> Markdown version of [/jobs/ext/2048475-cybersecurity-analyst-rdt-security-platforms](https://www.wearedevelopers.com/jobs/ext/2048475-cybersecurity-analyst-rdt-security-platforms). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Analyst - Rdt Security Platforms - **Company:** Roche - **Location:** Madrid, Spain - **Contract:** Permanent contract - **Skills:** Agile Methodology, Amazon Web Services, Microsoft Azure, Bash Shell, Cloud Computing Security, Configuration Management Databases, Configuration Management, Cyber Security, Computer Programming, Continuous Integration, DevOps, Domain Name System (DNS), Github, Virtual Private Networks (VPN), Python (Programming Language), Network Security, Windows PowerShell, Remote Access Technology, Ansible, Zero Trust Network Access, Web Application Security, Security Information and Event Management, Scripting, Firewalls (Computer Science), Cloudflare, Terraform, Jenkins, Servicenow - **Published:** August 14, 2026 - **Apply:** https://www.buscojobs.com.es/cybersecurity-analyst-rdt-security-platforms-en-madrid-ID-366521056 ## About the Role Job Skills Required - High energy, self-motivated, and capable of owning work end-to-end with minimal direction. - Accountability/Problem Solving: Independently leads the analysis of moderately complex cybersecurity incidents and technical problems, clearly defining the security problem scope and driving root cause analysis for security breaches or vulnerabilities. - Identifies a diverse range of security stakeholders across functional areas and effectively manages relationships to build reliance through deep business and technical understanding, acting as a trusted advisor. - Strong customer focus with a highly responsive service delivery and support ethic. - Collaborative and communicative - comfortable working across distributed, cross-functional teams. - Detail-oriented with a commitment to quality, documentation, and operational excellence. - Strong written and verbal English communication skills. Qualifications and Experience Required - 3-7 years of hands-on technical experience in security engineering, with a focus on network security and secure access technologies. - Demonstrated hands-on experience with WAF (any vendor - Cloudflare a plus), including design and PoC of new solutions. - Proficiency with Terraform (or similar) for infrastructure-as-code and GitHub for version control and collaboration. - Experience using ServiceNow for configuration management (CMDB), change management, and/or incident management. - Experience with automation (scripts, workflows, or CI/CD) to support security operations. - Prior experience in a regulated industry (e.g., healthcare, finance, pharma, or government) is a plus. - Strong understanding of network security concepts including Zero Trust, VPN, DNS, firewalls, and web proxies. Nice to Have - Scripting or programming skills: Python, PowerShell, Bash, or similar. - Familiarity with Agile and DevOps practices; experience with CI/CD tooling (e.g., GitHub Actions, Jenkins, Ansible). - Experience with AWS, Azure, or GCP cloud security services. - Exposure to SIEM, EDR, or broader security operations tooling. - Relevant certifications such as PCNSE, Cloudflare Certified, CCNP Security, or equivalent. ## Description At Roche you can show up as yourself, embraced for the unique qualities you bring.Our culture encourages personal expression, open dialogue, and genuine connections, where you are valued, accepted and respected for who you are, allowing you to thrive both personally and professionally.This is how we aim to prevent, stop and cure diseases and ensure everyone has access to healthcare today and for generations to come.Join Roche, where every voice matters.The Position Impact Our Secure Access team protects the organization's global workforce by delivering and operating the technologies that enable secure, reliable, and compliant access to corporate resources.We work at the intersection of network security, identity, and cloud - supporting users and business-critical systems in a regulated industry environment.Do you want to make a meaningful impact as a Security Engineer focused on secure access and network security?Do you thrive in a fast-paced, self-directed environment?If so, we'd love to hear from you/!What You Will Do As a Security Engineer on the Secure Access team, you will design, implement, and operate the technologies that underpin our organization's remote access, web security, and network protection capabilities.You will be a hands-on contributor who brings both deep technical expertise and the energy to drive improvements independently.Purpose The Secure Access team engineers, delivers, and supports the solutions used to provide secure network access across the corporate environment - spanning on-premises, cloud, and hybrid infrastructure.The team provides hands-on engineering, configuration management, and automation support to keep access controls robust, auditable, and scalable in a regulated industry context.Key Activities and Deliverables - Design, implement, and operate WAF-based web security and Zero Trust access solutions.- Lead design and proof-of-concept (PoC) evaluations for new WAF and secure access solutions.- Manage WAF configuration, policy tuning, and day-to-day operations.- Support automation efforts to reduce manual toil across security configurations.- Manage infrastructure-as-code using Terraform and maintain version-controlled configurations in GitHub.- Own configuration management processes in ServiceNow, ensuring accurate CMDB records and change management compliance.- Ensure security solutions meet regulatory requirements and support audit and compliance activities.- Proactively identify gaps in access controls and propose improvements with a self-driven, solution-oriented mindset.- Collaborate with cross-functional partners including network, identity, and cloud teams to deliver integrated secure access capabilities.- Mentor more junior team members and contribute to the development of security best practices.Job Skills Required - High energy, self-motivated, and capable of owning work end-to-end with minimal direction.- Accountability/Problem Solving: Independently leads the analysis of moderately complex cybersecurity incidents and technical problems, clearly defining the security problem scope and driving root cause analysis for security breaches or vulnerabilities.- Identifies a diverse range of security stakeholders across functional areas and effectively manages relationships to build reliance through deep business and technical understanding, acting as a trusted advisor.- Strong customer focus with a highly responsive service delivery and support ethic.- Collaborative and communicative - comfortable working across distributed, cross-functional teams.- Detail-oriented with a commitment to quality, documentation, and operational excellence.- Strong written and verbal English communication skills.Qualifications and Experience Required - 3-7 years of hands-on technical experience in security engineering, with a focus on network security and secure access technologies.- Demonstrated hands-on experience with WAF (any vendor - Cloudflare a plus), including design and PoC of new solutions.- Proficiency with Terraform (or similar) for infrastructure-as-code and GitHub for version control and collaboration.- Experience using ServiceNow for configuration management (CMDB), change management, and/or incident management.- Experience with automation (scripts, workflows, or CI/CD) to support security operations.- Prior experience in a regulated industry (e.g., healthcare, finance, pharma, or government) is a plus.- Strong understanding of network security concepts including Zero Trust, VPN, DNS, firewalls, and web proxies.Nice to Have - Scripting or programming skills: Python, PowerShell, Bash, or similar.- Familiarity with Agile and DevOps practices; experience with CI/CD tooling (e.g., GitHub Actions, Jenkins, Ansible).- Experience with AWS, Azure, or GCP cloud security services.- Exposure to SIEM, EDR, or broader security operations tooling.- Relevant certifications such as PCNSE, Cloudflare Certified, CCNP Security, or equivalent.Who we are A healthier future drives us to innovate.Together, more than 100'000 employees across the globe are dedicated to advance science, ensuring everyone has access to healthcare today and for generations to come.Our efforts result in more than 26 million people treated with our medicines and over 30 billion tests conducted using our Diagnostics products.We empower each other to explore new possibilities, foster creativity, and keep our ambitions high, so we can deliver life-changing healthcare solutions that make a global impact.Let's build a healthier future, together.Roche is an Equal Opportunity Employer. ## Related Videos - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [The Road to MLOps: How Verivox Transitioned to AWS](https://www.wearedevelopers.com/videos/1050-the-road-to-mlops-how-verivox-transitioned-to-aws) - [Innovating Developer Tools with AI: Insights from GitHub Next](https://www.wearedevelopers.com/videos/1268-innovating-developer-tools-with-ai-insights-from-github-next) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [Our GitOps approach for deploying an Identity Provider and an API Gateway in a SaaS company](https://www.wearedevelopers.com/videos/776-our-gitops-approach-for-deploying-an-identity-provider-and-an-api-gateway-in-a-saas-company) - [Bringing AI Model Testing and Prompt Management to Your Codebase with GitHub Models](https://www.wearedevelopers.com/videos/1536-bringing-ai-model-testing-and-prompt-management-to-your-codebase-with-github-models) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)