Security Engineer - Purple Team specialist H/F

Veepee

Paris

Hybride

EUR 60 000 - 85 000

Plein temps

14 jours+
Générateur de candidature

Une candidature complète en une minute — un CV et une lettre de motivation personnalisés, prêts à être envoyés.

Passez les filtres ATS

Avantages offerts par ce poste

Variable bonus
International teams
Self-education platform
Meetups and conferences
Flexible office (up to 2 days home)
Health insurance

Résumé du poste

Veepee in Paris is seeking an experienced cybersecurity professional to join its in-house team at the forefront of threat detection and incident response. You will exploit attack paths, build detection logic, and automate remediation with product teams.

The role blends offensive security, detection engineering, and risk assessment in a fast-paced e-commerce environment. Fluent French and professional English are required.

Qualifications

  • 3–5 years in offensive security, detection engineering or a mixed red/blue role.
  • Motivation and curiosity to prove or disprove attacks, and fix weaknesses.
  • Strong communication to persuade product teams to remediate findings.
  • Fluent French and professional English.
  • Experience with web/API pentesting and Active Directory attack techniques.

Responsabilités

  • Test security by simulating attacks across web, API and enterprise workflows.
  • Translate attack paths into detection rules, hunting queries and automated controls.
  • Qualify incoming bug reports and alerts with threat intelligence.
  • Collaborate with product and infra teams to remediate vulnerabilities.

Connaissances

Offensive security
Detection engineering
Python scripting
EDI/EDR logs analysis
Communication
English & French
AD attack techniques
Red/Blue team experience

Outils

Python
Bash
PowerShell

Description du poste

Pioneer of online flash sales since 2001 and key player in European e-commerce, Veepee collaborates with over 7,000 brands to offer highly discounted products available for a limited time. Operating across various sectors, including fashion, home, wine, travel or beauty... Veepee achieved a turnover of 3.3 billion euros incl. VAT in 2024 and employs 5,000 staff members across 10 countries.

Organization and team

The cybersecurity team includes Red/Purple/Blue teamers and risk & compliance oriented profiles, all working together to fix security weaknesses with innovative solutions, adapted to business needs. A Bug Bounty program, an authenticated program on our partner-facing platforms, an annual external Red Team engagement and recurring compliance assessments keep us honest, and our radar sharp. Our threat detection & incident response runs fully in-house, nothing is outsourced: you can touch everything, from detection engineering, case management and response, threat intelligence and the vulnerability lifecycle to the AI agents orchestrated on top of it all. Automation and AI are at the core of everything (who doesn't?): agents triage our alerts 24/7 so humans focus on what matters, an LLM pipeline audits our code, and every confirmed finding feeds a remediation loop with product teams.

Responsibilities
  • Attack Veepee's perimeter the way a real adversary would: red team, penetration tests (grey/black/white/AI box), Active Directory attack paths, phishing campaigns and the business web based processes themselves (member journeys, seller flows, payment chains), hunting for logic flaws no scanner will ever find.
  • Put our risk register and threat intelligence to the test: take a stated risk or an emerging threat and confirm it, or refute it, with a working attack scenario.
  • Qualify what comes in from the outside: Bug Bounty reports (public and authenticated programs) and alerts escalated by our RAG agents during the cyber-watching rotation.
  • Convert every confirmed attack path into something that runs without you: a detection rule, a hunting query, an automated control. If a bot can do it, we automate it.
  • Build and improve the team's tooling: AI-assisted code audit, password auditing, secret hunting, attack-surface monitoring.
  • Carry your findings through to remediation: explain the impact to product and infra teams, propose the fix, track it through our vulnerability-management lifecycle, and re-attack to prove it's closed.
  • Share your discoveries with technical and business teams and spread security culture in accordance with day-to-day constraints.
Required Skills
  • The most important thing is motivation! Naturally curious profiles who enjoy proving or disproving that an attack works, and who don't consider the job done until it's fixed.
  • Solid offensive skills: web and API penetration testing (OWASP), Active Directory attack techniques, and a taste for business-logic abuse beyond the technical stack.
  • Investigation fundamentals: comfortable digging through EDR, logs and network data to reach a verdict, and turning attacker behavior into detection logic or solid on the offensive side with a strong will to grow there.
  • Scripting and automation (Python, Bash, PowerShell); interest in AI-assisted security tooling (LLM-based code audit, agentic workflows) is a strong plus.
  • You document what you do and make it reproducible.
  • Strong communication skills: you can convince a product team to fix something they didn't want to hear about.
  • Experience: :3-5 years in offensive security, detection engineering or a mixed red/blue role.
  • Language: French and professional English.
Benefits
  • Variable bonus
  • The dynamic and creative environment within international teams
  • The variety of self-education courses on our e-learning platform
  • Participation in meetups and conferences locally and internationally
  • Flexible Office with up to 2 days at home
  • Health insurance
RECRUITMENT PROCESS
  1. 30-minute HR Screen with a Veepee Recruiter
  2. Technical and operational exchange with the team
  3. Last Interview with Head of cybersecurity

We are convinced that it is up to you to define the way you work, to develop yourself, and to progress. At Veepee we guarantee that you can just be yourself!

For the service of diversity and inclusion, Veepee is committed to reviewing all applications received on an equal basis.

company

For more information about our ecosystem: https://careers.veepee.com

The Veepee Group processes your data collected as part of the management of your recruitment in order to manage your application file for the position for which you have applied. To find out more about our personal data protection policy, we invite you to consult it on our career site.

We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.

Obtenez votre examen gratuit et confidentiel de votre CV.
ou faites glisser et déposez votre fichier ici.
Similar jobs

Postes similaires à comparer

Security Engineer - Purple Team specialist H/F
Security Engineer - Purple Team specialist H/F

Veepee • France

Hybride
EUR 65 000 - 95 000
Variable bonus
Health insurance
Formation et meetups
+1
Security Engineer - Purple Team specialist H/F
Security Engineer - Purple Team specialist H/F

Veepee • Paris

Sur place
EUR 60 000 - 105 000
Health insurance
Flexible office with up to 2 days at‑h
Learning platform
Senior Data Scientist
Senior Data Scientist

Veepee • Paris

Hybride
EUR 65 000 - 85 000
Variable bonus
Dynamic international work environment
Access to self-learning courses
+2
Software Engineer Go, Rust or Scala (Infrastructure) - Foundation (H/F/X)
Software Engineer Go, Rust or Scala (Infrastructure) - Foundation (H/F/X)

Veepee • Paris

Sur place
EUR 90 000 - 130 000
Variable bonus
Flexible Office
International teams
+2
Sales Analyst & Support (F/H/X) - CDI
Sales Analyst & Support (F/H/X) - CDI

Veepee • L'Île-Saint-Denis

Hybride
EUR 42 000 - 60 000
Prime variable
Participation aux bénéfices et plan d
Télétravail jusqu'à 2 jours/semaine
+2
Fullstack Developer (F# / C#) - Brand Payment
Fullstack Developer (F# / C#) - Brand Payment

Veepee • Paris

Sur place
EUR 70 000 - 110 000
Variable bonus
International teams
Learning platform courses
+2
Sales Analyst & Support - Beauty (F/H/X) - CDD
Sales Analyst & Support - Beauty (F/H/X) - CDD

Veepee • L'Île-Saint-Denis

Hybride
EUR 42 000 - 65 000
Prime variable
Participation aux bénéfices et plan d\
Alternance - Délégué.e Protection des données H/F/X
Alternance - Délégué.e Protection des données H/F/X

Veepee • Saint-Denis

Sur place
EUR 30 000 - 40 000
Prime variable
Participation & intéressement
Télétravail possible jusqu'à 2 jours par semaine
+3
Data Scientist
Data Scientist

Veepee • Paris

Sur place
EUR 70 000 - 110 000
Be part of a dynamic and international team!
Flexible schedule
Team buildings & afterworks
Lead AI Adoption
Lead AI Adoption

Veepee • Saint-Denis

Hybride
EUR 90 000 - 130 000
Variable bonus
Culture internationale
Formations en ligne illimitées
+2