugano, CH