Sr Security Engineer
Barcelona, Spain
Merlin Digital Partner
We are Merlin Digital Partner! A leading IT and Digital headhunting company who stands out from the crowd, boasting over a decade of experience. We've successfully collaborated and played a pivotal role in the growth of industry heavyweights such as Wallapop, Glovo, Banc Sabadell, among others.
Our partner, a rapidly growing startup, has created a debt recovery platform powered by IA, designed to improve recovery rates while maintaining respectful and personalized communication. And it's available in over 20 languages!
We know the world is flooded with AI 🤖 we hear about it in events, articles, social media… even at the supermarket! But the truth is, when we talk about artificial intelligence, we refer to a project that is 100% developed with real AI. We have the Ultron gem!
Our vacancy
So, are you passionate about cybersecurity, risk management, and protecting critical assets? They are seeking a strategic and hands-on Security Manager to lead their security initiatives in a fast-paced, ever-evolving technology environment 🔓
This role offers the opportunity to shape security strategy, drive operational resilience, and make a measurable impact across the organization 📎
🔍 What you'll be doing – Day to day 🚀
- Collaborate across a multi-cloud environment (AWS & GCP) to assess vulnerabilities, analyze root causes, and drive improvements in the security posture.
- Design, deploy, and maintain security services that detect vulnerabilities and lead remediation efforts.
- Utilize a combination of in-house and third-party tools to identify, report, and resolve vulnerabilities proactively.
- Support and guide compliance efforts across multiple frameworks including SOC2, HIPAA, PCI, FedRAMP, and ISO.
- Act as a security thought partner—providing insights, defining best practices, and aligning actions with broader business goals while minimizing effort and maximizing impact.
🎯 What they’re looking for:
- 5+ years of experience as a Security Engineer.
- Strong hands-on experience with orchestration platforms, container runtimes, infrastructure as code, and cloud-native or multi-cloud environments (specifically AWS & GCP).
- Proven ability to drive automation and operational efficiency through orchestration and effective collaboration.
- Data-savy: you know how to integrate, analyze, and communicate meaningful metrics from large-scale datasets.
- Comfortable working both independently and cross-functionally in a fast-paced, high-growth, distributed team.
- Bonus: Experience in Python or TypeScript (they primarily use Node.js with TypeScript).
💼 What's in it for you:
- Be part of the company’s growth from the ground up and make a tangible impact from day one. 🚀
- Ongoing learning opportunities, training, and exposure to other top-tier startups—grow as a team and as an individual 📚.
- Autonomy to design and implement high-impact security strategies 💪.
- Permanent contract and direct hire with our client 📍.
- Hybrid work model based in Barcelona 💻 3 days office 2 days at home, they are growing so they need a lot of blackboard!
Do you want to be part of it? Let's talk!
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Artificial Intelligence Automation AWS Cloud Compliance FedRAMP GCP HIPAA Node.js Python Risk management Security strategy SOC 2 Strategy TypeScript Vulnerabilities
Perks/benefits: Career development Startup environment Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.