21 sep
|
Nexthink
|
Madrid
Experteer Overview
Si sus habilidades, experiencia y cualificaciones coinciden con las de esta descripción del puesto, no demore su solicitud.
In this role you will design, implement, and operate security controls across Nexthink's hybrid infrastructure, including non-cloud, cloud, and internal networks. You will own hardening, patching, cloud posture, and segmentation, collaborating with GRC and audit stakeholders. The position demands hands-on engineering, end-to-end ownership, and continuous improvement in security controls. You will work with cross-functional teams to protect the corporate environment while enabling fast-moving IT operations. This is a chance to shape security at scale for a leading DEX platform and multiple cloud environments.
Compensaciones / Incentivos
• Contribute to hardening baselines for Windows and Linux VM fleets
• Support Active Directory, Group Policy, and Microsoft Entra ID security controls
• Drive patch automation and emergency patching to SLA for critical CVEs
• Contribute to Azure and AWS cloud security posture management
• Implement policy-as-code for cloud configurations and remediate drift
• Develop micro-segmentation policies and trust-model controls
• Validate east-west traffic and network security control compliance
• Maintain evidence for patching, vulnerabilities,
and configurations for audits
• Address exceptions and audit findings within defined timelines
• Participate in internal and external security audits, gather evidence, and coordinate with auditors
• Own technical control documentation and evidence for infrastructure security controls
Responsabilidades
• 4+ years in infrastructure or security engineering, with non-cloud and cloud exposure
• Experience hardening Windows Server, Linux, VMware vSphere, and hybrid environments
• Active Directory, Group Policy, and Microsoft Entra ID experience
• Experience with Azure and AWS security controls xqbhyrx
• Scripting fluency (Python, PowerShell, or Bash) for automating security tasks
• Infrastructure as Code experience (Terraform or Ansible)
• GitHub and GitHub Actions for CI/CD; knowledge of HashiCorp Vault for secrets
• Familiarity with vulnerability management; cloud security certifications and ISO/SOC 2 type 2/FedRAMP are a plus
• English proficiency; Spanish a plus
Requisitos principales
• Permanent contract
• Hybrid work model
• Private health insurance
• Flexible hours
• Unlimited vacation plus 3 volunteer days
• Gym subsidy up to 25 EUR/month for subscription
📌 IT Infrastructure Security Engineer (Madrid)
🏢 Nexthink
📍 Madrid