Talent.com
EFG International
Cybersecurity Internal Penetration TesterEFG International • Lugano, Switzerland
Cybersecurity Internal Penetration Tester

Cybersecurity Internal Penetration Tester

EFG International • Lugano, Switzerland
Vor 29 Tagen
Stellenbeschreibung

General Info

  • Department: Information Security & BCM

  • WorktimePercentage: 100%

  • Location: Geneva (preferred), Zurich or Lugano

Our Company

EFG International is a global private banking group, offering private banking and asset management services. We serve clients in over 40 locations worldwide. EFG International offers a stimulating and dynamic work environment and strives to be an employer of choice.

EFG is committed to providing an equitable and inclusive working environment that is founded on the principle of mutual respect. Joining our team means experiencing a supportive environment, where your contributions are valued and recognised. We strongly believe that the diversity of our teams gives us a competitive advantage by fostering better decision-making and greater innovation.

Our Purpose and Mission

Empowering entrepreneurial minds to create value – today and for the future.

We are a private bank, offering personalised solutions on a global scale to private and institutional clients. Our sustainable success is based on our talents and on how we partner with our clients and communities to create lasting value.

Job Description

Context - The Information Security & BCM, under the lead of the Group Chief Information Security Officer (CISO) and part of the Chief Operating Officer (COO) organization, defines, leads, and coordinates information security efforts across EFG International and its entities globally. It outlines the information security strategy, identifies, and runs security initiatives and sets standards.

To support the ICT Risk Management Framework, in compliance with regulatory requirements (FINMA, DORA and relevant financial-sector regulations), we are looking for a Cybersecurity Intermal Penetration Tester.

The successful candidate will be responsible for performing ongoing, in-house offensive security assessments of the Bank’s infrastructure, applications and controls.

This role combines hands-on technical experience conducting penetration testing and simulating real-world attacks exercises on corporate environments, with close collaboration with Security, IT, development and risk teams to proactively identify, exploit and advise on the remediation of vulnerabilities in critical banking systems.

Key responsibilities include:

  • Plan, scope and execute internal penetration tests on core banking platforms and business applications, with a strong focus on services supporting critical and important functions

  • Design test scenarios aligned with realistic baking threat models (fraud, data exfiltration, privilege escalation, lateral movements to critical systems,…) and internal risk assessments

  • Execute hands-on tests against internal networks, servers, endpoints, web applications, APIs, cloud workloads, AD and other core infrastructure systems

  • Document findings in clear, risk-based reports with evidence and actionable remediation guidance for technical and non-technical audiences

  • Work closely with infrastructure, development, DevOps and risk teams to support remediation plans and re-testing, ensuring critical findings are tracked to closure within the ICT risk and governance processes.

  • Develop and maintain internal testing methodologies, playbooks and tools to support repeatable and efficient assessments

  • Collaborate with SOC on purple-team style exercises to test and improve detection and response capabilities

  • Stay current on emerging threats, vulnerabilities, TTPs, etc, and incorporate into internal testing

Skills and experience

  • Background in cybersecurity, computer science, or related fields

  • 3-5 years of hands-on penetration testing or red-team experience, with demonstrable work on internal network, web applications and API; banking or financial services experience is a strong plus

  • Strong understanding of network protocols, operating systems (Windows, Linux), web and cloud technologies; familiarity with core banking architectures is a plus

  • Proficiency with common offensive tools and techniques (. Burp Suite, Metasploit, Cobalt Strike-like frameworks, Kali-based tooling) and ability to perform manual testing beyond tools

  • Solid knowledge of secure coding concepts and common application vulnerabilities (. OWASP Top 10) to assess web and API targets

  • Professional certifications such as OCSP, GXPN, or similar offensive security credentials in good standing

  • Strong communication skills and ability to explain complex technical findings to technical and non-technical audience

Our Values

  • Accountability: Taking ownership for tasks and challenges, as well as seeking continuous improvement

  • Hands-on: Being proactive to rapidly deliver high-quality results

  • Passionate: Being committed and striving for excellence

  • Solution-driven: Focusing on client outcomes and treating clients fairly with a risk-aware mindset

  • Partnership-oriented: Promoting collaboration and teamwork. Working together with an entrepreneurial spirit.

Application

Please ensure to attach a cover letter to your CV when filling the application.

Jobalert für diese Suche erstellen

Cybersecurity Internal Penetration Tester • Lugano, Switzerland

Ähnliche Stellen

Payments Fraud Prevention & Authorization Analyst

WhatJobslugano, tessin, Schweiz

Cornèr Banca SA in Lugano is seeking a mid-level IT analyst to join their Authorization & Fraud Prevention Centre of Excellence.The candidate will contribute to functional and technical analysis in... Mehr anzeigen

 • Gesponsert

Lead Developer: Digital Health & eHealth Architect

WhatJobslugano, tessin, Schweiz

A leading IT consulting firm in Switzerland is looking for a Lead Developer to focus on healthcare IT solutions.The role includes analyzing customer requirements and implementing innovative archite... Mehr anzeigen

 • Gesponsert

OT Security Specialist

WhatJobslugano, tessin, Schweiz

Siamo alla ricerca di un esperto OT Security Specialist da inserire nel nostro team Corporate di Cybersecurity.La risorsa sarà il punto di riferimento per la protezione della rete e sistemi OT all'... Mehr anzeigen

 • Gesponsert

Junior Cybersecurity Engineer: Microsoft Security, Hybrid

WhatJobsgravesano, tessin, Schweiz

Una società di servizi IT cerca un/una Junior Security Engineer per il team Delivery in Ticino.Il/la candidato/a ideale avrà conoscenze di Microsoft Security e networking, e 1-2 anni di esperienza ... Mehr anzeigen

 • Gesponsert

Product Security Engineer - Build Secure Products

WhatJobsmendrisio, tessin, Schweiz

A cybersecurity leader in Switzerland is seeking a Product Security Engineer to enhance product security strategies.Responsibilities include conducting vulnerability assessments, risk assessments, ... Mehr anzeigen

 • Gesponsert

OT Security Engineer: Industrial Cyber Protection

WhatJobslugano, tessin, Schweiz

IBSA Group, situato a Lugano, è alla ricerca di un OT Security Specialist esperto nel team di Cybersecurity.Il candidato ideale avrà il compito di proteggere le reti e i sistemi OT, assicurando la ... Mehr anzeigen

 • Gesponsert

Hybrid Banking Operations Internship: Securities Transfers

WhatJobsbioggio, tessin, Schweiz

A leading banking services provider is offering a full-time internship in Banking Operations focused on Securities Transfer.This role involves processing securities transfers, ensuring compliance w... Mehr anzeigen

 • Gesponsert

Lead Developer Digital Health (all genders)

WhatJobslugano, tessin, Schweiz

IT excellence and therefore also for excellent development opportunities for all adessi.We grow together and learn from each other - on our projects, as a team and with outstanding training opportu... Mehr anzeigen

 • Gesponsert

Product Security Engineer

WhatJobsmendrisio, tessin, Schweiz

Now is an amazing time to join Nozomi Networks as we build the future of OT and IoT cybersecurity.We defend some of the world’s largest organizations and critical infrastructure in more than 68 cou... Mehr anzeigen

 • Gesponsert

Hybrid Internship: Banking Ops & Securities Transfers

WhatJobsbioggio, tessin, Schweiz

A leading financial technology firm in Switzerland is seeking talented individuals to process securities transfers and ensure timely settlements.The ideal candidates will have experience in securit... Mehr anzeigen

 • Gesponsert

E11J0: Clearance Broker-Associate (ID)

FedExBalerna, Ticino, CH

We have an exciting opportunity for you to join our Customs Clearance team as a Clearance Broker.Who we are:</strong><br />FedEx is the largest express transportation company in the wor... Mehr anzeigen

 • Neu!

Internship in Banking Operations - Securities Transfer Team (12-months fixed term contract)

WhatJobsbioggio, tessin, Schweiz

Avaloq is an industry-leading provider of wealth management technology and services for financial institutions worldwide, including private banks, wealth managers, investment managers, and retail/n... Mehr anzeigen

 • Gesponsert

Rising Product Security Engineer (OT/IoT)

WhatJobsmendrisio, tessin, Schweiz

A leading cybersecurity firm located in Mendrisio, Switzerland is seeking an Associate Product Security Engineer to support their product security efforts.In this role, you will work closely with e... Mehr anzeigen

 • Gesponsert

Associate Product Security Engineer

WhatJobsmendrisio, tessin, Schweiz

Now is an amazing time to join Nozomi Networks as we build the future of OT and IoT cybersecurity.We defend some of the world’s largest organizations and critical infrastructure in more than 68 cou... Mehr anzeigen

 • Gesponsert

Remote Cybersecurity Data Analyst - Vulnerabilities

WhatJobsmendrisio, tessin, Schweiz
Homeoffice

A leading cybersecurity company located in Tessin, Switzerland is seeking a Cybersecurity Data Analyst to join their Security Research team.In this role, the candidate will be responsible for data ... Mehr anzeigen

 • Gesponsert

Shift Leader, IPU Modular Testing & Operations

WhatJobsquartino, tessin, Schweiz

ABB in Quartino, Switzerland is looking for a professional with 2–3 years of operational experience, ideally in an electrical/electronic environment.The role involves ensuring safety compliance, su... Mehr anzeigen

 • Gesponsert

Cybersecurity Data Analyst

WhatJobsmendrisio, tessin, Schweiz

Now is an amazing time to join Nozomi Networks as we build the future of OT and IoT cybersecurity.We defend some of the world’s largest organizations and critical infrastructure in more than 68 cou... Mehr anzeigen

 • Gesponsert

Platform Engineer

WhatJobslugano, tessin, Schweiz

Hard requirements (please DO NOT APPLY if you don't match all):.EU or Swiss nationality/C permit.Design, implement, and maintain robust infrastructure to support scalable AI/ML workloads in product... Mehr anzeigen