
SIX drives the transformation of financial markets.
What sets us apart drives us ahead: between local roots and global relevance, we are a unique blend of tradition and future, of foundation and growth. We value bright minds and inspire them to grow with their ideas. Come and shape the future of finance with us.
Senior Web Access Management Engineer 80-100%
Zurich | Working from home up to 40% | Reference 8237
Are you passionate about secure web access, identity, and modern authentication technologies? Then our Web Access Management team wants to hear from you. We are a collaborative and security-focused team responsible for protecting access to business-critical web applications and APIs. Our goal is to provide stable, secure, and continuously improving access services across reverse proxy, web application firewall, and customer identity platforms. In this role, you will work closely with application teams, security architects, platform engineers, and service owners to design, operate, and enhance secure access patterns in a regulated environment.
What You Will Do
- Operate and enhance Web Access Management services, including reverse proxy, access gateway, web application firewall, and customer identity components.
- Design, build, and troubleshoot secure authentication and single sign-on flows based on OpenID Connect, OAuth2, and SAML 2.0.
- Configure routing, TLS certificates, access policies, authorization mappings, and upstream integrations for web applications and APIs.
- Tune and maintain web application firewall policies, including OWASP Core Rule Set handling, exceptions, anomaly scoring, and change control.
- Contribute to operational stability, automation, monitoring, incident response, upgrades, disaster recovery readiness, and continuous service improvement.
What You Bring
- Strong hands-on knowledge of reverse proxy or access gateway platforms, including TLS handling, routing, header and cookie management, session handling, and high-availability operations.
- Practical experience with web application firewall technologies, ModSecurity, OWASP Core Rule Set, rule tuning, false-positive handling, and secure publishing patterns.
- Solid understanding of customer identity and access management, identity lifecycle, multi-factor authentication, secure account recovery, token validation, and authorization models.
- Good knowledge of federation and access protocols such as OpenID Connect, OAuth2, SAML 2.0, JWT, PKCE, scopes, claims, certificates, metadata, and key rotation.
- Analytical, security-minded, and collaborative working style, with good communication skills; fluent English is required, German is an advantage.
If you have any questions, check out our FAQ page or call Julia Schmidt at +41 583 994 236.
For this vacancy we only accept direct applications.
Diversity is important to us. Therefore, we are looking to receiving applications regardless of any personal background.
What We Offer
Flexible Work Models
We trust our employees and offer a work environment that is well-balanced, productive and fosters success.
Personal Development
You will benefit from a culture of continuous learning and feedback. Your personal growth is supported through an extensive learning offering.
Agile Working Methods
Whether through scrum or design thinking,
we solve exciting tasks together in teams.