Skip to main content
Search roles

Cybersecurity Operations Engineer - Evinova

Posted date Nov. 11, 2025
Contract type Full time
Job ID R-239154
Apply now

Why choose AstraZeneca Spain?

AstraZeneca Spain is a rising force in our global business. With headquarters in Madrid and our global hub in Barcelona, we’ve become an important international centre of excellence in the fight against critical disease. Boasting vibrant universities and business schools, the Barcelona ecosystem is a place where scientists can thrive. We attract a diverse workforce from across the globe, shining a beacon for innovation in a country that’s committed to clinical development.

We invite you to bring your talents to Barcelona where our respiratory medicine R&D and Global Marketing centre offers opportunities in R&D, IT, Commercial and HR. Or join us in Madrid and shape our growth in our BUs (Respiratory, Oncology & CVRM ), and a range of Corporate functions. Additionally, you can find sales roles throughout the country. Together, we’re contributing to a world-leading pipeline of therapeutics and delivering life-changing medicines to patients.

Who do we look for?

Calling all tech innovators, ownership takers, challenge seekers and proactive collaborators. At AstraZeneca Spain, breakthroughs born in the lab become transformative medicine for the world's most complex diseases. Alongside technical expertise, colleagues have the resilience, energy and collaborative mindset to change lanes, work with different teams and start projects from scratch.

Here, diverse minds and bold disruptors can meaningfully impact the future of healthcare using cutting-edge technology. Whether you join us in Madrid or Barcelona, you can make a tangible impact within a global biopharmaceutical company that invests in your future. Join a talented global team that's powering AstraZeneca to better serve patients every day.

Success Profile

Ready to make an impact in your career? If you're passionate, growth-orientated and a true team player, we'll help you succeed. Here are some of the skills and capabilities we look for.

Diverse collaborators

This is a speak-up culture that values collaboration. You’ll proactively bring your unique perspectives, experiences and skills to the table and seek the same from others. With our international team composition and the need for fast-paced collaboration, you’ll always be building new connections with colleagues.

Cutting-edge innovators

When you join us, you’ll be part of a team that embraces digital technology and data to transform the way we work and the work we do. Every day, you’ll help make history, empowered to ignite your creativity and build something enduring.

Resilient trailblazers

Here, the answers aren’t always available. So, you’ll need to bring a fearless, self-starter mindset to navigate uncharted territories. You’ll harness your ceaseless energy to discover and make the necessary connections with colleagues to shape the future and achieve maximum impact.

Agile movers

Seize ownership and excel with autonomy to enjoy the constant rush of ground-breaking discovery. Your ability to anticipate sudden shifts and adapt swiftly will prove critical as you make your mark in an environment that rewards initiative and resilience.

Responsibilities

Job ID R-239154 Date posted 11/11/2025

Role based in Barcelona - 3 days office/2 days home

As a Cybersecurity Operations Engineer at Evinova, you will play a key role in strengthening our operational security posture by leading hands-on technical activities across detection engineering, incident response, and cloud security. You will work within the Cybersecurity Operations function to ensure continuous monitoring, visibility, and control across cloud, SaaS, and enterprise platforms.

The role focuses on the operation and optimization of our SIEM and SOAR platforms (Splunk Cloud Enterprise Security and Splunk SOAR), integrating critical data sources from AWS, Microsoft 365, and SaaS environments, and developing high-fidelity detections that enable proactive threat response.You will also provide technical leadership supporting IT, Infrastructure, and Cloud teams in implementing hardening standards, configuration validation, and secure-by-design practices.

Success in this role means maintaining strong visibility across our digital landscape, driving automation for detection and response, and ensuring that cloud and endpoint platforms remain protected and compliant with Evinova’s cybersecurity standards and global frameworks such as ISO 27001, SOC 2, and NIST CSF.

This position is ideal for a technically skilled cybersecurity professional who thrives in a fast-paced global environment and enjoys solving complex operational challenges while contributing directly to securing Evinova’s digital health platforms.

Key Responsibilities:

Security Monitoring and Detection Engineering

  • Maintain and operate the organization’s SIEM and SOAR platforms (Splunk Enterprise Security and SOAR) to ensure continuous, reliable, and scalable security monitoring.

  • Develop and manage log source integrations across cloud and SaaS environments including infrastructure, applications, identity providers, and endpoints.

  • Collaborate with the external SOCon rule tuning, enrichment mapping, and validation of false-positive reduction efforts.

  • Create and maintain dashboards, reports, and visualizations to support SOC operations, threat hunting, and management visibility.

  • Monitor and optimize SIEM ingestion performance, ensuring efficient parsing, filtering, and normalization of logs to control license consumption.

  • Conduct periodic use-case reviews to ensure alignment with the evolving threat landscape, business priorities, and technology stack.

Incident Response and Operations Support

  • Collaborate with the Security Operations, Incident Response, and Threat Intelligence teams to improve detection coverage and response playbooks.

  • Provide tier-3 support during incident investigations, including forensic data extraction and SIEM correlation analysis.

  • Participate in on-call escalation for critical incidents requiring Splunk or SOAR expertise.

  • Support IT and Cloud teams during investigations involving phishing, account compromise, or insider risk events.

  • Collaborate on technical implementations of security controls and alerting mechanisms within cloud and SaaS platforms integrated into the SIEM and SOAR environment.

Automation and Continuous Improvement

  • Automate repetitive processes and data enrichment using scripting (Python, PowerShell) or integrations with SOAR and third-party APIs.

  • Support automation of compliance evidence collection, aligning outputs with ISO 27001 and SOC 2 control families.

  • Evaluate and recommend improvements to SIEM architecture, detection capabilities, and enrichment logic in coordination with the Director of Cybersecurity Operations.

  • Contribute to the roadmap and maturity development of Evinova’s security monitoring and detection engineering functions.

  • Support the development of operational runbooks, standard operating procedures, and integration documentation for SecOps processes.

Minimum Qualifications: 

  • Bachelor’s degree in Cybersecurity, Management / Business Information Systems, Computer Science, or a related field.

  • 4+ years of experience in cybersecurity roles.

  • 2+ years of experience working with SIEM platforms (preferably Splunk ES and MS Sentinel).

  • Familiarity with cybersecurity guidance, frameworks, and standards such as ISO 27001, SOC 2, or CIS Controls.

  • Ability to work cross-functionally with engineering, product, and legal teams.

  • Proactive, curious, and eager to learn in a fast-paced, evolving environment.

  • Strong understanding of log management, event correlation, and alerting principles.

  • Proficiency in developing and tuning detection rules, dashboards, and reports.

  • Knowledge of security operations, incident response, and threat detection workflows.

  • Scripting ability in Python, PowerShell, or similar for automation and data enrichment.

  • Understanding of the MITRE ATT&CK framework and its application in detection engineering.

  • Strong analytical, troubleshooting, communication, and documentation skills.

  • Fluency in English (written and spoken).

Desired Qualifications: 

  • Experience with SOAR platforms and automated playbook development.

  • Hands-on familiarity with endpoint detection and response (EDR) solutions.

  • Experience with cloud security environments (AWS, Azure) and related log sources.

  • Understanding of vulnerability management and exposure reduction processes.

  • Prior experience in a global or distributed Security Operations environment

Evinova delivers market-leading digital health solutions that are science-based, evidence-led, and human experience-driven. Thoughtful risks and quick decisions come together to accelerate innovation across the life sciences sector. Be part of a diverse team that pushes the boundaries of science by digitally empowering a deeper understanding of the patients we’re helping. Launch pioneering digital solutions that improve the patients’ experience and deliver better health outcomes. Together, we have the opportunity to combine deep scientific expertise with digital and artificial intelligence to serve the wider healthcare community and create new standards across the sector.  

Date Posted

01-dic-2025

Closing Date

30-dic-2025

AstraZeneca embraces diversity and equality of opportunity.  We are committed to building an inclusive and diverse team representing all backgrounds, with as wide a range of perspectives as possible, and harnessing industry-leading skills.  We believe that the more inclusive we are, the better our work will be.  We welcome and consider applications to join our team from all qualified candidates, regardless of their characteristics.  We comply with all applicable laws and regulations on non-discrimination in employment (and recruitment), as well as work authorization and employment eligibility verification requirements.

Reasons to Join

Thomas Mathisen

There are many things I enjoy when working at AstraZeneca, mainly the Speak up culture, the great colleagues that are in my teams, the great products that AstraZeneca provides to our patients and the challenging conversations I have around our medicines.

Sales Representative Oslo, Norway

There are many things I enjoy when working at AstraZeneca, mainly the Speak up culture, the great colleagues that are in my teams, the great products that AstraZeneca provides to our patients and the challenging conversations I have around our medicines.

Christine Recchio

Working at AstraZeneca has impacted my life in such a positive way. I now have an improved work-life balance through creating my own schedule and time management, I feel a balance that I didn’t have before.

Sales Representative California, United States

Working at AstraZeneca has impacted my life in such a positive way. I now have an improved work-life balance through creating my own schedule and time management, I feel a balance that I didn’t have before.

Stephanie Ling

There are a lot of reasons why I enjoy working in AstraZeneca, my colleagues being one of them. My team members and the managers have provided a great deal of guidance in helping me to be more confident in my daily work.

Sales Representative Petaling Jaya, Malaysia

There are a lot of reasons why I enjoy working in AstraZeneca, my colleagues being one of them. My team members and the managers have provided a great deal of guidance in helping me to be more confident in my daily work.

What we offer

We're driven by our shared values of serving people, society and the planet. Our people make this possible, which is why we prioritise diversity, inclusivity, balance and sustainability. Discover what a career at AstraZeneca could mean for you.

An award-winning company

We're passionate about being a great place to work, and 84% of our employees would recommend us as an employer. We've been recognised as a Top Employer in Spain, an EFR Family Responsible Business, and we achieved third place in Forbes Spain's Top 50 Best Places to Work list.

Inclusive environment

Diversity and inclusion are embedded in everything we do, and our different views, experiences and strengths enrich our culture. There's no salary gap at AstraZeneca, and the number of female employees has increased by four per cent over the last three years. We've also made all positions fully accessible.

Work-life balance

Your wellbeing means a lot to us, and we're here to support you through all of life's ups and downs. That's why we offer an unpaid leave policy, annual leave, reduced-hours timetables and a host of benefits, including a retirement plan, long service award, and health and travel insurance.

Sustainability initiatives

We're committed to harnessing the power of science to become a more sustainable business. We've reduced our carbon footprint by over 9,000 kg of CO2 over the last two years, and we lead the European GoGreen Project, which aims to introduce environmentally friendly options in our fleet of corporate vehicles.

Join our Talent Network

Be the first to receive job updates and news from AstraZeneca

Sign up
Glassdoor logo Rated four stars on Glassdoor

Great culture, great work assignments, supportive management. Rotation opportunity within the company. They value our people.