Cyber Defence Manager
Grupo Crit·Madrid, Spain
What they offer
Full-time hours
Per the ad.
Hybrid
Office and home days — the ad has the split.
What they ask for
Have the right to work in Spain
No sponsorship mentioned, and this kind of work is rarely sponsored in Spain.
Speak native-level Spanish
Listed as a requirement in the ad.
Work in English
English is required, per the ad.
Be near Madrid for hybrid days
No relocation package mentioned.
Have 10+ years of experience
Senior-level role.
Pulled from the advert automatically — the full ad is what counts.
What you'll do
- Define and execute the Cyber Defence and Security Operations strategy and roadmap.
- Lead technical teams specialized in detection, protection, and incident response.
- Direct and evolve the capabilities of the Cyber Defence Center / SOC.
- Manage and optimize the main defense platforms and technologies.
- Oversee SIEM, SOAR, EDR/XDR capabilities and other detection and response technologies.
- Coordinate the protection of cloud, networks, infrastructures, endpoints, and critical services together with other technical teams.
- Define KPIs, maturity levels, and operational metrics for Cyber Defence capabilities.
- Manage vendors, specialized services, and technology partners.
- Work closely with Architecture, Infrastructure, Cloud, IT, and the different Security areas.
- Critical incident and crisis management.
- Design, maintain, and evolve response plans, playbooks, and crisis protocols.
- Lead the response to cyberattacks and critical incidents.
- Coordinate multiple technical teams during crisis situations.
- Make quick decisions in high-pressure operational environments with high uncertainty.
- Coordinate the containment, eradication, and recovery of affected services.
- Analyze root causes and turn lessons learned into concrete improvements.
- Manage communication and coordination with management, business units, specialized vendors, and external bodies when necessary.
What we're looking for
- +10 years of experience in Cybersecurity.
- Experience leading Cyber Defence, Security Operations, or SOC teams.
- Real experience in detection, investigation, and response to cyber incidents.
- Experience leading critical incidents and cyber crisis situations.
- Demonstrated ability to coordinate multiple technical teams in high-pressure situations.
- Experience managing Cyber Defence Centers / SOC and security platforms.
- Solid knowledge of MITRE ATT&CK, NIST, SIEM, SOAR, EDR/XDR.
- Experience in Incident Response, Threat Detection, and Security Operations.
- Ability to translate complex technical concepts into language understandable by the Management Committee and business.
- Experience managing vendors, security services, and technology partners.
- High level of English
- Availability to work in Madrid under a hybrid model.
Job description
Vodafone is looking for a Cyber Defence Manager to lead one of the most critical areas of its cybersecurity strategy.
What profile are we looking for?
- More than 10 years of experience in Cybersecurity.
- Demonstrable experience leading operational Cyber Defence / Security Operations teams.
- Experience managing or directing SOC / Cyber Defence Centers.
- Direct experience in detection, investigation, and incident response.
- Experience leading response to critical incidents and cyber crises.
- Solid knowledge of MITRE ATT&CK, NIST, SIEM, SOAR, EDR/XDR.
- Experience working with different technical teams and coordinating multidisciplinary responses.
- Ability to deeply understand defense technologies and platforms, beyond a purely governance perspective.
- Ability to clearly explain complex technical situations to the Management Committee and business profiles.
- Advanced English.
Certifications such as CISSP, GIAC, or CRISC, as well as experience in the Telco sector, will be especially valued.
What you'll do
- Definir y ejecutar la estrategia y roadmap de Cyber Defence y Security Operations.
- Liderar equipos técnicos especializados en detección, protección y respuesta ante incidentes.
- Dirigir y evolucionar las capacidades del Cyber Defence Center / SOC.
- Gestionar y optimizar las principales plataformas y tecnologías de defensa.
- Supervisar las capacidades de SIEM, SOAR, EDR/XDR y otras tecnologías de detección y respuesta.
- Coordinar la protección de cloud, redes, infraestructuras, endpoints y servicios críticos junto con otros equipos técnicos.
- Definir KPIs, métricas y niveles de madurez operativa de las capacidades de Cyber Defence.
- Gestionar proveedores, servicios especializados y partners tecnológicos.
- Trabajar estrechamente con Arquitectura, Infraestructura, Cloud, IT y las diferentes áreas de Seguridad.
- Gestión de incidentes críticos y crisis
- Diseñar, mantener y evolucionar planes de respuesta, playbooks y protocolos de crisis.
- Liderar la respuesta ante ciberataques e incidentes críticos.
- Coordinar múltiples equipos técnicos durante situaciones de crisis.
- Tomar decisiones rápidas en entornos operativos de alta presión y elevada incertidumbre.
- Coordinar la contención, erradicación y recuperación de los servicios afectados.
- Analizar causas raíz y convertir las lecciones aprendidas en mejoras concretas.
- Gestionar la comunicación y coordinación con dirección, negocio, proveedores especializados y organismos externos cuando sea necesario.
What we're looking for
- +10 años de experiencia en Ciberseguridad
- Experiencia liderando equipos de Cyber Defence, Security Operations o SOC.
- Experiencia real en detección, investigación y respuesta ante ciberincidentes.
- Experiencia liderando incidentes críticos y situaciones de crisis cibernética.
- Capacidad demostrada para coordinar múltiples equipos técnicos en situaciones de alta presión.
- Experiencia gestionando Cyber Defence Centers / SOC y plataformas de seguridad.
- Conocimientos sólidos de MITRE ATT&CK, NIST, SIEM, SOAR, EDR/XDR.
- Experiencia en Incident Response, Threat Detection y Security Operations.
- Capacidad para traducir conceptos técnicos complejos a un lenguaje comprensible para Comité de Dirección y negocio.
- Experiencia en gestión de proveedores, servicios de seguridad y partners tecnológicos.
- Inglés alto
- Disponibilidad para trabajar en Madrid bajo modelo híbrido.
Job description
Vodafone busca incorporar un/a Cyber Defence Manager para liderar una de las áreas más críticas de su estrategia de ciberseguridad.
¿Qué perfil buscamos?
- Más de 10 años de experiencia en Ciberseguridad.
- Experiencia demostrable liderando equipos operativos de Cyber Defence / Security Operations.
- Experiencia gestionando o dirigiendo SOC / Cyber Defence Centers.
- Experiencia directa en detección, investigación y respuesta ante incidentes.
- Experiencia liderando la respuesta ante incidentes críticos y crisis cibernéticas.
- Conocimiento sólido de MITRE ATT&CK, NIST, SIEM, SOAR, EDR/XDR.
- Experiencia trabajando con diferentes equipos técnicos y coordinando respuestas multidisciplinares.
- Capacidad para comprender en profundidad las tecnologías y plataformas de defensa, más allá de una perspectiva exclusivamente de gobierno.
- Capacidad para explicar situaciones técnicas complejas de forma clara a Comité de Dirección y perfiles de negocio.
- Inglés alto.
Se valorarán especialmente certificaciones como CISSP, GIAC o CRISC, así como experiencia en el sector Telco.
This job was automatically translated to English, .
About the company
Grupo Crit
Staffing
Grupo Crit is a staffing agency.They recruit for client companies, so the employer you would work for is not named on this ad.