
At Julius Baer, we celebrate and value the individual qualities you bring, enabling you to be impactful, to be entrepreneurial, to be empowered, and to create value beyond wealth. Let’s shape the future of wealth management together.
As Team Lead Web Entry Solutions, you assume strategic and operational responsibility for the operation and continuous advancement of our central web entry security infrastructures. You lead a globally distributed, highly specialised team at our locations in Switzerland and Singapore, and play a key role in making the security architecture of a leading global financial institution fit for the future.
Working in close collaboration with IT Service Owners, architects and engineering teams, you drive the delivery of demanding security projects and provide expert guidance to business units on complex security topics. You combine deep technical expertise with strong leadership skills and a strategic view of the overall IT security posture.
Operations & Web Application Security Architecture
Security Governance, Assessments & Projects
Leadership & Advisory
University degree (BSc / MSc / ETH) or higher technical qualification (HF/FH) in Computer Science, Information Security or a comparable technical discipline
In-depth, demonstrated knowledge of the OWASP Top 10 – mandatory: hands-on experience in identifying, assessing and mitigating all current vulnerability categories
Strong hands-on expertise in configuring, operating and tuning ModSecurity including the OWASP CRS – experience with false-positive management and custom rule development is mandatory
Solid understanding of web application architectures: HTTP/S protocol, REST APIs, reverse-proxy concepts, TLS/mTLS, Content Security Policy (CSP), CORS, HTTP security headers (HSTS, X-Frame-Options, etc.)
Demonstrated practical experience with the Nevis Identity Suite or comparable enterprise WAF / reverse-proxy solutions (e.g. F5 ASM, Barracuda WAF, AWS WAF, Azure Application Gateway WAF)
Knowledge of security-focused API protection: API gateways, OAuth 2.0 token validation, rate limiting, input validation
Experience handling penetration-testing findings and security-focused code reviews in a web application context
Sound, proven expertise in network and application security – this role is not suitable for career starters
Solid knowledge of modern authentication and authorisation protocols (SAML 2.0, OpenID Connect, OAuth 2.0, PKCE)
Proficient in Azure security concepts: Azure Policy, Identity Governance in Microsoft Entra ID, AKS Security Posture Management, Microsoft Defender for Cloud
Demonstrated experience in hybrid environments (cloud and on-premises) and in the secure operation of containerised workloads (Kubernetes, Docker)
Proven track record in disciplinary and functional management of internationally distributed teams, ideally in a complex, global environment
Strong communication and stakeholder management skills at all organisational levels
Fluent English – written and spoken (working language)
Nice to have:
Experience in the financial sector, in regulated environments or audit-intensive contexts (e.g. FINMA, MAS, DORA)
Recognised security certifications: CISM, CISSP, CCSP, AZ-500, SC-100 or GWAPT (GIAC Web Application Penetration Tester)
Knowledge of Secure Software Development Lifecycle (SSDLC) and DevSecOps practices, e.g. SAST/DAST integration in CI/CD pipelines
Familiarity with the OWASP Application Security Verification Standard (ASVS) as an assessment framework for web applications
Experience with threat modelling (e.g. STRIDE) and structured risk analysis of web architectures
Understanding of cloud-native DevOps practices or cloud platform operating models (e.g. AKS, Azure Landing Zones, Infrastructure as Code)
German language skills
We are looking forward to receiving your full job application through our online application tool. Further interesting job opportunities can be found on our Career site
Is this not quite what you are looking for? Set up a job alert by creating a candidate account here

Julius Baer is present in around 25 countries and 60 locations. Headquartered in Zurich, we have offices in key locations including Bangkok, Dubai, Dublin, Frankfurt, Geneva, Hong Kong, London, Luxembourg, Madrid, Mexico City, Milan, Monaco, Mumbai, Santiago de Chile, Shanghai, Singapore, Tel Aviv, and Tokyo. Our client-centric approach, our objective advice based on the Julius Baer open product platform, our solid financial base, and our entrepreneurial management culture make us the international reference in wealth management.