
Security Engineer – Paris
Tiime
full-time
Posted on:
Location Type: Hybrid
Location: Paris • France
Visit company websiteExplore more
Tech Stack
About the role
- Ensure follow-up and monitoring of remediation plans resulting from risk analyses and the security program
- Remediate application vulnerabilities
- Report operational indicators that assess cyber risk in products
- Operational management of security indicators in products (vulnerabilities, remediations, exceptions)
- Serve as the interface with the Risk Manager to track action plan execution and report product risks
- Support technical teams in implementing security measures
- Actively participate in product incident management
- Drive the adoption of effective, organization-appropriate practices within teams to continuously improve product security.
Requirements
- Master's degree (Bac +5)
- 4 to 6 years of experience in cybersecurity
- Proven experience implementing security practices within product teams
- Ability to operate in a multidisciplinary context
- Autonomy, conviction, and strong coaching/communication skills
- Proficiency with application security tools: SAST, DAST, SCA, vulnerability scanners, vulnerability management platforms
- Vulnerability management and risk-based prioritization
- Knowledge of security frameworks & standards: OWASP Top 10, CWE, CVSS, Secure SDLC, ISO 27001, NIST, DevSecOps best practices
- Application-level technical analysis skills
- Understanding of application architectures (APIs, microservices, cloud, CI/CD) and DevOps environments
- Security monitoring and reporting
Benefits
- €10 loaded on a Swile meal card (50% employer contribution)
- Profit-sharing bonus
- 50% coverage of your public transport subscription, or access to the sustainable mobility allowance if you commute by bike or scooter
- Access to a dedicated platform with extensive employee discounts
- Additional paid leave
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
cybersecurityapplication securityvulnerability managementrisk-based prioritizationtechnical analysissecurity monitoringreportingDevSecOpssecure SDLCapplication architectures
Soft Skills
autonomyconvictioncoachingcommunicationmultidisciplinary collaboration
Certifications
Master's degreeISO 27001NIST