Security Manager Azure (Barcelona)

Security Manager Azure (Barcelona)

06 ago
|
Giesecke & Devrient Gb
|
Barcelona

06 ago

Giesecke & Devrient Gb

Barcelona

ppThe role of Security Manager Azure will help shape G+D Mobile Security's future in IoT security. G+D combines digital security, financial platforms, and currency technology with a integral reach of 14,000 employees. /p pLocation: Sant Joan Despí (BCN), ES /p h3Key Responsibilities /h3 ul liOwn and continuously improve our ISMS, policies, and security governance lifecycle. /li liAct as a trusted advisor to engineering, product, compliance, and customer‑facing teams. /li liLead security risk assessments, maintain the risk register, and drive quarterly risk cycles. /li liEnsure operational compliance with ISO 27001:2022, GSMA SAS, NIS-2, and customer security requirements; support hands‑on configuration tasks. /li liCoordinate external and internal audits and assessments, ensuring evidence readiness and smooth execution. /li liLead vendor risk programs that strengthen our supply chain resilience. /li liReview product and architectural changes for governance alignment and secure design. /li liCollaborate with the Security Architect to connect governance with DevSecOps and cloud practices. /li liOwn Azure security posture, govern Microsoft Defender for Cloud findings, Entra ID Conditional Access policies, Privileged Identity Management (JIT access), and quarterly access reviews. /li liSupport cross‑platform governance tasks, policy alignment, and shared risk register entries covering AWS and Azure workloads. /li liEnforce Zero Trust controls across cloud environments: continuous verification, least‑privilege access, and RBAC/ABAC enforcement. /li liGovern IaC and CI/CD pipeline security gates:



review IaC templates for secrets management compliance, approve pipeline security controls, and validate rollback procedures. /li liProduce structured assurance reporting for management: metrics tied to the risk register, control effectiveness, and remediation tracking for findings from Defender for Cloud and AWS Security Hub. /li /ul h3What You Bring /h3 ul liAt least 5 years in information security, risk, audit, or compliance, with a minimum of 3 years in a similar role (security management, cloud security governance, or ISMS ownership), ideally in regulated environments (telecommunications, banking, payments, SaaS). /li liStrong understanding of ISO 27001, risk methodologies, and modern security frameworks. /li liSolid knowledge of security controls (IAM, third‑party risk, secure SDLC, cloud). /li liAbility to challenge and support engineering teams constructively. /li liSolid knowledge of Azure and AWS security controls. /li liPractical understanding of Zero Trust architecture principles and shared responsibility models across IaaS, PaaS, and SaaS. /li liFamiliarity with IaC security practices: secrets management, pipeline approval workflows, and dependency vulnerability handling.



/li liExperience producing security assurance metrics and governance reports for senior stakeholders. /li liExcellent analytical, documentation, and problem‑solving skills. /li liFluent English; German or Spanish is a plus. /li /ul h3Nice to Have /h3 ul liAZ-500 (Microsoft Certified: Azure Security Engineer Associate) /li liAWS Certified Security–Specialty /li liCCSK (Certificate of Cloud Security Knowledge) /li liFamiliarity with the Microsoft Cloud Security Benchmark (MCSB) or CIS Benchmarks for Azure / AWS /li /ul h3What’s great about working with us /h3 ul liCulture and diversity: a people‑oriented environment with different nationalities and a great team spirit, flat hierarchies. /li liGlobal Collaboration: work collaboratively with stakeholders around the globe. /li liCareer Development: continuous training, coaching, and talent development programs. /li liOwn canteen: breakfast and lunch service with a wide menu. /li liWork‑Life Balance: flexible working hours with the option for remote work. /li /ul h3Equal Opportunity Employer /h3 pWe warmly welcome all applications regardless of gender, age, race or ethnic origin, social and cultural background, religion, disability, sexual orientation. We promote diversity and create an inclusive work environment, free from prejudice, discrimination and harassment. /p h3Privacy Notice /h3 pThe personal data you provide will be processed to manage your application in accordance with the GDPR and our Privacy Policy. /p /p #J-18808-Ljbffr

📌 Security Manager Azure (Barcelona)
🏢 Giesecke & Devrient Gb
📍 Barcelona

Postulate a este anuncio

Muestra tus habilidades a la empresa, rellenar el formulario y deja un toque personal en la carta, ayudará el reclutador en la elección del candidato.

Suscribete a esta alerta:

Recibe por email las nuevas ofertas de trabajo para: security manager azure (barcelona) / barcelona

Suscribete a esta alerta:

Recibe por email las nuevas ofertas de trabajo para: security manager azure (barcelona) / barcelona