Defensive Security Engineer - Hybrid in Barcelona

Barcelona, Spain·Security·Added today

What they offer

  • Permanent contract

    Per the ad.

  • Hybrid

    Office and home days — the ad has the split.

What they ask for

  • Have the right to work in Spain

    No sponsorship mentioned, and this kind of work is rarely sponsored in Spain.

  • Work in English

    English is required, per the ad.

  • Be near Barcelona for hybrid days

    No relocation package mentioned.

About the job

Requirements

  • 4+ years of experience in Security Engineering, SOC or Incident Response roles.
  • Strong hands-on experience managing security incidents across the full incident response lifecycle.
  • Proven expertise with SIEM, EDR, threat intelligence and security monitoring technologies.
  • Good knowledge of AWS security services, IAM, Security Groups and cloud security best practices.
  • Experience with GitOps, automation, CI/CD pipelines and security-as-code approaches.
  • Familiarity with Kubernetes, GitHub, Infrastructure as Code and modern cloud environments.
  • Strong analytical and problem-solving skills with the ability to lead complex investigations.
  • Experience working with security frameworks such as MITRE ATT&CK or NIST.
  • Fluent English and ability to collaborate effectively across multiple teams.
  • Passion for cybersecurity, continuous improvement and defensive security operations.

Benefits

  • Opportunity to join a leading international technology company with large-scale cloud environments.
  • Exposure to complex, high-impact security incidents and advanced cloud security challenges.
  • Work with modern technologies, including AWS, Kubernetes, GitOps, CI/CD and security automation.
  • Join a collaborative and highly skilled security team with strong engineering standards.
  • Influence detection, response and security strategy across a global organisation.
  • Continuous learning and professional development within a mature cybersecurity function.
  • Competitive compensation and benefits package in an international environment.

Original Advert

Resumen

Experienced Incident Response and Cloud Security professional to lead complex L3 investigations, improve detection and response capabilities, and strengthen cloud security across AWS environments. The role combines hands-on incident response, threat intelligence, and security engineering with modern practices such as GitOps, automation, Kubernetes, and CI/CD.
  • Lead complex cloud security investigations.
  • Work with modern security engineering and automation.

¿Dónde vas a trabajar?



A leading European digital marketplace company that operates large-scale online platforms across multiple sectors, connecting millions of users and businesses every month. The organisation is highly technology-driven, with a strong focus on cloud infrastructure, platform scalability, security, and innovation.

The company offers an international environment where engineering teams work with modern technologies and best practices to build secure, high-availability products that impact users across multiple markets.

Descripción

  • Lead advanced incident response investigations, particularly involving cloud infrastructure and platform environments.
  • Analyse, contain, eradicate and recover from security incidents escalated from SOC and L2 teams.
  • Develop and improve incident response playbooks, detection rules and escalation procedures.
  • Manage and enhance security tooling such as SIEM, EDR and threat intelligence platforms.
  • Operationalise threat intelligence to strengthen detection and response capabilities.
  • Collaborate with security and engineering teams to improve processes, automation and security monitoring.
  • Participate in on-call rotations and contribute to post-incident reviews and continuous improvement initiatives.

¿A quién buscamos (H/M/D)?

  • 4+ years of experience in Security Engineering, SOC or Incident Response roles.
  • Strong hands-on experience managing security incidents across the full incident response lifecycle.
  • Proven expertise with SIEM, EDR, threat intelligence and security monitoring technologies.
  • Good knowledge of AWS security services, IAM, Security Groups and cloud security best practices.
  • Experience with GitOps, automation, CI/CD pipelines and security-as-code approaches.
  • Familiarity with Kubernetes, GitHub, Infrastructure as Code and modern cloud environments.
  • Strong analytical and problem-solving skills with the ability to lead complex investigations.
  • Experience working with security frameworks such as MITRE ATT&CK or NIST.
  • Fluent English and ability to collaborate effectively across multiple teams.
  • Passion for cybersecurity, continuous improvement and defensive security operations.

¿Cuáles son tus beneficios?

  • Opportunity to join a leading international technology company with large-scale cloud environments.
  • Exposure to complex, high-impact security incidents and advanced cloud security challenges.
  • Work with modern technologies, including AWS, Kubernetes, GitOps, CI/CD and security automation.
  • Join a collaborative and highly skilled security team with strong engineering standards.
  • Influence detection, response and security strategy across a global organisation.
  • Continuous learning and professional development within a mature cybersecurity function.
  • Competitive compensation and benefits package in an international environment.
WhatsApp