Security Manager Azure (Cloud Security)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Security Manager Azure (Cloud Security): Managing ISMS and security governance for cloud workloads with an accent on Azure security posture, risk assessments, and compliance. Focus on enforcing Zero Trust controls, governing IaC/CI/CD pipelines, and ensuring operational compliance with ISO 27001 and NIS-2.
Location: Sant Joan Despí, Spain. Hybrid (3 days remote)
Company
is a global technology group specializing in security technologies for payment processes, identities, connectivity, and data.
What you will do
- Own and continuously improve the ISMS, security policies, and governance lifecycle.
- Lead security risk assessments, maintain the risk register, and drive quarterly risk cycles.
- Ensure operational compliance with ISO 27001:2022, GSMA SAS, and NIS-2.
- Govern Azure security posture, including Microsoft Defender for Cloud, Entra ID, and Privileged Identity Management.
- Enforce Zero Trust controls, least-privilege access, and RBAC/ABAC across cloud environments.
- Govern IaC and CI/CD pipeline security gates, reviewing templates for secrets management and validating controls.
Requirements
- At least 5 years of experience in information security, risk, audit, or compliance.
- Minimum 3 years in a security management, cloud security governance, or ISMS ownership role.
- Strong knowledge of ISO 27001, Azure, and AWS security controls.
- Practical understanding of Zero Trust architecture and shared responsibility models.
- Familiarity with IaC security practices, secrets management, and pipeline approval workflows.
- Fluent English proficiency is required.
Nice to have
- Certifications such as CISM, CISSP, CRISC, CCSP, AZ-500, or AWS Certified Security.
- ISO 27001 Lead Implementer or Auditor certification.
- Familiarity with Microsoft Cloud Security Benchmark (MCSB) or CIS Benchmarks.
- Proficiency in German or Spanish.
Culture & Benefits
- People-oriented environment with flat hierarchies and a diverse, international team.
- Continuous training, coaching, and talent development programs.
- Flexible compensation including transport tickets and private insurance.
- Work-life balance with flexible hours and a hybrid model (3 days remote).
- On-site canteen providing affordable breakfast and lunch services.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →