
DevSecOps
Outsight
full-time
Posted on:
Location Type: Hybrid
Location: Paris • France
Visit company websiteExplore more
About the role
- Monitor and Analyze: Actively monitor security alerts via SIEM (Security Information and Event Management), IDS/IPS, and EDR solutions.
- Triage and Response: Serve as a primary handler for security incidents. Investigate indicators of compromise (IOCs), contain threats, and lead remediation efforts.
- Forensics: Perform root cause analysis on security breaches or near-misses to prevent recurrence.
- Build Security infrastructure: define architecture & select tools
- Tool Maintenance: Manage, configure, and upgrade security tools such as Firewalls (NGFW), Endpoint Protection, Vulnerability Scanners, and DLP (Data Loss Prevention) systems.
- Vulnerability Management: Conduct regular vulnerability scanning, analyze results, and coordinate patching schedules with Operation and engineering teams.
- Access Control: Oversee IAM (Identity and Access Management) policies, ensuring the principle of least privilege is enforced across cloud and on-premise environments.
- Scripting: Write scripts (Python, Bash) to automate repetitive security tasks, data gathering, and incident response actions (SOAR).
- Integration: Ensure seamless integration of security tools into the CI/CD pipeline (DevSecOps) to support our engineering teams. Participate to software supply-chain audit and monitoring.
- Documentation: Maintain up-to-date documentation of security architecture, incident response plans, and playbooks.
- Audit Support: Assist in gathering evidence for compliance audits (SOC2, ISO 27001, Tisax, etc.).
- Metrics: Generate reports on security KPIs (e.g., Mean Time to Detect, Mean Time to Remediate) for management review and customer reports
Requirements
- 5+ years of experience in Information Security, Network Operations, or System Administration with a security focus.
- SIEM Proficiency: Hands-on experience with tools like Wazuh, Splunk and integration with AWS services
- Endpoint Security: Experience managing EDR solutions such as CrowdStrike
- Cloud Security: Working knowledge of AWS cloud security principles , including Security Groups, IAM, and CloudTrail/CloudWatch.
- Networking: Deep understanding of TCP/IP, DNS, HTTP/S, and network traffic analysis (Wireshark).
- Master’s degree in Computer Science, Cybersecurity, or equivalent practical experience.
- Certifications: Cybersecurity certification in a cloud environment is a plus.
Benefits
- Health insurance
- Professional development opportunities
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
SIEMIDS/IPSEDRPythonBashVulnerability ScannersDLPIAMDevSecOpsNetwork Traffic Analysis
Soft skills
incident responseroot cause analysisdocumentationcommunicationteam collaborationproblem-solvinganalytical thinkingleadershiporganizational skillsattention to detail
Certifications
Cybersecurity certificationMaster's degree in Computer ScienceMaster's degree in Cybersecurity