Senior Specialist - Information Security
Summary of the Role
We are seeking an experienced Cybersecurity Lead with 8-10 years of experience to drive cybersecurity strategy, threat management, and risk governance across enterprise environments. The role requires strong leadership in SOC/SIEM operations, incident response, and compliance with frameworks such as PCI DSS and GDPR, ensuring robust security posture and regulatory adherence.
Your Main Responsibilities
- Define and lead enterprise cybersecurity strategy aligned with business objectives.
- Oversee SOC/SIEM operations including monitoring, detection use cases, and incident response effectiveness.
- Lead threat management activities including threat intelligence, threat hunting, and risk prioritization.
- Drive incident response governance including major incident handling, escalation, and post-incident reviews.
- Manage vulnerability assessment programs, remediation tracking, and risk-based prioritization.
- Establish and enforce security governance frameworks, policies, and operating procedures.
- Ensure compliance with PCI DSS requirements including logging, monitoring, access controls, and audit readiness.
- Ensure GDPR compliance including data protection, breach notification, and privacy risk management.
- Drive risk governance practices including risk assessment, mitigation planning, and reporting.
- Collaborate with business, IT, DevOps, and leadership stakeholders to integrate security into delivery.
- Lead automation initiatives using SOAR and scripting to improve operational efficiency.
- Provide executive-level reporting, dashboards, and communication on security posture.
- Mentor and guide SOC/security teams and drive continuous improvement initiatives.
About the Ideal Candidate
- Engineering Degree in Computer Science, Cybersecurity, or related field.
- 8-10 years of experience in cybersecurity operations, strategy, or SecOps leadership roles.
- Strong experience with SIEM/SOC platforms (Splunk, Sentinel, QRadar, Elastic).
- Proven expertise in incident response, threat management, and security operations.
- Experience managing vulnerability management lifecycle and tools.
- Strong understanding of compliance frameworks including PCI DSS and GDPR.
- Experience in risk governance, risk assessments, and audit management.
- Exposure to cloud security (Azure/AWS) and hybrid environments.
- Hands-on experience with automation (Python, PowerShell, SOAR tools).
- Excellent stakeholder communication and leadership skills.
- Ability to present to senior leadership and manage cross-functional teams.
Certifications (Good to have):
- Microsoft SC-200 Security Operations Analyst
- Microsoft AZ-500 Azure Security Engineer
- CompTIA Security+ / CySA+
- GIAC Certified Incident Handler (GCIH)
Diversity & Inclusion
Amadeus aspires to be a leader in Diversity and Inclusion in the tech industry, enabling every employee to reach their full potential by fostering a culture of belonging and fair treatment, attracting the best talent from all backgrounds, and as a role model for an inclusive employee experience.
Amadeus is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to gender, race, ethnicity, sexual orientation, age, beliefs, disability or any other characteristics protected by law.
Be aware of recruitment scams
Amadeus Group never charges fees, requests payment, or asks for financial information during recruitment. All legitimate opportunities are communicated solely through official Amadeus channels, including our careers website. Any payment request or outreach via unofficial platforms (e.g., WhatsApp, Telegram) should be treated as fraudulent.