Security Manager Azure

Giesecke+Devrient

Málaga

Híbrido

EUR 70.000 - 90.000

Jornada completa

Hace 2 días
Sé de los primeros/as/es en solicitar esta vacante
Generador de candidaturas

Una candidatura hecha para este puesto de trabajo: un currículum y una carta de presentación adaptados que responden directamente a la oferta.

Supera los filtros ATS

Ventajas ofrecidas por este puesto de trabajo

Remote work option
Continuous training
Canteen with meals
Diversity & inclusion

Descripción de la vacante

Giesecke+Devrient's G+D Mobile Security in Málaga, Spain, seeks a Security Manager Azure to lead our cloud security governance and ISMS effort. You will act as trusted advisor to engineering, product, and compliance, owning risk assessments and audits across Azure and AWS environments.

You will drive Zero Trust controls, manage Defender for Cloud findings, and collaborate with DevSecOps to ensure secure design and compliant operations, reporting to senior stakeholders.

Formación

  • At least 5 years in information security, risk, audit, or compliance, with 3+ years in security management or cloud governance.
  • Strong understanding of ISO 27001 and modern security frameworks.
  • Solid knowledge of security controls (IAM, third‑party risk, secure SDLC, cloud).
  • Ability to challenge and support engineering teams constructively.
  • Solid knowledge of Azure and AWS security controls.
  • Understanding of Zero Trust architecture and shared responsibility in cloud models.
  • Familiarity with IaC security practices: secrets management and pipeline approvals.
  • Experience producing security metrics and governance reports for execs.
  • Excellent analytical, documentation, and problem‑solving skills.
  • Fluent English; German or Spanish a plus.

Responsabilidades

  • Own and improve ISMS, policies, and governance lifecycle.
  • Advise engineering, product, compliance, and customer teams.
  • Lead security risk assessments and maintain risk register.
  • Ensure ISO 27001:2022 and other standards compliance.
  • Coordinate audits and assessments; ensure evidence readiness.
  • Lead vendor risk programs to strengthen supply chain.
  • Review product changes for governance and secure design.
  • Collaborate with Security Architect to align DevSecOps and cloud practices.
  • Own Azure security posture and Defender for Cloud findings.
  • Manage cross-platform governance tasks and CI/CD security gates.
  • Produce assurance reporting tied to risk register and remediation.

Conocimientos

Information security
Risk management
Security governance
ISO 27001
Cloud security
DevSecOps
Zero Trust
IAM
Audit
Stakeholder communication
English fluency

Herramientas

Azure Security Center
AWS Security Hub
Defender for Cloud
Entra ID
PIM (Privileged Identity Management)
IaC security tools
CI/CD security tools

Descripción del empleo

Giesecke+Devrient is a global company that offers security technologies, both in the physical and digital world. Every day, billions of people benefit from G+D innovations in their personal and business lives. We develop, manufacture, and distribute products and solutions for the safeguarding of payment processes, identities, connectivity, and data.

AtG+D Mobile Security, a world leader in secure telecommunications systems, we are looking for a highly skilled and proactiveSecurity Manager Azureto join our agile team.

Key Responsibilities
  • Own and continuously improve our ISMS, policies, and security governance lifecycle.
  • Act as a trusted advisor to engineering, product, compliance, and customer‑facing teams.
  • Lead security risk assessments,maintainthe risk register, and drive quarterly risk cycles.
  • Ensure operational compliance with ISO 27001:2022, GSMA SAS, NIS-2 and customer security requirements and support hands‑on withconfiguration tasks.
  • Coordinate external and internal audits and assessments, ensuringevidencereadiness and smooth execution.
  • Lead vendor risk programs that strengthen our supply chain resilience.
  • Review product and architectural changes for governance alignment and secure design.
  • Collaborate with the Security Architect to connect governance withDevSecOpsand cloud practices.
  • Own Azure security posture,govern Microsoft Defender for Cloudfindings, Entra ID Conditional Access policies, Privileged Identity Management (JIT access), and quarterly access reviews.
  • Support oncross-platform governance tasks, policy alignment, and shared risk register entries covering AWSand Azureworkloads.
  • Enforce Zero Trust controls across cloud environments: continuous verification, least-privilege access, and RBAC/ABAC enforcement.
  • GovernIaCand CI/CD pipeline security gates: reviewIaCtemplates forsecretsmanagement compliance, approve pipeline security controls, andvalidaterollback procedures.
  • Produce structured assurance reporting for management:metrics tied to the risk register, control effectiveness, and remediation tracking for findings from Defender for Cloud and AWS Security Hub.
What You Bring
  • At least 5 years in information security, risk, audit, or compliance, with a minimum of 3 years in a similar role (security management, cloud security governance, or ISMS ownership), ideally in regulated environments (telecommunications, banking, payments, SaaS).
  • Strong understanding of ISO 27001, risk methodologies, and modern security frameworks.
  • Solid knowledge of security controls (IAM, third‑party risk, secure SDLC, cloud).
  • Ability to challenge and support engineering teams constructively.
  • Solid knowledge of Azure and AWS security controls.
  • Practical understanding of Zero Trust architecture principles and shared responsibility models across IaaS, PaaS, and SaaS.
  • Familiarity withIaCsecurity practices:secretsmanagement, pipeline approval workflows, and dependency vulnerability handling.
  • Experience producing security assurance metrics and governance reports for senior stakeholders.
  • Excellent analytical, documentation, and problem‑solving skills.
  • Fluent English; German or Spanish is a plus.
Nice to Have
  • AZ-500 (Microsoft Certified: Azure Security Engineer Associate).
  • AWS Certified Security–Specialty.
  • CCSK (Certificate of Cloud Security Knowledge).
  • Familiarity with the Microsoft Cloud Security Benchmark (MCSB) or CIS Benchmarks for Azure/AWS.
What’s great about working with us:
  • Culture and diversity: Join a people oriented environment with different nationalities and a great team spirit, flat hierarchies (everyone speaks to everyone). Equal Opportunity Employer and LGBT+ friendly.
  • Global Collaboration: Work collaboratively with stakeholders around the globe.
  • Career Development: Benefit from continuous training, coaching, and talent development programs.
  • Own canteen: take a break with our breakfast and lunch service: chose between a wild range of menus, salad desk, and sandwiches service. Nicely prices!
  • Work-Life Balance: Flexible working hours with the option for remote work (M-Th 8.30 – 17.30 and Fri 8.30 – 15.30; 3 days of remote work).

The personal data you provide will be processed to manage your application in accordance with the GDPR and our Privacy Policy, available at Data Privacy | G+D .

We are an equal opportunity employer! We promote diversity in all its forms and create an inclusive work environment, free from prejudice, discrimination and harassment, in which all employees feel a sense of belonging. We warmly welcome all applications regardless of gender, age, race or ethnic origin, social and cultural background, religion, disability and sexual orientation.

G+D shapes trust in the digital age, with built-in security technology in three segments Digital Security, Financial Platforms and Currency Technology.

Consigue la evaluación confidencial y gratuita de tu currículum.
o arrastra y suelta tu archivo aquí
Similar jobs

Puestos de trabajo similares que vale la pena comparar

Security Manager Azure
Security Manager Azure

Giesecke & Devrient GB Ltd. • Barcelona

Híbrido
EUR 65.000 - 85.000
Flexible working hours
Career development programs
Own canteen with meal services
Security Manager – Azure
Security Manager – Azure

Jobtailor • Sant Joan Despí

Presencial
EUR 90.000 - 120.000
Azure Security Manager: ISMS & Zero Trust Lead (Remote)
Azure Security Manager: ISMS & Zero Trust Lead (Remote)

Giesecke+Devrient • Málaga

Híbrido
EUR 70.000 - 90.000
Remote work option
Continuous training
Canteen with meals
+1
Cloud Engineer - AWS 2
Cloud Engineer - AWS 2

Giesecke & Devrient GB Ltd. • Barcelona

Híbrido
EUR 80.000 - 120.000
Culture and diversity
Global Collaboration
Career Development
+1
Cloud Engineer - AWS 2
Cloud Engineer - AWS 2

Giesecke+Devrient • Sant Joan Despí

Híbrido
EUR 60.000 - 90.000
Remote work option
Flexible hours
Canteen
AWS Cloud Engineer
AWS Cloud Engineer

Giesecke+Devrient • Barcelona

Híbrido
EUR 70.000 - 95.000
Remote work option
Career development
Global collaboration
+1
Senior Process Engineer
Senior Process Engineer

Giesecke+Devrient • Sant Joan Despí

Presencial
EUR 55.000 - 75.000
Remote-Arbeit möglich
Flexible Arbeitszeiten
Private Versicherung
Azure Security Manager - Remote & Flexible Hours
Azure Security Manager - Remote & Flexible Hours

Giesecke & Devrient GB Ltd. • Barcelona

Híbrido
EUR 65.000 - 85.000
Flexible working hours
Career development programs
Own canteen with meal services
Technical Solution Manager - IoT Devices Rail (m/w/d)
Technical Solution Manager - IoT Devices Rail (m/w/d)

Giesecke+Devrient • Sant Joan Despí

Presencial
EUR 70.000 - 110.000
Flexible working hours
Remote work option (up to 3 days)
Aws Cloud Engineer
Aws Cloud Engineer

Mindmatch • Barcelona

Híbrido
EUR 70.000 - 110.000
Remote work 3 days a week
Private insurance
Flexible compensation (transport)