21 sep
|
Qalea
|
Barcelona
TL;DR
? Qalea: Agentic Cybersecurity and Compliance for mid-market
? Backed by Google, ex-cybersecurity-founders and traditional VC (€1.5M raised)
? The job: Own and evolve the security infrastructure stack that protects our clients - from endpoint detection to cloud and code security
? You should: 1+ years hands-on with cybersecurity management / architecture, open-source security tooling, Linux infrastructure and cloud (AWS / GCP) environments
?️ Location: In office, Barcelona (normally 1-2 days remote)
Already in? APPLY HERE https://tally.so/r/Y5o25v
Hi there ??
I'm Olmo, CEO of Qalea. We run a managed cybersecurity and compliance platform - think of us as the security team our clients don't have. Behind that promise sits a stack of security tools deployed across cloud infrastructure, multiple providers and dozens of client environments. We need someone who can own that stack: keep it running, make it better and automate the parts that shouldn't need a human.
You'll operate real security infrastructure - endpoint detection agents, vulnerability scanners, attack surface monitoring, cloud configuration audits, device management - and you'll be the person who knows how it all fits together.
About Qalea
We've raised €1.5M and are backed by top-tier investors - from cybersecurity unicorn founders to leading VC firms. We're also proud to be part of the Google for Startups AI-Cybersecurity program, working alongside some of the brightest minds in product and security.
We move fast, stay curious and care deeply about what we're building. What matters to us is making an impact and building together, while enjoying the ride.
What You'll Do
- Run the security stack: Operate, maintain and improve our open-source security infrastructure - endpoint detection/response, SIEM, vulnerability scanning (external and internal), cloud security auditing, application security scanning and device management.
- Manage infrastructure: Provision and maintain cloud instances, manage VPN tunnels to client environments, handle capacity monitoring and keep the lights on across AWS and GCP.
- Build endpoint agents and deploy them: Compile, sign and distribute security agents to client endpoints - including managing Apple certificates for macOS deployments.
- Automate operations: Replace manual, repetitive security operations with scripts, serverless functions and workflows. If you're doing the same thing twice, automate it.
- Improve detection and response: Tune alerting rules, reduce false positives,
implement smarter prioritization and help evolve our monitoring and response workflows.
- Support client escalations: When a client's CTO has a hard security question, or when a finding needs technical depth to explain - you're the person who joins the call.
- Own integrations: Maintain and improve integrations with client cloud environments (AWS, GCP, Azure) using OAuth, OIDC and identity federation patterns.
- Explore AI for security ops: We're building toward an autopilot security model. You'll explore how AI and automation can make security operations smarter and reduce manual intervention.
You'll Excel If You Have
Must-Haves:
- 1-2 years of hands-on experience with security infrastructure and operations
- Working experience with AWS and/or GCP (provisioning, IAM, networking, security services)
- Interest in AI applied to security operations and automation
- Experience dealing directly with clients, experience working directly or closely with a SOC team is a plus
- Strong Linux systems administration skills - you're comfortable managing fleets of VMs
- Experience operating open-source security tools (SIEM, EDR, vulnerability scanners, cloud audit tools) in production
- Solid networking fundamentals: VPNs (site-to-site, client), VPC peering, firewall rules, DNS
- Scripting skills (Python, Bash, or similar) with a bias toward automating everything
- Understanding of vulnerability management as a practice - scanning, triaging, prioritizing, tracking remediation
- Comfortable in English and Spanish (both are used daily)
Nice-to-Haves:
- Background in early stage startups (you know the drill)
- Experience with endpoint agent deployment and lifecycle management across heterogeneous fleets (Linux, macOS, Windows)
- Experience in incident response or SOC operations
- Background in SaaS or managed security service providers (MSSPs)
- Familiarity with Apple developer certificates and code signing workflows
- Experience with threat hunting or proactive security analysis
- Knowledge of external attack surface management (EASM) tools and methodology
- Exposure to compliance frameworks (ISO 27001, ENS, SOC 2) from the technical controls side
- Familiarity with capacity planning and infrastructure cost optimization
Cultural Fit:
- Ownership: This is a small team. You own your stack end-to-end - no one is going to write your runbooks for you.
- Work hard: We're building something real with a small team. You understand what that takes.
- Communication: You can explain a critical vulnerability to a CTO in plain language. You flag risks early, not after they blow up.
- Curiosity: Security moves fast. You stay current, test new tools and don't get stuck on "the way we've always done it."
- Builder mentality: You see a manual process and your instinct is to automate it. You leave things better than you found them.
What's in It for You?
- ? Impact: Own the entire security infrastructure of a growing cybersecurity company. Your work directly protects dozens of companies.
- ? Growth: This role evolves as the company scales - toward security architecture, platform engineering, or technical leadership.
- ? Extra days of vacation - 26 days off (23 vacation + birthday + Dec 24th and 31st).
- ? Working remotely in summer and Christmas to visit family or other places.
- ?️ Office in Poblenou, Barcelona - surrounded by a thriving tech scene.
- ??♂️ Gympass/Wellhub for fitness and wellness
- ☕ Unlimited specialty coffee (Syra)
- ? Free fruit, healthy snacks and discounts at Nora food
- ? Team culture: cool off-sites, team lunches, celebrations - we enjoy building together
✨ If you're not sure you meet 100% of the requirements - we still want to hear from you. Research shows that candidates from underrepresented groups often self-select out even when they're a strong match. If this role excites you and you believe you can have an impact at Qalea, we encourage you to apply.
Recruitment Process (2-3 weeks from first call to offer)
- Stage 1: Quick Phone Screen (15 mins) - Basic fit check on experience, location and salary expectations
- Stage 2: Technical Deep Dive (45 mins) - Walk us through your experience managing security infrastructure. We'll dig into: a real incident you handled, how you've automated operations and how you approach a stack you've never seen before.
- Stage 3: In office, practical challenge - A practical scenario: here's a security environment with a set of problems. How would you triage, fix and improve it?
- (Conditional) Stage 4: Final checks - Culture fit, instinct check and how you'd approach your first 30 days.
Ready to build?
?? APPLY HERE - https://tally.so/r/Y5o25v
📌 Cybersecurity Engineer (Barcelona)
🏢 Qalea
📍 Barcelona