Lead Security Engineer
il y a 2 jours
About Nabla We are a team of entrepreneurs, clinicians and engineers committed to bringing back joy to the practice of medicine. Together with a community of clinician innovators, we've harnessed the best of machine learning science to develop Nabla: the leading AI assistant that's restoring the human connection at the heart of healthcare. By streamlining clinical documentation, Nabla is helping clinicians focus on matters most—patient care. Today, over 85,000 clinicians across 130+ healthcare organizations trust Nabla to support how they deliver care every day. We're at the start of an ambitious journey: Ambient listening, dictation, coding, and command capabilities are all converging into a proactive assistant that intuitively streamlines clinical and financial workflows. Backed by a recent $70M Series C, we're hiring to build the next generation of clinical AI and improve the lives of clinicians and patients everywhere. This is a great time to join us The best of AI at the service of healthcare Nabla's phenomenal traction is the result of 3 years of diligent product development. Led by former Meta AI Research engineers, our team has consistently anticipated how AI can revolutionize healthcare delivery. Our Machine Learning team continually leverages the latest advancements to unlock AI's full potential in healthcare. Yann LeCun, Meta's Chief AI Scientist and Turing award winner, is an advisor to Nabla. Engineering at Nabla Engineering at Nabla is lean, fast-moving, and deeply technical. Our teams span machine learning, native desktop applications, and platform infrastructure to deliver AI into clinical settings reliably and at scale. We are looking for a hands‑on lead security engineer to own the technical side of our security program. You'll partner with our Head of Information Security and Head of IT to build and operate a best‑in‑class infrastructure and application security function. Our SaaS is fully hosted on Google Cloud and handles highly sensitive healthcare data, so security is core to everything we do. This role is ideal for a senior security engineer or manager who wants to take ownership, and build a security engineering function from the ground up in a fast‑scaling startup environment. Your Team You will report to the CTO and work closely with the Head of Security, Engineering Managers, and Operations. This is a high‑trust, high‑ownership role with broad cross‑functional exposure. What You'll Do Infrastructure Security Harden our Google Cloud infrastructure (network, firewalls, proxies, IAM policies, service controls) Deploy and manage web application firewalls, DDoS protection, intrusion detection / prevention systems Ensure security architecture aligns with healthcare compliance requirements (HIPAA, SOC 2, ISO 27001, GDPR) Assess and mitigate security risks related to AI workflows and sensitive data processing pipelines Application Security Define and enforce authentication & authorization strategies for customer‑facing applications (OAuth, SAML/SCIM support, least privilege) in collaboration with IT for internal identity and SSO management Integrate security into the SDLC: SAST, DAST, dependency scanning, IaC scanning, container scanning, and CI/CD pipeline hardening Conduct threat modeling and security reviews for new features and system designs Establish and maintain secure coding guidelines Monitor vulnerabilities and track remediation External Partnerships Support relationships with pentesting firms, security assessors, and red‑teaming partners Operate vulnerability disclosure and bug bounty programs Support incident response including forensic analysis Security Operations (SecOps) Select, deploy, and manage security tools (SIEM, SOAR, log aggregation) to efficiently detect, investigate, and respond to threats, in collaboration with IT for endpoint protection (EDR/MDM). Build incident detection and response playbooks and continuously improve response capabilities Monitor and triage security alerts, collaborating with engineering and IT on incident resolution Data Protection Ensure encryption at rest and in transit with secure key management (KMS, HSM) Implement data minimization, tokenization, and pseudonymization strategies where appropriate Maintain detailed audit trails and logging for sensitive data access, and implement data loss prevention (DLP) controls where applicable, in line with HIPAA/GDPR requirements Cross‑functional Collaboration & Culture Partner with the Head of Information Security (compliance & governance) to align technical controls with SOC 2, ISO 27001, HIPAA, and GDPR requirements Work with the Head of IT on endpoint security, vendor security, and access management Foster a culture of secure development, running workshops and sharing best practices with engineering teams Your DNA 6‑10+ years in security engineering roles (infrastructure, application, or cloud security) Hands‑on experience with Google Cloud security stack (IAM, VPC, Shielded VMs, Cloud Armor, etc.) Proven track record deploying and managing modern security tools (EDR, SIEM, IDS/IPS, WAF) Strong understanding of modern web application security (authN/authZ, OWASP Top 10, CSP, API security) Experience with secure SDLC practices (CI/CD pipeline scanning, SAST, DAST, IaC security) Excellent communicator able to work cross‑functionally with engineering, compliance, and IT Bonus: experience in regulated industries (healthcare, fintech, govtech) Why Join Us Security is mission‑critical - you'll have executive sponsorship and direct CTO partnership Opportunity to build and shape the security engineering function from scratch Work on meaningful challenges in healthcare, where protecting data is protecting lives Where you'll be based Our offices are based in Paris 3e (Arts & Métiers). Remote policy: Hybrid. Working Language: English. Benefits Stock ownership 100% healthcare coverage Meal vouchers Public transportation costs covered at 50% Exercise class during the workday: Yoga, running, pilates, HIIT Unlimited budget for book purchases, so you can continue to learn about IT, security, and leadership Culture of trust & accountability - your output matters more than your clock‑in time Life at Nabla When you become a part of our company, you join a team of excellence‑driven, curious, and genuinely kind individuals. Together, we're committed to making clinicians' lives easier and improving healthcare experiences for everyone. We believe in a world where clinicians can focus #J-18808-Ljbffr
-
Senior Security Engineer, Healthcare Cloud
il y a 2 jours
France Nabla Technologies Temps pleinA leading healthcare technology company is seeking a hands-on lead security engineer to develop and manage their security engineering function. This role involves collaborating closely with the Head of Security and IT to ensure robust infrastructure and application security within a fast-scaling startup environment. Candidates should have extensive...
-
Lead App Security Engineer
il y a 2 jours
France BetterHelp Temps pleinA leading mental health service is looking for an Application Security Engineer to enhance their Application Security Team. The role involves leading security initiatives, performing code reviews, and collaborating with various teams to ensure optimal security practices. Candidates should have strong technical abilities, experience with security tools like...
-
Staff Product Security Engineer – Build
il y a 2 jours
France Dashlane Temps pleinA leading password management company is seeking a Staff Product Security Engineer to enhance security practices across products. Based in Paris, you'll drive improvements in security programs and collaborate across teams to integrate best practices. The role involves conducting risk assessments and designing security features while supporting a hybrid...
-
Security Engineer, Applications
il y a 2 jours
France BetterHelp Temps pleinBetterHelp is on a mission to remove the traditional barriers to therapy and make mental health care more accessible to everyone. Founded in 2013, we are now the world’s largest online therapy service, providing affordable and convenient therapy in across the globe. Our network of over 30,000 licensed therapists has helped millions of people take ownership...
-
Software Security Engineer
il y a 2 jours
France Aniconsultingservices Temps pleinJob briefWe are looking for a skilled Security Engineer to analyze software designs and implementations from a security perspective, and identify and resolve security issues. You will include the appropriate security analysis, defences and countermeasures at each phase of the software development lifecycle, to result in robust and reliable...
-
IT Security Engineer
il y a 2 jours
France Dataiku Temps pleinDataiku is The Universal AI Platform™, giving organizations control over their AI talent, processes, and technologies to unleash the creation of analytics, models, and agents. Providing no-, low-, and full-code capabilities, Dataiku meets teams where they are today, allowing them to begin building with AI using their existing skills and knowledge. Position...
-
Senior Security Engineer France
il y a 1 semaine
france Chronos Consulting Temps pleinJob Description Our client is a world-renowned US startup in the field of automation. This California unicorn is still a private enterprise experiencing hypergrowth. They are looking for an exceptional Senior Security Engineer to join their team as they build their defensive security capabilities. This is a full-time, permanent role. Hybrid or Remote....
-
Senior Security Engineer
il y a 2 jours
France Teads Temps pleinAbout Teads Teads is the omnichannel outcomes platform for the open internet, driving full-funnel results for marketers across premium media. With a focus on meaningful business outcomes for branding and performance objectives, the combined company ensures value is driven with every media dollar by leveraging predictive AI technology to connect quality...
-
Lead Mobile Engineer
il y a 2 semaines
France Poiema Consult Limited Temps plein**Lead Mobile Engineer - Wallet Infrastructure** Remote (US or EU-based, EST preferred, France ideal) | Full-Time | $140K-220K + Equity | 8+ Years Experience About the Role Join a team of blockchain, cryptography, and infrastructure experts building the backbone of wallet infrastructure for the next financial era. We’re hiring a Lead Mobile Engineer to...
-
Enterprise IT Security Engineer
il y a 2 jours
France Datadog Temps pleinThe Enterprise Technology IT Security team is internally focused with the mission of securing the endpoints, applications, infrastructure, services and networks that Datadog employees rely on on a daily basis. This includes thousands of devices running macOS, Windows, and Linux, as well as SaaS services like Google Workspace and Slack. As an IT Security...