Luzern
Cyber Defence Engineer (m/f/d)
- 25 September 2026
- 80 – 100%
- Permanent position
- German (Fluent)
- 6003 Luzern
About the job
We have developed a web-based online platform for job searching and talent acquisition that digitalises the application process and supports companies in quickly recognising talents in the market and securing them for the long term. With a digital Rocken profile, every applicant can quickly and easily connect with market-leading companies and share their profile.
Our work places people at the centre both technologically and organically. Rocken® offers executive search and talent management consulting to address the personal and individual needs of each person and to implement these optimally in recruitment and career planning.
Cyber Defence Engineer (m/f/d)
Do you want to design IT infrastructures that really work? Our Rocken partner offers comprehensive IT solutions and services – from cyber security to cloud computing to customised software development. The range of services extends from modern workplace concepts to infrastructure-as-a-service to specialised industry solutions. As a certified provider, the company combines technical excellence with practical consulting. The working style is characterised by technological innovation and clear customer benefit. Projects are implemented with high quality standards and agile methods. Here you work in an environment that values and promotes technical expertise. Ready to take IT projects to the next level? Then apply now – we will connect you with our Rocken partner.Role:
You don’t just want to detect cyberattacks, but understand, contain and sustainably prevent them? In this role, you combine incident response, security engineering and threat detection with modern Microsoft security. You analyse real security events, further develop protection mechanisms and ensure that technical insights lead to concrete improvements.
Responsibilities:
Investigation of security alerts, suspicious activities and potential cyberattacks
Analysis of compromised systems, user accounts, identities and network activities
Conducting structured incident response and root cause analyses
Support in containment, remediation and recovery of affected systems
Development and optimisation of detection rules for modern security platforms
Analysis and reduction of false positives through targeted adjustment of detection logics
Building and further development of security playbooks and standardised response processes
Conducting security assessments and technical vulnerability analyses
Evaluation of insecure configurations, overprivileged accounts and potential attack paths
Implementation of security hardening in Windows, cloud and hybrid environments
Participation in cyber security projects from requirements analysis to technical acceptance
Operation and further development of central security and monitoring platforms
Analysis of technical errors in security solutions and handing over concrete optimisation proposals to engineering teams
Automation of recurring investigations, data preparations and security processes
Preparation of technical insights for customers and internal stakeholders
Ongoing integration of new attack techniques and threat intelligence insights into existing detection and response processes
Qualifications:
Education or further training in computer science, cyber security or a comparable technical field
Professional experience in system engineering, security operations, cyber defence or a related environment
Good knowledge of Windows Server, Windows clients and Active Directory
Experience with Microsoft Entra ID and Microsoft 365
Basic understanding of identities, permissions, networks and modern cloud architectures
Practical experience in at least one area such as endpoint security, security monitoring, hardening, IAM or incident response
Experience with Microsoft Defender XDR, Microsoft Sentinel or comparable security platforms is an advantage
Knowledge of KQL and PowerShell for security analyses and automation
Analytical thinking and strong ability for structured troubleshooting
High quality standards in handling security-critical systems and data
Willingness to continuously engage with new attack techniques, technologies and security methods
Benefits:
- Flexible working hours
- Above-average holidays and days off
- Attractive training and development opportunities
- Numerous employee events
- Free fruit and drinks
ROCKEN Jobs:
https://rocken.jobs
Create profile:
https://rocken.jobs/application/profil-erstellen/
Work location
Lucerne
Contact
Joshua de Boers,
+41443852112