Skip to content

Open nowPosted 7 hours agoWe saw it 106 min after it went up

Cybersecurity Engineer – Purple Team / Red Team

pasiona37 open roles

Where
Madrid
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowCybersecurity Engineer – Purple Team / Red Teampasiona · Madrid
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on pasiona's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.1% of postings close within 7 days. Measured by our own scanner across the market. pasiona postings stay open a median of 2 days.

Share of postings closed within
  1. 1.7%1 day
  2. 3.6%3 days
  3. 8.1%7 days
  4. 15.0%14 days
  5. 34.0%30 days
This job: posted 7 hours ago

pasiona median: 2 days open

The posting

Descripción del puesto / Funciones

¿Te apasiona la ciberseguridad ofensiva y te interesa llevar el conocimiento de las amenazas reales a la mejora continua de un SOC?

Buscamos un/a Senior Cybersecurity / Purple Team Specialist para participar en proyectos internacionales de ciberseguridad, trabajando en Threat-Led Validation, Adversary Emulation, Red/Purple Team, Threat Hunting y Detection Engineering. La persona seleccionada ayudará a validar y mejorar las capacidades de detección, investigación y respuesta frente a amenazas, trabajando sobre entornos enterprise y tecnologías de seguridad Microsoft.

Funciones:

  • Diseñar ejercicios de seguridad basados en Threat Intelligence, incidentes recientes, riesgos de negocio y gaps de detección.
  • Planificar y ejecutar campañas de Adversary Emulation, Red Team, Purple Team y Atomic Testing.
  • Mapear las actividades y comportamientos de los adversarios con MITRE ATT&CK.
  • Validar la telemetría y las capacidades de detección junto con los equipos de Detection Engineering y Threat Hunting.
  • Crear, revisar y optimizar KQL queries, correlation rules y behavioral detections.
  • Trabajar con Microsoft Sentinel y Microsoft Defender XDR.
  • Evaluar la capacidad end-to-end del SOC para detectar, enriquecer, investigar, escalar, contener y documentar incidentes.
  • Identificar blind spots, falsos negativos y oportunidades de mejora en las capacidades de seguridad.
  • Documentar evidencias y realizar análisis de causa raíz.
  • Definir y hacer seguimiento de acciones de remediación junto con los responsables de los controles.
  • Realizar re-testing para comprobar que las medidas de remediación han sido correctamente implementadas.
  • Crear scripts, automatizaciones, integraciones y herramientas reutilizables.
  • Trabajar con Python, PowerShell, Bash, APIs, Git y CI/CD.
  • Elaborar métricas y reporting sobre cobertura MITRE ATT&CK, efectividad de controles, detecciones y progreso de remediación.
  • Participar en Purple Team Workshops, After-Action Reviews y sesiones de transferencia de conocimiento.
  • Contribuir a la mejora continua de las capacidades de detección y respuesta del SOC.

Estudios

  • Formación universitaria en Ciberseguridad, Informática, Ingeniería o equivalente.
  • Se valorará igualmente una combinación de formación profesional especializada y experiencia relevante en ciberseguridad.

Requisitos mínimos

  • Al menos 3 años de experiencia práctica en ciberseguridad ofensiva, Adversary Emulation, Pentesting, Detection Engineering, Threat Hunting, Incident Response o disciplinas relacionadas.
  • Al menos 3 años de experiencia práctica en Red Team o Purple Team, incluyendo planificación y ejecución de ejercicios en entornos enterprise.
  • Experiencia demostrable transformando resultados de ejercicios ofensivos en mejoras de telemetría, detección, investigación, respuesta y remediación.
  • Experiencia trabajando con MITRE ATT&CK y Threat Intelligence.
  • Conocimientos sólidos de técnicas de ataque y post-exploitation en:Windows Linux Active Directory Microsoft Entra ID Microsoft 365 Redes Cloud
  • Experiencia con tecnologías de SIEM, EDR/XDR, SOAR y Network Security Monitoring.
  • Experiencia con Microsoft Sentinel.
  • Experiencia con Microsoft Defender XDR.
  • Buen conocimiento de KQL (Kusto Query Language).
  • Experiencia trabajando con Python, PowerShell o Bash.
  • Conocimientos de APIs, control de versiones y entornos CI/CD.
  • Capacidad para trabajar en entornos enterprise, distribuidos y con múltiples stakeholders.
  • Capacidad para documentar resultados técnicos y convertirlos en acciones de mejora concretas.
  • Persona autónoma, analítica y orientada a resultados.

Idiomas

  • Inglés profesional.

Ubicación

Madrid

¿Por qué nosotros?

¡Un día libre por tu cumpleaños para que lo celebres como quieras!

Mejoras en permisos retribuidos para un mejor equilibrio personal y profesional.

Acceso a seguro médico privado para tu tranquilidad.

Días de vacaciones extra según tu antigüedad, porque valoramos tu descanso y bienestar.

En Pasiona apostamos por la diversidad y la igualdad de oportunidades.

Animamos a postularse a todas las personas, con independencia de su género, edad, discapacidad, orientación sexual, identidad de género, origen étnico, religión u otras circunstancias personales o sociales.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against pasiona's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on pasiona's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    pasiona's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.