Cybersecurity Engineer: Network Security

Hace 3 días

Madrid, España Siemens Healthineers Jornada completa
Cybersecurity Engineer: Network Security & AutomationLocation: Spain, hybrid/remote, with up to 80% remote workingJoin us in pioneering breakthroughs in healthcare. For everyone. Everywhere. Sustainably.
Our inspiring and caring environment forms a global community that celebrates diversity and individuality. We encourage you to step beyond your comfort zone, offering resources and flexibility to foster your professional and personal growth, all while valuing your unique contributions.
We are looking for a hands‑on Cybersecurity Engineer with a solid technical background in networking, cybersecurity, and automation to help us evolve and improve our global web application protection services.
This role is a good fit for someone who enjoys troubleshooting technical issues, understanding how applications are exposed to the internet, working with network and security technologies, and using scripting or development skills to automate repetitive tasks and improve operational efficiency.
You will work closely with application, network, cloud, DevOps, and security teams to support secure application onboarding, analyze traffic and connectivity issues, improve service quality, and contribute to the automation of technical processes.
Experience with Web Application Firewall technologies is highly valuable, especially Imperva Cloud WAF, but we are also interested in candidates with strong networking knowledge, curiosity, and the ability to learn and grow into this area.
This is not a pure operations role. We are looking for someone who can combine technical troubleshooting, service improvement, and automation mindset to help make our security services more scalable, standardized, and efficient.

Key Responsibilities
Support and improve global web application protection services, including configuration, troubleshooting, lifecycle activities, and service quality improvements.
Work on technical issues related to HTTP/S, DNS, SSL/TLS certificates, routing, reverse proxy, connectivity, and application exposure.
Support the onboarding of web applications into security protection services, helping to understand requirements, validate technical prerequisites, and coordinate implementation activities.
Analyze traffic, logs, alerts, and security events to identify anomalies, suspicious patterns, misconfigurations, or potential attacks.
Help tune security configurations to reduce false positives while maintaining the required level of protection.
Build and maintain scripts, small tools, API integrations, templates, or automation workflows to reduce manual work and improve consistency.
Collaborate with application, DevOps, cloud, network, and cybersecurity teams to resolve issues and improve secure‑by‑design practices.
Act as an escalation point for technical troubleshooting and support L1/L2 teams with guidance, documentation, and knowledge articles.
Contribute to process improvement, standardization, automation, and operational excellence across the service.
Stay curious about new technologies, security trends, and automation opportunities that can improve the service.
Required Skills & Qualifications3 to 6 years of experience in cybersecurity, network security, infrastructure, cloud, DevOps, automation, or application security roles.
Good understanding of networking concepts such as TCP/IP, DNS, HTTP/S, SSL/TLS, routing, proxies, load balancing, and connectivity troubleshooting.
Practical experience with security technologies, ideally in areas such as WAF, network security, cloud security, application security, or perimeter protection.
Scripting or development experience with languages such as Python, Bash, PowerShell, JavaScript, or similar.
Experience working with APIs, automation workflows, reusable scripts, or technical integrations.
Ability to analyze logs, traffic patterns, alerts, and technical evidence to troubleshoot issues and recommend practical solutions.
Basic understanding of web application architectures and how applications are exposed, routed, and protected.
Awareness of common web security risks such as OWASP Top 10, API security risks, bot activity, and application‑layer attacks.
Ability to work with different technical teams and translate requirements into practical configurations, documentation, scripts, or automation.
Good written and spoken English.
A proactive mindset, willingness to learn, and interest in improving how security services are operated at scale.
Nice to HaveHands‑on experience with Web Application Firewall technologies, especially Imperva Cloud WAF.
Experience with Imperva APIs or automation around WAF platforms.
Experience with Azure Application Gateway WAF, AWS WAF, CDN security, bot protection, DDoS protection, or API security.
Experience with network security technologies such as Palo Alto, Fortinet, Check Point, Cisco, or similar.
Experience with public cloud environments, especially Azure.
Experience with DevSecOps practices, CI/CD pipelines, or security automation.
Experience with Terraform or other Infrastructure