Principal Security Engineer

Jobgether

France

Sur place

EUR 120 000 - 150 000

Plein temps

Il y a 12 jours

Recevez plus de réponses des employeurs

Envoyez un CV adapté au poste en quelques minutes.

Résumé du poste

Jobgether, on behalf of a partner, is seeking a Principal Security Engineer based in France. You will take hands-on ownership of security across a global trading platform, designing, deploying and operating controls across cloud and on-prem systems, with emphasis on IAM, key management and secure CI/CD pipelines.

You will work with Infrastructure and Engineering teams, build practical security solutions, write code, automate responses, and improve resilience in a fast-moving environment,

Qualifications

  • 8+ years hands-on security engineering experience.
  • Strong IAM architecture and cloud IAM implementation experience.
  • Experience securing CI/CD pipelines (GitLab preferred).
  • Familiarity with multi-cloud security controls (AWS/Azure, plus GCP/others).
  • Scripting/automation skills in Python, Bash or similar.
  • Experience in fast-paced, high-availability environments.

Responsabilités

  • Implement and operate security controls across multi-cloud and on-premises infrastructure.
  • Design IAM models for identities, permissions and privileged access.
  • Harden CI/CD pipelines and integrate security into development workflows.
  • Manage key management, secrets, and cryptographic material protection.
  • Respond to security incidents and drive remediation to completion.
  • Conduct security assessments and automate detection/monitoring.

Connaissances

IAM design
Cloud security
GitLab CI/CD
Scripting (Python/Bash)
Incident response
Linux
Security automation

Outils

Terraform
Pulumi

Description du poste

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Principal Security Engineer based in France.

As a Principal Security Engineer, you will take hands‑on ownership of security implementation across a global, always‑on digital asset trading environment. You will design, deploy and operate security controls across cloud, on‑premises infrastructure and critical production systems. The role combines cloud security, identity and access management, key protection, CI/CD security, incident response and security automation. You will work closely with Infrastructure and Engineering teams to embed effective security controls directly into systems and development workflows. With a strong focus on practical execution, you will write code, configure systems and solve complex security challenges rather than focus on policy or people management. The environment is technically demanding and fast‑moving, with resilience, low latency and risk discipline at its core. You will have significant autonomy and the opportunity to make an immediate impact on the security of critical trading infrastructure.

Accountabilities
  • Implement, operate and continuously improve security controls across multi‑cloud environments, primarily AWS and Azure, with exposure to GCP and AliCloud, as well as on‑premises infrastructure.
  • Own the implementation of identity and access management strategies, designing secure, scalable and practical models for identities, permissions and privileged access.
  • Design and operate key management and custody security controls, including HSMs, secrets management and secure handling of sensitive cryptographic keys used in trading operations.
  • Harden GitLab CI/CD pipelines and integrate security controls throughout the software development and delivery lifecycle.
  • Configure and maintain corporate security technologies, including endpoint protection, mobile device management, Jamf, DLP and identity management platforms.
  • Respond to security incidents by triaging alerts, investigating threats, containing incidents and driving remediation through to completion.
  • Conduct security assessments across infrastructure and applications to identify vulnerabilities, weaknesses and opportunities for improvement.
  • Automate security operations, including detection, alerting, monitoring and response processes.
  • Partner closely with Infrastructure teams to embed security into cloud provisioning, infrastructure configuration and operational workflows.
  • Identify opportunities to improve security resilience while minimizing unnecessary friction for engineers and other technical stakeholders.
  • Own security problems end‑to‑end, from identifying risks and designing solutions through implementation, testing and ongoing operation.
Requirements
  • 8+ years of hands‑on experience in security engineering, security operations or a closely related technical security discipline.
  • Deep expertise in identity and access management, including practical experience designing and implementing IAM across cloud environments.
  • Strong, well‑developed opinions on IAM architecture, access models, permissions and identity security, backed by hands‑on implementation experience.
  • Strong working knowledge of cloud security controls across multiple providers, particularly AWS and Azure.
  • Experience securing CI/CD platforms and software delivery pipelines, with GitLab experience preferred.
  • Familiarity with corporate IT security technologies such as Jamf, endpoint protection, DLP, SSO and identity providers.
  • Strong Linux skills and confidence with scripting and automation using Python, Bash or similar languages.
  • Experience with infrastructure-as-code technologies such as Terraform or Pulumi is an advantage.
  • Ability to investigate security incidents, assess infrastructure and application risks, and implement practical remediation.
  • Experience operating effectively in fast‑paced, technically complex environments where security, resilience and availability are critical.
  • Strong problem‑solving and ownership mindset, with the ability to independently drive technical initiatives from identification through implementation.
  • Clear communication skills and the ability to collaborate effectively with Infrastructure and Engineering teams.
  • Experience in financial services, digital assets, cryptocurrency or other regulated environments is beneficial but not required.
  • Demonstrated technical capability and practical experience are valued more highly than security certifications.
Benefits
  • Direct ownership of security implementation across critical infrastructure.
  • High‑impact role within a small, highly technical security team.
  • Significant autonomy and responsibility over security engineering initiatives.
  • Opportunity to work closely with Infrastructure and Engineering teams and influence security architecture in practice.
  • Exposure to low‑latency trading infrastructure and complex digital asset technology.
  • Opportunity to work on challenging security problems across multi‑cloud and on‑premises environments.
  • Hands‑on technical role focused on building, automating and operating security controls rather than policy administration or people management.
  • Opportunity to make immediate, measurable contributions to security resilience and risk management.
Obtenez votre examen gratuit et confidentiel de votre CV.
ou faites glisser et déposez votre fichier ici.
Similar jobs

Postes similaires à comparer

Principal Security Engineer – Cloud, IAM & Automation
Principal Security Engineer – Cloud, IAM & Automation

Jobgether • France

Sur place
EUR 120 000 - 150 000
Senior Security Operations Engineer
Senior Security Operations Engineer

Capital Fund Management (CFM) • Paris

Hybride
EUR 60 000 - 80 000
Senior Security Engineer
Senior Security Engineer

Xpandium Coberon Ltd • Eu

Hybride
EUR 70 000 - 90 000
Senior Security Engineer
Senior Security Engineer

Spendesk • Paris

Sur place
EUR 90 000 - 140 000
Principal Software Engineer Europe
Principal Software Engineer Europe

Startup Talents • France

Hybride
EUR 120 000 - 200 000
Healthcare and life insurance
Retirement plan
Sponsored transportation
+4
Associate Security Engineer
Associate Security Engineer

Spendesk • Paris

Sur place
EUR 40 000 - 70 000
Flexible on-site and remote policy
Latest Apple equipment
Access to Moka.care for wellbeing
+2
Cyber Security Engineer
Cyber Security Engineer

Leap29 • France

Sur place
EUR 70 000 - 100 000
Remote work in France
On-call rotation pay
GenAI Security Engineer
GenAI Security Engineer

Capital Fund Management (CFM) • Paris

Sur place
EUR 75 000 - 95 000
Security Technology Expert
Security Technology Expert

AXA Group Operations • Paris

Sur place
EUR 80 000 - 110 000
DevSecOps Engineer
DevSecOps Engineer

London Stock Exchange Group • France

Sur place
EUR 65 000 - 85 000