Staff Soc/csirt Engineer
il y a 7 jours
**We're making the world of digital assets accessible and secure for everyone. Join the mission.**
Founded in 2014, Ledger is the global platform for digital assets and Web3. Over 15% of the world’s crypto assets are secured through our Ledger Nanos. Headquartered in Paris and Vierzon, with offices in the UK, US, Switzerland and Singapore, Ledger has a team of more than 600 professionals developing a variety of products and services to enable individuals and companies to securely buy, store, swap, grow and manage crypto assets - including the Ledger hardware wallets line with more than 5 millions units already sold in 180 countries.
At Ledger, we embody the values that make us unique: Pragmatism, Audacity, Commitment, Trust, and Transparency. Have a look at our Origins video here.
Ledger is seeking a **Staff SOC/CSIRT Engineer **with extensive expertise in Security Operations Center (SOC) Level 3 activities. As part of Ledger's Security Operations Center (SecOps), you will join a dedicated team responsible for protecting company assets against cyber threats across cloud, corporate, and datacenter environments. The SecOps team's core mission encompasses threat anticipation, detection, and prevention throughout Ledger's infrastructure, operating independently from the Donjon team which handles product security.
This role focuses on advanced security operations, including the optimization of Sekoia (SIEM), SOAR processes, and the use of CTI and OSINT to enhance detection and response capabilities. As a key technical expert, you will handle complex incidents, optimize security toolsets, and lead proactive threat-hunting initiatives. This position is an individual contributor role designed for those with deep technical skills and a passion for elevating operational security excellence through comprehensive monitoring and incident management.
**The mission**:
- **SIEM & SOAR Optimization **:Design, optimize, and maintain Sekoia (SIEM) and associated SOAR workflows to ensure efficient threat detection, triage, and response processes. Develop advanced detection rules and automation workflows tailored to Ledger's threat landscape.
- **Threat Intelligence Integration **:Leverage CTI feeds and OSINT tools to enrich security operations, improving situational awareness and incident response effectiveness. Provide insights from threat intelligence to shape detection strategies and inform security posture improvements.
- **Incident Response & Forensics **:Lead technical investigations for high-priority incidents, performing root cause analysis and recommending mitigations to prevent recurrence. Use advanced forensic tools and techniques to analyze and respond to complex attacks.
- **Collaboration & Documentation **:Work closely with Engineering, Infrastructure, and Security Operations teams to align operational practices with organizational goals. Create detailed playbooks, detection rules, and technical runbooks to enhance team knowledge and response efficiency.
**What we're looking for**:
- 9+ years of experience in security operations, including SOC Level 3 activities and incident response.
- Expertise with Sekoia (or similar SIEM tools), SOAR platforms, and CTI/OSINT methodologies.
- Strong knowledge of AWS security, including IAM, VPC configurations, and cloud-native threat monitoring.
- Hands-on experience with tools such as Wiz, SentinelOne (EDR), and GitHub Actions for automation.
- Exceptional analytical and problem-solving skills, with the ability to handle complex security challenges.
- Excellent communication skills for conveying technical concepts to cross-functional teams.
**What's in it for you?**:
- **Equity**: Employees are the foundation of our success, and we award stock options so you can share in that success as we grow. Flexibility: A hybrid work policy.
- **Social**:Annual company outing for Ledgerdary Days, plus frequent social events, snacks and drinks
- **Medical**: Comprehensive health insurance policy offering extensive medical, dental and vision care coverage. Well-being: Personal development, coaching & fitness with our dedicated partners.
- **Vacation**:Five weeks of paid leave per year, in addition to national holidays and rest & relaxation (RTT) days.
- **High tech**: Access to high performance office equipment and gadgets, including Apple products.
- **Transport**: Ledger reimburses part of your preferred means of transportation.
- **Discounts**: Employee discount on all our products.
We are an equal opportunity employer for all without any distinction of gender, ethnicity, religion, sexual orientation, social status, disability or age.
- #LI-Hybrid #LI-RDH_
-
service delivery manager csirt
Il y a 17 minutes
Paris, Île-de-France CyberTee Temps pleinService Delivery Manager CSIRT ? CSOCMissions:Gérer le traitement quotidien des alertes de sécurité transmises au CSOC / CSIRTSuperviser les enquêtes liées aux alertes de sécuritéGarantir la bonne réception, la qualification et la catégorisation des alertesAppliquer les règles de priorisation et assurer la gestion du backlogVeiller à la qualité,...
-
Csirt/soc N2/n3
il y a 2 jours
Paris, France SYSTEMIS Temps plein**Pourquoi nous rejoindre ?**: Avec l’émergence de technologies pointues et face aux problèmes de plus en plus complexes de nos clients, nos métiers ont rapidement évolué et se sont transformés. Pour accompagner ce changement, nous sommes à la recherche de nouveaux talents. Afin de créer des équipes diversifiées, ouvertes et en quête...
-
Csirt Specialist
il y a 2 semaines
Paris, France Anderson RH Temps plein**Vous justifiez d'une expérience de 8 ans minimum à un poste de** **:CSIRT Specialist** **Au-delà de votre formation supérieure (Bac+5 ou équivalent dans le domaine de la cyber sécurité ou une discipline apparentée)** **Vous justifiez d'une expérience de 5 ans minimum à un poste de**: C**SIRT Specialist** **Vos principales missions**: 1**/...
-
Chef de projet CSIRT
Il y a 16 minutes
Paris, Île-de-France Lexfo Temps pleinLexfo, filiale du groupeForward Global, est un cabinet d'audit délivrant une expertise technique complète sur les sujets deCybersécurité. Avec une centaine de collaborateurs experts et passionnés à son bord,Lexfointervient auprès de nombreux clients afin d'assurer la détection et l'exploitation de vulnérabilités, la recherche de fuites de données,...
-
Chef de projet CSIRT
Il y a 26 minutes
Paris, Île-de-France Forward Global Temps pleinLexfo, filiale du groupeForward Global, est un cabinet d'audit délivrant une expertise technique complète sur les sujets deCybersécurité. Avec une centaine de collaborateurs experts et passionnés à son bord,Lexfointervient auprès de nombreux clients afin d'assurer la détection et l'exploitation de vulnérabilités, la recherche de fuites de données,...
-
Staff/Lead Frontend Engineer
Il y a 4 minutes
Paris, Île-de-France StrangeBee Temps pleinChez StrangeBee, tout est parti d'une équipe de cybersécurité déterminée, bâtissantTheHive, aujourd'hui devenu un outil de référence pour des milliers d'analystes.Nous sommes100 % bootstrappés. Intégrité, excellence, collectif, initiative et bienveillance sontnos piliers.Notre ambition ? Renforcer notre position de leader enréponse aux incidents,...
-
Staff Engineer
il y a 2 jours
Paris, France H Company Temps pleinJoin to apply for the Staff Engineer role at H Company About H: H exists to push the boundaries of superintelligence with agentic AI. By automating complex, multi-step tasks typically performed by humans, AI agents will help unlock full human potential. H is hiring the world’s best AI talent, seeking those who are dedicated as much to building safely and...
-
Security Engineer SOC
Il y a 26 minutes
Paris La Défense, France Thales Temps pleinLieu : Vélizy, FranceConstruisons ensemble un avenir de confianceThales est un leader mondial des hautes technologies spécialisé dans trois secteurs d'activité : Défense & Sécurité, Aéronautique & Spatial, et Cyber & Digital. Il développe des produits et solutions qui contribuent à un monde plus sûr, plus respectueux de l'environnement et plus...
-
Analyste SOC Niveau 2
il y a 2 semaines
Paris 15e, France SECURITY DATA NETWORK Temps pleinANALYSTE SOC NIVEAU 2 **MISSION** Vous assurerez la supervision du système d’information de l’organisation afin de détecter des activités suspectes ou malveillantes. Vous identifierez, catégoriserez, analyserez et qualifierez les évènements de sécurité en temps réel ou de manière asynchrone sur la base de rapports d’analyse sur les...
-
SOC Engineer – Remote-First
il y a 2 jours
Paris, France EPI Company Temps pleinJoin to apply for the SOC Engineer – Remote-First role at EPI Company In today’s digital world, payments often still feel outdated: random delays and confusing rules make it harder than it should be to pay and get paid. The European Payments Initiative (EPI) is here to change all that, forever. With Wero, our digital wallet, we make sending and receiving...