Nexthink

digital employee experience management software

SeniorCorporateSecurityEngineer

Madrid, Spain FULL TIME
Market Sentiment
HIGH DEMAND

Neural analysis suggests this role is
optimal for mid candidates.

The Brief

“Senior Corporate Security Engineer at Nexthink. Skills: Corporate Security, Security Architecture, Detection and Response, Automation. Architecting the security fabric. Securing identity, devices, and applications”

Industry & Context.

digital employee experience management software
Problems you'll solve

Diagnose and fix issues at scale; Proactive optimization; Proactively identify and mitigate security risks; Incident response; Threat hunting

What They're Looking For.

Must Have

5-8 years of hands-on experience in Corporate Security, IT Security Engineering, or a SOC role in a cloud-first environment, Experience hardening operating systems (macOS/Windows) and managing security via MDM/UEM tools, Proven experience in helping IT and business teams patching systems and infrastructures, Proficiency in Python and Terraform for automating APIs and security workflows, Proven experience with EDR tools and SIEM log analysis, Fluent in English with the ability to explain complex risks to non-technical stakeholders, Proven ability to influence and drive security best practices across non-security teams, Experience with security awareness training platforms and phishing simulation tools

Nice to Have

Deep technical knowledge of Okta and Microsoft Entra ID (Authentication policy, Conditional Access, SSO, SCIM, OIDC/SAML), Experience implementing FIDO2/WebAuthn (Passwordless), Proficient in PowerShell, Familiarity with compliance standards (ISO 27001/27701, SOC 2, FedRAMP), Experience securing Cloud Infrastructure (Azure/AWS) specifically for internal/corporate workloads

What You'll Do.

Architecting the security fabric

Owning security of SaaS ecosystem

Leading detection and response

Contributing to passwordless authentication design

Supporting Zero Trust principles implementation

Managing secure provisioning

Ensuring least-privilege access

Streamlining onboarding/offboarding workflows

Defining security baselines for endpoints

Managing and tuning EDR/XDR solutions

Securing corporate Azure footprint

Identifying and mitigating security risks

Coordinating vulnerability management

Automating endpoint compliance checks

Supporting Infrastructure-as-Code development

Ensuring hardening and compliance

Assessing and securing third-party SaaS integrations

Vetting new vendors and tools

Configuring CASB and DLP policies

Leading incident response activities

Developing automation scripts

Proactively hunting for threats

Developing incident response playbooks

Designing security controls

Supporting and automating evidence collection

Acting as security liaison

Building security into operations

Designing and delivering technical security training

Conducting awareness campaigns

How You'll Work.

Team & Collaboration

Working in close partnership with IT; Partnering with business teams; Partnering with Cloud and Application Security teams; Partnering with HR and IT; Collaborating with IT; Collaborating with Legal and Compliance; Collaborating with IT Department; Collaborating with business teams; Working in a supportive, highly technical environment

Communication Scope

Ability to explain complex risks to non-technical stakeholders; Ability to influence and drive security best practices

Full Job Description

Nexthink is the leader in digital employee experience management software. The company provides IT leaders with unprecedented insight allowing them to see, diagnose and fix issues at scale impacting employees anywhere, with any application or network, before employees notice the issue. As the first solution to allow IT to progress from reactive problem solving to proactive optimization, Nexthink enables its more than 1,300 customers to provide better digital experiences to more than 18 million employees. Dual headquartered in Lausanne, Switzerland and Boston, Massachusetts, Nexthink has 9 offices worldwide. As a Senior Corporate Security Engineer at Nexthink, you will be responsible for the security of our internal environment. You won't just be monitoring logs; you will be architecting the security fabric that enables our rapid growth. Working in close partnership with IT, business teams and, partnering with our Cloud and Application Security teams, you will secure the identity, devices, and applications used by "Nexthinkers" worldwide. You will own the security of a complex SaaS ecosystem, and lead detection and response for the corporate environment. What You Will Do Identity-Centric Security Architecture * Contribute to the design and support the implementation of passwordless authentication and Zero Trust principles. * Manage secure provisioning and lifecycle management, ensuring least-privilege access across all business systems. * Partner with HR and IT to streamline onboarding/offboarding workflows, ensuring timely access revocation and auditability. Endpoint & Infrastructure Security * Define and enforce security baselines for our diverse fleet of endpoints (Windows, macOS) and mobile devices via MDM (Intune/Jamf). * Manage and tune EDR/XDR solutions to ensure high-fidelity detection on workstations and servers (Windows, Linux, macOS). * Secure the corporate Azure footprint, ensuring proper configuration of subscriptions, networking, and resources distinct

Free ATS check

Applying for this Senior Corporate Security Engineer role?

Most applicants get filtered before a human reads their resume. See if yours makes the cut.

How to Apply on SmartRecruiters

  • SmartRecruiters often includes a video screening step — check camera and mic permissions.
  • Link your GitHub or portfolio directly in the profile section for technical roles.
  • Applications may be reviewed by AI scoring before reaching a recruiter — use keywords from the job description.

ANONYMOUS · UNFILTERED

What do employees actually say about Nexthink?

Real rants from real employees. Read before you apply.

Read Company Rants →