30 jul
|
Achilles Information
|
Madrid
30 jul
Achilles Information
Madrid
As an IT Security Engineer, you will be responsible for protecting systems, networks and data from cyber threats and ensuring compliance with security standards. Identification of vulnerabilities, responding to security incidents and conducting regular assessments of the Achilles security posture.Results & ResponsibilitiesThreat Monitorin g: Monitor network traffic for suspicious activity, detect and respond to potential threats, and provide recommendations for mitigationSecurity Audit es: Conduct internal audits of Achilles teams to ensure ISO 27001, SOC 2 Type 2 and ENS requirements are metFirewall and VPN Managemen t: Configure and manage firewalls, VPNs, and related network security devices to ensure optimal protectionCollaboratio n: Work with other IT teams to ensure security is embedded in infrastructure designs and processesPatch Managemen t: Ensure timely updates and patches to network devices to mitigate vulnerabilitiesDocumentatio n: Maintain detailed documentation of network configurations, security incidents, and changes made to systemsInformation SecurityCompliance and Audi ts: Ensuring that the organisation complies with ISO 27001 requirements and other related standards. Preparing for internal and external auditsIncident Manageme nt: Handling security incidents and breaches, ensuring proper reporting and analysis. Ensuring that corrective actions from security incidents are implemented and that lessons learned are incorporated into future improvementsVendor and Thi rd-Party Management: Ensuring that third-party vendors and service providers comply with the organisation’s security policies and ISO 27001, SOC 2 Type 2 and ENS requirementsContinuous Improveme nt: Monitoring the effectiveness of the ISMS and implementing improvements as neededCollaborati on: Working closely with IT, legal, compliance, and other departments to ensure a unified approach to security. Collaborating on the integration of ISO 27001,
SOC 2 Type 2 and ENS requirements into broader IT or business processesPersonal DevelopmentTaking personal responsibility for skills development, particularly to enhance security capabilitiActively participating in the performance management process and taking responsibility for delivering agreed objectivesRelationshipsManage and develop relationships with third party providers and internal stakeholdersBeing a security ‘go to personPERSON SPECIFICATIONKnowledgeUnderstanding of ISO 27001 principles, threat modelling, vulnerability assessments, and risk treatment methodologiesDeep understanding of network security principles (e.G., firewalls, VPNs, intrusion detection systems, SIEM), and network protocolsKnowledge of encryption methods, access control mechanisms, and endpoint security toolsKnowledge of compliance frameworks (ISO 27001, SOC 2, ENS, PCI DSS) and best practicesKnowledge and experience with securing cloud environments (AzureKnowledge of network architecturesExperienceMinimum of 5 years of experience in IT Security, with a proven track record in a similarrole.Technical skills:Strong understanding of network protocols, including TCP/IP, DNS, routing, and switchingExperience of security toolsets (Mimecast Portal and DMARC, Sophos Central, Qualys, Duo, Taegis XDR, Microsoft Entra ID, Copilot and InTuneStrong problem-solving and analytical skillsExcellent communication skills, both verbal and writtenAbility to work both independently and collaboratively in a fast-paced environmentPreferred skillsExperience in conducting penetration testing and threat huntingScripting experience (PowerShell)
for automation of security tasksQualificationsIT Diploma level or equivalent experienceCISSP, CEH, CCNA Security, or other relevant security certifications are highly desirableluent in English and Spanish, with the ability to communicate effectively in both written and spoken formDecisionMakingIdentifies and evaluates the range of options open to themArticulates the assumptions made and the risks involved in decisions takenAnalyses information carefully to identify facts, patterns, trends and missing data that may impact on a decisionCommunicates decisions clearly to those who are affectedAchieving ResultsFocuses on performance outcomes despite uncertain or difficult circumstancesActively links own efforts to those of others within the team to avoid overlap, rework or delaysSpots opportunities to deliver beyond expectations, where this would help others perform more effectivelySets own targets and objectives with clear reference to how these contribute to the departmental business planManaging ChangeResponds constructively and quickly to shifting goalposts or changing requimentsCopes effectively with rapid change or increased demandsReprioritises own work or the work of the team in response to external pressuresIs adaptable in their approach; adapts their working style to suit the needs of the situationDrive & MotivationAddresses multiple demands without losing focus or energyIncreases efforts in the face of difficulties or obstacles and recovers quickly after setbacksRemains calm and focused during stressful or challenging situations; concentrates onlyon things they can control or influenceEncourages others during challenging times with their positive, can-do attitudeCreative CapacityUses initiative to resolve recurring problems in own role or teamTakes calculated risks to improve own performanceTries out new ways of workingAllocates time to identifying and resolving the root causes of problems#J-18808-Ljbffr
📌 It Security Engineer (Madrid)
🏢 Achilles Information
📍 Madrid