31 jul
|
Achilles Information
|
Alcobendas
31 jul
Achilles Information
Alcobendas
As an IT Security Engineer, you will be responsible for protecting systems, networks and data from cyber threats and ensuring compliance with security standards. Identification of vulnerabilities, responding to security incidents and conducting regular assessments of the Achilles security posture.
Results & Responsibilities
Threat Monitorin g: Monitor network traffic for suspicious activity, detect and respond to potential threats, and provide recommendations for mitigation
Security Audit es: Conduct internal audits of Achilles teams to ensure ISO 27001, SOC 2 Type 2 and ENS requirements are met
Firewall and VPN Managemen t: Configure and manage firewalls, VPNs, and related network security devices to ensure optimal protection
Collaboratio n: Work with other IT teams to ensure security is embedded in infrastructure designs and processes
Patch Managemen t: Ensure timely updates and patches to network devices to mitigate vulnerabilities
Documentatio n: Maintain detailed documentation of network configurations, security incidents, and changes made to systems
Information Security
Compliance and Audi ts: Ensuring that the organisation complies with ISO 27001 requirements and other related standards. Preparing for internal and external audits
Incident Manageme nt: Handling security incidents and breaches, ensuring proper reporting and analysis. Ensuring that corrective actions from security incidents are implemented and that lessons learned are incorporated into future improvements
Vendor and Thi rd-Party Management: Ensuring that third-party vendors and service providers comply with the organisation’s security policies and ISO 27001, SOC 2 Type 2 and ENS requirements
Continuous Improveme nt: Monitoring the effectiveness of the ISMS and implementing improvements as needed
Collaborati on: Working closely with IT, legal, compliance, and other departments to ensure a unified approach to security. Collaborating on the integration of ISO 27001, SOC 2 Type 2 and ENS requirements into broader IT or business processes
Personal Development
Taking personal responsibility for skills development, particularly to enhance security capabiliti
Actively participating in the performance management process and taking responsibility for delivering agreed objectives
Relationships
Manage and develop relationships with third party providers and internal stakeholders
Being a security ‘go to person
PERSON SPECIFICATIONKnowledge
Understanding of ISO 27001 principles, threat modelling, vulnerability assessments, and risk treatment methodologies
Deep understanding of network security principles (e.G., firewalls, VPNs, intrusion detection systems, SIEM), and network protocols
Knowledge of encryption methods, access control mechanisms, and endpoint security tools
Knowledge of compliance frameworks (ISO 27001, SOC 2, ENS, PCI DSS) and best practices
Knowledge and experience with securing cloud environments (Azure
Knowledge of network architectures
Experience
Minimum of 5 years of experience in IT Security, with a proven track record in a similar
role.
Technical skills:
Strong understanding of network protocols, including TCP/IP, DNS, routing, and switching
Experience of security toolsets (Mimecast Portal and DMARC, Sophos Central, Qualys, Duo, Taegis XDR, Microsoft Entra ID, Copilot and InTune
Strong problem-solving and analytical skills
Excellent communication skills, both verbal and written
Ability to work both independently and collaboratively in a fast-paced environment
Preferred skills
Experience in conducting penetration testing and threat hunting
Scripting experience (PowerShell) for automation of security tasks
Qualifications
IT Diploma level or equivalent experience
CISSP, CEH, CCNA Security, or other relevant security certifications are highly desirableluent in English and Spanish, with the ability to communicate effectively in both written and spoken form
Decision
MakingIdentifies and evaluates the range of options open to them
Articulates the assumptions made and the risks involved in decisions taken
Analyses information carefully to identify facts, patterns, trends and missing data that may impact on a decision
Communicates decisions clearly to those who are affected
Achieving Results
Focuses on performance outcomes despite uncertain or difficult circumstances
Actively links own efforts to those of others within the team to avoid overlap, rework or delays
Spots opportunities to deliver beyond expectations, where this would help others perform more effectively
Sets own targets and objectives with clear reference to how these contribute to the departmental business plan
Managing Change
Responds constructively and quickly to shifting goalposts or changing requiments
Copes effectively with rapid change or increased demands
Reprioritises own work or the work of the team in response to external pressures
Is adaptable in their approach;
adapts their working style to suit the needs of the situation
Drive & Motivation
Addresses multiple demands without losing focus or energy
Increases efforts in the face of difficulties or obstacles and recovers quickly after setbacks
Remains calm and focused during stressful or challenging situations;
concentrates onlyon things they can control or influence
Encourages others during challenging times with their positive, can-do attitude
Creative Capacity
Uses initiative to resolve recurring problems in own role or team
Takes calculated risks to improve own performance
Tries out new ways of working
Allocates time to identifying and resolving the root causes of problems
#J-18808-Ljbffr
📌 It Security Engineer (Alcobendas)
🏢 Achilles Information
📍 Alcobendas