Description
Position Summary:
We are seeking a senior leader with cybersecurity vision and a solid foundation in Microsoft systems to enhance security posture, prioritize risks, and coordinate actions within a technical team—delivering direct impact on executive leadership.
Key Highlights:
1. Lead the improvement of security posture in Microsoft environments.
2. A role with visibility and influence over security decisions and priorities.
3. A close-knit technical team where you will serve as a reference figure and coordinator.
Are you interested in leading real-world improvements to security posture in Microsoft environments—with direct impact on executive decision-making and a technical team by your side? We seek a senior profile that combines cybersecurity vision with strong systems expertise to drive processes, prioritize risks, and ensure actions are executed and measured.
Location: Donostia–San Sebastián (Gipuzkoa)
Contract: Permanent \| Full-time (40 hours/week)
Work Mode: Hybrid – 5 remote workdays per month (flexible distribution across afternoons)
Suggested Schedule: Mon–Thu 08:00–17:00 / Fri 08:00–14:00 (flexible start/end times)
Your Mission
You will be a key figure within a team of six people (serving as technical reference and coordination lead), responsible for transforming security alerts and findings into actionable plans—with tracking, evidence, and clear reporting for stakeholders, including senior leadership.
Day-to-Day Responsibilities
Manage SOC alerts and reports: analysis, prioritization, and tracking of their evolution.
Define action plans for incidents, risks, and vulnerabilities, documenting procedures and decisions.
Execute or coordinate corrective actions—either directly (in Microsoft environments) or via third parties—ensuring quality and full closure.
Tracking and reporting: progress reports, evidence, and periodic reports for committees/senior leadership.
Continuous process improvement: propose and implement enhancements to SOC operational management and response workflows.
Technical Environment (Key Areas)
You will work extensively with:
Active Directory: configuration, GPOs, authentication, and hardening.
Microsoft 365: tenant management, security, and compliance across the ecosystem.
Microsoft Intune: policies, device management, control, and best practices.
Physical and virtual servers: administration, security, and vulnerability management.
SOC operations: alerts, reports, escalations, action plans, and traceability.
What We Require (Mandatory)
Prior experience as a systems administrator (minimum 5 years), with clear exposure to cybersecurity.
At least 1 year preparing follow-up reports (actions, status, risks, metrics).
Proficiency in Active Directory, Microsoft 365, and Intune.
Experience managing server infrastructure (on-premises / virtualization).
Ability to communicate effectively with non-technical stakeholders and clearly present conclusions to leadership with sound judgment.
Especially Valued Additional Qualifications
Microsoft security certifications: SC-900, SC-200, SC-300, AZ-500 (or equivalent).
Prior experience in cybersecurity governance, operations, auditing, or security posture improvement.
A stable project with long-term trajectory and focus on structured evolution (not just firefighting).
A visible and influential role participating in security decisions and priority-setting.
A close-knit technical team (6 people) where you will serve as a reference figure.
Intensive summer schedule (June–September).
Ongoing training and a personalized development plan aligned with your goals.
Operational benefits: company mobile phone and mileage reimbursement where applicable.