Cybersecurity Consultant (Cloud Security) - Hybrid
UST · Madrid, Spain
You apply on the site where the job is posted. I never handle applications.
Role description We are still looking for the very Top Talent…and we would be delighted if you were to join our team!
More in details, UST is a multinational company based in North America, certified as a Top Employer and Great Place to Work company with over 35,000 employees worldwide and presence in more than 35 countries. We are leaders in digital technology services, providing large-scale technological solutions to some of the world's leading organizations.
What we look for?
We are currently looking for a Cybersecurity Consultant – Cloud Security & Identity to join our Cybersecurity team.
Location: Madrid (Hybrid model: 3 days at the office)
A senior cloud security professional with strong expertise in Azure and/or GCP environments, capable of designing, implementing, and monitoring security controls across hybrid and multi-cloud infrastructures. You will play a key role in protecting workloads, identities, and networks while driving continuous improvement of the organization's cloud security posture.
Key Responsibilities:
Cloud Security (Azure & GCP)
- Evaluate and enhance the security posture of Azure subscriptions and GCP projects.
- Manage security policies, RBAC, Conditional Access, and Microsoft Defender for Cloud.
- Implement and maintain Google Security Command Center controls.
- Review IaaS, PaaS, and container environments to identify misconfigurations and security gaps.
CSPM & CNAPP
- Manage and optimize CSPM solutions such as Wiz, Prisma Cloud, or Defender CSPM.
- Operate CNAPP platforms integrating CWPP, KSPM, and DSPM capabilities.
- Define compliance frameworks and automate remediation initiatives aligned with CIS, NIST, and ISO 27001.
- Collaborate with DevSecOps teams to integrate security controls into CI/CD pipelines.
Identity & Access Management
- Design and implement Zero Trust identity architectures.
- Manage Azure AD / Microsoft Entra ID security controls, including MFA, SSO, Conditional Access, and PIM.
- Review privileged access and excessive permissions through CIEM practices.
- Implement controls to prevent privilege escalation and lateral movement.
Network Security
- Design and review cloud network segmentation strategies using VNets, VPCs, NSGs, Firewalls, and Private Endpoints.
- Assess hybrid connectivity solutions (ExpressRoute, VPN, Interconnect).
- Analyze traffic flows, firewall policies, WAF configurations, and DDoS protections.
- Support incident investigations and network forensics activities.
Consulting & Governance
- Conduct technical cloud security assessments and define remediation roadmaps.
- Develop security architectures, standards, policies, and procedures.
- Support internal and external stakeholders during secure cloud transformation initiatives.
- Participate in incident response activities and red team/blue team exercises.
Mandatory requirements:
- Bachelor's degree in Computer Science, Telecommunications, Engineering, Information Systems, or a related field.
- Minimum of 4 years of experience in cloud security technical roles.
- Hands-on experience securing Azure and/or Google Cloud environments in production.
- Proven experience with CSPM and CNAPP platforms.
- Strong knowledge of IAM, PIM, CIEM, and Zero Trust methodologies.
- Experience with:
-
- Microsoft Azure
- Google Cloud Platform (GCP)
- Microsoft Entra ID / Azure AD
- Defender for Cloud
- Security Command Center
- Cloud networking and segmentation
- SIEM/SOAR solutions
- Terraform and Infrastructure as Code
- DevSecOps and CI/CD security
- CIS Benchmarks, NIST, ISO 27001 and MITRE ATT&CK
- Microsoft Azure
Nice to have:
- AZ-500 – Microsoft Azure Security Engineer
- SC-100 – Microsoft Cybersecurity Architect
- Google Professional Cloud Security Engineer
- CCSP (ISC²)
- CISSP or CISM
- CEH or OSCP
- Experience participating in red team/blue team exercises.
- Strong automation mindset and security engineering background.
What can we offer?
- 23 days of Annual Leave plus the 24th and 31st of December as discretionary days!
- Numerous benefits (Health Care Plan, Internet Connectivity, Life and Accident Insurances).
- Flexible Benefits Program (Meals, Kindergarten, Transport, Online English Lessons, Health Care Plan…).
- Free access to several training platforms.
- Professional stability and career development plans.
- Referral Program with attractive rewards.
- The option to choose between 12 or 14 salary payments per year.
- Real Work-Life Balance measures (flexibility, remote work policy, compact working hours during summer, etc.).
- UST Club Platform discounts and gym access discounts.
If you would like to know more, do not hesitate to apply and we'll get in touch to provide further details. UST is waiting for you!
At UST we are committed to equal opportunities in our selection processes and do not discriminate based on race, gender, disability, age, religion, sexual orientation, or nationality. We have a special commitment to Disability & Inclusion and encourage applications from candidates holding a disability certificate.
Skills
Microsoft Azure, ISO 27001, Google Cloud Platform, CIEM
About UST
UST is a global digital transformation solutions provider. For more than 20 years, UST has worked side by side with the world’s best companies to make a real impact through transformation. Powered by technology, inspired by people and led by purpose, UST partners with their clients from design to operation. With deep domain expertise and a future-proof philosophy, UST embeds innovation and agility into their clients’ organizations. With over 30,000 employees in 30 countries, UST builds for boundless impact—touching billions of lives in the process.