Madrid, ES
Description
Ryanair Labs are currently recruiting for an Information Security Engineer – Cloud Security to join Europe’s Largest Airline Group!
This is a very exciting time to join Ryanair as we look to expand our operation to 800 aircraft and 300 million guests within the next 10 years.
Ryanair Labs is the technology brand of Ryanair. Labs is a state of-the-art digital & IT innovation hub creating Europe's Leading Travel Experience for our customers.
The Role:
Senior Cloud Security Engineer responsible for protecting Ryanair’s multi‑cloud environment (AWS, Azure, GCP). The role covers:
- Designing, implementing, and improving cloud‑security controls and automation (CSPM, CNAPP).
- Owning full lifecycle of security metrics and KPIs, giving leadership clear, data‑driven visibility of risk and progress.
- Driving secure‑by‑design practices with DevOps and platform teams.
- Leading monitoring and incident response for cloud workloads.
Key Responsibilities:
- Design, implement, and manage security solutions for AWS and Azure.
- Develop and enforce security policies, standards, and guardrails.
- Automate remediation and “shift‑left” security via IaC and CICD.
- Build real‑time detections in SIEM; lead incident response and post‑incident reviews.
- Define and maintain KPI framework (e.g., mean‑time‑to‑remediate, policy‑violation density, coverage %).
- Create automated dashboards (Power BI, Grafana, QuickSight, etc.) and monthly and quarterly executive reports.
- Build ETL API integrations to ensure security‑data accuracy and timeliness.
- Support ISO 27001, PCI‑DSS, NIS2, EASA audits; translate controls into measurable KPIs.
- Maintain documentation runbooks, risk registers, incident logs.
- Mentor junior engineers and present findings to technical and non‑technical stakeholders.
Requirements
- 5–7 years in information security, with 3+ years in cloud security.
- Deep hands‑on knowledge of AWS & Azure security services.
- Experience with Wiz or similar CSPMCNAPP platforms.
- Reporting Metrics.
- Proven ability to build security dashboards (Power BI, Grafana, QuickSight, Tableau, Looker).
- Strong SQL and data‑wrangling; Python (Pandas), PowerShell, or Bash for ETLautomation.
- Track record of establishing KPI taxonomies and SLAOKR monitoring.
- Ability to translate raw data into concise visuals and executive narratives.
- IaC & DevOps CloudFormation, CDKTerraform, CICD pipelines.
- Extensive Linux experience.
- Security certifications (AWS Security Specialty, Azure Security Engineer, CISSP) a plus.
- Familiar with PCI, ISO 27001, NIS2, EASA requirements.
- Excellent communication, risk awareness, problem‑solving, and mentoring skills.
Benefits
- We promote innovation, all our teams are Agile and several PoCs of new technologies or innovative ideas are launched every week.
- A competitive but flexible technical career plan.
- We believe in an hybrid working model, you can work up to three days per week remote, but you are also going to enjoy the excellent work environment at our modern offices in the heart of Madrid.
- Optional discounts on health insurances (various companies).
- Travel discounts, of course!.
Apply today to discuss the role in more detail!
Competencies