Senior Cloud Security Engineer
il y a 7 heures
Job title: Senior Cloud Security Engineer
Location: Paris
About Ledger
We're a team of experts pushing the limits of what's possible, united by our common goal to unlock true freedom through digital ownership, making technology accessible for all. We believe in a world where users, creators and enterprises manage their value with ownership and freedom. Our curiosity drives us to innovate, empowering individuals on a global scale. We believe change is constant and our team moves forward as one, with a culture of problem-solving where every employee is empowered and supported to challenge tradition and create solutions. Our mission is simple: to make self-custody accessible and give people the keys to their own financial futures. If you want to make a true impact, we want you to join us at Ledger.
At Ledger, we're proud to be the global platform for digital assets and Web3, with over 20% of the world's crypto assets secured through our Ledger devices. With our headquarters in Paris, and offices in Vierzon, Grenoble, Montpellier, London, Portland, Geneva, Zurich and Central Singapore, we have a team of around 600 professionals developing a variety of products and services to enable individuals and companies to securely buy, store, swap, grow and manage crypto assets – including the Ledger hardware wallets line with more than 7.5 millions units already sold in 200 countries.
The team: You will join Ledger's Cyber Security team as a senior hands-on security engineer focused on Infrastructure & Corporate Security.
What you'll be doing:
Your mission is to raise the security baseline of Ledger's cloud and corporate platforms by defining pragmatic security guidelines for Infrastructure teams, designing and implementing secure-by-default architectures, and delivering automation that makes security continuous (CI/CD, IaC, detection, hardening, and guardrails).
Ledger operates at the forefront of Web3 and hardware wallet security. We are looking for a highly technical, autonomous, and impact-driven engineer who can operate in a fast-moving environment, influence technical decisions, and become a trusted reference across teams on infrastructure and corporate security topics.
Be the go-to security partner for Infrastructure & Corporate platforms (e.g., AWS, Kubernetes/EKS, Terraform/IaC, networking, identity, endpoints, Google Workspace), providing clear standards, patterns, and design guidance.
Embed security into delivery by partnering with Infrastructure, Engineering, and Product Security (Donjon) to drive early detection and mitigation of vulnerabilities (shift-left + runtime controls).
Design and implement secure architectures: threat modeling, security reviews, risk assessments, and security sign-off for infrastructure and platform changes.
Build security automation and tooling:
Integrate security checks into CI/CD (SAST, SCA, secrets scanning, IaC scanning, container/image scanning, policy-as-code).
Enable continuous compliance and evidence collection where relevant (e.g., SOC2-oriented controls).
Lead proactive security practices: vulnerability assessments, penetration testing (when relevant), Kubernetes and cloud posture reviews, and IaC code reviews with actionable remediation.
Drive hardening and guardrails: secure configuration baselines, identity and access controls (least privilege), network segmentation, secrets management, logging/monitoring requirements, and standardized platform patterns.
Support incident readiness and response for infra/corporate security events: detection coverage, triage playbooks, and post-incident improvements in collaboration with the Security Operation Team.
Continuously evaluate and introduce security solutions to address gaps, with a focus on operational simplicity and measurable risk reduction.
What we're looking for:
10+ years of experience in information security, including a strong focus on infrastructure, cloud, and/or platform security.
6+ years of hands-on experience in DevSecOps, automation, and cloud-native security (CI/CD, IaC, containers/Kubernetes).
Strong technical proficiency with:
Linux/Unix, Git, scripting (Python preferred)
Terraform / Infrastructure-as-Code
Kubernetes (ideally EKS) and container security
AWS architectures and security controls (IAM, networking, logging, key management, posture management)
CI/CD systems and engineering workflows (GitHub/GitLab, etc.)
Proven ability to define standards and influence engineering decisions across teams (guidelines, reference architectures, secure patterns).
Solid experience deploying and operating security tooling (scanners, policy engines, detection/monitoring, vulnerability management), and working with incident response processes.
Excellent written and verbal communication skills, able to produce clear technical guidance and drive alignment across stakeholders.
Comfortable operating autonomously, handling ambiguity, and staying effective under pressure.
At Ledger, we are dedicated to continually investing in our employees which is why we offer more than just salaries; we provide comprehensive compensation packages that include a wide range of benefits. Here are some of the benefits you can look forward to:
Flexible work options - Our hybrid policy allows employees to work from home up to 3 times per week
Health & Wellness support - Health and Life Insurance.
Financial growth opportunities - Employees can become shareholders in Ledger as well as other financial benefits depending on your country of work.
Commuter allowance - Ledger offers a commuter allowance to contribute to your preferred means of transportation.
Learning & Development - A comprehensive suite of training solutions providing a personalised learning experience for every employee.
For regionally specific benefits, your Talent Acquisition contact will be able to provide you with more information.
We're committed to building an inclusive hiring process. If you need any adjustments or accommodations, just let us know, we'll do our best to support you.
-
Senior/Lead Security Engineer
il y a 7 heures
Paris, Île-de-France Mimica Temps pleinWhat we are buildingMimica's mission is to empower enterprises, teams, and individuals to reclaim their most precious resource — time and work more efficiently, with greater purpose and impact.Our AI-powered task mining observes employee actions across the desktop and categorizes them into detailed process maps. Mimica's process intelligence highlights...
-
Senior Security Engineer, Security Incident Response Team
il y a 7 heures
Paris, Île-de-France Datadog Temps pleinThe Security Incident Response Team (SIRT) plays a vital role in keeping Datadog safe from cybersecurity threats, defending the organization against threat actors, and maintaining the trust of our customers by ensuring their data remains protected. In this role, you will work closely with teams across Datadog to identify, triage, and respond to a wide range...
-
Senior Cloud DevOps Engineer Azure
il y a 7 heures
Paris, Île-de-France Collective Temps pleinPour répondre a la demande d'un client dans le cadre de projets Cloud Azure à forte complexité, nous recherchons un Senior Cloud DevOps Engineer Azure.Paris / Lyon -Mission de 12 moisCompétences essentielles :Expertise Microsoft Azure (IaaS / PaaS / sécurité)Infrastructure as Code (Terraform / Bicep)CI/CD (Azure DevOps, GitHub Actions ou...
-
Senior Cloud Engineer GCP
il y a 1 semaine
Paris, Île-de-France Warren Walter Temps pleinNous recherchons un profil sénior Cloud Engineer GCP pour accompagner l'un de nos clients industriels.La mission principale est de rationaliser le catalogue de produits techniques et fournir des services "clé en main" aux équipes IT pour qu'elles se concentrent sur le développement de features à forte valeur ajoutée.La mission est de longue durée (...
-
Cloud Engineer
il y a 7 heures
Paris, Île-de-France Qantev Temps pleinAbout QantevQantev is the most advanced AI Platform dedicated to helping health insurers deliver superior healthcare and claims experience to their members. By leveraging insurers' historical health claims data and applying advanced Machine Learning techniques and Generative AI, Qantev predicts patient journeys, optimizes healthcare outcomes and streamlines...
-
Lead Security Engineer
il y a 7 heures
Paris, Île-de-France Nabla Temps pleinAbout NablaWe are a team of entrepreneurs, clinicians and engineers committed to bringing back joy to the practice of medicine.Together with a community of clinician innovators, we've harnessed the best of machine learning science to develop Nabla: the leading AI assistant that's restoring the human connection at the heart of healthcare. By streamlining...
-
Consultant Cybersécurité Senior – OSM Cloud
il y a 7 heures
Paris, Île-de-France She's IT Temps pleinConsultant Cybersécurité Senior – OSM Cloud (CLD4)Je recherche unexpert cybersécurité Cloudcapable de structurer, piloter et opérer unOperating Security Model Cloud (OSM CLD4)dans des environnementsinternationaux, complexes et fortement exposés.Il s'agit d'unrôle senior, orientégouvernance opérationnelle Cloud, avec une forte posture conseil et...
-
Cloud Platform Engineer
il y a 6 jours
Paris, Île-de-France Jobgether Temps pleinThis position is posted by Jobgether on behalf of a partner company. We are currently looking for a Cloud Platform Engineer in France. We are looking for a Cloud Platform Engineer to operate and continuously evolve a modern AWS landing zone that underpins a large-scale cloud migration. In this role, you will build and maintain a secure, automated, and...
-
Senior Security
il y a 7 heures
Paris, Île-de-France Criteo Temps pleinWhat You'll Do:Joining the Trust & Compliance team means stepping into the engine room of security strategy at a fast-moving tech company.A front-row seat to how security drives innovation in a data and AI-driven company.A strong cross-functional culture: you'll work with security engineers, architects, product managers, legal, compliance, and ops.A real...
-
Network and Security Engineer
il y a 7 heures
Paris, Île-de-France HCLTech Temps pleinHCLTech is a global technology company, spread across 60 countries, delivering industry-leading capabilities centered around digital, engineering, cloud and AI, powered by a broad portfolio of technology services and products. We work with clients across all major verticals, providing industry solutions for Financial Services, Manufacturing, Life Sciences...