The English-language job board for Spain
Overview
Job details
12 or 14 salary payments a year
Your pick, per the ad: the same annual pay either way.
Hybrid
Office and home days — the ad has the split.
Requirements
Have the right to work in Spain
No sponsorship mentioned, and this kind of work is rarely sponsored in Spain.
Work in English
English is required, per the ad.
Be near Madrid for hybrid days
No relocation package mentioned.
Have 2+ years of experience
Junior-level role.
Pay & benefits
What you'll get
What can we offer?
23 days of Annual Leave plus the 24th and 31st of December as discretionary days!
Numerous benefits (Health Care Plan, teleworking compensation, Life and Accident Insurances).
`Retribución Flexible´ Program: (Meals, Kinder Garden, Transport, online English lessons, Health Care Plan...)
Free access to several training platforms
Professional stability and career plans
UST also, compensates referrals from which you could benefit when you refer professionals.
The option to pick between 12 or 14 payments along the year.
Real Work Life Balance measures (flexibility, WFH or remote work policy, compacted hours during summertime...)
UST Club Platform discounts and gym Access discounts
Requirements
What we're looking for
Key attributes include:
2-4 years of experience in IT, cybersecurity, vulnerability management, compliance, governance, infrastructure operations, audit support, or security monitoring.
Understanding of vulnerability scan results, penetration testing findings, and remediation workflows.
Experience working with ticketing, ITSM, or GRC platforms to track and manage remediation activities.
Strong organizational, analytical, and decision-making skills.
Ability to collaborate with technical and non-technical stakeholders and influence remediation efforts.
Familiarity with security configuration standards, CIS benchmarks, and hardening guidelines.
Professional proficiency in English.
Eligibility to work in Spain.
Curiosity, adaptability, and a willingness to learn new technologies and security domains.
What do we expect from you?
Strong understanding of vulnerability management and exposure management principles.
Ability to interpret technical security findings and coordinate remediation efforts effectively.
Experience managing large volumes of work items without losing ownership or oversight.
Excellent stakeholder management, communication, and collaboration skills.
Confidence to make informed decisions and challenge unsupported claims when necessary.
Structured and proactive approach to prioritization, follow-up, and issue resolution.
Knowledge of security baselines, hardening standards, and compliance requirements.
Commitment to process quality, audit readiness, and risk reduction.
Team-oriented mindset with the willingness to learn and grow within a global security environment.
Ability to work in a fast-paced, highly regulated environment while maintaining attention to detail and accountability.
Nice to have
Nice to have:
Experience with Nexpose or similar vulnerability scanning solutions.
ServiceNow Vulnerability Response knowledge.
Azure cloud security experience.
Security certifications such as CompTIA Security+.
Experience in financial services or other regulated industries.
German language skills.
The role
What we look for?
We are looking for an Exposure Management Analyst with a solid foundation in IT security, vulnerability management, and stakeholder coordination. The ideal candidate has practical experience managing security findings, remediation processes, and compliance activities within complex technology environments.
What you'll do
Main tasks and accountabilities will be:
Manage security findings and remediation activities throughout their entire lifecycle.
Ensure all findings are assigned to the appropriate technology or application owners and actively tracked until closure.
Review and approve or reject false-positive requests based on evidence and technical analysis.
Analyze vulnerability scan outputs, penetration test reports, and security findings to determine impact and required actions.
Coordinate remediation efforts with technology teams, security experts, and system owners.
Monitor compliance with security baselines and follow up on remediation plans.
Lead resolution activities for findings affecting multiple teams or organizational units.
Serve as a key contact for stakeholders requiring support, guidance, or escalation assistance.
Ensure documentation, evidence, and remediation records meet audit and compliance requirements.
Produce operational reporting on remediation performance, overdue findings, risk indicators, and overall exposure status.
Escalate critical or stalled issues and coordinate with incident response teams when required.
Contribute to continuous improvement initiatives and support the onboarding of new exposure management processes and security domains.
How you'll work
Work Location
Hybrid position in Madrid (3 days at client´s office, Madrid city center).
Work Schedule
Business hours.
Hiring process
Learning about who you are
With recruitment team
Conversation about your background and experience; for some roles, a sense of your technical proficiency.
Understanding what makes you tick
What motivates you, your working style and personality, and whether you would thrive in UST and client team dynamics.
Final interview
With future peers, sometimes leadership or the client
Informal chat with your future peers about team fit; depending on the role, members of the leadership team or the client may join.
- UST replies within 24 hours of the final interview.
- Timing depends on everyone's availability.
Hiring process
If you would like to know more, don't hesitate to apply and we'll get in touch to fill you in detail. We are waiting for you!
About UST
UST is a global digital transformation and IT services company headquartered in Aliso Viejo, California, USA. With over 30,000 employees worldwide, UST partners with major corporations across industries such as banking, healthcare, retail, and manufacturing to deliver technology solutions, including cloud, data analytics, and application development. The company has a strong global footprint with delivery centers across North America, Europe, Asia, and Latin America.
In Spain, UST has a significant presence in Málaga, where it operates a technology and innovation hub. The Málaga office is a key delivery center for European clients, offering roles in software engineering, data, and digital services. UST is known for its collaborative culture and investment in employee development, making it an attractive option for international professionals seeking to work in Spain's growing tech ecosystem.
- Industry
- Technology
- Founded
- 1999
- Employees
- 30,000
- Headquarters
- Alameda, USA
- In Spain
- Málaga
- Website
- ust.com
Good to know if you are moving
- UST's Málaga office is part of a growing tech hub in southern Spain, offering a Mediterranean lifestyle with lower cost of living compared to Madrid or Barcelona.
- The company provides visa and relocation support for international hires, as part of its global mobility programs.
- UST emphasizes continuous learning and offers certifications and training in cloud, data, and engineering.
- Málaga has a growing international community and is well-connected by air to major European cities, making it easy for expats to travel.
- UST has a diverse workforce with employees from many nationalities, and English is commonly used in the Málaga office.
In their own words
About the company & team
We are looking for the very Top Talent...and we would be delighted if you were to join our team!
More in details, UST is a multinational company based in North America, certified as a Top Employer and Great Place to Work company with over 35.000 employees all over the world and presence in more than 35 countries. We are leaders on digital technology services, and we provide large-scale technologic solutions to big companies.
More jobs like this
or browse Madrid·Security·Security·Junior·Hybrid·Cybersecurity·Community of Madrid·Technology








