[All remote jobs](https://jobicy.com/jobs.md)Open role[![Docplanner logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/08/84f2fa86-221.png)](https://jobicy.com/company/docplanner.md)Remote opportunity at[Docplanner](https://jobicy.com/company/docplanner.md)

# Senior Platform Security Engineer (100% Remote within Spain)

Review the role, location requirements, compensation details, and application process before deciding whether this opportunity fits your next career move.

[Apply for this job](#job-application)[View company](https://jobicy.com/company/docplanner.md)Share24 Aug 2026Published40Listing views2Application actions23 Sep 2026Apply before  Opportunity details

## About this role.

AI SummaryDocplanner is hiring a Senior Platform Security Engineer to secure and scale its internal platform supporting healthcare products across multiple countries. The role focuses on Kubernetes security, vulnerability management, cloud and network security, compliance, and secure platform automation. The engineer will work closely with Global Security, platform teams, PMS teams, Legal, and application-facing experience teams to improve security posture and handle escalated incidents. Core technical requirements include AWS, Terraform, CI/CD, HashiCorp Vault, security-focused CNI or service mesh tooling, and Bash or Go automation. This is a remote role restricted to Spain, with a Barcelona hybrid option.

## Role DNA

A quick view of the complexity, pace, ownership and collaboration implied by the job description.

### Job Complexity

5/5EasyHard

### Pace & Pressure

4/5RelaxedFast-paced

### Autonomy Level

4/5GuidedFull ownership

### Communication Load

4/5IndependentCollaborative

AI insightThis is a senior security infrastructure role requiring deep hands-on expertise across Kubernetes, AWS, networking, compliance, vulnerability operations, and automation. The engineer must also operate effectively across a complex organization and influence multiple technical and nontechnical stakeholders.

## Salary analysis

Estimated compensation compared with the broader US market for similar roles.

Estimated job medianMarket rate$160,000US market range$135k–$190k0$209k

AI insightNo numeric compensation is disclosed, so these figures are estimates for the US market in USD for a senior platform security engineer with Kubernetes, AWS, cloud-security, and compliance responsibilities. Estimated median annual base salary is $160,000, with a typical market range of $135,000 to $190,000; actual Spain-based compensation may differ materially.

## Core skills

Skills and capabilities most closely associated with this opportunity.

[Platform Security](https://jobicy.com/jobs?search_keywords=Platform%20Security.md)[Kubernetes Security](https://jobicy.com/jobs?search_keywords=Kubernetes%20Security.md)[AWS Security](https://jobicy.com/jobs?search_keywords=AWS%20Security.md)[Cloud Infrastructure](https://jobicy.com/jobs?search_keywords=Cloud%20Infrastructure.md)[Terraform](https://jobicy.com/jobs?search_keywords=Terraform.md)[CI/CD](https://jobicy.com/jobs?search_keywords=CICD.md)[HashiCorp Vault](https://jobicy.com/jobs?search_keywords=HashiCorp%20Vault.md)[Vulnerability Management](https://jobicy.com/jobs?search_keywords=Vulnerability%20Management.md)[Network Security](https://jobicy.com/jobs?search_keywords=Network%20Security.md)[ISO 27001](https://jobicy.com/jobs?search_keywords=ISO%2027001.md)

Sample interview questionsHow would you secure a multi-team Kubernetes platform while preserving developer autonomy?I would establish secure defaults through hardened cluster baselines, RBAC, network policies, admission controls, image scanning, secrets management, and reusable deployment templates. A self-service platform should make the compliant path the easiest path, while policy-as-code and continuous monitoring provide guardrails without requiring central-team approval for routine work.

Describe your approach to vulnerability management at scale across infrastructure and container workloads.

I prioritize complete asset and image inventory, automated scanning in CI and runtime, severity and exploitability-based triage, ownership mapping, remediation SLAs, and clear exception processes. I would integrate findings into engineering workflows, measure remediation aging, and use recurring patterns to improve golden images, platform controls, and developer guidance.

What security controls would you implement for AWS-hosted, highly available production services?

I would use least-privilege IAM, centralized logging and detection, encryption in transit and at rest, segmented networking, WAF and DDoS protections, secure secrets storage, infrastructure-as-code reviews, and tested backup and recovery controls. I would also ensure controls are monitored continuously and mapped to applicable compliance requirements such as ISO 27001 and SOC 2.

How have you used Terraform and CI/CD to improve security and compliance?

I use Terraform to create reviewed, versioned, repeatable infrastructure patterns and enforce policy through automated checks before deployment. In CI/CD, I add secret detection, dependency and container scanning, infrastructure scanning, signed artifacts, approval controls for sensitive changes, and audit trails so security is integrated early in the delivery lifecycle.

How would you handle a conflict where a product team views a security requirement as blocking delivery?

I would first understand the delivery objective, technical constraint, and actual risk, then explain the security concern in practical business terms. I would propose proportionate alternatives, such as a phased mitigation, compensating controls, or a secure platform-supported implementation, while documenting any accepted risk and maintaining clear accountability.

Welcome to the good side of tech 👋

You might have heard about us, but with a different name: Doctoralia. It all started 12 years ago when we asked ourselves: is anyone in healthcare thinking about patients? We jumped in and we empowered patients by giving them access to leave and read reviews about their visit. We then provided doctors with the technology to manage bookings easily and save time, so they could devote themselves to what they always wanted: treating patients. And today is the day in which we ask you: wanna join us in the next step of making the healthcare experience more human?

Docplanner at scale

We are leaders in 13 countries so far, and more than 90 million patients trust us every month. 300k+ specialists believe in us and our product, and so do leading venture capital funds such as Point Nine Capital, Goldman Sachs Asset Management and One Peak Partners. And yet, employing over 2.500 people all over the globe, we managed to keep the startup-mindset we started with over 10 years ago.

How does Docplanner Tech fit here?

At [Docplanner Tech](https://docplanner.tech/) we are a diverse group of over 400 people working in Engineering, Data, and Product teams. We are responsible for building the product for all locations. Many of us have been here for over 5 years, yet we still welcome each new person with great joy and excitement.

We could tell you about us, but we will let our [reviews on Glassdoor](https://www.glassdoor.es/Overview/Working-at-DocPlanner-EI_IE1071394.11,21.htm?countryRedirect=true) speak for themselves. In case you’d like to see how it feels to be 100% yourself at work, [here’s a video of us](https://bit.ly/3xwnSAk).

And why should you join us?

Because it feels good to tell your family and your friends how you made the world a little bit better. You go to bed knowing that what you do matters, and that your talents align with your beliefs.

We want to make the healthcare experience more human, and that starts with you being you. We believe that taking the diversity of human experience into account makes a better healthcare experience for all . We’re not just different: we embrace diversity. We will encourage you to come to work your whole self, and that includes not coming to the office at all if you prefer not to, as we’re 100% remote friendly.

### Job Description

The Internal Platform is a pivotal foundation that accelerates product development by providing a reliable, scalable, and self-service ecosystem. It supports the entire software lifecycle and is meticulously tailored to meet the organization’s technological needs and strategic direction.

The platform enables development teams to operate autonomously in 80% of cases, reducing dependency on the Internal Platform team, and ensuring that compliance, security, and business continuity are integrated across the entire platform – defending general reliability of services, and data integrity.

Overall, a platform engineering team plays a critical role in ensuring a company’s technology infrastructure is reliable and scalable.

The Internal Platform team consists of 34 people including 27 individual contributors 2 Staff Engineers, 4 Engineering Managers and Head of Internal Platform. The team is organized in a way to efficiently address Stakeholders needs.

What are the challenges in the team?

*

Platform Security is a team within the Internal Platform. The team is a first point of contact for the Global Security Team. The team is responsible for security and integrity of the underlying infrastructure that supports the organization, safeguarding the platform from potential vulnerabilities, threats, and attacks.

*

Developing and maintaining tools for Global Security in order to deliver vulnerability management platforms for application triaging and continuous compliance

*

The complexity of the Docplanner organization: Docplanner is a complex organization with multiple teams working on various products and services. One of the main challenges for the platform security engineer is to understand and integrate the diverse technology stacks used by different teams.

*

Scalability and reliability of systems: As Docplanner grows and expands, the demand for the technology infrastructure also increases. The platform engineering team must ensure that the systems are designed to handle high traffic, are scalable, and secure

Who will you work closely with?

*

Global Security – as the main external stakeholder for security initiatives. You’ll collaborate on platform compliance, risk management, and act as a technical point of contact during escalated incidents such as DDoS or abuse cases.

*

PMS (Practice Management Systems) teams – to audit existing systems, support secure migration to the central platform, and interpret global security and legal requirements in the context of PMS implementations.

*

Core Team within Internal Platform – by consulting on technical compliance, networking standards, and resolving misconfigurations or vulnerabilities detected across platform components.

*

Experience Teams – by providing guidance on infrastructure-related application security topics, secure encryption practices, and collaborating on secure CSP integrations.

*

Legal – to ensure alignment with data protection regulations, encryption standards, and locality requirements. You’ll use their insights to assess and improve the security posture of the platform.

How would you be impacting our mission?

*

Making sure that our platform is compliant with the best industry practices and standards for security (ISO27001, C5, SOC2)

*

Help us to introduce security on every step of our platform lifecycle

*

Ability to vigilantly understand and mitigate security threats before they arise

*

Optimize system scalability and cost efficiency

*

Development, monitoring, and maintenance of Kubernetes clusters on several continents.

*

CI / CD development and maintenance.

*

Make sure that all of our services are deployed in a way that makes them highly available.

*

Fixing urgent issues and optimizing performance.

*

Support other team members in their daily work.

### Qualifications

What will help you thrive?

*

At least 5 years of experience related with security

*

Vast experience with container orchestration platforms like Kubernetes and how to secure them (must-have).

*

You know how to maintain, develop policy for security-focused CNI/Service Mesh (eg. Calico, Cilium).

*

You know how to scan for and manage vulnerabilities at scale.

*

You have experience with Hashicorp Vault.

*

You know why and how to use Terraform and popular CI/CD tools.

*

You know about building scalable and secure production HA environments using AWS.

*

You know your ways around network security services eg. AWS WAF/Cloudflare.

*

You are not afraid of developing tools or scripts in Bash or GO to automate work.

*

You can communicate in English (both spoken and written – min. B2 level).

*

You know how to bring people on your side when talking about security and best practices.

Let’s talk money

*

A salary adequate to your experience and skills.

*

Flexible remuneration and benefits system via [Flexoh](https://flexoh.com/), which includes: restaurant card, transportation card, kindergarten, and training tax savings.

True flexibility and work-life balance

*

Remote or hybrid work model with our hub in Barcelona.

*

Flexible working hours (fully flexible, as in most cases you only have to be on a couple of meetings weekly).

*

Summer intensive schedule during July and August (work 7 hours, finish earlier).

*

23 paid holidays, with exchangeable local bank holidays.

*

Additional paid holiday on your birthday or work anniversary (you choose what you want to celebrate).

Health comes first

*

Private healthcare plan with [Adeslas](https://www.segurcaixaadeslas.es/en/particulares) for you and subsidized for your family (medical and dental).

*

Access to hundreds of gyms for a symbolic fee in partnership for you and your family with[Andjoy](https://www.andjoy.life/en).

*

Access to [iFeel](https://ifeelonline.com/), a technological platform for mental wellness offering online psychological support and counseling.

Keep growing with us

*

Free English and Spanish classes.

We promote and embrace equal opportunities in our hiring process, and also every day at work. When you apply for our roles you receive equal treatment regardless of age, disabilities, gender reassignment, marital or civil partner status, pregnancy or parental status, race, colour, nationality, ethnic or national origin, religion or belief, sex, sexual orientation or any other dimension of human difference. If you require additional support in your recruitment process, we kindly encourage you to let us know. Behind those words you’re reading, there’s a person (hi!) who already helped a candidate by adapting the interviews, and now we’re lucky to have this person with us. So, even if you’ve never asked for it before, may this serve as a sign that, now, you can do so. We can only truly be equal if we adapt to each other.

“We believe all humans, in all their beautiful diversity, should have equal rights, dignity and respect. Period.” Mariusz Gralewski, CEO

Show more

[Apply now >](https://jobicy.com/jobs/151520-senior-platform-security-engineer-100-remote-within-spain.md)

>  Annual salary information is not provided for this position. Explore salary ranges for similar roles in our [Salary Directory ›](https://jobicy.com/salaries.md)

*

![Upload CV](data:image/svg+xml;base64,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)

### Upload your resume now

To unlock remote work opportunities and be discovered by global employers.

This job listing has been manually reviewed by the Jobicy Trust & Safety Team for compliance with our posting guidelines, including verification of the company's legitimacy, accuracy of job details, clarity of remote work policy, and absence of misleading or fraudulent content.

Next step

## Apply now.

Follow the employer’s application method and review Jobicy’s safety guidance before sharing personal information.

Keep exploring

## Related remote jobs.

Matched by job category10 related opportunities[Cybersecurity](https://jobicy.com/categories/cybersecurity.md) [Browse all jobs](https://jobicy.com/jobs.md)
*
![Docplanner logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/08/84f2fa86-221.png)
Docplanner  Aug 24

### [Senior Platform Security Engineer (100% Remote within Poland)](https://jobicy.com/jobs/151521-senior-platform-security-engineer-100-remote-within-poland.md)

Welcome to the good side of tech 👋 You might have heard about us, but with a different name: Znany Lekarz. It all started 12 years ago when we asked…

*
![Qventus logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2022/01/0ad7e933ffa7b62281cc4b26710abfab.jpeg)
Qventus  Aug 24

### [Senior Security Engineer](https://jobicy.com/jobs/151504-senior-security-engineer-2.md)

On this journey for over 12 years, Qventus is leading the transformation of healthcare. We enable hospitals to focus on what matters most: patient care. Our innovative solutions harness the…

*
![CertiK logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2021/03/Jobicy-210308091023-955845.jpg)
CertiK  Aug 24

### [Blockchain Security Engineer – (Solidity / Rust / Golang)](https://jobicy.com/jobs/151470-blockchain-security-engineer-solidity-rust-golang.md)

About the Company CertiK is the largest blockchain security auditor and provides a comprehensive suite of tools to secure the industry at scale. To date, CertiK has worked with over…

*
![Sporty Group logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/8e6c246a-221.png)
Sporty Group  Aug 24

### [Security Platform Engineer](https://jobicy.com/jobs/151442-security-platform-engineer.md)

About the roleStrengthen Sporty’s security monitoring and detection capability by managing, tuning, and continuously improving EDR and SIEM platforms. Ensure security alerts are accurate, actionable, and provide reliable visibility across…

*
![Lakeshore Learning Materials, LLC logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/d8ba23f6-221.jpg)
Lakeshore Learning Materials, LLC  Aug 23

### [Manager of IT Security](https://jobicy.com/jobs/149591-manager-of-it-security.md)

Company DescriptionAt Lakeshore, we create innovative learning materials and world-class guest experiences for teachers, parents and children. Since 1954, we’ve grown into a global community—with a thriving e-commerce business, multiple…

*
![Tenable logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/01879e02-221.jpg)
Tenable  Aug 22

### [Senior Director, Ecosystem & Solution Architectures – Technical Alliances](https://jobicy.com/jobs/151413-senior-director-ecosystem-solution-architectures-technical-alliances.md)

Who is Tenable? Tenable® is the Exposure Management company. Over 40,000 organizations around the globe rely on Tenable to understand and reduce cyber risk. Our global employees support 65 percent…

*
![Canonical Ltd. logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/b4d068a9-221-1.png)
Canonical Ltd.  Aug 22

### [Security Risk Management Specialist](https://jobicy.com/jobs/149564-security-risk-management-specialist.md)

In security risk management we’re looking to harness the power of industry best practice combined with driving new innovation on how we do security risk assessments and modelling. Our security…

*
![Canonical Ltd. logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/b4d068a9-221-1.png)
Canonical Ltd.  Aug 22

### [Ubuntu Security Engineer](https://jobicy.com/jobs/149565-ubuntu-security-engineer.md)

Canonical is a leading provider of open source software and operating systems to the global enterprise and technology markets. Our platform, Ubuntu, is very widely used in breakthrough enterprise initiatives…

*
![Canonical Ltd. logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/b4d068a9-221-1.png)
Canonical Ltd.  Aug 22

### [Senior Security Operations Engineer](https://jobicy.com/jobs/149578-senior-security-operations-engineer.md)

The Canonical Security Operations team is hiring for a Senior or Staff engineer. The Security Operations team is responsible for designing, building, and operating a world-class Security Operations Center, and…

*
![Canonical Ltd. logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/b4d068a9-221-1.png)
Canonical Ltd.  Aug 22

### [Head of Security Operations](https://jobicy.com/jobs/149541-head-of-security-operations.md)

This global leadership role in cyber security is to manage the Security Operations (SecOps) team responsible for design, implementation and evolution of Canonical security practices, techniques, tools, systems and policies….