Security Engineer

Everseen
Madrid, Spain
6 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience required
3 years minimum
Working hours
Regular working hours
Languages
English

Tech stack

Kubernetes Security Microsoft Azure Bash Shell Command-Line Interface Cloud Computing Cloud Computing Security Cloud Engineering Configuration Management Cyber Security Computer Networks Continuous Integration Database Queries
+31 more
Linux DevOps Domain Name System (DNS) Virtual Private Networks (VPN) Linux System Administration Networking Basics Routing Role-Based Access Control Red Hat Enterprise Linux Ansible Kusto Query Language Security Information and Event Management Software Engineering TCP/IP Software Vulnerability Management Scripting Cloud Platform System Data Ingestion Software Security Firewalls (Computer Science) Gitlab-ci Kubernetes Microsoft Sentinel CIS Benchmarks Terraform Devsecops Qualys Docker Static Application Security Testing Artifactory Dynamic Application Security Testing

Job description

The RoleAs a Security Engineer with Everseen’s Security team, you will work closely with Infrastructure and Security teams, build, automate, and operate across a modern cloud, network, and on-premises stack.You’ll take direct ownership of hardening our environments and improving detection coverage within a streamlined, collaborative culture.What you’ll doCloud & Container SecurityDefine and maintain security standards for various workloads (AKS, GKE) - covering RBAC, network policies, and admission controlsMaintain and improve security posture across Azure (Entra ID, Sentinel, Defender for Cloud)Contribute to container image scanning and runtime security monitoringSupport JFrog Artifactory operations including artifact security and access controlInfrastructure & Endpoint SecurityApply and maintain CIS benchmark hardening across all environments company-wide.Manage patching across Linux systems, ensuring timely remediation and compliance.Support vulnerability management lifecycle: triage, prioritization, and remediation trackingDetection, Monitoring & ResponseMaintain and improve Microsoft Sentinel log ingestion, analytics rules, and detection coverage.Investigate security alerts, triage incidents, and support SOC activities.Build and maintain correlation rules, workbooks, and SOAR playbooks.DevSecOps & AutomationImplement and maintain SAST, DAST, dependency scanning, and secrets detection in GitLab CI/CD.Automate security operations tasks using Bash and Ansible.Contribute to Infrastructure-as-Code security reviews (Terraform, Helm, Kubernetes manifests).Support shift-left security practices and developer security enablement.Collaborating WithYou will work closely with the Infrastructure and Security teams, operating seamlessly alongside network engineering, DevOps, and development groups.Day-to-day, your collaboration will be highly technical working directly with engineering peers to harden our infrastructure and integrate security tooling into CI/CD pipelines.Profile and SkillsMust-Have Experience3+ years in a Security Engineer, DevSecOps, or equivalent hands?on role.Solid Linux fundamentals: Comfortable navigating, troubleshooting and administering Linux environments strictly via the command line.Cloud Infrastructure: Practical experience with at least one major cloud platform (Azure or GCP is strongly preferred).Networking fundamentals: Understanding of TCP/IP, DNS, routing, firewall rule logic, and VPN concepts.Automation & IAC: Proficient in Bash for scripting, alongside hands?on experience with configuration management and provisioning tools like Ansible and/or Terraform.Vulnerability Management & Cloud Security: Hands?on experience with traditional and cloud?native security tooling such as Tenable (including Tenable Cloud Security / Ermetic), Wazuh, Qualys, or equivalent platforms.Container Ecosystems: Hands?on experience with Docker, Kubernetes, and container image scanning.Software Development Lifecycle: Experience with GitLab CI/CD pipeline security integration (SAST, DAST, secret detection).Strong Differentiators & Nice-to-HavesMicrosoft Sentinel administration (log ingestion, KQL query writing, analytics rules) or other SIEM administration experience.Azure certifications (e.g., AZ-500: Azure Security Engineer).RHEL subscription management, Insights, and patch automation with Ansible.Working knowledge of security frameworks in a live environment (ISO **, NIST, or CIS Benchmarks).Ways of Working & Soft SkillsOwnership mindset: You close the loop and solve problems; you don’t just flag issues.Clear communication: You are comfortable coordinating asynchronously and possess business-fluent English for both written and verbal collaboration.#J-**-Ljbffr

Requirements

3+ years in a Security Engineer, DevSecOps, or equivalent hands?on role. Solid Linux fundamentals: Comfortable navigating, troubleshooting and administering Linux environments strictly via the command line. Cloud Infrastructure: Practical experience with at least one major cloud platform (Azure or GCP is strongly preferred). Networking fundamentals: Understanding of TCP/IP, DNS, routing, firewall rule logic, and VPN concepts. Automation & IAC: Proficient in Bash for scripting, alongside hands?on experience with configuration management and provisioning tools like Ansible and/or Terraform. Vulnerability Management & Cloud Security: Hands?on experience with traditional and cloud?native security tooling such as Tenable (including Tenable Cloud Security / Ermetic), Wazuh, Qualys, or equivalent platforms. Container Ecosystems: Hands?on experience with Docker, Kubernetes, and container image scanning. Software Development Lifecycle: Experience with GitLab CI/CD pipeline security integration (SAST, DAST, secret detection). Strong Differentiators & Nice-to-Haves Microsoft Sentinel administration (log ingestion, KQL query writing, analytics rules) or other SIEM administration experience. Azure certifications (e.g., AZ-500: Azure Security Engineer). RHEL subscription management, Insights, and patch automation with Ansible. Working knowledge of security frameworks in a live environment (ISO **, NIST, or CIS Benchmarks). Ways of Working & Soft Skills Ownership mindset: You close the loop and solve problems; you don’t just flag issues. Clear communication: You are comfortable coordinating asynchronously and possess business-fluent English for both written and verbal collaboration. #J-**-Ljbffr

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.buscojobs.com.es

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:17 min

Mapping the maturity roadmap for scaled devops adoption

Dominik Krichbaum Dominik Krichbaum · WWC Europe 2026

5:02 min

Mapping distributed compute paradigms to modern vehicles

Joachim Werner · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · WWC 2025

3:18 min

Scaling global network engineering through DevOps culture

Stuart Clark · LIVE

3:50 min

Queues in TCP stacks and continuous network connections

Clemens Vasters Clemens Vasters · WWC 2022

Videos

See all

Related articles

See all