Defensive Security Engineer, hibrido
Empresa
Michael Page
Provincia
Barcelona
Ciudad
Barcelona
Tipo de Contrato
Tiempo Completo
Descripción
Defensive Security Engineer
Lead advanced incident response investigations, particularly involving cloud infrastructure and platform environments.
Analyse, contain, eradicate and recover from security incidents escalated from SOC and L2 teams.
Develop and improve incident response playbooks, detection rules and escalation procedures.
Manage and enhance security tooling such as SIEM, EDR and threat intelligence platforms.
Operationalise threat intelligence to strengthen detection and response capabilities.
Collaborate with security and engineering teams to improve processes, automation and security monitoring.
Participate in on-call rotations and contribute to post-incident reviews and continuous improvement initiatives.
Lead complex cloud security investigations.
Work with modern security engineering and automation.
4+ years of experience in Security Engineering, SOC or Incident Response roles.
Strong hands-on experience managing security incidents across the full incident response lifecycle.
Proven expertise with SIEM, EDR, threat intelligence and security monitoring technologies.
Good knowledge of AWS security services, IAM, Security Groups and cloud security best practices.
Experience with GitOps, automation, CI/CD pipelines and security-as-code approaches.
Familiarity with Kubernetes, GitHub, Infrastructure as Code and modern cloud environments.
Strong analytical and problem-solving skills with the ability to lead complex investigations.
Experience working with security frameworks such as MITRE ATT CK or NIST.
Fluent English and ability to collaborate effectively across multiple teams.
Passion for cybersecurity, continuous improvement and defensive security operations.
A leading European digital marketplace company that operates large-scale online platforms across multiple sectors, connecting millions of users and businesses every month. The organisation is highly technology-driven, with a strong focus on cloud infrastructure, platform scalability, security, and innovation.
The company offers an international environment where engineering teams work with modern technologies and best practices to build secure, high-availability products that impact users across multiple markets.
Opportunity to join a leading international technology company with large-scale cloud environments.
Exposure to complex, high-impact security incidents and advanced cloud security challenges.
Work with modern technologies, including AWS, Kubernetes, GitOps, CI/CD and security automation.
Join a collaborative and highly skilled security team with strong engineering standards.
Influence detection, response and security strategy across a global organisation.
Continuous learning and professional development within a mature cybersecurity function.
Competitive compensation and benefits package in an international environment.
AWS, IAM, Security Groups, SIEM, EDR, GitOps,
Lead advanced incident response investigations, particularly involving cloud infrastructure and platform environments.
Analyse, contain, eradicate and recover from security incidents escalated from SOC and L2 teams.
Develop and improve incident response playbooks, detection rules and escalation procedures.
Manage and enhance security tooling such as SIEM, EDR and threat intelligence platforms.
Operationalise threat intelligence to strengthen detection and response capabilities.
Collaborate with security and engineering teams to improve processes, automation and security monitoring.
Participate in on-call rotations and contribute to post-incident reviews and continuous improvement initiatives.
Lead complex cloud security investigations.
Work with modern security engineering and automation.
4+ years of experience in Security Engineering, SOC or Incident Response roles.
Strong hands-on experience managing security incidents across the full incident response lifecycle.
Proven expertise with SIEM, EDR, threat intelligence and security monitoring technologies.
Good knowledge of AWS security services, IAM, Security Groups and cloud security best practices.
Experience with GitOps, automation, CI/CD pipelines and security-as-code approaches.
Familiarity with Kubernetes, GitHub, Infrastructure as Code and modern cloud environments.
Strong analytical and problem-solving skills with the ability to lead complex investigations.
Experience working with security frameworks such as MITRE ATT CK or NIST.
Fluent English and ability to collaborate effectively across multiple teams.
Passion for cybersecurity, continuous improvement and defensive security operations.
A leading European digital marketplace company that operates large-scale online platforms across multiple sectors, connecting millions of users and businesses every month. The organisation is highly technology-driven, with a strong focus on cloud infrastructure, platform scalability, security, and innovation.
The company offers an international environment where engineering teams work with modern technologies and best practices to build secure, high-availability products that impact users across multiple markets.
Opportunity to join a leading international technology company with large-scale cloud environments.
Exposure to complex, high-impact security incidents and advanced cloud security challenges.
Work with modern technologies, including AWS, Kubernetes, GitOps, CI/CD and security automation.
Join a collaborative and highly skilled security team with strong engineering standards.
Influence detection, response and security strategy across a global organisation.
Continuous learning and professional development within a mature cybersecurity function.
Competitive compensation and benefits package in an international environment.
AWS, IAM, Security Groups, SIEM, EDR, GitOps,