Job Information
About the Position
Introduction
Werfen is a growing, family-owned, innovative company founded in 1966 in Barcelona, Spain. We are a worldwide leader in specialized diagnostics in the areas of Hemostasis, Acute Care Diagnostics, Transfusion, Autoimmunity, and Transplant. Through our Original Equipment Manufacturing (OEM) business line, we research, develop, and manufacture customized assays and biomaterials. We operate directly in 30 countries, and in more than 100 territories through distributors. Our Headquarters and Technology Centers are located in the US and Europe, and our workforce is more than 7,000 strong.
Overview
The Cloud Security Engineer is responsible for designing, implementing, and operating security controls across cloud environments to ensure that applications, data, identities, and infrastructure are protected against modern threats. This role partners closely with Cloud Engineering, Security Operations, Architecture, DevOps, and IT teams to enforce secure-by-default patterns, automate guardrails, and maintain continuous compliance across cloud platforms.
Responsibilities
Key Accountabilities
- Implement and maintain secure cloud configurations, controls, and guardrails aligned with Zero Trust and best practices.
- Automate security enforcement using IaC, CI/CD integration, and policy‑as‑code tools.
- Manage cloud identity and access security, including least‑privilege roles, workload identity, and privileged access.
- Operate and tune cloud‑native threat protection, logging, and monitoring services in partnership with Security Operations.
- Support incident response with cloud-specific visibility, forensics, and remediation actions.
- Perform vulnerability scanning, misconfiguration detection, and drive remediation across cloud workloads.
- Implement secure networking patterns such as private endpoints, WAFs, segmentation, and API protection.
- Collaborate with DevOps, Cloud Engineering, and Architecture teams to embed security into cloud deployments and projects.
- Document security patterns, runbooks, and provide guidance to engineering teams.
Networking/Key relationships:
- Governance, Risk and Compliance: Collaborate close with GRC to align controls to risk and compliance requirements.
- Infrastructure Teams: Collaborate with IT to implement secure and resilient infrastructure on the Cloud.
- Security Operations: Coordinate with IR/SOC team to enhance detection and response.
Qualifications
Minimum Knowledge & Experience for the position:
- Education: Bachelor’s degree in computer science, cybersecurity, or related field.
- Experience: 3+ years of hands-on experience in cybersecurity role.
Skills & Capabilities:
- Strategic Thinking: Align operational goals with business risk and security strategy.
- Technical Depth: Solid understanding of tools, threats, and mitigation techniques.
- Communication: Clear and effective reporting to technical and executive audiences.
- Collaboration: Strong cross-functional engagement and influence.
- Continuous Learning: Commitment to continuous professional development.
Travel requirements:
- Up to 5% of time.
Individual Contributor Core Competencies:
Managing Work
Effectively managing one’s time and resources to ensure that work is completed efficiently.
Emotional Intelligence Essentials
Establishing and sustaining trusting relationships by accurately perceiving and interpreting own and others’ emotions and behavior; leveraging insights to effectively manage own responses so that one’s behavior matches one’s values and delivers intended results.
Building Partnerships
Developing and leveraging relationships within and across work groups, including cross-functional groups, to achieve results.
Decision Making
Identifying and understanding problems and opportunities by gathering, analyzing, and interpreting quantitative and qualitative information; choosing the best course of action by establishing clear decision criteria, generating and evaluating alternatives, and making timely decisions; taking action that is consistent with available facts and constraints and optimizes probable consequences.
Continuous Improvement
Originating action to improve existing conditions and processes; identifying improvement opportunities, generating ideas and implementing solutions.
Continuous Learning
Actively identifying new areas for learning; regularly creating and taking advantage of learning opportunities; using newly gained knowledge and skill on the job and learning through their application.
If you are interested in constantly learning and being challenged on a daily basis, we encourage you to submit your resume or CV.
Werfen appreciates and values diversity. We are an Equal Opportunity/Affirmative Action Employer M/F/D/V.
www.werfen.com