This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
We are looking for an IS Operations Consultant to support the setup and operational strengthening of a centralized Information Security Operations capability. You will provide expert guidance and hands-on support across security operations domains, including SOC oversight, vulnerability management, penetration testing coordination, and security awareness activities. The role focuses on operational execution, process optimization, vendor coordination, and audit readiness, working closely with the CISO, Infrastructure, Cloud, IT Operations, Workplace, and Application teams. This is not a line management position and does not include direct team leadership or budget ownership.
Job Responsibility:
Support oversight of external MSSP delivering 24x7 monitoring and incident response
Contribute to incident response coordination and post-incident reviews
Assist in strengthening cyber resilience through process improvement and operational enhancements
Support vulnerability management processes (validation, prioritization, remediation follow-up)
Coordinate penetration testing activities and tracking of remediation
Support the execution of security awareness campaigns and training monitoring
Contribute to alignment with regulatory and audit frameworks (ISO 27001, NIST, DORA, NIS2)
Support preparation of audit evidence and documentation
Assist in KPI reporting (vulnerabilities, risks, remediation status)
Contribute to maintaining consolidated security risk tracking
Act as operational interface between central security function and local IT teams
Support vendor performance monitoring (MSSP, pentest providers, tooling vendors)
Assist in SLA tracking and operational service reviews
Collaborate with Infrastructure and Cloud teams to ensure secure configurations and remediation follow-up
Requirements:
5+ years of experience in Information Security operations (SOC, VM, IR, or similar)
Strong hands-on knowledge of security technologies (SIEM, EDR/XDR, vulnerability scanners)
Experience working in enterprise or multi-entity environments
Familiarity with cloud security concepts (AWS, Azure, IAM, logging, encryption)
Working knowledge of regulatory frameworks such as ISO 27001, DORA, or NIS2
Experience supporting external security vendors (MSSP coordination is a plus)
Strong communication skills and ability to work across distributed teams
Fluent in English and Spanish
German is a plus
Certifications (CISSP, CISM, or similar) are advantageous but not mandatory
What we offer:
Flexible working format - remote, office-based or flexible
A competitive salary and good compensation package
Personalized career growth
Professional development tools (mentorship program, tech talks and trainings, centers of excellence, and more)
Active tech communities with regular knowledge sharing