System Engineer - Secure Fleet Platform

System Engineer - Secure Fleet Platform

Vollzeit Vor Ort
O

ppSystem Engineer - Secure Fleet Platform (80–100%) /p pLocation: Zurich / Bern /p pWe are looking for a System Engineer to join the team responsible for the secure operational foundations of Open Systems’ managed security platform. /p pThis role sits at the centre of two strategic engineering initiatives: a complete redesign of our management-access architecture and a modernisation of the connectivity layer that enables secure, reliable operation of a production fleet of approximately 10,000 systems. /p pYou will help build the technical foundations through which engineers and services securely access, configure, operate, update, observe, and troubleshoot this fleet. The work spans Linux-based systems, secure access, authentication and authorisation, networking, automation, configuration, software lifecycle management, and operational tooling. /p pWith close support from experienced colleagues, you will develop toward independent ownership of services and components. You will learn how to make safe changes to a large live environment and build the engineering judgement required for production systems. /p pYou are excited by the prospect of solving difficult production-engineering problems at fleet scale; where security, reliability, automation, and a safe migration path all matter equally. /p h3Key Responsibilities /h3 h3Secure Management Access Architecture /h3 ul liHelp design, implement, and operate the next generation of secure management access for people, services, and automated operational workflows. /li liBuild secure, least-privilege, and auditable access paths to production systems, including management gateways, SSH-based access, authentication, authorisation, and related controls. /li liImprove the resilience, usability, traceability, and operational safety of privileged access. /li liCollaborate with security, platform, and operations teams to ensure the target architecture works in normal operations as well as under incident pressure. /li liContribute to the incremental migration of existing systems and workflows to the new access architecture, with careful rollback and continuity considerations. /li /ul h3Fleet Connectivity and Platform Foundations /h3 ul liHelp redesign the secure connectivity foundation that enables access to, control of, and operation of an approximately 10,000-system production fleet. /li liEngineer resilient, scalable connectivity patterns between central platform services and distributed Linux hosts, virtual machines, and related infrastructure. /li liDevelop automation, observability, and tooling that make fleet-wide changes safe, repeatable, measurable, and recoverable. /li liImprove the foundations used for remote management, configuration delivery, software lifecycle management, diagnostics, and incident response. /li liOperate and evolve core platform services, including management access, remote connectivity, time synchronisation, Nginx, Redis, and supporting Linux-based infrastructure. /li /ul h3Engineering Excellence and Continuous Improvement /h3 ul liLearn to own systems through their lifecycle: design, implementation, testing, rollout, operation, incident learning, and continuous improvement. /li liUse Git-based development, CI/CD, infrastructure-as-code, and automated testing to deliver reliable changes. /li liCollaborate across engineering and Mission Control operations to turn production requirements into practical, supportable platform capabilities. /li liContribute to clear operational documentation, runbooks, and architectural decision-making. /li liEvaluate and adopt tools and approaches that improve the team’s security, speed, and reliability. /li /ul h3Required Skills and Experience /h3 h3Essential / Required Skills /h3 ul liLinux: Solid practical knowledge of Linux systems, service management, permissions, processes, filesystems, and troubleshooting. /li liNetworking: Strong understanding of TCP/IP, DNS, TLS, SSH, routing fundamentals, and systematic network troubleshooting. /li liSecure access: Experience with, or a strong desire to learn, authentication, authorisation, privileged access, VPN or remote-access services, and secure operational practices. /li liAutomation: Experience with scripting or programming in Python, Go, Bash, Perl, or a comparable language. /li liDelivery practices: Experience with Git, code review, CI/CD, and automated or configuration-driven deployments. /li liAgentic Development: Hands-on experience using agentic AI workflows (for example GitHub Copilot, Claude Code, Cursor, or similar) to accelerate day-to-day engineering. /li /ul h3Desirable Skills /h3 ul liExperience with HashiCorp Boundary, bastion or jump-host architectures, PKI, SSH certificate authorities, or comparable access-management technologies. /li liExperience with OpenVPN or other remote-access and connectivity technologies. /li liExperience with configuration management, infrastructure as code, Helm, Kubernetes, or GitOps. /li liExperience operating high-availability or stateful services such as Redis, Nginx, NFS, DNS, or database-adjacent services. /li liExperience with RPM packaging, Linux software release processes, or large-scale fleet configuration and rollout. /li liExperience with monitoring, logging, alerting, tracing, or production incident response. /li /ul h3What You Bring /h3 ul liYou have completed relevant technical training, a degree, or gained equivalent practical experience. /li liYou can work confidently in Linux and are motivated to deepen your skills in platform engineering, networking, security, and automation. /li liYou are keen to contribute to implementation, testing, automation, and safe rollout while learning to take service ownership end to end. /li liYou ask good questions, learn quickly, document your work, and work carefully with production systems. /li /ul h3Soft Skills /h3 ul liQuick Learner: Ability to rapidly grasp unfamiliar systems and technologies and apply sound engineering judgement. /li liCommunication: Ability to explain technical risks, decisions, and operational consequences clearly to technical and non-technical stakeholders. /li liCustomer Focus: Awareness that secure and reliable platform operations directly affect internal engineering teams, Mission Control, and customer service quality. /li liCollaborative Mindset: Ability to work constructively across security, platform, software engineering, and operations teams. /li /ul h3Education and Experience /h3 ul liRelevant technical education in Computer Science, Information Technology, Systems Engineering, or equivalent practical experience. /li liDemonstrated interest in designing, automating, and operating reliable systems at meaningful scale. /li /ul h3About Open Systems /h3 pOpen Systems is a leading provider of Managed SASE solutions, converging network and security functions on a cloud-native platform. Founded in 1990 and headquartered in Zurich, the Swiss cybersecurity company supports businesses and organizations in more than 180 countries with a holistic, customer-centric service model and 24×7 expert support. /p pOur platform delivers secure, reliable connectivity across cloud, on-premises, and hybrid environments while providing a seamless experience through an intuitive customer portal. Powered by a centralized data platform and 24×7 managed services, Open Systems helps organizations strengthen security, simplify operations, and accelerate innovation—enabling secure networks that grow with their business. /p pDiscover more at /p /p #J-18808-Ljbffr

System Engineer - Secure Fleet Platform Arbeitgeber: Open Systems AG

Open Systems ist ein hervorragender Arbeitgeber, der eine dynamische und unterstützende Arbeitsumgebung bietet, in der Teamarbeit und Innovation geschätzt werden. Mit einem klaren Fokus auf die berufliche Weiterentwicklung und Schulungsmöglichkeiten, einschließlich der Mission Control Engineer-Zertifizierung, fördert das Unternehmen das Wachstum seiner Mitarbeiter. Die Möglichkeit, remote in Deutschland oder der Schweiz zu arbeiten, kombiniert mit einer positiven Unternehmenskultur, macht Open Systems zu einem attraktiven Arbeitsplatz für talentierte Fachkräfte im Bereich Cybersecurity.

O

Kontaktdaten:

Open Systems AG Recruiting-Team