Security Manager Azure (Málaga)

Security Manager Azure (Málaga)

08 sep
|
Giesecke+Devrient
|
Málaga

08 sep

Giesecke+Devrient

Málaga

Giesecke+Devrient is a global company that offers security technologies, both in the physical and digital world. Every day, billions of people benefit from G+D innovations in their personal and business lives. We develop, manufacture, and distribute products and solutions for the safeguarding of payment processes, identities, connectivity, and data.

AtG+D Mobile Security , a world leader in secure telecommunications systems, we are looking for a highly skilled and proactiveSecurity Manager Azure to join our agile team.

Key Responsibilities

- Own and continuously improve our ISMS, policies, and security governance lifecycle.
- Act as a trusted advisor to engineering, product, compliance, and customer‑facing teams.
- Lead security risk assessments,maintainthe risk register, and drive quarterly risk cycles.
- Ensure operational compliance with ISO 27001:2022, GSMA SAS, NIS-2 and customer security requirements and support hands‑on withconfiguration tasks.
- Coordinate external and internal audits and assessments, ensuringevidencereadiness and smooth execution.
- Lead vendor risk programs that strengthen our supply chain resilience.
- Review product and architectural changes for governance alignment and secure design.
- Collaborate with the Security Architect to connect governance withDevSecOpsand cloud practices.
- Own Azure security posture,govern Microsoft Defender for Cloudfindings, Entra ID Conditional Access policies, Privileged Identity Management (JIT access), and quarterly access reviews.
- Support oncross-platform governance tasks, policy alignment, and shared risk register entries covering AWSand Azureworkloads.
- Enforce Zero Trust controls across cloud environments: continuous verification, least-privilege access, and RBAC/ABAC enforcement.




- GovernIaCand CI/CD pipeline security gates: reviewIaCtemplates forsecretsmanagement compliance, approve pipeline security controls, andvalidaterollback procedures.
- Produce structured assurance reporting for management:metrics tied to the risk register, control effectiveness, and remediation tracking for findings from Defender for Cloud and AWS Security Hub.

What You Bring

- At least 5 years in information security, risk, audit, or compliance, with a minimum of 3 years in a similar role (security management, cloud security governance, or ISMS ownership), ideally in regulated environments (telecommunications, banking, payments, SaaS).
- Strong understanding of ISO 27001, risk methodologies, and modern security frameworks.
- Solid knowledge of security controls (IAM, third‑party risk, secure SDLC, cloud).
- Ability to challenge and support engineering teams constructively.
- Solid knowledge of Azure and AWS security controls.
- Practical understanding of Zero Trust architecture principles and shared responsibility models across IaaS, PaaS, and SaaS.
- Familiarity withIaCsecurity practices:secretsmanagement, pipeline approval workflows, and dependency vulnerability handling.
- Experience producing security assurance metrics and governance reports for senior stakeholders.
- Excellent analytical, documentation, and problem‑solving skills.
- Fluent English; German or Spanish is a plus.

Nice to Have





- AZ-500 (Microsoft Certified: Azure Security Engineer Associate).
- AWS Certified Security–Specialty.
- CCSK (Certificate of Cloud Security Knowledge).
- Familiarity with the Microsoft Cloud Security Benchmark (MCSB) or CIS Benchmarks for Azure/AWS.

What’s great about working with us:

- Culture and diversity: Join a people oriented environment with different nationalities and a great team spirit, flat hierarchies (everyone speaks to everyone). Equal Opportunity Employer and LGBT+ friendly.
- Integral Collaboration: Work collaboratively with stakeholders around the globe.
- Career Development: Benefit from continuous training, coaching, and talent development programs.
- Own canteen: take a break with our breakfast and lunch service: chose between a wild range of menus, salad desk, and sandwiches service. Nicely prices!
- Work-Life Balance: Flexible working hours with the option for remote work (M-Th 8.30 – 17.30 and Fri 8.30 – 15.30; 3 days of remote work).

The personal data you provide will be processed to manage your application in accordance with the GDPR and our Privacy Policy, available at Data Privacy | G+D .

We are an equal opportunity employer! We promote diversity in all its forms and create an inclusive work environment, free from prejudice, discrimination and harassment, in which all employees feel a sense of belonging. We warmly welcome all applications regardless of gender, age, race or ethnic origin, social and cultural background, religion, disability and sexual orientation.

G+D shapes trust in the digital age, with built-in security technology in three segments Digital Security, Financial Platforms and Currency Technology.

#J-18808-Ljbffr

📌 Security Manager Azure (Málaga)
🏢 Giesecke+Devrient
📍 Málaga

Postulate a este anuncio

Muestra tus habilidades a la empresa, rellenar el formulario y deja un toque personal en la carta, ayudará el reclutador en la elección del candidato.

Suscribete a esta alerta:

Recibe por email las nuevas ofertas de trabajo para: security manager azure (málaga) / málaga

Suscribete a esta alerta:

Recibe por email las nuevas ofertas de trabajo para: security manager azure (málaga) / málaga