Alle Stellen

Join Julius Baer’s global security engineering team in Zurich and contribute to shaping the future of wealth management. This role focuses on secure remote access technologies, strong authentication, and identity integration within a regulated financial services environment. You will work across infrastructure, security, endpoint, and identity domains to ensure secure access for employees, contractors, and approved third parties.

Tasks

  • Architect, operate, and continuously improve the Bank’s Citrix NetScaler Gateway infrastructure.
  • Integrate and maintain multi-factor authentication solutions.
  • Enforce secure access and conditional access policies.
  • Ensure resilience, security, and compliance of the Bank’s remote access services.
  • Contribute to the design, implementation, and operationalisation of the Bank’s Zscaler Private Access (ZPA) platform.
  • Support the evolution of the remote access landscape towards a modern Zero Trust Network Access (ZTNA) architecture.
  • Work closely with IAM, Endpoint Management, Security Operations, and Global IT teams to deliver secure, reliable, and scalable remote connectivity aligned with regulatory requirements and the Bank’s strategic security roadmap.
  • Administer, configure, and continuously improve Citrix NetScaler ADC and NetScaler Gateway infrastructure, ensuring high availability, performance, scalability, and operational resilience across primary and disaster recovery environments.
  • Manage and maintain SSL-VPN and clientless access services, including virtual server configurations, authentication policies, rewrite rules, responder policies, and traffic steering mechanisms.
  • Design, implement, and maintain secure authentication and conditional access policies based on user identity, device type, network location, and contextual risk factors.
  • Participate in the design, implementation, and rollout of Zscaler Private Access (ZPA) platform, supporting the transition towards Zero Trust Network Access architecture and contributing to technical design, testing, integration, and operational readiness activities.
  • Develop and maintain expertise across Citrix NetScaler Gateway and Zscaler Private Access (ZPA) technologies, supporting the strategic remote access roadmap and ensuring secure, seamless connectivity across multiple access platforms.
  • Plan, coordinate, and execute infrastructure upgrades, security patches, policy changes, and platform enhancements in accordance with established change management processes within a regulated financial environment.
  • Provide 2nd and 3rd level engineering support for remote access platforms, act as escalation point for complex incidents, and participate in a shared 24/7 on-call rotation for critical services.
  • Contribute to and gain hands-on experience with other security services managed by the team, including Internet Proxy, Multi-Factor Authentication (MFA), Privileged Access Management (PAM), Public Key Infrastructure (PKI), and Secure Mail Gateway solutions.

Requirements

  • Highly proactive, solution-oriented, and capable of independently assessing, prioritising, and resolving complex technical challenges in a structured and efficient manner.
  • Strong analytical and conceptual thinking skills with a high level of attention to detail, especially in business-critical and highly regulated environments.
  • Willingness and curiosity to learn new technologies and expand expertise across multiple security domains.
  • University degree or higher technical education (university of applied sciences, federal diploma) in Computer Science, Information Security, or a related discipline, or equivalent practical experience.
  • Minimum 3–5 years of hands-on experience in IT Security or Infrastructure Engineering, with a strong focus on secure remote access, identity management, authentication technologies, and endpoint security.
  • In-depth expertise in Citrix NetScaler ADC and NetScaler Gateway, including hands-on experience with AAA policies, virtual server configuration, SSL-VPN services, high-availability deployments, authentication flows, and troubleshooting via both GUI and CLI.
  • Knowledge of Zero Trust Network Access (ZTNA) concepts and architectures; experience with Zscaler Private Access (ZPA) or comparable ZTNA technologies is considered an advantage.
  • Practical scripting and automation skills using PowerShell, Python, or Bash, including automation of certificate validation, health checks, log analysis, and operational tasks through REST APIs, Citrix Nitro API, or comparable interfaces.
  • Practical experience with Microsoft Entra ID (Azure AD), Active Directory, and hybrid identity environments.
  • Proven experience integrating remote access platforms with Multi-Factor Authentication (MFA) solutions and modern identity providers.
  • Strong understanding of endpoint compliance validation, device trust concepts, BYOD access models, and modern remote access security architectures.
  • Experience working within financial services or other highly regulated industries, with a solid understanding of regulatory and compliance requirements.
  • Experience supporting and operating business-critical infrastructure platforms with a focus on availability, resilience, performance, and security.
  • Strong communication and collaboration skills, with the ability to work effectively across global teams and translate technical concepts into practical solutions.
  • Fluent written and spoken English (B2/C1).
Bist du Teil dieses Unternehmens?

Dieses Unternehmensprofil wurde automatisch erstellt. Wenn du für Julius Bär Gruppe arbeitest, kannst du das Profil jetzt beanspruchen und verifizieren – kostenlos und in wenigen Minuten.

Verifizierte Profile erhalten ein Siegel und können ihre Seite, Stellen und Bewerbungen direkt verwalten.
Über uns
Julius Bär Gruppe AG ist eine international tätige Privatbank mit Schwerpunkt auf Vermögensverwaltung und Anlageberatung für vermögende Privatkunden. Das Unternehmen bietet Dienstleistungen in den Bereichen Wealth Management, Investment Advisory, Vermögensplanung sowie Finanzierungslösungen an und verfolgt eine offene Produktplattform für individuelle Anlagelösungen. Julius Bär ist weltweit in zahlreichen Finanzzentren vertreten und betreut Kundinnen und Kunden über ein internationales Netzwerk von Standorten.
Das Team

Work within a collaborative and highly skilled global security engineering team, closely interacting with IAM, Endpoint Management, Security Operations, and Global IT teams.

Ähnliche Stellen