Life Sciences IT and security consulting with regulatory and red-team focus
Ambit Iberia blends Life Sciences regulatory expertise with offensive security operations—a rare combination visible in their stack (Veeva Vault, ServiceNow, MITRE ATT&CK, Cobalt Strike) and active projects around red-team scenarios, EU commercialization prep, and AI agent development. Hiring is accelerating across security (8 roles) and engineering (12 roles), predominantly mid-to-senior level, concentrated in Spain and Portugal. The pain-point mix—OT security gaps, hybrid infrastructure detection, regulatory documentation—signals a company managing both compliance complexity and adversary simulation for Life Sciences clients.
Ambit Iberia, founded in 2003 and based in Barcelona, serves Life Sciences organizations on two fronts: digital transformation and IT security consulting. Their service portfolio spans regulatory affairs guidance (ISO 13485, ISO 9001), medical device and IVD compliance, system validation, infrastructure management, and ITSM implementation. The company operates in the 201–500-employee range and is now scaling with active hiring in security, engineering, and healthcare specialties. Their stack reflects dual expertise: Veeva Vault for Life Sciences data management, enterprise security tools (CrowdStrike, FortiEDR, Microsoft Defender), and offensive security platforms (Cobalt Strike) alongside cloud infrastructure (AWS, Azure) and automation (Ansible, Power Automate). Current work includes red-team operations, regulatory documentation for EU/US markets, and custom tooling for hybrid infrastructure defense.
Top tools include Microsoft Defender XDR, CrowdStrike, FortiEDR, Python, AWS, Azure, Veeva Vault, ServiceNow, Jira, and Cobalt Strike. They are adopting Power Platform and GitHub Copilot. Focus spans security operations, Life Sciences data management, and IT infrastructure.
Current projects include regulatory documentation prep for EU commercialization, red-team and white-team scenario design, detection mechanisms for hybrid infrastructures, attack development, AI agent integration with Veeva Vault, and custom C2 tooling for security testing.
Other companies in the same industry, closest in size