MENU
  • Remote Jobs
  • Companies
  • Go Premium
  • Job Alerts
  • Post a Job
  • Log in
  • Sign up
Working Nomads logo Working Nomads
  • Remote Jobs
  • Companies
  • Post Jobs
  • Go Premium
  • Get Free Job Alerts
  • Log in

Information Security Engineer

Scopely

Full-time
Spain, Portugal
infosec
security
engineer
saas
cloud
Apply for this position

Scopely is looking for an Information Security Engineer to join our Information Technology team in Spain or Portugal on a remote basis or flexible hybrid in Barcelona.

At Scopely, we care deeply about what we do and want to inspire play every day - whether in our work environments alongside our talented colleagues or through our deep connections with our communities of players. We are a global team of game lovers who are developing, publishing and innovating the mobile games industry, connecting millions of people worldwide daily.

The Data Protection Engineering Team safeguards Scopely's data stores, sensitive information, and intellectual property. We assess our games’ data security hygiene, investigate internal and vendor security incidents, enhance data loss prevention measures, and collaborate across teams to maintain a secure environment for our global community of players.

 

What You Will Do:

We're looking for an experienced Information Security engineer or analyst with a strong focus on Internal/3rd party investigations, IT & Corporate Security, and Data Loss Prevention (DLP) to join our Security Engineering team. In this role, you’ll help design and mature our corporate security and data protection programs, investigate complex incidents, and enhance visibility into sensitive data movement across the organization.

 

Data Loss Prevention

  • Design, test, deploy, and manage enterprise DLP policies across endpoints and cloud services (e.g., Google Workspace, Okta, JamF, Slack, Confluence, CASB & DLP tools)

  • Tune policies and detection rules to reduce false positives while improving efficacy and user experience

  • Monitor, triage, and respond to DLP alerts, perform impact assessments, and escalate potential data loss events

Internal Investigations & Response

  • Assess and investigate complex insider and third-party risk incidents, policy violations, and digital behaviours of concern, providing a thorough and mature investigative process from start to end.

  • Collect and analyse artefacts from endpoints, SaaS logs, and communication  platforms

  • Document findings clearly and concisely to both technical and non-technical audiences

  • Utilize OSINT techniques to develop investigation plans to gather evidence and enrich findings

  • Build and enhance automated detection logic for data misuse using scripting, AI, or rule-based systems

Cross-Functional Enablement

  • Work with privacy, compliance, and governance teams to align controls with regulatory requirements (e.g., GDPR, CCPA)

  • Support internal and external audits, policy reviews, and compliance syncs, performing investigations across both digital and human domains.

 

What You Will Need:

  • 4 Years minimum experience in Security, IT System Engineering, or Data Analysis with a focus on security

  •  Strong verbal command of the English language

  • Comfortable working on security incidents and leading multiple investigations in parallel from initiation to completion

  • Case Management: Owning & Handling cases end-to-end, ensuring thorough, articulate, and organized documentation with effective follow-through.

  • Demonstrate a high level of confidentiality and respect for sensitive data and employment legal considerations throughout your investigations, sharing only on a strict need-to-know basis.

  • Comfortable using AI tools to take care of the boring stuff, speed up analysis, and improve reporting quality and brevity.

  • Agile Mindset & Collaborative spirit: Familiarity with agile methodologies.

  • Proven ability to assess and interpret security data effectively to identify potential threats and vulnerabilities.

 

Bonus:

  • Experience working with global teams across multiple time zones.

  • Experience in the gaming industry or working on protecting intellectual property.

  • Background in SOC analysis, CSIRT, or IT System Administration.

Apply for this position
Bookmark Report

About the job

Full-time
Spain, Portugal
12 Applicants
Posted 1 week ago
infosec
security
engineer
saas
cloud

Apply for this position

Bookmark
Report
Enhancv advertisement

30,000+
REMOTE JOBS

Unlock access to our database and
kickstart your remote career
Join Premium

Information Security Engineer

Scopely

Scopely is looking for an Information Security Engineer to join our Information Technology team in Spain or Portugal on a remote basis or flexible hybrid in Barcelona.

At Scopely, we care deeply about what we do and want to inspire play every day - whether in our work environments alongside our talented colleagues or through our deep connections with our communities of players. We are a global team of game lovers who are developing, publishing and innovating the mobile games industry, connecting millions of people worldwide daily.

The Data Protection Engineering Team safeguards Scopely's data stores, sensitive information, and intellectual property. We assess our games’ data security hygiene, investigate internal and vendor security incidents, enhance data loss prevention measures, and collaborate across teams to maintain a secure environment for our global community of players.

 

What You Will Do:

We're looking for an experienced Information Security engineer or analyst with a strong focus on Internal/3rd party investigations, IT & Corporate Security, and Data Loss Prevention (DLP) to join our Security Engineering team. In this role, you’ll help design and mature our corporate security and data protection programs, investigate complex incidents, and enhance visibility into sensitive data movement across the organization.

 

Data Loss Prevention

  • Design, test, deploy, and manage enterprise DLP policies across endpoints and cloud services (e.g., Google Workspace, Okta, JamF, Slack, Confluence, CASB & DLP tools)

  • Tune policies and detection rules to reduce false positives while improving efficacy and user experience

  • Monitor, triage, and respond to DLP alerts, perform impact assessments, and escalate potential data loss events

Internal Investigations & Response

  • Assess and investigate complex insider and third-party risk incidents, policy violations, and digital behaviours of concern, providing a thorough and mature investigative process from start to end.

  • Collect and analyse artefacts from endpoints, SaaS logs, and communication  platforms

  • Document findings clearly and concisely to both technical and non-technical audiences

  • Utilize OSINT techniques to develop investigation plans to gather evidence and enrich findings

  • Build and enhance automated detection logic for data misuse using scripting, AI, or rule-based systems

Cross-Functional Enablement

  • Work with privacy, compliance, and governance teams to align controls with regulatory requirements (e.g., GDPR, CCPA)

  • Support internal and external audits, policy reviews, and compliance syncs, performing investigations across both digital and human domains.

 

What You Will Need:

  • 4 Years minimum experience in Security, IT System Engineering, or Data Analysis with a focus on security

  •  Strong verbal command of the English language

  • Comfortable working on security incidents and leading multiple investigations in parallel from initiation to completion

  • Case Management: Owning & Handling cases end-to-end, ensuring thorough, articulate, and organized documentation with effective follow-through.

  • Demonstrate a high level of confidentiality and respect for sensitive data and employment legal considerations throughout your investigations, sharing only on a strict need-to-know basis.

  • Comfortable using AI tools to take care of the boring stuff, speed up analysis, and improve reporting quality and brevity.

  • Agile Mindset & Collaborative spirit: Familiarity with agile methodologies.

  • Proven ability to assess and interpret security data effectively to identify potential threats and vulnerabilities.

 

Bonus:

  • Experience working with global teams across multiple time zones.

  • Experience in the gaming industry or working on protecting intellectual property.

  • Background in SOC analysis, CSIRT, or IT System Administration.

Working Nomads

Post Jobs
Premium Subscription
Sponsorship
Free Job Alerts

Job Skills
API
FAQ
Privacy policy
Terms and conditions
Contact us
About us

Jobs by Category

Remote Administration jobs
Remote Consulting jobs
Remote Customer Success jobs
Remote Development jobs
Remote Design jobs
Remote Education jobs
Remote Finance jobs
Remote Legal jobs
Remote Healthcare jobs
Remote Human Resources jobs
Remote Management jobs
Remote Marketing jobs
Remote Sales jobs
Remote System Administration jobs
Remote Writing jobs

Jobs by Position Type

Remote Full-time jobs
Remote Part-time jobs
Remote Contract jobs

Jobs by Region

Remote jobs Anywhere
Remote jobs North America
Remote jobs Latin America
Remote jobs Europe
Remote jobs Middle East
Remote jobs Africa
Remote jobs APAC

Jobs by Skill

Remote Accounting jobs
Remote Assistant jobs
Remote Copywriting jobs
Remote Cyber Security jobs
Remote Data Analyst jobs
Remote Data Entry jobs
Remote English jobs
Remote Spanish jobs
Remote Project Management jobs
Remote QA jobs
Remote SEO jobs

Jobs by Country

Remote jobs Australia
Remote jobs Argentina
Remote jobs Brazil
Remote jobs Canada
Remote jobs Colombia
Remote jobs France
Remote jobs Germany
Remote jobs Ireland
Remote jobs India
Remote jobs Japan
Remote jobs Mexico
Remote jobs Netherlands
Remote jobs New Zealand
Remote jobs Philippines
Remote jobs Poland
Remote jobs Portugal
Remote jobs Singapore
Remote jobs Spain
Remote jobs UK
Remote jobs USA


Working Nomads curates remote digital jobs from around the web.

© 2025 Working Nomads.