




Job Summary: Security Analyst who will assess the security posture of services and systems, identifying action plans to remediate design-related technical security gaps. Key Highlights: 1. Holistic analysis of security architectures and components. 2. Preparation of technical gap reports and action plans. 3. Collaboration in a dynamic and multidisciplinary environment. **What is Telefónica Tech?** Telefónica Tech is the leading digital transformation company within the Telefónica Group. We offer an extensive portfolio of integrated technology services and solutions in Cybersecurity, Cloud, IoT, Big Data, Artificial Intelligence, and Blockchain, supporting our clients throughout their digital transformation journey. We are a team of over 6,200 bold professionals working daily from various locations worldwide to achieve excellence through transparent leadership and a strong team spirit. If you identify with our core values, we look forward to meeting you! www.telefonicatech.com **What do we do in the team?** Within Telefónica Tech’s **Cybersecurity Technical Consulting Unit**, we specialize in delivering Cybersecurity Consulting, Auditing, and Architecture services with a strong technical focus. **What will your day-to-day look like?** Your mission will be to analyze the security posture of the entire production-deployed service and system landscape, identifying necessary action plans to remediate the most critical design-related technical security gaps. On a daily basis, you will primarily: + Perform a technical characterization of the service/system, considering each of its constituent assets—understanding its functionality, SW/HW components and versions, protocols used for service delivery, interdependencies with other assets, data handled and how it is used, communication flows, operational model, etc. + Verify the level of compliance with required security controls, based on the defined reference security model. This verification must be holistic—covering both architecture and all individual assets and components—and must include effective validation of control implementation, either via direct asset inspection (white-box) or via testing (black-box). + Prepare a report detailing the design-related technical gaps identified during the analysis, along with an assessment of compliance level versus expected requirements. + Develop action plans needed to remediate the most critical technical security gaps. **And for this, we believe it would be ideal if you had…** **Experience** + 2 years of experience in technical roles related to Security Architecture, Secure Development, and Project Management **Education** + Degree in Computer Science, Telecommunications, or equivalent qualification. **Technical Knowledge** We require you to possess: * **Administration knowledge of:** + Service systems and platforms: operating systems, databases, applications, web portals, APIs. + Communication equipment: firewalls, routers, switches, load balancers, SDN. + Virtualization technologies: VMware, KVM, Docker, Kubernetes, OpenShift. + Public Cloud platforms: AWS, Azure, Google Cloud, and OCI. * **Technical knowledge of protocols and operation of technologies** supporting current services and systems. * **Security-by-design expertise**, enabling identification of vulnerabilities, threats, and risks affecting services and systems, as well as the technical security measures required for mitigation. **Languages** * Intermediate/advanced written English **Skills that align with the team and project for this role include:** + End-to-end vision of Security Architecture and Secure Development. + Technological and business acumen. + Autonomy and initiative. + Confidence and excellence in execution. **What do we offer?** * Work-life balance measures and flexible working hours. * Continuous training and certifications. * Hybrid remote work model. * Attractive social benefits package. * Excellent, dynamic, and multidisciplinary working environment. * Volunteering programs. **\#WeAreDiverse \#WePromoteEquality** We firmly believe diverse and inclusive teams are more innovative, transformative, and deliver better results. Therefore, we promote and guarantee inclusion of all individuals regardless of gender, age, sexual orientation or identity, culture, disability, or any other condition. We want to meet you!


