Technical Security Expert
il y a 2 jours
Why Spendesk?
At Spendesk, we're building the leading spend management platform for modern businesses, processing billions of euros across Europe and beyond.
Security is at the heart of what we do
: our customers trust us to safeguard their financial data, and we're committed to raising the bar for security in fintech. Join us at a pivotal moment as we scale our platform and expand our capabilities
Your Mission
As a
Technical Security Expert
, you'll have a direct impact on the security posture of one of Europe's fastest-growing fintechs. You'll work hand-in-hand with product and engineering teams to embed security into everything we build. You'll combine hands-on technical work with knowledge sharing, helping us stay ahead of threats in a constantly evolving landscape.
Key Responsibilities
Champion security-by-design:
Advise and collaborate with development and infrastructure teams to embed security best practices from the start of every project.
Lead Technical Security Reviews
- Conduct in-depth code reviews (TypeScript, , Python) to uncover and remediate vulnerabilities.
- Analyze third-party libraries and dependencies, including reverse engineering when needed.
- Review Infrastructure-as-Code (Terraform) and multi-tenant AWS setups.
Drive Security Audits & Testing
- Plan and execute penetration tests and intrusion campaigns on systems, applications, and internal tools (CI/CD, authentication, etc.).
- Propose actionable remediation strategies to strengthen our defenses.
Own Security Monitoring
- Oversee and maintain our SIEM (ElasticSearch, multi-node Linux).
- Develop automation tools and scripts for proactive threat detection and incident response.
Shape security culture:
Help update policies and procedures, and raise awareness across teams through coaching, workshops, and communication.
Stay ahead of threats:
Monitor emerging vulnerabilities and attack techniques, and recommend adaptive defense strategies.
Must-haves
What we're looking for
- Extensive technical experience in information security (typically 8+ years), with hands-on expertise in at least two of the following: code auditing ), infrastructure security (AWS/Linux/Terraform), penetration testing, or SIEM management.
- Deep understanding of secure development practices and modern web architectures (microservices, cloud/PaaS/SaaS).
- Strong scripting ability (Python, Bash, etc.).
- Experience with ElasticSearch in production environments.
- Excellent communication and collaboration skills; ability to explain complex security concepts to diverse audiences.
- Fluent English.
Nice-to-haves
- Experience with reverse engineering and analysis of minified/obfuscated code.
- Knowledge of security standards (ISO 27001, OWASP, etc.).
- Experience with GCP, Datadog, or Snowflake.
French language skills.
As we are an international team, please submit your application and CV in English.
About Spendesk
Spendesk is the AI-powered spend management and procurement platform that transforms company spending. By simplifying procurement, payment cards, expense management, invoice processing, and accounting automation, Spendesk sets the new standard for spending at work. Its single, intelligent solution makes efficient spending easy for employees and gives finance leaders the full visibility and control they need across all company spend, even in multi-entity structures. Trusted by thousands of companies, Spendesk supports over 200,000 users across brands such as SoundCloud, Gousto, SumUp, and Bloom & Wild. With offices in the United Kingdom, France, Spain and Germany, Spendesk also puts community at the heart of its mission.
For more information:
About Our People & Culture
We believe that people do their best work when they're given the freedom to thrive and grow. That's why liberation is at the core of everything we do. We empower Spendeskers to take ownership of their work, to navigate ambiguity, and seize every opportunity. Spendeskers come from all over the world (35+ countries and counting) but we have plenty in common: we're bold, ever-curious, committed to kindness, and tackle every challenge with a positive mindset.
About Our Benefits
Our culture is built on trust, empowerment, and growth — with benefits to match
- Flexible on-site and remote policy
- Lunch 60% funded by Spendesk (Swile Card)
- Alan Premium health insurance
- A Gymlib pass to let off steam after a productive day at work
- Access to for emotional and mental health wellbeing
- Latest Apple equipment
- Great office snacks to fuel your day
- A positive team to work with daily
*Diversity & Inclusion*
At Spendesk, we're committed to fostering an environment where all differences are encouraged, supported and celebrated. We're building our culture for everyone, with everyone. Our goal is to attract and build a diverse, equal and inclusive team, where everyone feels welcome and we truly embrace and encourage people from all backgrounds to apply.
Spendesk is Europe's leading AI-powered spend management and procurement platform that transforms company spending. By simplifying procurement, payment cards, expense management, invoice processing, and accounting automation, Spendesk sets the new standard for spending at work for companies with up to 1,000 employees.
Trusted by thousands of companies, Spendesk supports over 200,000 users across brands such as SoundCloud, Pigment, and Bloom & Wild. With offices in the United Kingdom, France, Spain, and Germany, Spendesk also puts community at the heart of its mission with CFO Connect. Spendesk believes that people do their best work when they're given the freedom to thrive and grow. Being bold, bringing a positive attitude, and taking full ownership are fundamental to their culture.
Ready to grow further? Check out their open roles
-
Security Expert
il y a 1 semaine
Paris, Île-de-France un emploi de Security Expert Temps pleinNotre équipe Cyber-sécurité recherche un·e Security Engineer Senior basé·e à Lille ou Paris.L'équipe Cybersécurité Decathlon assure la protection et la sécurisation de l'ensemble du groupe : elle pilote la stratégie de gouvernance et les processus de gestion du risque, s'assure de la conformité de nos systèmes d'information, définit les moyens...
-
Email security Expert
il y a 1 semaine
Paris, Île-de-France AXA Group Operations Temps pleinAbout AXAAs a world-leading insurance company, we act for human progress by protecting what matters. With 153,000 employees in 54 countries working for 105 million customers, we've created a truly dynamic and vibrant community. Inclusion and diversity link closely with our values, and together we're nurturing a culture of respect, for each other, for our...
-
Security Engineer
il y a 3 jours
Paris, Île-de-France Shift Technology Temps pleinShift is the leading AI platform for insurance. Shift combines generative, agentic, and predictive AI to transform underwriting, claims, and fraud and risk - driving operational efficiency, exceptional customer experiences and measurable business impact. Trusted by the world's leading insurers, Shift delivers AI when and where it matters most, at scale...
-
Technical Curriculum Developer
il y a 1 semaine
Paris, Île-de-France Datadog Temps pleinAs a Senior Technical Curriculum Developer, you will join our Customer Education & Training team to help us deliver exceptional cloud engineering content to our customers, including the Datadog Learning Center, workshops, and certification exams. Working closely with our engineering, product, and customer success teams, you will work hands-on with the...
-
Security Engineer, Email Security
il y a 2 jours
Paris, Île-de-France Check Point Software Temps pleinWhy Join Us?Join the forefront of the Cyber Security battle at Check Point, where our dynamic team stands united against the most sophisticated threats. As a Security Engineer, you'll be at the heart of our mission, contributing your expertise to protect organizations and individuals from cyber threats. We're a global hub of motivated, creative minds...
-
Senior Security Architect
il y a 1 semaine
Paris, Île-de-France Shift Technology Temps pleinShift is the leading AI platform for insurance. Shift combines generative, agentic, and predictive AI to transform underwriting, claims, and fraud and risk - driving operational efficiency, exceptional customer experiences and measurable business impact. Trusted by the world's leading insurers, Shift delivers AI when and where it matters most, at scale...
-
Senior Security
il y a 1 semaine
Paris, Île-de-France Criteo Temps pleinWhat You'll Do:Joining the Trust & Compliance team means stepping into the engine room of security strategy at a fast-moving tech company.A front-row seat to how security drives innovation in a data and AI-driven company.A strong cross-functional culture: you'll work with security engineers, architects, product managers, legal, compliance, and ops.A real...
-
Network & Messaging Security Expert
il y a 1 semaine
Paris, Île-de-France AXA Group Operations Temps pleinAbout AXAAs a world-leading insurance company, we act for human progress by protecting what matters. With 153,000 employees in 54 countries working for 105 million customers, we've created a truly dynamic and vibrant community. Inclusion and diversity link closely with our values, and together we're nurturing a culture of respect, for each other, for our...
-
Telecom Cyber Security Architect
il y a 1 semaine
Paris, Île-de-France Capgemini Temps pleinJob Description With over 6,000 cyber security consultants within the Capgemini Group, including more than 1,000 consultants in France, and leveraging over 30 years of proven expertise in cybersecurity (IT, Embedded, Industrial, and Telecom), Capgemini positions itself as an active player in the cyber security market. The Cybersecurity practice within...
-
Security Expert Ping Identity
il y a 1 semaine
Paris, Île-de-France Hanson Regan Limited Temps pleinHanson Regan recherche un Security Expert Ping Identity pour un contrat de 6 mois basé à distanceNous recherchons un nouveau talent pour rejoindre l'équipe de sécurité.Responsabilités :Expert Ping Identity, vous concevez et exploitez les solutions Ping Identity (PingFederate, PingAccess, PingID) pour sécuriser les accès via SSO, fédération et MFA....