Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Senior Platform Security Engineer (100% remote-friendly within Spain) image - Rise Careers
Job details

Senior Platform Security Engineer (100% remote-friendly within Spain)

Company Description

Welcome to the good side of tech 👋

You might have heard about us, but with a different name: Znanylekarz. It all started 10 years ago when we asked ourselves: is anyone in healthcare thinking about patients? We jumped in and we empowered patients by giving them access to leave and read reviews about their visit. We then provided doctors with the technology to manage bookings easily and save time, so they could devote themselves to what they always wanted: treating patients. And today is the day in which we ask you: wanna join us in the next step of making the healthcare experience more human?

 Docplanner at scale

We are leaders in 13 countries so far, and more than 90 million patients trust us every month. 280.000 specialists believe in us and our product, and so do leading venture capital funds such as Point Nine Capital, Goldman Sachs Asset Management, and One Peak Partners. And yet, employing over 2.900 people all over the globe, we managed to keep the startup mindset we started with over 10 years ago.

How does Docplanner Tech fit here?

At Docplanner Tech we are a diverse group of ~325 people working in teams that include engineers, designers, product managers, data and research. We are responsible for building the product for all locations. Taking care about talent matters to us, that's why the engineering team has an amazing balance of new team members and people that have been in DP for years.

We could tell you about us, but we will let our reviews on Glassdoor speak for themselves. In case you’d like to see how it feels to be 100% yourself at work, here’s a video of us

And why should you join us?

Because it feels good to tell your family and your friends how you made the world a little bit better. You go to bed knowing that what you do matters, and that your talents align with your beliefs.

We want to make the healthcare experience more human, and that starts with you being you. We believe that taking the diversity of human experience into account makes a better healthcare experience for all. We’re not just different: we embrace diversity. We will encourage you to come to work your whole self, and that includes not coming to the office at all if you prefer not to, as we're 100% remote-friendly.

Job Description

The Internal Platform is a pivotal foundation that accelerates product development by providing a reliable, scalable, and self-service ecosystem. It supports the entire software lifecycle and is meticulously tailored to meet the organization’s technological needs and strategic direction. 

The platform enables development teams to operate autonomously in 80% of cases, reducing dependency on the Internal Platform team, and ensuring that compliance, security, and business continuity are integrated across the entire platform - defending the general reliability of services, and data integrity.

Overall, a platform engineering team plays a critical role in ensuring a company's technology infrastructure is reliable and scalable.

The Internal Platform team consists of 34 people including 27 individual contributors 2 Staff Engineers, 4 Engineering Managers and Head of Internal Platform. The team is organized in a way to efficiently address stakeholders' needs.

What are the challenges in the team?

  • Platform Security is a team within the Internal Platform. The team is the first point of contact for the Global Security Team. The team is responsible for the security and integrity of the underlying infrastructure that supports the organization, safeguarding the platform from potential vulnerabilities, threats, and attacks. 

  • Developing and maintaining tools for Global Security in order to deliver vulnerability management platforms for application triaging and continuous compliance

  • The complexity of the Docplanner organization: Docplanner is a complex organization with multiple teams working on various products and services. One of the main challenges for the platform security engineer is to understand and integrate the diverse technology stacks used by different teams. 

  • Scalability and reliability of systems: As Docplanner grows and expands, the demand for the technology infrastructure also increases. The platform engineering team must ensure that the systems are designed to handle high traffic, are scalable, and secure

Who will you work closely with?

Global Security – as the main external stakeholder for security initiatives. You’ll collaborate on platform compliance, risk management, and act as a technical point of contact during escalated incidents such as DDoS or abuse cases.
PMS (Practice Management Systems) teams – to audit existing systems, support secure migration to the central platform, and interpret global security and legal requirements in the context of PMS implementations.
Core Team within Internal Platform – by consulting on technical compliance, networking standards, and resolving misconfigurations or vulnerabilities detected across platform components.
Experience Teams – by providing guidance on infrastructure-related application security topics, secure encryption practices, and collaborating on secure CSP integrations.
Legal – to ensure alignment with data protection regulations, encryption standards, and locality requirements. You’ll use their insights to assess and improve the security posture of the platform.

How would you be impacting our mission?

  • Making sure that our platform is compliant with the best industry practices and standards for security (ISO27001, C5, SOC2)

  • Help us to introduce security on every step of our platform lifecycle

  • Ability to vigilantly understand and mitigate security threats before they arise

  • Optimize system scalability and cost efficiency

  • Development, monitoring, and maintenance of Kubernetes clusters on several continents.   

  • CI / CD development and maintenance.  

  • Make sure that all of our services are deployed in a way that makes them highly available.  

  • Fixing urgent issues and optimizing performance.  

  • Support other team members in their daily work. 

Qualifications

  • At least 5 years of experience related with security

  • Vast experience with container orchestration platforms like Kubernetes and how to secure them (must-have).   

  • You know how to maintain, develop policy for security-focused CNI/Service Mesh (eg. Calico, Cilium).

  • You know how to scan for and manage vulnerabilities at scale.

  • You have experience with Hashicorp Vault.

  • You know why and how to use Terraform and popular CI/CD tools.   

  • You know about building scalable and secure production HA environments using AWS.

  • You know your ways around network security services eg. AWS WAF/Cloudflare.

  • You are not afraid of developing tools or scripts in Bash or GO to automate work.   

  • You can communicate in English (both spoken and written - min. B2 level).  

  • You know how to bring people on your side when talking about security and best practices.

  • Growth mindset: nobody ticks all those boxes above, but the willingness to learn is strongly valued here.

Additional Information

Let’s talk money

  • A salary adequate to your experience and skills. The range is broad so that we can accommodate our roles for all levels of experience, but we will show you the career ladder to explain where we see your skills and impact within the company". Your salary will be, now and always, 100% transparent to you;
  • Flexible remuneration and benefits system via Flexoh, which includes: restaurant card, transportation card, kindergarten, and training tax savings;
  • Share options plan after 6 months of working with us.

 

True flexibility and work-life balance

  • Remote or hybrid work model with our hub in Barcelona;
  • Flexible working hours (fully flexible, as in most cases you only have to be on a couple of meetings weekly);
  • Summer intensive schedule during July and August (work 7 hours, finish earlier);
  • 23 paid holidays, with exchangeable local bank holidays;
  • Additional paid holiday on your birthday or work anniversary (you choose what you want to celebrate).

 

Health comes first 

  • Private healthcare plan with Adeslas for you and subsidized for your family (medical and dental);
  • Access to hundreds of gyms for a symbolic fee in partnership for you and your family with Wellhub;
  • Access to iFeel, a technological platform for mental wellness offering online psychological support and counseling. 

 

We promote and embrace equal opportunities in our hiring process, and also every day at work. When you apply for our roles you receive equal treatment regardless of age, disabilities, gender reassignment, marital or civil partner status, pregnancy or parental status, race, colour, nationality, ethnic or national origin, religion or belief, sex, sexual orientation or any other dimension of human difference.  If you require additional support in your recruitment process, we kindly encourage you to let us know. Behind those words you’re reading, there’s a person (hi!) who already helped a candidate by adapting the interviews, and now we’re lucky to have this person with us. So, even if you’ve never asked for it before, may this serve as a sign that, now, you can do so. We can only truly be equal if we adapt to each other.

“We believe all humans, in all their beautiful diversity, should have equal rights, dignity and respect. Period.” Mariusz Gralewski,  CEO

 

DocPlanner Glassdoor Company Review
4.5 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
DocPlanner DE&I Review
4.5 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
CEO of DocPlanner
DocPlanner CEO photo
Mariusz Gralewski
Approve of CEO

Average salary estimate

$95000 / YEARLY (est.)
min
max
$70000K
$120000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Senior Platform Security Engineer (100% remote-friendly within Spain), DocPlanner

At Docplanner, we’re on a mission to make healthcare more human, and as a Senior Platform Security Engineer, you’ll be a vital part of this movement. Based in vibrant Barcelona, Spain, and offering 100% remote-friendly opportunities within the country, your role will ensure our technology infrastructure remains secure and reliable. Imagine working with a passionate team of about 34 experts, within the Internal Platform team, where your contributions will significantly impact our ability to serve over 90 million patients monthly. You’ll be collaborating closely with the Global Security team, ensuring that our systems are compliant with industry standards like ISO27001 and SOC2. You’ll develop tools to manage vulnerabilities and address security threats proactively—making sure the platform can scale efficiently as we grow. With our embedded culture of innovation, you’ll have the freedom to explore and script solutions while enjoying the support of a diverse team that values every unique contribution. In this role, not only will you engage with cutting-edge tools like Kubernetes and Hashicorp Vault, but you’ll also have the opportunity to instigate meaningful change across our global operations. At Docplanner, you can balance your work-life commitments with flexible hours and enjoy numerous employee benefits, including a private healthcare plan and options to work from beautiful locations throughout Spain. Join us at Docplanner as we embark on this exciting journey together!

Frequently Asked Questions (FAQs) for Senior Platform Security Engineer (100% remote-friendly within Spain) Role at DocPlanner
What are the main responsibilities of a Senior Platform Security Engineer at Docplanner?

As a Senior Platform Security Engineer at Docplanner, you'll be responsible for ensuring the security and integrity of our infrastructure. This includes safeguarding the platform from vulnerabilities and threats while developing and providing tools for vulnerability management. You'll work collaboratively with the Global Security team and oversee compliance with industry standards like ISO27001 and SOC2, playing a key role in risk management and addressing escalated security incidents.

Join Rise to see the full answer
What qualifications are needed to apply for the Senior Platform Security Engineer position at Docplanner?

Candidates for the Senior Platform Security Engineer role at Docplanner should ideally have at least 5 years of experience in security, particularly with container orchestration platforms like Kubernetes. Familiarity with security-focused tools such as Hashicorp Vault and an understanding of frameworks like Terraform are essential. Experience in building secure, scalable environments on cloud platforms like AWS is also critical, along with effective communication skills.

Join Rise to see the full answer
How does the Senior Platform Security Engineer collaborate with other teams at Docplanner?

In the role of Senior Platform Security Engineer at Docplanner, you will work closely with various teams, including PMS teams for secure migration processes, core teams for technical compliance, and experience teams for guidance on application security. Your collaboration will ensure a cohesive approach to security across all platforms and that organizational policies align with legal and regulatory requirements.

Join Rise to see the full answer
What security standards does Docplanner expect the Senior Platform Security Engineer to uphold?

At Docplanner, the Senior Platform Security Engineer is expected to uphold key security standards such as ISO27001, C5, and SOC2. You'll be responsible for fostering a culture of security by integrating these best practices throughout the platform lifecycle, ensuring that both software and data integrity are prioritized as the company grows.

Join Rise to see the full answer
What growth opportunities exist for Senior Platform Security Engineers at Docplanner?

Docplanner offers ample growth opportunities for Senior Platform Security Engineers, including access to continuous learning and upskilling through diverse projects. With a work culture that values diversity and innovation, you’ll have opportunities to take on leadership roles, contribute to company-wide initiatives, and potentially mentor juniors while developing your expertise in cutting-edge security technologies.

Join Rise to see the full answer
Common Interview Questions for Senior Platform Security Engineer (100% remote-friendly within Spain)
Can you explain your experience with Kubernetes security?

When asked about your Kubernetes security experience, emphasize your familiarity with securing container orchestration, including tools and practices you've implemented. Highlight specific policies you have developed for CNI or service mesh, and share how your actions helped mitigate risks and enhance operational security.

Join Rise to see the full answer
How do you manage vulnerabilities in a cloud environment?

Discuss your systematic approach to vulnerability management in cloud environments, such as conducting regular scans and assessments, employing tools for continuous monitoring, and forming an incident response strategy. Emphasize your experience with leading vulnerability triages and collaborating with other teams for optimal solutions.

Join Rise to see the full answer
What tools or systems have you used for incident response?

Be prepared to mention specific tools you've utilized for incident response, such as SIEM systems or automated alerting solutions. Discuss your role in developing incident response plans and how you've executed these plans in real scenarios, ensuring efficient communication across teams.

Join Rise to see the full answer
How do you approach compliance with security standards?

Explain your methodology to ensure compliance with security standards like ISO27001 or SOC2. Engage in a discussion about how you keep updated with evolving compliance regulations and how you have previously managed compliance audits or assessments, focussing on creating a culture of security within the organization.

Join Rise to see the full answer
In what ways have you improved security protocols in your past roles?

Share quantifiable results demonstrating your success in improving security protocols, including specific initiatives or policies you developed. Discuss how these improvements led to heightened security postures and collaboration within teams to enhance security practices.

Join Rise to see the full answer
Describe your experience with secure CI/CD practices.

When addressing your experience with secure CI/CD practices, detail the pipelines you've designed employing security best practices from code development through deployment. Stress the importance of integrating security testing tools and prompt detection mechanisms for vulnerabilities throughout the CI/CD lifecycle.

Join Rise to see the full answer
How have you addressed scaling issues in security at an organization?

Discuss specific strategies you employed to handle scaling issues related to security, outlining how you adapted processes for growing teams and technological environments. Explain how you learned from challenges faced during scaling, emphasizing proactive measures taken to enhance security scalability.

Join Rise to see the full answer
Can you share an instance where you had to resolve a security incident?

You should detail a specific security incident you dealt with, focusing on your role in the assessment, containment, and resolution processes. Discuss the steps taken in communicating with stakeholders and any preventative measures put in place afterwards.

Join Rise to see the full answer
What is your approach to educating teams about security best practices?

Outline your approach to building awareness around security best practices, such as conducting workshops, creating informative materials, and integrating security training in onboarding processes. Emphasize the importance of fostering a security-first culture within the organization.

Join Rise to see the full answer
How do you stay updated on security trends and technologies?

Share the resources and platforms you use to remain informed about the latest security trends, tools, and technologies, such as attending industry conferences, engaging with professional groups, or participating in online courses. Discuss how this continual learning has influenced your work positively.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
DocPlanner Remote Curitiba, State of Paraná, Brazil
Posted 4 days ago

Join Docplanner as a Global Web Project Manager to enhance B2B websites and user experience in the healthcare industry.

Lilly Hybrid Indianapolis, Indiana, United States
Posted 10 days ago
Posted 7 days ago
Photo of the Rise User
Posted 7 days ago
Photo of the Rise User
ASSA ABLOY Group Hybrid Carlstadt, New Jersey, United States
Posted 9 days ago
Photo of the Rise User
Posted 12 days ago
MATCH
VIEW MATCH
FUNDING
DEPARTMENTS
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
March 31, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
Someone from OH, Maple Heights just viewed Digital Content Specialist at Okta
Photo of the Rise User
Someone from OH, Euclid just viewed Sales Group Manager at NielsenIQ
Photo of the Rise User
Someone from OH, Toledo just viewed Sales Administrator at Victors Home Solutions
Photo of the Rise User
Someone from OH, Beavercreek just viewed Marketing Manager - Springfield , OH at Konecranes
Photo of the Rise User
Someone from OH, Cincinnati just viewed GIS Analyst (PFT) (CUPE 29.25) at Norfolk County
Photo of the Rise User
Someone from OH, Columbus just viewed Accounting-Reporting Expert (Limited Contract) at ING
Photo of the Rise User
Someone from OH, Toledo just viewed Director of Revenue Cycle Management at Gather Health
Photo of the Rise User
39 people applied to REMOTE Sr Piping Designer at Kelly
Photo of the Rise User
6 people applied to LLM Engineer at Sonar
Photo of the Rise User
Someone from OH, Columbus just viewed Summer 2025 Communications Internship at BBYO
Photo of the Rise User
Someone from OH, West Chester just viewed National Sales Director, Legal Services at Dane Street, LLC
Photo of the Rise User
Someone from OH, Cincinnati just viewed Product Analyst - Crypto Product Team at Visa
C
Someone from OH, Columbus just viewed Intern- HR at Cadence
Photo of the Rise User
8 people applied to GIS Summer Intern at AECOM
Photo of the Rise User
Someone from OH, Dublin just viewed Senior Product Designer at Nextech
Photo of the Rise User
Someone from OH, Cincinnati just viewed Academy Administrative Associate at FC Cincinnati
Photo of the Rise User
Someone from OH, Cincinnati just viewed Partnership Consultant - Strategy & Analytics at Two Circles
Photo of the Rise User
Someone from OH, New Philadelphia just viewed Experienced Crown Stand-up Forklift Operator at Shearer's Foods
Photo of the Rise User
Someone from OH, Youngstown just viewed Story Apprentice at Skydance
Photo of the Rise User
Someone from OH, Columbus just viewed Talent Acquisition Specialist (Retail) at Mejuri
Photo of the Rise User
Someone from OH, Loveland just viewed Yard Coordinator at Maddox Industrial Transformer