We are looking for a hands-on, technically fluent Head of Security to lead our cybersecurity efforts across both corporate and enterprise environments. This is a hybrid role combining team leadership, technical security direction, risk management, and delivery of key security initiatives. 
 You will work closely with IT, Engineering, Architecture, and Delivery teams to drive the implementation of our cybersecurity roadmap — spanning cloud security hardening, secure SDLC, data protection, and CIS benchmark compliance. This is an ideal opportunity for a security team lead or manager ready to step into a broader, more impactful leadership role while remaining close to technical execution 
 Your mission is to lead and grow our security capability; ensuring that cloud infrastructure, development pipelines, corporate systems, and critical data are all secured against evolving threats. You will shape the execution of security OKRs, manage and mentor a small but high-performing team, and directly contribute to the delivery of key technical initiatives. By translating strategic risks into actionable controls, and collaborating across departments, you will help embed security into everything we build, deploy, and operate. 
 Lead the cybersecurity function across corporate (Azure/O365) and enterprise (GitLab, AWS, GCP) environments 
 Own and drive delivery of security-related OKRs, working hands-on where needed 
 Provide technical direction and mentorship to security analysts and engineers 
 Act as the internal authority on security risk, translating business objectives into appropriate technical safeguards 
 Security Operations & Engineering 
 Ensure proper implementation of cloud security controls (Azure Security Center, Microsoft Defender, AWS/GCP posture management)
 Guide implementation of secure software development lifecycle (SSDLC) controls, including threat modelling and CI/CD security 
 Governance, Risk, and Compliance 
 Lead internal assessments against the CIS Benchmarks for Azure, Microsoft 365, AWS, GCP, and relevant platforms 
 Manage the development and review of key security policies and operational procedures 
 Work closely with IT on Azure and Microsoft 365 security initiatives, including Defender and Purview rollouts 
 Partner with Engineering on SSDLC enablement and GitLab security pipelines 
 Collaborate with Delivery/PMO to align and track execution of security objectives 
 Strong technical expertise in cloud security (Azure, AWS, GCP), Microsoft Defender stack, and IAM 
~ threat modelling, CI/CD pipeline security)
~ Working knowledge of the CIS Benchmarks and implementing associated controls 
~ Flexible working hours and ways of working (we promote hybrid working model (work time is split between working 3 days a week in the office and 2 days from home). 
 Contemporary and accessible office environments with a range of workplace perks 
 Relocation package for you and your family including soft-landing package services to help you settle in (applicable in Spain, if you are moving from a different city/country)
 Being part of a team with a forward-looking, international mindset and agile working practices