Security Engineer In Cloud Infrastructure

Enfint
Barcelona, Spain
6 days ago
Apply on www.buscojobs.com.es
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience required
5 years minimum
Working hours
Regular working hours

Tech stack

Amazon Web Services Bash Shell Business Software Cloud Computing Continuous Integration Linux Identity and Access Management Python (Programming Language) Network Security Security Information and Event Management Software Vulnerability Management Cloud Platform System
+3 more
Information Technology Qualys Vulnerability Analysis

Job description

????????: Factorial provides Business Management Software that helps small and medium-sized enterprises streamline company processes, automate workflows, centralize people data, and make better business decisions.Its customers are located across more than 60 countries.??????:Drive the security strategy for cloud environments and ensure security is built into the architecture from day oneLead the identification, assessment, and remediation of infrastructure vulnerabilitiesMaintain the infrastructure risk register and prioritize mitigation efforts based on business impactImplement and maintain hardening strategies across the infrastructureMonitor security alerts and incidentsConduct incident response and investigations to identify root causes within the infrastructure stackDevelop and manage infrastructure security tooling, including CNAPP, CSPM, and vulnerability scannersSecure infrastructure and runners within CI/CD pipelinesPartner with IT, DX, and SRE teams to integrate infrastructure security best practices and automate security controlsDevelop, maintain, and regularly update incident response plans and infrastructure security policies??????????:5+ Years of experience in Infrastructure Security or Security EngineeringExperience with cloud environments, including AWS or AzureExperience with Infrastructure as Code using TerraformExperience with containerization using KubernetesDeep experience managing enterprise-grade vulnerability scanning and risk prioritization workflowsStrong understanding of network security, OS hardening on Linux/Unix, and identity management with IAMStrong understanding of cyberattacks and threat actor Tactics, Techniques, and Procedures related to infrastructure and cloud escapeExperience using and managing EDR, CNAPP, SIEM, and vulnerability management solutions such as Tenable, Qualys, or WizProficiency in scripting and automation using Python, Bash, or similar languagesBachelor’s degree in Computer Science, Information Technology, or a related field, or equivalent experienceNice to have: Industry certifications???????:Office-first, flexible approach with on-site work several days a week and remote work supported when appropriate80% On-site and 20% remote workContinuous training and learning based on individual needsAlan private health insuranceWellhub membershipCobee expense savingsLanguage classes with PreplyPayflow salary accessOffice breakfast and organic fruitNora and Apeteat discountsPet-friendly office #J-*****-Ljbffr

Requirements

??????:Drive the security strategy for cloud environments and ensure security is built into the architecture from day oneLead the identification, assessment, and remediation of infrastructure vulnerabilitiesMaintain the infrastructure risk register and prioritize mitigation efforts based on business impactImplement and maintain hardening strategies across the infrastructureMonitor security alerts and incidentsConduct incident response and investigations to identify root causes within the infrastructure stackDevelop and manage infrastructure security tooling, including CNAPP, CSPM, and vulnerability scannersSecure infrastructure and runners within CI/CD pipelinesPartner with IT, DX, and SRE teams to integrate infrastructure security best practices and automate security controlsDevelop, maintain, and regularly update incident response plans and infrastructure security policies??????????:5+ Years of experience in Infrastructure Security or Security EngineeringExperience with cloud environments, including AWS or AzureExperience with Infrastructure as Code using TerraformExperience with containerization using KubernetesDeep experience managing enterprise-grade vulnerability scanning and risk prioritization workflowsStrong understanding of network security, OS hardening on Linux/Unix, and identity management with IAMStrong understanding of cyberattacks and threat actor Tactics, Techniques, and Procedures related to infrastructure and cloud escapeExperience using and managing EDR, CNAPP, SIEM, and vulnerability management solutions such as Tenable, Qualys, or WizProficiency in scripting and automation using Python, Bash, or similar languagesBachelor’s degree in Computer Science, Information Technology, or a related field, or equivalent experienceNice to have: Industry certifications???????:Office-first, flexible approach with on-site work several days a week and remote work supported when appropriate80% On-site and 20% remote workContinuous training and learning based on individual needsAlan private health insuranceWellhub membershipCobee expense savingsLanguage classes with PreplyPayflow salary accessOffice breakfast and organic fruitNora and Apeteat discountsPet-friendly office #J-*****-Ljbffr

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.buscojobs.com.es
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

3:52 min

Avoiding remote code execution from unsanitized inputs

Alexander Pirker · World Congress 2022

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

54 sec

Interpreting complex terminal commands safely using external explanation utilities

Dan Cranney +2 · LIVE

Videos

See all

Related articles

See all