Head of Infrastructure

Il y a 16 heures

Reims, Grand Est, France JustMarkets Temps plein
We are seeking a Head of Infrastructure & Cloud Security to lead and develop our security operations across cloud, network, identity, endpoint, and data domains. In this role, you will design and enforce security protocols in a hybrid environment, lead a team of security engineers, promote a cloud-first approach, and report on enterprise security metrics Responsibilities
• Shape and oversee the infrastructure and cloud security strategy, reporting directly to the CISO
• Hire, lead, mentor, and develop security engineers and team leads
• Define and enforce enterprise security guardrails, approving low/medium-risk platform exceptions
• Manage and lead CSPM/CNAPP/CWPP, WAF, DNS security, and IaC scanning across cloud environments
• Collaborate with Platform and SRE teams to manage cloud IAM and security-group guardrails
• Enhance and manage endpoint security across managed devices, including hardening and telemetry health
• Own data security and cryptography controls, including KMS, secrets management, PKI, and certificate lifecycle
• Track, analyze, and report enterprise security metrics Requirements
• Proven experience in leading security engineers and managing teams
• Hands-on experience in cybersecurity engineering
• Strong experience in securing on-premises infrastructure in an enterprise environment
• Experience with any major cloud provider
• Proficiency in cloud and network security, including CSPM/CNAPP/CWPP tools, WAF, DNS security, and IaC scanning
• Experience with EDR/XDR and MDM solutions
• Understanding of identity and access management, including cloud IAM and security-group guardrails
• Experience with KMS, secrets management, PKI, and certificate management
• Ability to enforce security controls without hindering delivery for Platform/SRE/DevOps teams Will be a plus
• Experience in building or maturing an infrastructure/cloud security function from an early stage
• Background in fintech, brokerage, trading platforms, payments, or regulated environments
• Knowledge of Kubernetes/container security and cloud-native architectures
• Exposure to SOC 2, ISO 27001, or DORA compliance frameworks
• Familiarity with security tools such as Wiz, Panorama, Elastic Defender, Entra, or CyberArk

We offer
• 15 paid vacation days off year
• 10 paid sick leave per year
• Public holidays as per the company's approved Public holiday list
• Medical budget
• Opportunity to work remotely
• Professional educational budget
• Language learning budget
• Wellness budget (gym membership, sport gear and related expenses)