Principal Security Platform Engineer
Hybrid in Spain: Málaga
Security.Engineering& 22 others
Looking for something else?
Find a vacancy that works for you. Send us your CV to receive a personalized offer.
Find me a jobWe're looking for a Principal Security Platform Engineer to join our team in Malaga, Spain in a hybrid working mode. In this role, you will design, build and operate security controls for cloud, network, identity, endpoint, data, and software supply chain environments, enabling advanced protection strategies across enterprise systems.
The position combines technical security expertise with a DevOps-driven approach, focusing on automation, Infrastructure as Code (IaC), Policy as Code (PaC) and CI/CD security. You will leverage AI-assisted engineering tools to boost speed, efficiency, and resiliency while reducing risk in a scalable manner.
Responsibilities
- Architect, implement and operate security platforms and controls ensuring high availability and measurable outcomes
- Enhance and integrate security solutions across AWS, Azure and GCP environments
- Continuously improve existing controls through automation, IaC/PaC, and self-service capabilities
- Implement and manage CSPM/CNAPP solutions (e.g., Wiz) to monitor and reduce cloud risk
- Support secure software delivery pipelines, including dependency scanning, artifact validation and secrets management
- Develop Infrastructure as Code using Terraform, Pulumi or Ansible for automated provisioning
- Apply Policy as Code frameworks (e.g., OPA, Sentinel) for enforcement and compliance automation
- Build and manage observability components for threat detection, alerting and incident response
- Collaborate with Security Operations, DevOps and engineering teams to maintain a robust security posture
- Use AI-assisted tools to accelerate automation, security analysis and operational documentation
Requirements
- Bachelor’s or Master’s degree in Computer Science, Engineering or related field, or equivalent experience
- 5+ years in security engineering, platform engineering or related cloud-focused roles
- Hands-on experience with cloud security (AWS, Azure, GCP) and CSPM/CNAPP platforms
- Strong understanding of networking, secure systems design and infrastructure security principles
- Proficiency in scripts or programming with Python and/or PowerShell
- Familiarity with Windows and Linux environments for operational security management
- Knowledge of CI/CD security, IaC and PaC practices using Terraform or similar tools
- Strong operational mindset with skills in monitoring, alerting and incident response
- Comfort working with AI-driven development and security analysis tools
- Excellent communication with ability to document and present technical solutions effectively
Nice to have
- Deep expertise in Terraform, Pulumi, Ansible or OPA (Open Policy Agent) frameworks
- Experience implementing software supply chain security measures: SBOMs, artifact signing, dependency risk checks
- Familiarity with containerization and Kubernetes security controls
- Knowledge of cloud-native security services and platform tools (e.g., Wiz, Checkov)
- Exposure to network security technologies: IDS, IPS, DLP, EDR, firewalls and file integrity monitoring
- Strong Python development background with focus on automation and orchestration
- Experience creating self-service security solutions for engineering enablement
- Demonstrated use of AI-assisted engineering tools to streamline workflows and security testing
