Senior Corporate Security Engineer

Nexthink
Madrid, Spain
11 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience required
5 years minimum
Working hours
Regular working hours
Languages
English

Tech stack

Microsoft Windows Apple Mac Systems Microsoft Azure Software as a Service Cyber Security Linux Identity and Access Management Python (Programming Language) Log Analysis Phishing Zero Trust Network Access Security Information and Event Management
+10 more
Systems Integration Software Vulnerability Management Data Storage Technologies Microsoft InTune Patch Management Casper Suite CIS Benchmarks Terraform Network Server Vulnerability Analysis

Job description

Experteer Overview Aumente sus posibilidades de conseguir una entrevista leyendo la siguiente descripción general de este puesto antes de presentar su candidatura.In this Senior Corporate Security Engineer role, you will architect and secure Nexthink’s internal environment to support rapid growth.You’ll collaborate with IT, HR, and security teams to design identity-centric controls, enforce least-privilege access, and automate onboarding and offboarding.You’ll own detection and response for the corporate SaaS ecosystem, balancing strong security with productivity.You will work hands-on to harden endpoints, manage EDR/XDR, and lead risk mitigation across cloud and on-prem resources.This is a mission-driven opportunity to shape Nexthink’s security fabric in a cloud-first, high-growth context.Compensaciones / Beneficios* Contribute to passwordless authentication design and Zero Trust implementation* Manage secure provisioning and lifecycle management with least-privilege access* Streamline onboarding/offboarding workflows with HR/IT and ensure auditability* Define security baselines for Windows/macOS endpoints and mobile devices via MDM (Intune/Jamf)* Tune and manage EDR/XDR for workstations and servers (Windows/Linux/macOS)* Secure corporate Azure footprint, including subscriptions, networking, and resources* Conduct regular security assessments and vulnerability scans; coordinate patch management* Automate endpoint compliance checks and remediation workflows with IT* Develop and maintain Infrastructure-as-Code; ensure endpoint and server hardening* Assess and secure third-party SaaS integrations; configure CASB/DLP policies* Lead incident response for corporate security events; develop automation and SOAR workflows* Proactively hunt threats; develop incident response playbooks and forensics procedures* Design and implement security controls for endpoints, data storage, networking, computing, and IAM* Support automated evidence collection for audits* Act as security liaison to IT and business teams; deliver security training and awareness campaignsResponsabilidades* 5-8 years of hands-on experience in Corporate Security, IT Security Engineering, xqbhyrx or SOC in a cloud-first environment* Endpoint mastery with OS hardening and MDM/UEM tools* Vulnerability management and patching experience* Proficiency in Python and Terraform for automating security workflows* Experience with EDR tools and SIEM log analysis* Fluent English and ability to explain risks to non-technical stakeholders* Proven ability to influence security best practices across non-security teams* Experience with security awareness training platforms and phishing simulationsRequisitos principales* Permanent contract* Private health insurance* Hybrid work model* Unlimited vacation* Gym subscription subsidy* Relocation package

Requirements

This is a mission-driven opportunity to shape Nexthink’s security fabric in a cloud-first, high-growth context.Compensaciones / Beneficios* Contribute to passwordless authentication design and Zero Trust implementation* Manage secure provisioning and lifecycle management with least-privilege access* Streamline onboarding/offboarding workflows with HR/IT and ensure auditability* Define security baselines for Windows/macOS endpoints and mobile devices via MDM (Intune/Jamf)* Tune and manage EDR/XDR for workstations and servers (Windows/Linux/macOS)* Secure corporate Azure footprint, including subscriptions, networking, and resources* Conduct regular security assessments and vulnerability scans; coordinate patch management* Automate endpoint compliance checks and remediation workflows with IT* Develop and maintain Infrastructure-as-Code; ensure endpoint and server hardening* Assess and secure third-party SaaS integrations; configure CASB/DLP policies* Lead incident response for corporate security events; develop automation and SOAR workflows* Proactively hunt threats; develop incident response playbooks and forensics procedures* Design and implement security controls for endpoints, data storage, networking, computing, and IAM* Support automated evidence collection for audits* Act as security liaison to IT and business teams; deliver security training and awareness campaignsResponsabilidades* 5-8 years of hands-on experience in Corporate Security, IT Security Engineering, xqbhyrx or SOC in a cloud-first environment* Endpoint mastery with OS hardening and MDM/UEM tools* Vulnerability management and patching experience* Proficiency in Python and Terraform for automating security workflows* Experience with EDR tools and SIEM log analysis* Fluent English and ability to explain risks to non-technical stakeholders* Proven ability to influence security best practices across non-security teams* Experience with security awareness training platforms and phishing simulationsRequisitos

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.buscojobs.com.es

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · WWC 2025

1:29 min

Evaluating phishing emails that leverage artificial time constraints

Mauro Verderosa · LIVE

1:34 min

Essential commands for running and testing Terraform configurations

Hennie Francis · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:39 min

Experiencing core Linux capabilities for DevOps administration

Michael Cade · LIVE

Videos

See all

Related articles

See all