Security consultant

Dormont Manufacturing Co
Spain
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience required
6 years minimum
Working hours
Regular working hours
Languages
English, Spanish
Job source

Tech stack

Artificial Intelligence User Authentication Encodings Cyber Security Computer Telephony Integration Digital Assets Intrusion Detection and Prevention Key Management Public Key Infrastructure Conversion Tracking Zero Trust Network Access Software Security
+4 more
Mitre Att&ck Cyber Threat Analysis Information Technology Cybercrime

Job description

performance trade-offs, and secure deployment at scale. - Advanced knowledge of AI/ML security risks, including model abuse, prompt injection, data poisoning, model inversion, leakage, and supply-chain threats. - Hands-on experience embedding security-by-design and governance controls into AI lifecycles (data, model development, deployment, monitoring). - Strong understanding of Responsible AI frameworks, including risk assessment, transparency, explainability, accountability, and ethical guardrails. - Ability to translate regulatory and standards requirements (e.g. AI risk management frameworks) into practical, implementable security controls. - Solid experience in Cyber Threat Intelligence (CTI), including threat actor analysis, campaign tracking, TTP analysis, and contextual risk assessment. - Ability to consume, enrich, and operationalise intelligence from internal and external sources, mapping adversary behaviour to frameworks such as MITRE ATT&CK. - Strong analytical mindset to translate technical intelligence into business-relevant risk insights for executives and security leaders. Key Responsibilities - Advise clients on post-quantum readiness, defining cryptographic risk exposure, prioritised migration roadmaps, and crypto-agile target architectures. - Design and assess secure AI architectures, embedding Responsible AI and AI security controls across data, model, and operational layers. - Support clients in evolving their security posture to address emerging adversarial capabilities, including AI-enabled attacks and future cryptographic threats. - Conduct advanced security assessments covering cryptography, AI systems, and high-risk digital assets, identifying both current and future-oriented threats. - Apply threat intelligence and adversarial thinking to prioritise risks, attack paths, and mitigation strategies aligned with business impact. - Support incident response, threat hunting, and strategic intelligence initiatives by providing expert-level context and analysis. - Translate strategy into practical security controls, patterns, and governance mechanisms that can be implemented by engineering and operations teams. - Support proof-of-concepts, pilots, and controlled roll-outs for PQC, AI security guardrails, and advanced detection capabilities. - Work closely with client teams to ensure solutions are scalable, sustainable, and operationally viable. - Act as a trusted advisor on emerging cybersecurity domains, including post-quantum threats and Responsible AI security. - Contribute to internal knowledge, methodologies, and market offerings in advanced cryptography and AI security. - Clearly communicate complex technical risks and decisions to senior stakeholders, enabling informed executive-level decision-making. J-18808-Ljbffr

Requirements

Role Security consultant with solid experience in Post-Quantum Cryptography, Responsible AI, data protection and Zero Trust. Qualifications - Education: Bachelor’s or Master’s degree in Computer Science, Information Security, Engineering or related field. - Certifications: CISSP, CISM, CISA, CCSK. - Experience: 6+ years in cybersecurity services. - Languages: Spanish and English (B2 level or higher). Competencies - Deep expertise in cryptographic architectures, protocols, and trust models, including PKI, key management, authentication, and secure communications. - Proven experience in post-quantum cryptography (PQC), including quantum threat modelling, cryptographic asset discovery, crypto-agility design, and hybrid migration strategies aligned with emerging standards. - Ability to assess ā€œharvest now, decrypt laterā€ risks and define long-term data protection strategies across cloud, on-premises, and hybrid environments. - Strong understanding of cryptographic implementation risks

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on es.trabajo.org

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:38 min

Using language models to self-detect and flag software vulnerabilities

Julian Totzek-Hallhuber Julian Totzek-Hallhuber Ā· World Congress 2026 Europe

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa Ā· LIVE

3:17 min

Optimizing character encoding with Kim variable byte encoding

Douglas Crockford Douglas Crockford Ā· World Congress 2024

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira Ā· Coffee With Developers

2:11 min

Securing heterogeneous legacy payment infrastructure against AI

Michele Zuccala Michele Zuccala +4 Ā· World Congress 2026 Europe

1:45 min

Transitioning from software development to security roles

Stefania Chaplin Ā· World Congress 2022

Videos

See all

Related articles

See all