14 sep
|
Schneider Electric
|
Barcelona
14 sep
Schneider Electric
Barcelona
Overview
Join Schneider Digital as an Infrastructure Security Engineer focusing on identity and attack-path management. You will safeguard enterprise identity infrastructure across on-prem and cloud, collaborating with cloud, infrastructure, and security teams to strengthen identity posture. You will analyze risks, misconfigurations, and privilege escalation paths to drive remediation. This role offers exposure to a global digital transformation initiative within a leading energy technology company.
Compensaciones / Beneficios
- adaptable schedule
- hybrid work plan
- Wellwo wellness platform
- Wellhub gym network access
- life insurance
- stock ownership program
Responsabilidades
- Operate identity security and attack-path analysis platforms (BloodHound, PingCastle, etc.)
- Identify identity-related risks, misconfigurations, excessive privileges, and lateral movement vectors across AD, Entra ID, and hybrid environments
- Continuously discover and monitor identity exposures and high-risk objects
- Support incident, problem, and change processes related to identity and directory services
- Analyze hybrid identity synchronization issues with Cloud and Infrastructure teams
- Contribute to identity security baselines,
remediation planning, and hardening initiatives
Requisitos principales
- 5+ years hands-on experience with Active Directory and Azure AD / Entra ID
- Experience with identity-focused risk assessments, privilege analysis, and misconfiguration detection using BloodHound, PingCastle, or equivalent
- Familiarity with AD Connect, hybrid authentication flows, and troubleshooting synchronization issues
- Deep understanding of AD internals, authentication flows, Kerberos, NTLM, delegation, privileged groups, service accounts, trusts
- Knowledge of Entra ID architecture, identity governance, Conditional Access, and hybrid integration patterns
- Experience supporting incidents involving identity compromise or privilege escalation, and providing root-cause analyses
- Collaborative mindset
- Strong analytical and problem-solving abilities
- Clear communication with cross-functional teams
- Active Directory internals (Kerberos, NTLM, delegation, trusts)
- Azure AD / Entra ID architecture and hybrid identity
- BloodHound and PingCastle usage for attack-path analysis
📌 Expert, Infrastructure Security Engineer (Identity & Attack Path Management) - Schneider Electric (Barcelona)
🏢 Schneider Electric
📍 Barcelona