Cloud Security Engineer
Hace 1 día
Barcelona, Catalonia, España
Agrupa Global Talent
Jornada completa
Gratis con email o Google
Guarda esta oferta y sigue tu búsqueda
Crea una cuenta gratis para guardar empleos, crear alertas y volver a esta oferta desde tu panel.
Gratis con email o Google
Al continuar, aceptas nuestros Términos & Política de Privacidad.
Company
A leading international retailer with more than 575.000 employees worldwide in 33 different countries and over 13.700 stores, has stablished an IT HUB in Barcelona as part of his IT division, responsible for the selection and provision of IT infrastructure, IT platforms and business applications.
With our agile mentality we are looking for people that is willing to make an impact on projects and solutions used worldwide by millions of customers.
Agrupa Global Talent collaborates with our client to attract the best talent for its ITHUB located in Barcelona. We are looking for open-minded colleagues with passion for technology.
We offer
you diverse and exciting career opportunities in a dynamic work environment that stands for development and progress. Elevate your career with us, where development and progress are at the heart of everything we do. If you feel ready and think this opportunity is for you, we would be happy to meet you. Your Tasks
• You analyze and deeply understand security findings generated by our CSPM (Cloud Security Posture Management) solutions for multi-cloud environments (e.g., GCP).
• You ensure the quality of our results by reviewing a substantial backlog, accurately identifying and filtering out false positives.
• You work conceptually to design and implement a new, structured prioritization schema that allows us to manage vulnerabilities efficiently and systematically.
• You analyze security issues within their full technical context to evaluate the real-world impact and apply a strictly risk-based approach.
• You actively track remediation progress, drive accountability with asset/solution owners, and ensure timely closure of identified security gaps.
• You act as a reliable technical point of contact, providing hands-on remediation guidance to the teams throughout the entire process Job requirements
• You have professional experience in Cloud Security, ideally working with CSPM tools and scalable cloud architectures.
• You possess strong analytical and conceptual skills, enabling you to design prioritization and risk evaluation strategies from the ground up.
• Your deep technical understanding allows you to grasp infrastructure, code, and the broader context of vulnerabilities to easily distinguish a critical risk from a false positive.
• You stand out with excellent communication and diplomatic skills; you know how to approach technical teams, build rapport, and foster collaboration without creating friction.
• You possess strong persistence and follow-up skills to drive vulnerability resolution across different engineering teams.
• You are characterized by a proactive, structured, and goal-oriented mindset with a strong focus on tracking tasks to completion.
• You have business-fluent English skills for our international technical environment (knowledge of Spanish or German is a plus). Questions that we’d like to ask you: Operational English:
• Are you comfortable conducting daily technical meetings and writing documentation or remediation guides exclusively in English? Multi-Cloud
Experience:
• Which cloud environments (GCP, AWS, Azure) and specific CSPM/CNAAP tools do you have hands-on experience with? Tracking & Remediation SLAs:
• Imagine you inherit a backlog of hundreds of open security findings in GCP or another cloud provider, split across multiple asset owners. What system, pipeline, or key metrics do you rely on daily to track remediation SLAs and ensure no ticket falls through the cracks? Driving Remediation & Overcoming Resistance:
• In this role, analyzing findings is only half the job—you also need to drive execution. Can you share a real example where a dev or infrastructure team ignored or repeatedly delayed fixing a vulnerability you deemed critical? How did you navigate that blocker to get it fully remediated? Priorization:
• If you had to design a model from scratch to prioritize which remediations to tackle first across the company, what technical data or contextual variables would you weigh besides the CSPM's default CVSS score?
What We Offer
• These are hybrid mode permanent positions. 2 days/week at the office.
• You will be part of an international team composed by people from different countries and backgrounds, where you’ll be able to share your experience and knowledge to carry-out teamwork and meet the objectives.
• On top of this, you’ll have a personal follow-up with your management team to help you understanding all business-related questions and guide you in your professional career.
•
We offer
a competitive compensation and benefits package: lunch vouchers, health and dental insurance, transport, wellbeing, etc. Contact If you are interested, please apply directly or send your CV to xavier.salra@agrupaglobal.com
We offer
you diverse and exciting career opportunities in a dynamic work environment that stands for development and progress. Elevate your career with us, where development and progress are at the heart of everything we do. If you feel ready and think this opportunity is for you, we would be happy to meet you. Your Tasks
• You analyze and deeply understand security findings generated by our CSPM (Cloud Security Posture Management) solutions for multi-cloud environments (e.g., GCP).
• You ensure the quality of our results by reviewing a substantial backlog, accurately identifying and filtering out false positives.
• You work conceptually to design and implement a new, structured prioritization schema that allows us to manage vulnerabilities efficiently and systematically.
• You analyze security issues within their full technical context to evaluate the real-world impact and apply a strictly risk-based approach.
• You actively track remediation progress, drive accountability with asset/solution owners, and ensure timely closure of identified security gaps.
• You act as a reliable technical point of contact, providing hands-on remediation guidance to the teams throughout the entire process Job requirements
• You have professional experience in Cloud Security, ideally working with CSPM tools and scalable cloud architectures.
• You possess strong analytical and conceptual skills, enabling you to design prioritization and risk evaluation strategies from the ground up.
• Your deep technical understanding allows you to grasp infrastructure, code, and the broader context of vulnerabilities to easily distinguish a critical risk from a false positive.
• You stand out with excellent communication and diplomatic skills; you know how to approach technical teams, build rapport, and foster collaboration without creating friction.
• You possess strong persistence and follow-up skills to drive vulnerability resolution across different engineering teams.
• You are characterized by a proactive, structured, and goal-oriented mindset with a strong focus on tracking tasks to completion.
• You have business-fluent English skills for our international technical environment (knowledge of Spanish or German is a plus). Questions that we’d like to ask you: Operational English:
• Are you comfortable conducting daily technical meetings and writing documentation or remediation guides exclusively in English? Multi-Cloud
Experience:
• Which cloud environments (GCP, AWS, Azure) and specific CSPM/CNAAP tools do you have hands-on experience with? Tracking & Remediation SLAs:
• Imagine you inherit a backlog of hundreds of open security findings in GCP or another cloud provider, split across multiple asset owners. What system, pipeline, or key metrics do you rely on daily to track remediation SLAs and ensure no ticket falls through the cracks? Driving Remediation & Overcoming Resistance:
• In this role, analyzing findings is only half the job—you also need to drive execution. Can you share a real example where a dev or infrastructure team ignored or repeatedly delayed fixing a vulnerability you deemed critical? How did you navigate that blocker to get it fully remediated? Priorization:
• If you had to design a model from scratch to prioritize which remediations to tackle first across the company, what technical data or contextual variables would you weigh besides the CSPM's default CVSS score?
What We Offer
• These are hybrid mode permanent positions. 2 days/week at the office.
• You will be part of an international team composed by people from different countries and backgrounds, where you’ll be able to share your experience and knowledge to carry-out teamwork and meet the objectives.
• On top of this, you’ll have a personal follow-up with your management team to help you understanding all business-related questions and guide you in your professional career.
•
We offer
a competitive compensation and benefits package: lunch vouchers, health and dental insurance, transport, wellbeing, etc. Contact If you are interested, please apply directly or send your CV to xavier.salra@agrupaglobal.com