Qureos

Find The RightJob.

Cloud Security lead

We’re Hiring: Cloud Security Lead


Who We Are:


Konecta is a global leader in customer management and digital outsourcing, with 120,000 employees across 26 countries. Headquartered in Madrid, we deliver end-to-end customer experience solutions for 500+ clients worldwide.


About the Role:


Security is foundational to our GenAI platform.

Our platform is built on Google Cloud Platform, and we welcome candidates with strong cloud security experience across environments such as Amazon Web Services or Microsoft Azure — with GCP expertise considered a strong advantage.


As our Security Lead , you will own the security architecture, drive implementation of security controls, and ensure compliance with enterprise policies and regulations. You’ll work closely with infrastructure, application, and product teams to embed security across the full development lifecycle.


Key Responsibilities:


  • Own platform security architecture and decision-making
  • Design GCP IAM and organization-level role hierarchies
  • Implement Workload Identity and Kubernetes RBAC for multi-tenant environments
  • Manage Secret Manager, Cloud KMS (CMEK), and service accounts (least privilege)
  • Configure VPC Service Controls to prevent data exfiltration
  • Lead security audits, penetration testing, and incident response readiness
  • Review IaC and application code for security compliance
  • Develop security policies, runbooks, and procedures
  • Ensure GDPR and EU AI Act compliance for AI workloads


Required Skills:


  • 5+ years in cloud security engineering or architecture
  • Strong hands-on GCP security experience (IAM, VPC Service Controls, Security Command Center)
  • Kubernetes security & Workload Identity knowledge
  • Experience with Secret Manager, Cloud KMS, and encryption key management
  • Zero Trust principles
  • Leading security audits (SOC 2, ISO 27001)
  • Strong communication and stakeholder management skills


Nice to Have:


  • GDPR compliance in cloud environments
  • EU AI Act exposure
  • Binary Authorization / supply chain security
  • Penetration testing coordination
  • CISSP, CCSP, or equivalent certifications

© 2026 Qureos. All rights reserved.