> Markdown version of [/jobs/ext/2203032-security-engineer-in-cloud-infrastructure](https://www.wearedevelopers.com/jobs/ext/2203032-security-engineer-in-cloud-infrastructure). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Engineer In Cloud Infrastructure - **Company:** Enfint - **Location:** Barcelona, Spain (Remote available) - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Bash Shell, Business Software, Cloud Computing, Continuous Integration, Linux, Identity and Access Management, Python (Programming Language), Network Security, Security Information and Event Management, Software Vulnerability Management, Cloud Platform System, Information Technology, Qualys, Vulnerability Analysis - **Published:** August 23, 2026 - **Apply:** https://www.buscojobs.com.es/security-engineer-in-cloud-infrastructure-en-barcelona-ID-368795823 ## About the Role ??????:Drive the security strategy for cloud environments and ensure security is built into the architecture from day oneLead the identification, assessment, and remediation of infrastructure vulnerabilitiesMaintain the infrastructure risk register and prioritize mitigation efforts based on business impactImplement and maintain hardening strategies across the infrastructureMonitor security alerts and incidentsConduct incident response and investigations to identify root causes within the infrastructure stackDevelop and manage infrastructure security tooling, including CNAPP, CSPM, and vulnerability scannersSecure infrastructure and runners within CI/CD pipelinesPartner with IT, DX, and SRE teams to integrate infrastructure security best practices and automate security controlsDevelop, maintain, and regularly update incident response plans and infrastructure security policies??????????:5+ Years of experience in Infrastructure Security or Security EngineeringExperience with cloud environments, including AWS or AzureExperience with Infrastructure as Code using TerraformExperience with containerization using KubernetesDeep experience managing enterprise-grade vulnerability scanning and risk prioritization workflowsStrong understanding of network security, OS hardening on Linux/Unix, and identity management with IAMStrong understanding of cyberattacks and threat actor Tactics, Techniques, and Procedures related to infrastructure and cloud escapeExperience using and managing EDR, CNAPP, SIEM, and vulnerability management solutions such as Tenable, Qualys, or WizProficiency in scripting and automation using Python, Bash, or similar languagesBachelor's degree in Computer Science, Information Technology, or a related field, or equivalent experienceNice to have: Industry certifications???????:Office-first, flexible approach with on-site work several days a week and remote work supported when appropriate80% On-site and 20% remote workContinuous training and learning based on individual needsAlan private health insuranceWellhub membershipCobee expense savingsLanguage classes with PreplyPayflow salary accessOffice breakfast and organic fruitNora and Apeteat discountsPet-friendly office #J-*****-Ljbffr ## Description ????????: Factorial provides Business Management Software that helps small and medium-sized enterprises streamline company processes, automate workflows, centralize people data, and make better business decisions.Its customers are located across more than 60 countries.??????:Drive the security strategy for cloud environments and ensure security is built into the architecture from day oneLead the identification, assessment, and remediation of infrastructure vulnerabilitiesMaintain the infrastructure risk register and prioritize mitigation efforts based on business impactImplement and maintain hardening strategies across the infrastructureMonitor security alerts and incidentsConduct incident response and investigations to identify root causes within the infrastructure stackDevelop and manage infrastructure security tooling, including CNAPP, CSPM, and vulnerability scannersSecure infrastructure and runners within CI/CD pipelinesPartner with IT, DX, and SRE teams to integrate infrastructure security best practices and automate security controlsDevelop, maintain, and regularly update incident response plans and infrastructure security policies??????????:5+ Years of experience in Infrastructure Security or Security EngineeringExperience with cloud environments, including AWS or AzureExperience with Infrastructure as Code using TerraformExperience with containerization using KubernetesDeep experience managing enterprise-grade vulnerability scanning and risk prioritization workflowsStrong understanding of network security, OS hardening on Linux/Unix, and identity management with IAMStrong understanding of cyberattacks and threat actor Tactics, Techniques, and Procedures related to infrastructure and cloud escapeExperience using and managing EDR, CNAPP, SIEM, and vulnerability management solutions such as Tenable, Qualys, or WizProficiency in scripting and automation using Python, Bash, or similar languagesBachelor's degree in Computer Science, Information Technology, or a related field, or equivalent experienceNice to have: Industry certifications???????:Office-first, flexible approach with on-site work several days a week and remote work supported when appropriate80% On-site and 20% remote workContinuous training and learning based on individual needsAlan private health insuranceWellhub membershipCobee expense savingsLanguage classes with PreplyPayflow salary accessOffice breakfast and organic fruitNora and Apeteat discountsPet-friendly office #J-*****-Ljbffr ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Old tools, new tricks](https://www.wearedevelopers.com/videos/1916-old-tools-new-tricks) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [MCP doesn’t suck — your agent does](https://www.wearedevelopers.com/videos/100202-mcp-doesn-t-suck-your-agent-does) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) ## Related Articles - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Best Countries for Software Engineers](https://www.wearedevelopers.com/magazine/267-best-countries-for-software-engineers) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers)