Cybersecurity Solutions Management – Administrator & Support Engineer

Thales GroupMadrid, MadridOn-siteFull-timeMid level, 2–5 yearsListed 3 hours ago

Apply now

About this role

Location: Madrid Emilio Vargas, Spain

Thales people architect identity management and data protection solutions at the heart of digital security. Business and governments rely on us to bring trust to the billions of digital interactions they have with people. Our technologies and services help banks exchange funds, people cross borders, energy become smarter and much more. More than 30,000 organizations already rely on us to verify the identities of people and things, grant access to digital services, analyze vast quantities of information and encrypt data to make the connected world more secure.

Thales in Spain is a leader in technological solutions applied to Defence, Aeronautics, Security, Transportation and Space and, furthermore, is a global centre for excellence in Space, Security of Critical Infrastructures and Transportation. With a turnover of €320 million and a staff of 1,200, it exports approximately 40% of its total production principally to the Middle East, North Africa and Latin America.

The Cybersecurity Solutions Administrator & Support Engineer is a technical professional responsible for the operation, administration, maintenance, troubleshooting and continuous improvement of cybersecurity solutions throughout their operational lifecycle.

The role involves managing security platforms, appliances, cloud-based security services and associated management environments, ensuring their availability, secure configuration and alignment with defined security policies and operational requirements.

The engineer works across different cybersecurity domains and vendors, providing corrective, preventive and evolutionary support and coordinating with manufacturers, internal teams and other technical stakeholders when required.

The role does not include responsibility for security monitoring and investigation, forensic analysis, or the definition of the customer's security strategy and risk decisions. However, the engineer is expected to work closely and effectively with SOC, DFIR, infrastructure, network, application, cloud and other security teams, providing the technical support and information required for their activities.

Responsibilities

- Operation & Administration: Operate and administer cybersecurity solutions and their associated environments, including health monitoring, configuration management and other operational activities as applicable.
- Incident & Request Management: Analyse and resolve technical incidents, service requests, malfunctions and other issues affecting solutions within scope.
- Security Configuration: Configure, maintain and fine-tune security policies and controls in accordance with approved requirements and established procedures.
- Maintenance & Evolution: Perform preventive maintenance, upgrades, patching, hardening and other lifecycle activities, as well as support the evolution and continuous improvement of security capabilities.
- Technical Coordination: Manage technical escalations with vendors and manufacturers and collaborate with SOC, infrastructure, network, application, cloud and other technical teams when required.
- Documentation & Knowledge Management: Maintain accurate technical documentation, inventories, CMDB information and service records, and contribute to knowledge management and reporting.

Covered environments

Cybersecurity solutions within the scope of the role may include, but are not limited to:

a.    Network Security

- FW – Firewall
- IPS – Intrusion Prevention System
- VPN – Virtual Private Network
- NAC – Network Access Control

b.   Endpoint & Mobile Security

- EPP – Endpoint Protection Platform
- EDR – Endpoint Detection and Response
- MTD – Mobile Threat Defense

c.    Secure Access & Connectivity

- SEG – Secure Email Gateway
- SWG – Secure Web Gateway
- ZTNA – Zero Trust Network Access
- SSE – Security Service Edge
- SASE – Secure Access Service Edge

d.   Application & Service Protection

- WAAP – Web Application and API Protection
- WAF – Web Application Firewall
- API Security – Application Programming Interface Security
- Bot Management
- DDoS – Distributed Denial-of-Service Protection
- DNS Security – Domain Name System Security

e.    Identity & Privileged Access Security

- PAM – Privileged Access Management
- IAM – Identity and Access Management
- ITDR – Identity Threat Detection and Response

f.     Data Security

- DLP – Data Loss Prevention
- DSPM – Data Security Posture Management
- Encryption / KMS – Encryption / Key Management Service

g.   Cloud & Cloud-Native Security

- CNAPP – Cloud-Native Application Protection Platform
- CSPM – Cloud Security Posture Management
- CWPP – Cloud Workload Protection Platform
- CIEM – Cloud Infrastructure Entitlement Management
- Container Security
- Kubernetes Security
- IaC Security – Infrastructure as Code Security
- CASB – Cloud Access Security Broker

Job requirements

- Minimum 4 years of professional experience in cybersecurity, IT infrastructure, network administration or a related technical field.
- Minimum Higher Vocational Training / equivalent qualification in Network Systems Administration, Application Administration or a related technical discipline.
- Desirable: Degree in Telecommunications Engineering, Computer Engineering or a related technical discipline.
- Practical experience in the administration, configuration, troubleshooting and maintenance of cybersecurity solutions.
- Good knowledge of communications networks and network security concepts.
- Ability to analyse technical problems, work with different technology vendors and communicate effectively with technical and non-technical stakeholders.

Security & Compliance Requirements

- Secure management of access credentials and strict adherence to established security procedures, including privileged access and multi-factor authentication requirements.
- Strict adherence to established approval and change-management procedures when implementing security policy or configuration changes.
- Accurate documentation of changes and configurations performed on solutions within scope.
- Strict confidentiality regarding security policies, configurations, products, architectures, applications, technical information and internal approval or validation processes.

At Thales we provide CAREERS and not only jobs. With Thales employing 80,000 employees in 68 countries our mobility policy enables thousands of employees each year to develop their careers at home and abroad, in their existing areas of expertise or by branching out into new fields. Together we believe that embracing flexibility is a smarter way of working. Great journeys start here, apply now!