Cyber Security Analyst

back to job openings

Private Bank

Salary: Undisclosed

Geneva

Position: Cybersecurity Analyst

Agius & Partners SA is partnering with a prestigious private bank headquartered in Geneva to find a talented Cybersecurity Analyst. As a Cybersecurity Analyst, you will be responsible for implementing and maintaining our client’s internal control system, monitoring risk and performance indicators, and collaborating with the Security Operations Center (SOC) to analyze and track corrective actions. You will be the primary point of contact for penetration testing and audits, managing the end-to-end remediation process for vulnerabilities, orchestrated from the ITSM solution. You will work closely with IT teams to ensure regulatory compliance and contribute to the adaptation of security policies in line with industry standards and regulations.

Key Responsibilities:

  • Oversee the operational management of all cybersecurity controls and data protection measures within the bank.
  • Monitor risk and performance indicators, recommending improvements in security measures.
  • Collaborate with the Security Operations Center, leading analysis and necessary corrective actions.
  • Provide continuous monitoring of identity and access management operations, driving recurring re-certification processes.
  • Serve as the main point of contact for penetration testing, security controls, and all types of internal or external audits.
  • Work closely with internal IT teams, consultants, and external vendors to ensure compliance with regulations and manage the internal control system.
  • Ensure adherence to information security policies and procedures, aligning them with current regulations and standards (including FINMA, ISO, and NIST).

Qualifications:

  • At least 5 years of experience in a similar role within the banking sector, focusing on information security.
  • A degree in Computer Science or a related field, preferably with a focus on cybersecurity.
  • Strong proficiency with standard security tools (firewalls, vulnerability scanners, NAC), as well as security tools integrated with Microsoft M365 and Azure Cloud services.
  • Experience with DevSecOps tools and technologies, such as CI/CD pipelines, automated security testing, dependency checking tools, and vulnerability management tools.
  • Expertise in identity and access management, particularly with EntraID.
  • In-depth knowledge of vulnerability management processes, from scanning tool management to patch implementation coordination.
  • Strong understanding of ITIL processes and ITSM solutions.
  • Excellent communication skills to explain security risks to non-technical stakeholders and to train/inform colleagues on specific security and data protection topics.
  • Strong analytical and problem-solving skills, with the ability to quickly identify root causes and provide effective solutions.
  • Ability to work under pressure and manage security incidents within tight timelines.
  • Cybersecurity certifications (e.g., CISSP, CISM) would be a plus.