Senior DevSecOps Engineer
il y a 1 semaine
Job Description — Senior DevSecOps Engineer (Offensive Security Focus)Location: Hybrid (Paris) or Remote (France/Europe)Department: Cybersecurity / DevSecOpsSeniority: Senior / ExpertDuration: 1 year (renewable)Contract: Full-time (Freelance)About the roleWe’re looking for a Senior DevSecOps Engineer with a strong Offensive Security mindset to elevate our application security across the full SDLC. You’ll combine hands-on penetration testing skills with modern DevSecOps practices to find real-world risks, automate security controls, and help engineering teams ship secure software faster.You’ll work closely with developers, cloud/platform teams, and architects to integrate security into CI/CD, strengthen cloud-native workloads, and build a strong secure engineering culture.What you’ll doOffensive Security / Application SecurityPerform targeted penetration tests on web, API, mobile, and cloud-native applications.Conduct threat modeling and adversarial analysis on critical services.Identify, exploit, and validate vulnerabilities to assess real impact and exploitability.Perform secure code reviews (manual and tooling/AI-assisted).DevSecOps IntegrationImprove SAST, SCA, DAST, IaC, and container scanning in Azure DevOps pipelines (Snyk experience is a major plus).Automate security gates and enforce quality thresholds in CI/CD.Build custom security checks, scripts, and DevSecOps automations.Improve developer workflows by providing secure coding guidance and actionable fixes.Secure SDLC & Continuous HardeningRun security reviews for new applications and major releases.Support Security Champions and coach development teams.Participate in incident response and post-mortems for security issues.Collaborate with Cloud Security on posture management and remediation.Security Automation & AIDevelop or tune AI agents to support vulnerability analysis and remediation.Automate correlation of findings across tools (SAST/SCA/Cloud).Contribute to internal security dashboards and metrics (Power BI, API integrations).What we’re looking forRequired experienceStrong track record in application penetration testing (OWASP Top 10, API attacks, auth bypass, RCE, business logic flaws).Strong understanding of secure coding (C#, Java, JS/TS, Python, etc.).Familiarity with DAST tools plus manual exploitation techniques.Deep knowledge of authN/authZ (OAuth2, OIDC, JWT).Strong grasp of DevSecOps architecture and SDLC best practices.Hands-on experience with:Azure DevOps pipelinesAzure Cloud (App Services, Functions, IAM, Storage, Key Vault)Container security (Docker, Kubernetes basics)Snyk (SAST/SCA/IaC/Cloud) (highly valued)Tooling & frameworksBurp Suite, ZAP, Nmap, Postman, Metasploit, custom scripts.Threat modeling methods (MITRE ATT&CK, STRIDE).Source code review with or without tooling.Soft skillsAbility to challenge designs and architectures from an attacker’s POV.Clear communication with technical and non-technical stakeholders.Strong ownership, mentoring mindset, and leadership on security topics.Analytical thinking, problem-solving, pragmatism.Nice to haveCertifications (preferred, not required): OSWE / OSCP / OSEP / GWAPT, AZ-500 / AZ-400 or similar.Experience in large enterprise environments.Experience with AI-assisted AppSec tooling and workflows.Why join usHigh-impact role with real ownership over AppSec and DevSecOps practices.Modern cloud-native stack (Azure) and a strong focus on automation.Opportunity to blend offensive security with engineering enablement and AI-powered security.
-
Senior DevSecOps Engineer
il y a 2 semaines
France Neotrust Temps pleinJob Description — Senior DevSecOps Engineer (Offensive Security Focus)Location: Hybrid (Paris) or Remote (France/Europe)Department: Cybersecurity / DevSecOpsSeniority: Senior / ExpertDuration: 1 year (renewable)Contract: Full-time (Freelance)About the roleWe're looking for a Senior DevSecOps Engineer with a strong Offensive Security mindset to elevate our...
-
Senior DevSecOps Engineer – Kubernetes, CI/CD
il y a 1 semaine
France Thales Temps pleinUne entreprise technologique globale recherche un Ingénieur DevSecOps à La Ciotat pour rejoindre son Digital Hub. Le candidat idéal aura dix ans d'expérience avec GitlabCI/Jenkins et des compétences en Kubernetes et Docker. Ce poste implique le développement de pipelines CI/CD et la mise en œuvre de pratiques de sécurité dans un environnement...
-
Senior DevSecOps
il y a 1 semaine
France Pluxee Temps pleinUne entreprise leader en avantages employés recherche un expert en sécurité des systèmes d'information pour intégrer ses équipes. Vous serez responsable de sécuriser les projets applicatifs en garantissant que les exigences de sécurité sont intégrées dès le développement. Vous travaillerez dans un environnement hybride et collaborerez avec...
-
DevSecOps Engineer confirmé
il y a 1 semaine
France Thales Temps pleinLieu : La Ciotat, France Construisons ensemble un avenir de confiance Thales est un leader mondial des hautes technologies spécialisé dans trois secteurs d'activité : Défense & Sécurité, Aéronautique & Spatial, et Cyber & Digital. Il développe des produits et solutions qui contribuent à un monde plus sûr, plus respectueux de l'environnement et plus...
-
Senior Front-End Engineer
il y a 1 semaine
France Qovery Temps pleinJoin to apply for the Senior Front-End Engineer role at Qovery. Base pay range We provide the DevOps automation platform built to empower developers. From cloud infrastructure provisioning to production deployment, Qovery streamlines every step, enabling faster delivery, simplified workflows, and significant time savings. 🤩 Why your role is important As...
-
Cloud DevSecOps Engineer H/F
il y a 1 semaine
square Max Hymans - Ile-de-France, Paris MGEN Temps pleinMGEN Connaissez-vous MGEN ?• Un employeur de l'ESS qui réconcilie éthique et économie, solidarité et performance • Un acteur majeur en santé et prévoyance avec plus de 4 millions de personnes protégées • salariés et 250 métiers diversifiés (assurance, soins, fonctions support, IT…) • Une implantation nationale forte avec plus de 200...
-
Senior Cost Engineer
il y a 3 jours
France nLighten Temps pleinA propos de l'offreProfil de l'entreprisenLighten est une plateforme européenne de centres de données distribués en périphérie, conçue pour répondre à la demande croissante en matière d'IA, de 5G et de déploiements de cloud hybride. En tant que fournisseur en pleine expansion, nous proposons des hubs de colocation évolutifs et les meilleures...
-
Senior Test Development engineer
il y a 1 semaine
France Chipright Temps pleinSenior Test Development EngineerChipright seeks a highly motivated and experienced test development engineer to validate our French customer's latest design. Working on new product test development of power controller devices you will have the opportunity to research the technical requirements, validate product performance characteristics, and develop test...
-
Senior Data Engineer
il y a 1 semaine
Boulevard Bessières, Paris, France École 42 Temps plein42 révolutionne l'enseignement de l'informatique avec une approche pédagogique innovante basée sur l'apprentissage par les pairs. Présente dans 50+ campus internationaux, 42 forme plus de étudiant·e·s aux défis technologiques de demain.Contexte du posteSuite au succès du programme 42 Next, notre Modern Data Stack (Dagster + dltHub + dbt + BigQuery +...
-
Senior Fullstack Engineer
il y a 3 jours
France Onfido Temps pleinOverviewOnfido is the new identity standard for the internet. We empower people around the globe to access services they love and need — simply, speedily and safely. We provide a full-service suite of AI-powered identity verification solutions with fairness and inclusiveness at their core. We have received multiple awards for accessibility, innovation and...