Start Your Search Here

Job Search

Swisscom AG

The Netherlands / Global

AWS Platform Security Engineer

Job Description

AWS Platform Security Engineer

Think like an attacker, build like an engineer, help us find and fix the cracks in our platforms before someone else does.

Your responsibilities

You work in an internal and geographically distributed team with cultural diversity, collaborating closely with platform engineers, DevOps teams and product owners across Swisscom. You play a vital role in our agile environment, not just defending the platform, but actively challenging it.

With your background in offensive security, you bring a hacker’s mindset to Swisscom’s internal cloud platform. You don’t wait for vulnerabilities to be reported; you go looking for them. Through hands‑on technical assessments, penetration testing and red team exercises you identify weaknesses in iAWS and Swisscom’s AWS Landing Zone, and unlike a traditional pen tester who hands over a report and walks away, you stay involved. Where the fix is within your reach, you own it, writing the code, updating the controls and closing the gap yourself.

You act as a trusted security advisor to our internal platform and product teams, guiding them on how to build securely from the ground up. For findings that span multiple teams or require broader platform changes, you work alongside our engineers to drive remediation, providing the technical context, the recommended approach and the hands‑on support needed to get it done properly.

You help shape the way we approach security across the ICP ART, from improving our engagement with the SOC, to refining our security processes, to ensuring that the platform we offer to all Swisscom internal DevOps teams is not just functional, but genuinely hardened. You collaborate across multiple teams and solution trains within Swisscom, bridging the gap between offensive security expertise and the day‑to‑day realities of a fast‑moving cloud platform. Thanks to you, security is not an afterthought, it’s built in.

This role would be excellently suited to someone who has been doing a lot of offensive security work, but would like to branch out to both advisory and engineering positions without losing all the offensive fun!

Tools, services and technologies you’ll use

Offensive Security & Assessment Tools

Penetration testing tools and methodologies (e.g. Burp Suite, nmap, Metasploit or similar)

Cloud‑specific attack frameworks and enumeration tools (e.g. Pacu, ScoutSuite, Prowler)

Kubernetes security assessment tools and attack techniques (e.g. kube‑bench, kube‑hunter, Trivy)

Vulnerability scanning and red team tooling

OWASP testing methodologies

AWS Security Services

CloudWatch, CloudTrail, Amazon Inspector

AWS Config, Security Hub, GuardDuty

AWS Shield, WAF, Firewall Manager

IAM, SCPs, Resource Control Policies

AWS Network Firewall, VPC Flow Logs

Infrastructure as Code

CDK

Terraform

Beneficial Programming / Scripting Languages

Python

TypeScript or Java is a plus

What we expect

4+ years of experience working with AWS, with a strong focus on security

Hands‑on experience conducting penetration tests or red team assessments, ideally in cloud environments

A solid understanding of how attacks work and how to defend against them

Experience working in agile, cross‑functional teams

Nice to have

Offensive security certifications such as OSCP, CRTO, or similar

AWS security certifications (AWS Certified Security — Specialty)

Experience with SOC processes, threat detection or incident response

Familiarity with compliance frameworks relevant to AWS telco workloads

Bachelor’s Degree (B.Sc) with comparable experience in Computer Science

Excellent problem‑solving skills to develop quick and sound solutions that resolve complex issues

Team‑oriented, very adaptable, a flair for continuous improvement

High level of English

Benefits

Agile way of working, multicultural work environment promoting work‑life balance

Autonomy, flexibility, opportunity and growth

Full relocation support (housing, settling in, etc.) for you and your family

Telephone/internet allowance, contribution to health insurance, travel allowance reimbursement, home office allowance

5 paid training days and access to learning platforms

Gym subscription, tax advice, and language course

Salary range: 65,000 to 72,000 euros gross per year including holiday allowance

25 days paid vacation days plus Dutch national holidays; work from abroad possibility for one month per year; care, bereavement, maternity and paternity leaves

Contract terms

Fixed‑term contract (one year) with possibility of extension after six months and a feedback meeting

Salary includes the 8% holiday allowance

#J-18808-Ljbffr

Toepassen Now

Similar Opportunities

View all jobs