> Markdown version of [/jobs/ext/1681043-cybersecurity-engineer](https://www.wearedevelopers.com/jobs/ext/1681043-cybersecurity-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Engineer - **Company:** Openchip & Software Technologies - **Location:** Barcelona, Spain - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Microsoft Windows, Amazon Web Services, Microsoft Azure, Cloud Computing Security, CompTIA Security+, Cyber Security, Linux, Domain Name System (DNS), Identity and Access Management, Intrusion Detection and Prevention, Python (Programming Language), Network Protocols, Ansible, Security Information and Event Management, TCP/IP, Software Security, Falcon Platform, Palo Alto Networks, CIS Benchmarks, Terraform, Splunk, SentinelOne Expertise, Devsecops, Blue Team (Cyber Security) - **Published:** July 18, 2026 - **Apply:** https://es.trabajo.org/oferta-3453-9b60e1d241b28b472446c57475ab431d ## About the Role The Role: ¿Tiene las habilidades necesarias para este puesto? Lea todos los detalles a continuación y presente su candidatura hoy mismo. We are looking for a talented and driven Cybersecurity Engineer to join our Security Operations team. This is a highly hands-on role focused on threat investigation, detection engineering and security platform operations. You will act as a key escalation point for complex incidents while continuously improving detection capabilities and strengthening our overall security posture. Key Responsibilities: · Investigation & Incident Response o Conduct in-depth investigations of threats and suspicious activities. o Act as a critical escalation level for complex security incidents. · Detection Engineering o Develop and manage detection rules. o Improve visibility while reducing false positives and enhancing detection quality. · Security Platform Operations o Administer and optimize key security tools: EDR/XDR, SIEM, Email Security, AppSec, PAM, IAM. o Provide operational support for additional technologies including Proxy, NGFW, and NAC. · Technical Documentation o Produce and maintain Playbooks, incident reports (RCAs), and standardized SOC procedures. · Automation & Engineering o Contribute to automation initiatives using Python, Terraform, and Ansible. Required qualifications: · Minimum of 5 years of experience in cybersecurity, SOC (L2/L3) operations, or a related field. · Hands-on experience implementing security platforms and managing incidents. · Our core stack is built on the Microsoft 365 ecosystem, Palo Alto Networks, and other leading vendors; however, we highly value previous experience with similar tools such as Splunk, CrowdStrike, SentinelOne, etc. · Strong knowledge of log administration, network protocols (TCP/IP, DNS, HTTPS, etc), and Windows/Linux system. · Operational knowledge of NIS2, ISO 27001, or CIS Controls. · Advanced level of English (daily working language). Additionally valued: o Relevant certifications such as CompTIA Security+, Blue Team Level 2 (BTL2), GIAC (GCIH/GCFA), CEH, CISSP, Microsoft SC-200/SC-300, or vendor-specific certifications (Palo Alto, Splunk). o Experience in DevSecOps environments and container security. o Proven experience in cloud security (Azure, AWS, or GCP). Soft Skills: · Strong analytical and troubleshooting ability. · Clear communication skills and collaborative mindset. · Commitment to continuous learning. · Assertiveness and ownership. What do we offer? · Join an innovative team and experience company growth. · We believe in investing in our employees and providing them with the opportunities they need to grow and develop their careers. · Enjoy a hybrid work environment. · We also offer flexible schedule. · We offer a remuneration that values your experience. · The position will have the base in Barcelona. We are looking for outstanding people willing to join our mission to change this industry and ## Related Videos - [An Applied Introduction to eBPF with Go](https://www.wearedevelopers.com/videos/1075-an-applied-introduction-to-ebpf-with-go) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Turning Container security up to 11 with Capabilities](https://www.wearedevelopers.com/videos/718-turning-container-security-up-to-11-with-capabilities) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Where To Find Software Engineering Jobs](https://www.wearedevelopers.com/magazine/396-where-to-find-software-engineering-jobs) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Where to Find Entry-Level Software Engineering Jobs](https://www.wearedevelopers.com/magazine/397-where-to-find-entry-level-software-engineering-jobs)