CDIBarcelona, Spain
IT Operations Engineer - Vulnerability Remediation
Hybride
Project Details
Location: Barcelona, Spain
Work mode: Hybrid, 3 days onsite
Start date: 24-Aug-2026
Duration: Until 31-Dec-2026
Extension possibility: Yes, through 2027
Language(s): English and Spanish
Profiles needed: 2
Project Summary
We are looking for 2 IT Operations Engineers to strengthen our infrastructure vulnerability remediation capability. The mission covers the full remediation lifecycle: technical analysis and triage of infrastructure vulnerabilities (CVEs), risk-based assessment and prioritization, coordination and execution of remediation activities, and automation of remediation workflows. The role operates in a large enterprise environment and involves close collaboration with global and regional support teams across AMER and EMEA, as well as support to compliance and audit activities.
Main Responsibilities & Key Activities
Perform technical analysis and triage of infrastructure vulnerabilities (CVEs)
Assess vulnerabilities based on severity, exploitability and criticality
Prioritize and coordinate remediation activities, including patching, upgrades and configuration changes
Develop detailed remediation instructions and support testing and validation
Use automation to streamline workflows and improve remediation efficiency
Monitor security compliance and support audit activities
Collaborate with global support teams and stakeholders to ensure resilience and security
Identify process improvements and automate remediation tasks
Expected Deliverables
Risk-based vulnerability assessment reports
Technical instructions and remediation plans
Documentation of patching, hardening and audit activities
Compliance reports and audit evidence
Automation scripts and workflows for remediation
Regular status updates on vulnerability remediation progress
Mandatory Experience
Several years of experience in IT operations, infrastructure support or cybersecurity
Demonstrated experience managing infrastructure vulnerabilities in a large enterprise environment
Strong knowledge of operating systems (Windows, Linux) and virtualization (VMware)
Familiarity with infrastructure security and vulnerability management
Proficiency in patching, configuration management and upgrade procedures and tools (e.g. SCCM, ManageEngine)
Ability to analyze CVEs, assess risks and develop remediation strategies
Knowledge of network infrastructure (firewalls, routing, DNS, Active Directory, Citrix)
Experience with automation and scripting (PowerShell, Bash)
Understanding of compliance and audit procedures
Background in compliance, risk assessment and security best practices
Experience working within international or multicultural teams
Preferred Experience
Extensive experience in IT infrastructure engineering, especially in vulnerability management and remediation
Proven track record with enterprise server and storage platforms, particularly Windows, Linux and VMware virtualized environments
Experience with security frameworks such as ISO 27001, NIST, CIS Controls, PCI DSS, DORA
Prior involvement in automating remediation workflows using scripting and orchestration tools
Hands-on experience with PowerBI for data analysis and reporting
Experience collaborating with global teams across multiple regions (AMER, EMEA)
Knowledge of middleware (.NET, IIS, Tomcat) and storage systems
Familiarity with telecom infrastructure (Avaya, Genesys)
Working knowledge of security tools and threat intelligence sources
Experience implementing or supporting automated compliance initiatives
Technical Environment
Operating systems: Windows Server, Linux (various distributions)
Virtualization: VMware ESXi, vSphere
Middleware: .NET, IIS, Tomcat
Storage solutions and ancillary workloads
Network infrastructure: firewalls, DNS, Active Directory, Citrix
Security tools and vulnerability scanners
Data analysis: PowerBI
Automation and orchestration tools
Endpoint management: SCCM, ManageEngine ECP
Security frameworks: ISO 27001, NIST, CIS, PCI DSS, DORA
Informations de la mission :
Location: Barcelona, Spain
Work mode: Hybrid, 3 days onsite
Start date: 24-Aug-2026
Duration: Until 31-Dec-2026
Extension possibility: Yes, through 2027
Language(s): English and Spanish
Profiles needed: 2
Project Summary
We are looking for 2 IT Operations Engineers to strengthen our infrastructure vulnerability remediation capability. The mission covers the full remediation lifecycle: technical analysis and triage of infrastructure vulnerabilities (CVEs), risk-based assessment and prioritization, coordination and execution of remediation activities, and automation of remediation workflows. The role operates in a large enterprise environment and involves close collaboration with global and regional support teams across AMER and EMEA, as well as support to compliance and audit activities.
Main Responsibilities & Key Activities
Perform technical analysis and triage of infrastructure vulnerabilities (CVEs)
Assess vulnerabilities based on severity, exploitability and criticality
Prioritize and coordinate remediation activities, including patching, upgrades and configuration changes
Develop detailed remediation instructions and support testing and validation
Use automation to streamline workflows and improve remediation efficiency
Monitor security compliance and support audit activities
Collaborate with global support teams and stakeholders to ensure resilience and security
Identify process improvements and automate remediation tasks
Expected Deliverables
Risk-based vulnerability assessment reports
Technical instructions and remediation plans
Documentation of patching, hardening and audit activities
Compliance reports and audit evidence
Automation scripts and workflows for remediation
Regular status updates on vulnerability remediation progress
Mandatory Experience
Several years of experience in IT operations, infrastructure support or cybersecurity
Demonstrated experience managing infrastructure vulnerabilities in a large enterprise environment
Strong knowledge of operating systems (Windows, Linux) and virtualization (VMware)
Familiarity with infrastructure security and vulnerability management
Proficiency in patching, configuration management and upgrade procedures and tools (e.g. SCCM, ManageEngine)
Ability to analyze CVEs, assess risks and develop remediation strategies
Knowledge of network infrastructure (firewalls, routing, DNS, Active Directory, Citrix)
Experience with automation and scripting (PowerShell, Bash)
Understanding of compliance and audit procedures
Background in compliance, risk assessment and security best practices
Experience working within international or multicultural teams
Preferred Experience
Extensive experience in IT infrastructure engineering, especially in vulnerability management and remediation
Proven track record with enterprise server and storage platforms, particularly Windows, Linux and VMware virtualized environments
Experience with security frameworks such as ISO 27001, NIST, CIS Controls, PCI DSS, DORA
Prior involvement in automating remediation workflows using scripting and orchestration tools
Hands-on experience with PowerBI for data analysis and reporting
Experience collaborating with global teams across multiple regions (AMER, EMEA)
Knowledge of middleware (.NET, IIS, Tomcat) and storage systems
Familiarity with telecom infrastructure (Avaya, Genesys)
Working knowledge of security tools and threat intelligence sources
Experience implementing or supporting automated compliance initiatives
Technical Environment
Operating systems: Windows Server, Linux (various distributions)
Virtualization: VMware ESXi, vSphere
Middleware: .NET, IIS, Tomcat
Storage solutions and ancillary workloads
Network infrastructure: firewalls, DNS, Active Directory, Citrix
Security tools and vulnerability scanners
Data analysis: PowerBI
Automation and orchestration tools
Endpoint management: SCCM, ManageEngine ECP
Security frameworks: ISO 27001, NIST, CIS, PCI DSS, DORA
Informations de la mission :
- Début de mission : 07/08/2026
- Durée : 3 mois
- Date de publication : 07/08/2026
- Date limite de candidature : 13/08/2026
Compétences recherchées
Windows Server (Indispensable)Linux (Indispensable)VMware ESXi (Indispensable)vSphere (Indispensable).NET (Indispensable)IIS (Indispensable)Tomcat (Indispensable)SCCM (Indispensable)ManageEngine (Indispensable)PowerShell (Indispensable)Bash (Indispensable)PowerBI (Indispensable)Firewalls (Indispensable)DNS (Indispensable)Active Directory (Indispensable)Citrix (Indispensable)Avaya (Indispensable)Genesys (Indispensable)Vulnerability scanners (Indispensable)CVE (Indispensable)Automation (Indispensable)Virtualization (Indispensable)Storage (Indispensable)IT Operations (Indispensable)Infrastructure support (Indispensable)Cybersecurity (Indispensable)VMware (Indispensable)Vulnerability management (Indispensable)CVE analysis (Indispensable)Routing (Indispensable)Compliance (Indispensable)Risk assessment (Indispensable)Automation & Scripting (Indispensable)Security frameworks (ISO 27001/NIST/CIS/PCI DSS/DORA) (Indispensable)
Intéressé(e) ?
Rejoignez l'équipe et participez à nos projets ambitieux.