Zurich est un groupe d’assurance qui couvre les risques des particuliers et des entreprises. Ses activités comprennent l’assurance dommages, l’assurance vie et la prévoyance.
Senior Platform Engineer - Identity & Security (m/f/d) 80-100%
Am I a fit — voir ma compatibilitéZurich Insurance recherche un Senior Platform Engineer spécialisé en identité et sécurité au sein de l’équipe Engineering and Integration, à Oerlikon, Zurich. Le poste consiste notamment à faire évoluer la plateforme d’identité d’entreprise autour de Keycloak, à définir les architectures de sécurité et à intégrer le Zero Trust et les autorisations fines. Une expérience de 7 ans ou plus en ingénierie logicielle ou sécurité est demandée, avec un anglais courant ; le travail est proposé à 80–100 % en mode hybride.
Repères sur Zurich Insurance
- Domaine officiel
- zurich.ch
- Offres ouvertes
- 48
Détails de l’offre
La description complète publiée par Zurich Insurance.
135892 | 80 - 100% | Oerlikon, Zürich | Hybrid Are you energized by solving complex IT challenges, and do you bring the emotional intelligence to navigate stakeholders across business, security, and engineering? Do you question the status quo and use your judgment to shape direction where best practice does not yet exist? In the Engineering and Integration team, we connect what's separated, secure what matters, and reveal what's hidden, while shaping how integration, identity, and security work in a world of Agentic AI, hybrid delivery, and Zero Trust.
We're modernising our identity platform around Keycloak, embedding Zero Trust and fine-grained authorization as the default, and building the identity foundations for an AI-augmented enterprise. We’re looking for an experienced professional who leads through concepts, direction, and judgment, preparing Zurich Switzerland for what's next, by ensuring a future-ready, cost-efficient application landscape that scales as our business evolves - in an era where engineering value increasingly lies in judgment.
You'll work closely with our Senior Product Owner/Architect, Engineers, and Specialists, as the person who moves things forward, technologically, methodologically and conceptually. We're an agile, collaborative team with a strong network across Business Unit Switzerland. Together with all IT departments, we combine deep technical expertise with a clear focus on delivery and outstanding service to our stakeholders. If you love solving hard problems, communicate with clarity and empathy, and thrive in multidisciplinary teams, this role is exactly right for you.
What you can expect - Set the technical direction for how our team engineers identity and security in an era where coding shifts toward becoming a commodity, through concepts, principles, and reference architectures that others in the team and beyond will build on and bring the team along on that journey - Shape the evolution and operations of our Enterprise Identity Platform (strategic focus: Keycloak), including OAuth 2.0, OIDC, SAML, and PKCE, while steering the phase out of our legacy federation and extend our security posture into event-driven and AI-augmented workflows - Develop and
articulate the target picture for identity and security in the age of Agentic AI, from access management and security concepts for AI agents, agentic workflows, and workload identity, to fine-grained authorization (OpenFGA, OPA, Cedar) and Zero Trust - Set engineering standards, reviews, and quality gates across internal teams, partners, and AI-augmented workflows - ensuring quality, security, and knowledge transfer - Partner with business domains and Digital Products to translate insurance requirements into robust identity and security outcomes What makes you stand out - 7+ years in software
or security engineering - ideally in insurance, banking, or a related financial services industry - with deep expertise in modern authentication (OAuth 2.0, OIDC, SAML, PKCE, token lifecycle, federation, LDAP) and hands-on Keycloak experience - Hands-on experience with Agentic AI access management and security concepts (agent identity, agent-to-agent auth, MCP security, prompt injection defense, supply chain security for AI components) and a critical eye for the limitations of AI-augmented development (Copilot, Claude, agentic workflows) - Solid understanding of fine-grained authorization
(OpenFGA, OPA, Cedar), Zero Trust, and cloud-native engineering (Azure and/or AWS, containers, event streaming) - Strong sense of E2E ownership, business curiosity, ability to translate business intent into technical specifications, critical thinking and reflection, and ability to apply principles, name risks, surface trade-offs and manage ambiguity, paired with strong communication skills that earn trust and bring senior engineers along - Fluent in English, both spoken and written, German is a plus Good to know Part-time or full-time: 80 - 100% Work location: Oerlikon, Zurich Start date: by
agreement Travel: No travel required Hybrid working: up to 40% Everything about your application As a first step, you can apply directly online.
All you need is your CV. You can find further information about the application process here . We are committed to an efficient and respectful application process. Our Talent Acquisition team reviews your application personally, without the use of artificial intelligence. After your first personal meeting with the responsible hiring manager, you will always receive individual feedback from us, because we believe meaningful feedback is based on personal dialogue. For this position, we do not work with recruitment agencies. Unsolicited applications will neither be considered nor compensated.
Do you have any questions? Marco, Senior Talent Acquisition Consultant will be happy to assist you on +41 44 628 31 62.