Technical Security Referent Engineer F/M
Il y a 2 jours
Brezolles, Centre-Val de Loire, France
Betclic
Temps plein
Gratuit avec email ou Google
Enregistrez cette offre et organisez votre recherche
Créez un compte gratuit pour enregistrer des offres d'emploi, créer des alertes et revenir à cette liste depuis votre tableau de bord.
Gratuit avec email ou Google
WE ARE BETCLIC ðBetclic, European leader in sports betting, is much more than just an online gaming site Also offering Poker, Horse Racing, and Casino games across various countries and continents, it is an inspiring and forward-thinking company: every day brings new challenges in a modern and dynamic environment.
Les qualifications, les compétences et toute l'expérience pertinente nécessaires pour ce poste se trouvent dans la description complète ci-dessous.
As an influential player in the tech industry, with strong and sustained growth over the years, we believe in innovation through diversity and inclusion and encourage everyone to reach their full potential.
With our multicultural team, we provide an optimal, safe and responsible gaming experience, powered by cutting-edge technology.
WHY JOIN US? ðAt Betclic, success comes from passionate and committed teams.
Here’s why you’ll love working with us: ðAn international and creative environment where every project is an opportunity to innovate ðHypergrowth that brings new challenges and development opportunities every day ðA healthy work-life balance: flexible remote work and workplace well-being are essential pillars for us.
ðA unique and friendly atmosphere, with 1,600 employees across 5 countries and our headquarters in Bordeaux Are you passionate about sports and tech? Join us and help shape the future of online gaming ENTER THE GAMEðAs a member of the Cybersecurity Referents team, you will join the Global Security teams to strengthen the security of Betclic’s authentication and payment ecosystems.
You will act as a key security partner for Product, Engineering, Fraud, and Compliance teams, ensuring that security is embedded into critical user journeys while maintaining the right balance between user experience, business performance, and security requirements.
Your scope will focus on securing authentication mechanisms, account management processes, and payment flows across Betclic platforms in a fast-paced and highly innovative environment.
YOUR ROLE WITHIN BETCLICðIn this role, your main missions will be:Conduct security risk assessments for authentication and payment-related projects in an agile environmentIdentify threats, vulnerabilities, and fraud scenarios impacting critical user journeys such as login, account management, and payment flowsSupport Product and Engineering teams in designing secure authentication and payment mechanisms (MFA, passwordless authentication, SSO, wallet and checkout security)Participate in product roadmap and architecture discussions to define security requirements early in the design phaseCollaborate closely with Product, Engineering, Fraud, Compliance, and Architecture teams to promote security-by-design principlesProvide security guidance through threat modeling, secure design reviews, and remediation recommendationsContribute to the implementation of security controls related to authentication, session security, fraud prevention, encryption, and secrets managementSecure integrations with Payment Service Providers (PSP) and support compliance initiatives such as PCI-DSSPromote DevSecOps practices and support the integration of security controls into CI/CD pipelinesContribute to the continuous improvement of Betclic’s security standards, tooling, and cloud security postureTECHNICAL ENVIRONMENT ð»Authentication & Identity: MFA, OAuth2, OIDC, SSO, IAMPayment Security: PSP integrations, PCI-DSS, tokenization, fraud preventionApplication Security: Web & API security, OWASP Top 10Security Practices: Threat modeling, secure code review, DevSecOps, security-by-designCloud & Architecture: AWS, Azure, microservices, APIsSecurity Tooling: SAST, DAST, SCA, IaC scanningWHO ARE WE LOOKING FOR?ðWe are looking for passionate and curious professionals who bring kindness and a touch of enthusiasm This job is for you if: You have at least 5 years of experience in cybersecurity, application security, authentication, or payment securityYou have strong knowledge of authentication and identity technologies (MFA, OAuth2, OIDC, SSO, IAM)You have experience securing payment ecosystems and understanding fraud prevention and PCI-DSS requirementsYou are comfortable with web and API security best practices in modern cloud environments (AWS, Azure, microservices)You can perform pragmatic risk analysis while balancing security, user experience, and business needsYou enjoy working closely with Product, Engineering, Fraud, and Compliance teams in a transversal environmentYou are proactive, pragmatic, and solution-orientedYou possess strong communication skills in both technical and business contextsYou are fluent in EnglishWHAT ARE THE RECRUITMENT STEPS?ðIf your application is shortlisted, Sebastien or Maxime will contact you within a week for an initial HR screening (30 minutes).
Then, you will complete the AssessFirst test (personality, motivation and cognitive reasoning).
Next, you will mee
Les qualifications, les compétences et toute l'expérience pertinente nécessaires pour ce poste se trouvent dans la description complète ci-dessous.
As an influential player in the tech industry, with strong and sustained growth over the years, we believe in innovation through diversity and inclusion and encourage everyone to reach their full potential.
With our multicultural team, we provide an optimal, safe and responsible gaming experience, powered by cutting-edge technology.
WHY JOIN US? ðAt Betclic, success comes from passionate and committed teams.
Here’s why you’ll love working with us: ðAn international and creative environment where every project is an opportunity to innovate ðHypergrowth that brings new challenges and development opportunities every day ðA healthy work-life balance: flexible remote work and workplace well-being are essential pillars for us.
ðA unique and friendly atmosphere, with 1,600 employees across 5 countries and our headquarters in Bordeaux Are you passionate about sports and tech? Join us and help shape the future of online gaming ENTER THE GAMEðAs a member of the Cybersecurity Referents team, you will join the Global Security teams to strengthen the security of Betclic’s authentication and payment ecosystems.
You will act as a key security partner for Product, Engineering, Fraud, and Compliance teams, ensuring that security is embedded into critical user journeys while maintaining the right balance between user experience, business performance, and security requirements.
Your scope will focus on securing authentication mechanisms, account management processes, and payment flows across Betclic platforms in a fast-paced and highly innovative environment.
YOUR ROLE WITHIN BETCLICðIn this role, your main missions will be:Conduct security risk assessments for authentication and payment-related projects in an agile environmentIdentify threats, vulnerabilities, and fraud scenarios impacting critical user journeys such as login, account management, and payment flowsSupport Product and Engineering teams in designing secure authentication and payment mechanisms (MFA, passwordless authentication, SSO, wallet and checkout security)Participate in product roadmap and architecture discussions to define security requirements early in the design phaseCollaborate closely with Product, Engineering, Fraud, Compliance, and Architecture teams to promote security-by-design principlesProvide security guidance through threat modeling, secure design reviews, and remediation recommendationsContribute to the implementation of security controls related to authentication, session security, fraud prevention, encryption, and secrets managementSecure integrations with Payment Service Providers (PSP) and support compliance initiatives such as PCI-DSSPromote DevSecOps practices and support the integration of security controls into CI/CD pipelinesContribute to the continuous improvement of Betclic’s security standards, tooling, and cloud security postureTECHNICAL ENVIRONMENT ð»Authentication & Identity: MFA, OAuth2, OIDC, SSO, IAMPayment Security: PSP integrations, PCI-DSS, tokenization, fraud preventionApplication Security: Web & API security, OWASP Top 10Security Practices: Threat modeling, secure code review, DevSecOps, security-by-designCloud & Architecture: AWS, Azure, microservices, APIsSecurity Tooling: SAST, DAST, SCA, IaC scanningWHO ARE WE LOOKING FOR?ðWe are looking for passionate and curious professionals who bring kindness and a touch of enthusiasm This job is for you if: You have at least 5 years of experience in cybersecurity, application security, authentication, or payment securityYou have strong knowledge of authentication and identity technologies (MFA, OAuth2, OIDC, SSO, IAM)You have experience securing payment ecosystems and understanding fraud prevention and PCI-DSS requirementsYou are comfortable with web and API security best practices in modern cloud environments (AWS, Azure, microservices)You can perform pragmatic risk analysis while balancing security, user experience, and business needsYou enjoy working closely with Product, Engineering, Fraud, and Compliance teams in a transversal environmentYou are proactive, pragmatic, and solution-orientedYou possess strong communication skills in both technical and business contextsYou are fluent in EnglishWHAT ARE THE RECRUITMENT STEPS?ðIf your application is shortlisted, Sebastien or Maxime will contact you within a week for an initial HR screening (30 minutes).
Then, you will complete the AssessFirst test (personality, motivation and cognitive reasoning).
Next, you will mee