The English-language job board for Spain

Cybersecurity Engineer – Purple Team / Red Team

On-site in Madrid·Full-time·Added today

Pasiona

35 open roles

Overview

Job details

  • Permanent contract

    Full-time.

Requirements

  • Have the right to work in Spain

    No sponsorship mentioned, and this kind of work is rarely sponsored in Spain.

  • Work in English

    English is required, per the ad.

  • Work on-site in Madrid

    No relocation package mentioned.

  • Have 3+ years of experience

    Mid-level role.

  • University degree

    “Formación universitaria en Ciberseguridad, Informática, Ingeniería o equivalente.” — per the ad.

Benefits

  • Private health insurance

    Per the ad: paid by the employer, or taken through flexible pay.

This job was automatically translated to English.

Requirements

What we're looking for

  • At least 3 years of practical experience in offensive cybersecurity, Adversary Emulation, Pentesting, Detection Engineering, Threat Hunting, Incident Response, or related disciplines.
  • At least 3 years of practical experience in Red Team or Purple Team, including the planning and execution of exercises in enterprise environments.
  • Demonstrable experience transforming offensive exercise results into improvements in telemetry, detection, investigation, response, and remediation.
  • Experience working with MITRE ATT&CK and Threat Intelligence.
  • Solid knowledge of attack and post-exploitation techniques in:
    • Windows
    • Linux
    • Active Directory
    • Microsoft Entra ID
    • Microsoft 365
    • Networking
    • Cloud
  • Experience with SIEM, EDR/XDR, SOAR, and Network Security Monitoring technologies.
  • Experience with Microsoft Sentinel.
  • Experience with Microsoft Defender XDR.
  • Good knowledge of KQL (Kusto Query Language).
  • Experience working with Python, PowerShell, or Bash.
  • Knowledge of APIs, version control, and CI/CD environments.
  • Ability to work in enterprise, distributed environments with multiple stakeholders.
  • Ability to document technical results and convert them into concrete improvement actions.
  • An autonomous, analytical, and results-oriented person.

Nice to have

  • A combination of specialized professional training and relevant experience in cybersecurity will be equally valued.

Education & certifications

  • University degree in Cybersecurity, Computer Science, Engineering, or equivalent.

Languages

  • Professional English.

Pay & benefits

What you'll get

¡One day off for your birthday so you can celebrate it however you want!

Improved paid leave for a better personal and professional balance.

Access to private health insurance for your peace of mind.

Extra vacation days based on your seniority, because we value your rest and well-being.

The role

Are you passionate about offensive cybersecurity and interested in bringing real-world threat knowledge to the continuous improvement of a SOC?

We are looking for a Senior Cybersecurity / Purple Team Specialist to participate in international cybersecurity projects, working on Threat-Led Validation, Adversary Emulation, Red/Purple Team, Threat Hunting, and Detection Engineering.

The selected person will help validate and improve detection, investigation, and response capabilities against threats, working on enterprise environments and Microsoft security technologies.

What you'll do

  • Design security exercises based on Threat Intelligence, recent incidents, business risks, and detection gaps.
  • Plan and execute Adversary Emulation, Red Team, Purple Team, and Atomic Testing campaigns.
  • Map adversary activities and behaviors with MITRE ATT&CK.
  • Validate telemetry and detection capabilities together with the Detection Engineering and Threat Hunting teams.
  • Create, review, and optimize KQL queries, correlation rules, and behavioral detections.
  • Work with Microsoft Sentinel and Microsoft Defender XDR.
  • Evaluate the end-to-end capability of the SOC to detect, enrich, investigate, escalate, contain, and document incidents.
  • Identify blind spots, false negatives, and opportunities for improvement in security capabilities.
  • Document evidence and perform root cause analysis.
  • Define and follow up on remediation actions together with the control owners.
  • Perform re-testing to verify that remediation measures have been correctly implemented.
  • Create scripts, automations, integrations, and reusable tools.
  • Work with Python, PowerShell, Bash, APIs, Git, and CI/CD.
  • Develop metrics and reporting on MITRE ATT&CK coverage, control effectiveness, detections, and remediation progress.
  • Participate in Purple Team Workshops, After-Action Reviews, and knowledge transfer sessions.
  • Contribute to the continuous improvement of the SOC's detection and response capabilities.

How you'll work

Madrid

About Pasiona

Pasiona is a technology consulting firm specializing in cybersecurity, cloud infrastructure, and digital transformation. The company operates as a strategic partner for enterprises, offering services that range from vulnerability management and penetration testing to AI-driven platform engineering and data integration. With a global footprint, Pasiona combines deep technical expertise with a strong focus on innovation, helping organizations modernize their IT environments and secure their digital assets.

In Spain, Pasiona has established a significant presence in Barcelona, where it runs its Spanish operations and serves as a hub for international talent. The company is known for its collaborative, engineering-driven culture and actively recruits international professionals, offering opportunities for growth in areas like AI, cloud security, and platform engineering. For international hires, Pasiona provides a multicultural environment and the chance to work on cutting-edge projects, making it an attractive destination for those looking to build a career in Spain's thriving tech sector.

Industry
Tech Consulting
Founded
2010
Employees
100–500
Headquarters
Barcelona, Spain
In Spain
Barcelona

Good to know if you are moving

  • Pasiona is headquartered in Barcelona, so international hires would be joining the company at its global HQ.
  • The company's working language is English, making it accessible for non-Spanish speakers.
  • Pasiona offers visa sponsorship and relocation support for international candidates.
  • The company has a strong focus on professional development and certifications in cybersecurity and cloud technologies.
  • Barcelona offers a high quality of life, with a strong tech ecosystem and international community.

In their own words

Additional information

At Pasiona we are committed to diversity and equal opportunities.

We encourage everyone to apply, regardless of gender, age, disability, sexual orientation, gender identity, ethnic origin, religion, or any other personal or social circumstance.

All open roles at Pasiona
WhatsApp
BarcelonaNo Spanish needed
BarcelonaNo Spanish needed

AI Engineer Expert

Pasiona1d ago
BarcelonaNo Spanish needed
BarcelonaNo Spanish needed
BarcelonaNo Spanish needed
BarcelonaNo Spanish needed

API Designer

Pasiona1w ago
BarcelonaNo Spanish needed
MadridNo Spanish needed
BarcelonaNo Spanish needed

AI Engineer

Pasiona1w ago
Barcelona
See all 35 jobs