Details of the offer for Senior / Lead Security Engineer - SOR M/W about r-d at JUNG S.A.S in Paris

As a Senior / Lead Security Engineer - SOR, Supervision, Operations, and Response, preserving the information heritage of Back Market is your first concern.

Through technical audits of applications and systems, code reviews, architecture, compliance, automation of security tests, and evangelization of good practices, you contribute to the continuous improvement of the security posture of the company, while keeping an eye on the current threat indicators, ready to intervene in the event of an incident.

We have huge ambitions, strive for excellence, and count on you to support and advise our teams on the technical security aspect of these challenges.

Required profile

  • You are a talented engineer with at least 4 years of experience in web application security in dynamic cloud environments

  • Good practices and standards such as OWASP WSTG, OWASP SAMM, OWASP ASVS or CSVS, ISO / IEC 27035, or even CIS benchmarks are among your favorite references

  • You have at heart the analysis, whether it is threat modeling, or qualification during an incident response, before taking any action

  • You are convinced of the importance of automating security tests to support a DevOps approach to DevSecOps, and developing your own scripts and tools is obvious to carry out your mission

  • You are curious, rigorous, like to explore new methods and technologies, and know how to express your limits when you are asked for a position as a security expert

  • You demonstrate pedagogy to share your knowledge and make your colleagues aware of good safety practices, by supporting your proposals with concrete examples and technical demonstrations

  • Your skills are recognized by a GWAPT, GWEB, GPEN, OSCP, CEH, GCIH, GCFA type certification - or you are ready to take it soon

  • For you, remote working is an opportunity

  • English is a language with which you are fluent in both written and spoken

  • You want to join a top technical environment: AWS, GCP, Kubernetes, Terraform, Terragrunt, Datadog, Spinnaker, Cloudflare, Docker, Aurora, etc., where you can learn, develop, and gain responsibility