Cybersecurity Engineer

mscope

Madrid

Hybrid

EUR 60,000 - 90,000

Full time

7 hours ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Hybrid work
25 days vacation
Birthday off

Job summary

mscope is seeking a security-focused professional to own vulnerability management, automate compliance, and harden cloud security across AWS and Azure. You will integrate SAST/DAST into CI/CD and drive DLP, incident response, and client audits.

The role requires 3+ years in cybersecurity, fluency in Spanish and English, and hands-on with AWS/Microsoft security tools. Hybrid work, 25 days vacation, and startup autonomy are offered.

Qualifications

  • 3+ years of cybersecurity experience in regulated environments.
  • Hands-on with AWS security services and Microsoft security stack.
  • Experience integrating security tooling into CI/CD pipelines.

Responsibilities

  • Own vulnerability management program and integrate SAST/DAST into CI/CD.
  • Automate compliance checks across firewalls, rotations, audits and policies.
  • Harden AWS/Azure security postures and protect endpoints.
  • Design and implement DLP across endpoints, email and cloud storage.
  • Close gaps in SIEM-SOC integration, IR, BCP and DR planning.
  • Serve as security point of contact for client audits and certifications.
  • Maintain security policies and drive awareness across the organization.

Skills

Vulnerability management
Cloud security
Compliance automation
SIEM/SOC
Incident response
Security governance
Security communications
CI/CD security integration
IaC security scanning
Secrets rotation automation
Vulnerability scanning tools
Penetration testing basics
ISO 27001 / GDPR / NIS2 / DORA
Spanish & English fluency
Security certifications

Tools

OpenVAS
Nessus
Microsoft Sentinel
Splunk
AWS Security Hub
GuardDuty
Terraform
OPA
CloudFormation Guard
Entra ID
Intune
Defender for Endpoint

Job description


  • Vulnerability management: own the program and complete the SAST/DAST pipeline integration into CI/CD, ensuring full coverage and automation.

  • Compliance automation: replace manual checklists with automated controls across firewall reviews, key rotations, audits and policy reviews.

  • Cloud security: harden and evolve AWS and Azure security postures (SCPs, Security Hub, GuardDuty, WAF, network security, Entra ID, Intune and Defender for Endpoint).

  • Data loss prevention: design and execute the DLP strategy across endpoints, email, cloud storage and messaging platforms.

  • Resilience: close identified gaps in SIEM-SOC integration, incident response, BCP and DR planning.

  • Client trust: act as the security point of contact for client audits, questionnaires and compliance certifications (ISO 27001, ENS, NIS2, DORA).

  • Security culture: maintain and evolve corporate security policies and drive security awareness initiatives across the organization.

  • 3+ years of cybersecurity experience, ideally in financial services or regulated environments.

  • Hands-on expertise with AWS security services (IAM, SCPs, Security Hub, GuardDuty, WAF, KMS, etc.) and the Microsoft security stack (Entra ID, Intune, Defender for Endpoint).

  • Proven experience in vulnerability management (OpenVAS, Nessus or equivalent) and integrating security tooling into CI/CD pipelines (SAST, DAST, secrets scanning, container scanning).

  • Familiarity with compliance frameworks: ISO 27001, GDPR, ENS, NIS2 and DORA.

  • Strong ability to communicate security requirements to technical teams and translate compliance obligations into actionable engineering tasks.

  • Fluency in Spanish and English

  • Security certifications: CISSP, CISM, AWS Security Specialty, AZ-500, CompTIA Security+ or similar.

  • Experience with SIEM/SOC solutions (Microsoft Sentinel, Splunk or equivalent).

  • Background in penetration testing, red team exercises or bug bounty programmes.

  • Experience with IaC security scanning and policy-as-code (Terraform, OPA, CloudFormation Guard).

  • Experience automating secrets rotation (AWS Secrets Manager, Entra ID certificate lifecycle).

  • Previous experience in a startup or small-team environment with high ownership and autonomy.

  • 25 days of vacation (and your birthday off!)

  • Hybrid mode: 2 days in office 3 days in remote

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cybersecurity Consultant (Cloud Security) - Hybrid Madrid
Cybersecurity Consultant (Cloud Security) - Hybrid Madrid

UST • Madrid

On-site
EUR 70,000 - 95,000
Annual leave 23 days
Health care plan
Flexible benefits program
+4
Security Operations Analyst (SIEM)
Security Operations Analyst (SIEM)

United ITS • Valencia

Hybrid
EUR 42,000 - 66,000
Remote option
Teleworking 4 days/week Valencia
IT Cybersecurity Intern
IT Cybersecurity Intern

Atlantica Sustainable Infrastructure Plc • Sevilla

On-site
EUR 7,800 - 11,000
Competitive remuneration
Growth opportunities
Dynamic environment
Security Engineer
Security Engineer

MKS PAMP • Barcelona

On-site
EUR 50,000 - 70,000
Security Engineer
Security Engineer

Socium - Teams Done Differently • Madrid

Hybrid
EUR 60,000 - 90,000
Competitive salary
Hybrid work: 3 days in Madrid
Training & certification support
+2
Senior Security Engineer
Senior Security Engineer

The Mill Adventure Limited • Barcelona

Hybrid
EUR 70,000 - 90,000
Private health insurance
Learning budget
Work equipment of your choice
+2
Engineering
Engineering

Nexthink SA • Madrid

On-site
EUR 90,000 - 120,000
Hybrid work model
Private Health Insurance (Sanitas)
Daily meal vouchers 11 EUR
+1
Cybersecurity Architect - 100% Remote
Cybersecurity Architect - 100% Remote

SQUAD - Cabinet de conseils et d’expertises • Spain

On-site
EUR 60,000 - 90,000
Senior Cybersecurity Analyst - (Cyber Defense Operations)
Senior Cybersecurity Analyst - (Cyber Defense Operations)

Talan • Málaga

Remote
EUR 50,000 - 75,000
Private medical insurance
Life insurance
Lunch and transport card
+2
Cybersecurity & IT Lead
Cybersecurity & IT Lead

Veridas • Pamplona

Hybrid
EUR 85,000 - 120,000
Working from home
Ongoing training
Flexible remuneration