Security Manager Azure

Giesecke & Devrient GB Ltd.

Barcelona

Híbrido

EUR 65.000 - 85.000

Jornada completa

14 días+

Recibe más respuestas de empleadores

Envía un currículum específico para el puesto de trabajo en cuestión de minutos.

Ventajas ofrecidas por este puesto de trabajo

Flexible working hours
Career development programs
Own canteen with meal services

Descripción de la vacante

Giesecke & Devrient GB Ltd. is seeking a Security Manager for Azure to enhance its IoT security initiatives. Located in Sant Joan Despí, you will be responsible for improving ISMS, leading security risk assessments, and ensuring compliance with various security standards.

The ideal candidate has over 5 years in information security, strong knowledge of Azure and AWS security controls, and the ability to manage compliance in a dynamic environment.

This position offers flexible working hours and opportunities for remote work, along with a collaborative and diverse culture.

Formación

  • 5+ years in information security, risk, audit, or compliance.
  • Minimum of 3 years in a security management role, ideally in regulated environments.
  • Strong understanding of risk methodologies and security frameworks.

Responsabilidades

  • Own and continuously improve ISMS and security governance.
  • Lead security risk assessments and maintain the risk register.
  • Ensure compliance with ISO 27001:2022 and other security requirements.

Conocimientos

Information security management
Risk assessment
ISO 27001
Azure security controls
Cloud security governance
Zero Trust principles
Analytical skills
Problem-solving skills

Descripción del empleo

The role of Security Manager Azure will help shape G+D Mobile Security's future in IoT security. G+D combines digital security, financial platforms, and currency technology with a global reach of 14,000 employees.

Location: Sant Joan Despí (BCN), ES

Key Responsibilities
  • Own and continuously improve our ISMS, policies, and security governance lifecycle.
  • Act as a trusted advisor to engineering, product, compliance, and customer‑facing teams.
  • Lead security risk assessments, maintain the risk register, and drive quarterly risk cycles.
  • Ensure operational compliance with ISO 27001:2022, GSMA SAS, NIS-2, and customer security requirements; support hands‑on configuration tasks.
  • Coordinate external and internal audits and assessments, ensuring evidence readiness and smooth execution.
  • Lead vendor risk programs that strengthen our supply chain resilience.
  • Review product and architectural changes for governance alignment and secure design.
  • Collaborate with the Security Architect to connect governance with DevSecOps and cloud practices.
  • Own Azure security posture, govern Microsoft Defender for Cloud findings, Entra ID Conditional Access policies, Privileged Identity Management (JIT access), and quarterly access reviews.
  • Support cross‑platform governance tasks, policy alignment, and shared risk register entries covering AWS and Azure workloads.
  • Enforce Zero Trust controls across cloud environments: continuous verification, least‑privilege access, and RBAC/ABAC enforcement.
  • Govern IaC and CI/CD pipeline security gates: review IaC templates for secrets management compliance, approve pipeline security controls, and validate rollback procedures.
  • Produce structured assurance reporting for management: metrics tied to the risk register, control effectiveness, and remediation tracking for findings from Defender for Cloud and AWS Security Hub.
What You Bring
  • At least 5 years in information security, risk, audit, or compliance, with a minimum of 3 years in a similar role (security management, cloud security governance, or ISMS ownership), ideally in regulated environments (telecommunications, banking, payments, SaaS).
  • Strong understanding of ISO 27001, risk methodologies, and modern security frameworks.
  • Solid knowledge of security controls (IAM, third‑party risk, secure SDLC, cloud).
  • Ability to challenge and support engineering teams constructively.
  • Solid knowledge of Azure and AWS security controls.
  • Practical understanding of Zero Trust architecture principles and shared responsibility models across IaaS, PaaS, and SaaS.
  • Familiarity with IaC security practices: secrets management, pipeline approval workflows, and dependency vulnerability handling.
  • Experience producing security assurance metrics and governance reports for senior stakeholders.
  • Excellent analytical, documentation, and problem‑solving skills.
  • Fluent English; German or Spanish is a plus.
Nice to Have
  • AZ-500 (Microsoft Certified: Azure Security Engineer Associate)
  • AWS Certified Security–Specialty
  • CCSK (Certificate of Cloud Security Knowledge)
  • Familiarity with the Microsoft Cloud Security Benchmark (MCSB) or CIS Benchmarks for Azure / AWS
What’s great about working with us
  • Culture and diversity: a people‑oriented environment with different nationalities and a great team spirit, flat hierarchies.
  • Global Collaboration: work collaboratively with stakeholders around the globe.
  • Career Development: continuous training, coaching, and talent development programs.
  • Own canteen: breakfast and lunch service with a wide menu.
  • Work‑Life Balance: flexible working hours with the option for remote work.
Equal Opportunity Employer

We warmly welcome all applications regardless of gender, age, race or ethnic origin, social and cultural background, religion, disability, sexual orientation. We promote diversity and create an inclusive work environment, free from prejudice, discrimination and harassment.

Privacy Notice

The personal data you provide will be processed to manage your application in accordance with the GDPR and our Privacy Policy.

Consigue la evaluación confidencial y gratuita de tu currículum.
o arrastra y suelta tu archivo aquí
Similar jobs

Puestos de trabajo similares que vale la pena comparar

Cloud Engineer - AWS 2
Cloud Engineer - AWS 2

Giesecke+Devrient • Sant Joan Despí

Híbrido
EUR 60.000 - 90.000
Remote work option
Flexible hours
Canteen
Cloud Engineer - AWS 2
Cloud Engineer - AWS 2

Giesecke & Devrient GB Ltd. • Barcelona

Híbrido
EUR 80.000 - 120.000
Culture and diversity
Global Collaboration
Career Development
+1
Security Manager – Azure
Security Manager – Azure

Jobtailor • Sant Joan Despí

Presencial
EUR 90.000 - 120.000
Azure Security Manager - Remote & Flexible Hours
Azure Security Manager - Remote & Flexible Hours

Giesecke & Devrient GB Ltd. • Barcelona

Híbrido
EUR 65.000 - 85.000
Flexible working hours
Career development programs
Own canteen with meal services
Technical Solution Manager - IoT Devices Rail (m/w/d)
Technical Solution Manager - IoT Devices Rail (m/w/d)

Giesecke+Devrient • Sant Joan Despí

Presencial
EUR 70.000 - 110.000
Flexible working hours
Remote work option (up to 3 days)
Senior Process Engineer
Senior Process Engineer

Giesecke+Devrient • Sant Joan Despí

Presencial
EUR 55.000 - 75.000
Remote-Arbeit möglich
Flexible Arbeitszeiten
Private Versicherung
Technical Solution Manager - High Valuables & Connectivity
Technical Solution Manager - High Valuables & Connectivity

Giesecke & Devrient GB Ltd. • Barcelona

Presencial
EUR 70.000 - 90.000
Remote work option
Career development
Diversity & inclusion
+2
Technical Product Manager - IoT Devices
Technical Product Manager - IoT Devices

Giesecke & Devrient GB Ltd. • Barcelona

Híbrido
EUR 45.000 - 70.000
Flexible working hours
Career development programs
Breakfast and lunch service
Azure Cloud Security Engineer
Azure Cloud Security Engineer

ADD & CO • Bellprat

Híbrido
Confidencial
Hybrid work setup
Professional development
International collaboration
+1
Azure Cloud Security Engineer
Azure Cloud Security Engineer

ADD & CO • Barcelona

Híbrido
Confidencial
Hybrid setup – Barcelona-based
Small team of 4
International collaboration withSwitz
+2