Cloud Security Engineer

Montash
Sevilla, Spain
4 days ago
Apply on www.buscojobs.com.es
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English

Tech stack

Artificial Intelligence Amazon Web Services Microsoft Azure Cloud Computing Security Continuous Integration Python (Programming Language) Security Information and Event Management Google Cloud Cloud Platform System Git Flow Kubernetes Terraform
+3 more
Prisma Cloud Platform Docker Microservices

Job description

Location:Madrid or Barcelona (Hybrid, 2-3 days/week in office)Employment type:Full-timeWere looking for a Cloud Security Engineer to join a fast-growing security team working across AWS, Azure, and GCP.Youll help us stay ahead of cloud-native threats, strengthen our security posture, and build the automation that lets us scale securely.What Youll DoReview and triage cloud security alerts across AWS, Azure, and GCP, focusing effort where risk and business impact are highestOwn the fix for cloud security posture gaps - misconfigurations, identity risks, and exposed resourcesInvestigate and respond to live threats, piecing together signals from different data sourcesKeep an eye on SaaS security health, spotting issues like identity drift or risky third-party accessBuild out and refine detection logic in our SIEM, and help grow our SOAR automationPartner with engineering and platform teams to roll out security guardrails and drive adoption of best practicesPush shift-left security forward by embedding it into IaC and CI/CD pipelinesHelp the team keep getting better through automation, solid documentation, and sharing what you learnWhat You BringPractical experience locking down cloud environments (AWS, Azure, and/or GCP)Solid grasp of how attackers operate in the cloud (credential abuse, lateral movement, exploiting misconfigurations) and how to detect itTime spent with CNAPP/CSPM tooling (Wiz, Prisma Cloud, Lacework, or similar)A track record of owning security incidents start to finish - investigation, containment, and writing it upComfort building or working within event-driven detection setups and SIEM/SOAR platformsUnderstanding of microservices and cloud-native architecture, with an eye toward scalability and resilienceReal-world experience with Kubernetes, Docker, and the major cloud platforms (AWS, Azure, GCP)Working knowledge of Infrastructure as Code (Terraform, CI/CD, GitOps) and shift-left approachesSome scripting or automation ability (Python or similar)Clear communicator in English, able to translate technical findings for non-security audiencesWhy This RoleA team thats going places- continuously growing, working with the latest technologies including AI, and genuinely pushing the boundaries of what a modern team looks likeInvest in yourself- the company invests heavily in learning & development?Great offices, real flexibility- hybrid working (2-3 days in office) from Barcelona or Madrid, with a terrace and stunning viewsBuild your own path- take ownership, show what youve got, and grow within the team and the company on your own terms??People come first-flexible working, healthcare, parental leave, and genuine wellbeing supportCompetitive package+ €2k annual compensation + health insurance, a dedicated learning budget, and more perks on top

Requirements

Solid grasp of how attackers operate in the cloud (credential abuse, lateral movement, exploiting misconfigurations) and how to detect it Time spent with CNAPP/CSPM tooling (Wiz, Prisma Cloud, Lacework, or similar) A track record of owning security incidents start to finish - investigation, containment, and writing it up Comfort building or working within event-driven detection setups and SIEM/SOAR platforms Understanding of microservices and cloud-native architecture, with an eye toward scalability and resilience Real-world experience with Kubernetes, Docker, and the major cloud platforms (AWS, Azure, GCP) Working knowledge of Infrastructure as Code (Terraform, CI/CD, GitOps) and shift-left approaches Some scripting or automation ability (Python or similar) Clear communicator in English, able to translate technical findings for non-security audiences

Benefits & conditions

A team thats going places- continuously growing, working with the latest technologies including AI, and genuinely pushing the boundaries of what a modern team looks like Invest in yourself- the company invests heavily in learning & development ?Great offices, real flexibility- hybrid working (2-3 days in office) from Barcelona or Madrid, with a terrace and stunning views Build your own path- take ownership, show what youve got, and grow within the team and the company on your own terms ??People come first-flexible working, healthcare, parental leave, and genuine wellbeing supportCompetitive package+ €2k annual compensation + health insurance, a dedicated learning budget, and more perks on top

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.buscojobs.com.es
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:34 min

Essential commands for running and testing Terraform configurations

Hennie Francis · LIVE

5:02 min

Mapping Git flow branches to application tester segments

Majid Hajian · LIVE

2:07 min

Inspecting default bridge architectures and custom Docker networks

Oliver Seitz Oliver Seitz · World Congress 2025

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

2:32 min

Overview of Terraform and Terraform Cloud features

Devlin Duldulao · LIVE

Videos

See all

Related articles

See all