Security Engineer

United States Digital Space LLC

United States

Remote

USD 53,000 - 79,000

Full time

38 hours ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Stock options
Meal vouchers (Swile)
Health insurance (Alan)
Life & disability insurance
Wellbeing program (Axomove & therapy)
Transport reimbursement 50%
Leeto employee discounts
RTT days & parental benefits

Job summary

Yousign is expanding from eSignature to a full Digital Trust platform, embedding security across Engineering and Product. The role focuses on end-to-end security reviews, vulnerability management, and collaboration with Compliance to meet eIDAS, NIS2, ISO 27001 standards. A fast-paced, cross-domain environment with AI-driven tooling awaits.

You will be the security partner for the whole company, leading risk-based decisions while balancing business velocity and rigorous controls.

Qualifications

  • Hands-on expertise in web application and API security.
  • Ability to run threat modeling sessions and produce clear decisions.
  • Experience managing vulnerabilities across a product perimeter and BugBounty programs.

Responsibilities

  • Lead end-to-end security review cycle for product features, from intake to risk-based unblocking.
  • Own and operate BugBounty program: triage, remediation, reward decisions.
  • Identify and track remediation of vulnerabilities across product and infrastructure perimeter.
  • Contribute to Trusted Zone security, fraud prevention, and regulatory compliance (eIDAS, NIS2, ISO 27001).
  • Translate security risks into technical requirements for engineering teams.

Skills

Web application security
API security
Threat modeling
BugBounty management
AI tooling in security

Job description

About YousignYousign (soon to be Youtrust) is a European Digital Trust provider, fully compliant with eIDAS and the highest European standards. Our three modules – electronic signatures, identity and document verification, and e-seals – can be used independently or combined within sector-specific workflows, ensuring simple, secure and legally compliant processes for SMEs and mid‑sized companies.Hosted and processed entirely in Europe, we guarantee sovereignty, transparency and reliability. As a certified B‑Corp, we combine innovation with responsibility – building trust at the heart of every digital exchange.We are entering a key moment as we expand from eSignature to the full Digital Trust chain.

Your RoleAs a Security Engineer at the company, you are the embedded security partner for the entire company, with Product as your primary internal client. You lead the company's security review cycle end‑to‑end on prioritized initiatives: from understanding the context of a new feature or project, to issuing your requirements and guidance, supporting implementation, and unblocking through risk management when needed.

You own and operate the pentest and BugBounty programs and ensure consistent, pragmatic security coverage across all team initiatives, from Engineering and Product to cross‑functional projects company‑wide.

You also step into the topics that make the company a Digital Trust provider: the security of our Trusted Zone, our fraud detection and prevention efforts, and our regulatory compliance (eIDAS, NIS2, ISO 27001). You won't own every one of these, but you contribute wherever the team needs you — your specialization defines where you spend most of your time, not a silo you stay inside.

Your Responsibilities
  • Lead the end-to-end security review cycle for all product features: context intake, Decision Records, implementation support, and risk‑based unblocking.
  • Own and operate the company's BugBounty program: triage reports, drive remediation, and manage reward decisions.
  • Identify, prioritise, and track remediation of vulnerabilities across the company's product and infrastructure perimeter.
  • Contribute to the security of the Trusted Zone, and to fraud detection and prevention, alongside the Security & Compliance team.
  • Support regulatory compliance (eIDAS, NIS2, ISO 27001): help translate requirements into technical controls, and contribute to audits and remediation when needed.
  • Extend security expertise beyond Product to all company initiatives: assess risks, issue guidance, and maintain a consistent security posture company‑wide.
  • Take part in the team's weekly on‑call (\"doctor\") rotation, and build automation (n8n, AI tooling, alerting) to reduce manual toil.
  • Raise the security bar across Engineering and beyond: share knowledge, coach teams on secure‑by‑design practices, and build security awareness.
Your Profile
  • You have deep, hands‑on expertise in web application and API security, you know attack and defense mechanisms inside out and can spot a vulnerability in a PR or architecture diagram.
  • You are able to independently run threat modeling sessions, produce clear Decision Records, and translate security risks into actionable requirements for engineering teams.
  • You have experience managing vulnerabilities across a product perimeter: triaging, prioritising, tracking remediation, and knowing when to accept risk versus escape.
  • You have participated in or run BugBounty programs. You understand triage workflows, reward logic, and how to communicate decisions clearly to researchers.
  • You use AI actively to automate parts of your security work, CVE monitoring, BugBounty triage, report generation, and you think critically about how to integrate AI into existing workflows rather than simply adding tools.
  • You are comfortable working across domains. Your core is product security, but you are happy to contribute to compliance topics (eIDAS, NIS2, ISO 27001), to fraud detection and prevention, and to the security of a Trusted Zone. Prior exposure to a regulated or Digital Trust environment is a strong plus.
  • You are genuinely self‑sufficient: you pick up a brief, define the scope, and deliver without hand‑holding. You are comfortable in ambiguous, fast‑moving environments.
  • You are pragmatic by nature. You do not block for the sake of blocking. You find the right balance between security rigour and business velocity, and you know when to escape versus when to accept risk.
  • You communicate clearly and simply. You can explain a complex vulnerability to a non‑security engineer in two minutes, and you coach without being preachy.
  • You are genuinely curious: you follow threat intel, participate in CTFs, and keep your technical edge sharp because you care about the craft.
  • French at a native or near‑native level (C2) is required. English at a professional working level (B2) is required for security research, technical documentation, and communication with international BugBounty researchers.
Recruitment Process
  • R1 — TAM Interview with Guillhem Cambiganu (30 min)
  • R2 — Hiring Manager Interview with Tony Belot (45–60 min)
  • R3 — Technical Interview: slide deck presentation + peer discussion with Tony Belot and a member of the Security & Compliance team (1H)
  • R4 — Director Interview with Kevin Dubourg (30 min)
Benefits
  • Salary: 53 000 – 79 000 EUR
  • Stock options - BSPCE
  • Meal vouchers (Swile): 10.50 EUR/day, 50% covered by the company
  • Health insurance (Alan): 50% covered by the company
  • Life & disability insurance: 100% employer‑covered
  • Wellbeing: Axomove (4 physio sessions) and (6 therapy/coaching sessions)
  • Transportation: 50% reimbursement for public transport for hybrid workers
  • Leeto: Access to numerous employee discounts
  • Time off: 10 RTT days/year, plus menstrual leave, parenthood benefits, seniority days
  • 1 volunteering day/year, learning & development budget, and more
Why join the company now?
  • A mission that matters in a world challenged by AI‑driven fraud
  • A vision built on integrity
  • A European & sovereign platform
  • A certified B Corp
  • The golden age of the company

Originally posted on Himalayas

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Engineering Manager, Customer Trust - Canada
Engineering Manager, Customer Trust - Canada

United States Digital Space LLC • United States

Remote
USD 180,000 - 240,000
Industry-competitive salary and equity
Health, dental, vision benefits
Remote work and flexible hours
+6
Cybersecurity Lead
Cybersecurity Lead

Coverflex • United States

Remote
USD 74,000 - 108,000
Stock options
All Coverflex benefits apply
Principal Information Security Manager - remote working within Germany
Principal Information Security Manager - remote working within Germany

Remotely • United States

Remote
USD 140,000 - 200,000
LTIP (Long Term Incentive Plan)
Hybrid work option
Annual flex work allowance
+4
Information Security Lead
Information Security Lead

United States Digital Space LLC • United States

Remote
USD 180,000 - 240,000
Remote work: 100% remote
Equity: generous equity package
Mentorship from top VCs
+6
Staff Security Engineer - AI Enablement
Staff Security Engineer - AI Enablement

Trustly • San Francisco (CA)

On-site
USD 226,000 - 340,000
Flexible paid time off
Comprehensive medical, dental, vision
FSA & HSA plans
+4
Account Executive - [UK&I]
Account Executive - [UK&I]

United States Digital Space LLC • United States

Hybrid
USD 90,000 - 160,000
Equity
Health, dental, vision coverage
Remote work stipend
+2
Global VP Customer Success
Global VP Customer Success

Trustpair • New York (NY)

On-site
USD 200,000 - 280,000
Flexible work model
Opportunity to work with AI tools
Strong product-market fit
Trust & Assurance Lead
Trust & Assurance Lead

Sysdig, Inc. • Northern (KY)

On-site
USD 144,000 - 176,000
Extra days off
401(k) match
Maternity leave
+2
Software Engineer, Security Rules
Software Engineer, Security Rules

United States Digital Space LLC • United States

On-site
USD 120,000 - 180,000
Equity participation
Health Insurance
French Speaking Account Executive, Early Stage - EMEA
French Speaking Account Executive, Early Stage - EMEA

United States Digital Space LLC • United States

On-site
USD 70,000 - 116,000
Salary + equity
Medical coverage
Parental leave
+6