
Scaleway · Paris
OUR STORY: 🇪🇺 Join Scaleway and shape the sovereign cloud of tomorrow ! Since 1999, we have been designing secure, sustainable infrastructures aimed at supp...
🇪🇺 Join Scaleway and shape the sovereign cloud of tomorrow !
Since 1999, we have been designing secure, sustainable infrastructures aimed at supporting the most ambitious companies.
Historically known for our dedicated servers (Dedibox), we made a strategic shift to cloud computing in 2015. Staying true to our principles of simplicity, flexibility, and technical excellence, we have become one of the leading players in Europe in the sector.
With the rise of artificial intelligence, we have strengthened our commitment, supported by the Iliad Group, which is investing €3 billion to develop a serious, sovereign AI alternative to American and Asian giants.
Every day, thanks to our fast-growing portfolio of cloud and AI products (bare metal, containerization, serverless, AI, etc.), Scaleway proudly serves thousands of customer across the private and public sector, from corporations like France Télévisions or Hachette Livre, to fast-growing startups like Photoroom and Biolevate, to institutions like the City of Copenhagen.
📍 Our offices are located in Paris, Lille, Toulouse, Rennes, Rouen, Bordeaux and Lyon.
Our growth is driving us to strengthen our Security Engineering team to adapt to the evolving security challenges of the company and provide advanced tooling for our operational teams.
Your mission will be to develop custom tools and applications for our SOC, CSIRT, and Trust & Safety teams in order to equip our field experts with the best resources to protect our infrastructure and ensure a high level of security compliance.
We work in a collaborative and international environment where the diversity of Scalers, combined with a spirit of sharing, helps bring new projects to life every day, advancing our ambitions together.
You will be part of a team of 5 people, working within a dedicated development sub-team of 2 engineers alongside our core SOC unit. The team focuses on building custom tools to enhance automated threat detection, incident response, and platform security. You will regularly interact with product teams and all internal departments to align security operations with our growing ecosystem.
Tasks
Develop and maintain automated tools for the SOC, CSIRT, and Trust & Safety teams
Equip field security teams with robust, tailor-made technical solutions
Adapt internal security tools to support the company's evolving corporate security requirements
Collaborate closely with product and engineering teams across Scaleway
Support operations within a highly secure, SecNumCloud-compliant environment
Continuously optimize scripts and workflows to streamline threat detection and remediation
Intermediate experience in software development and tool creation
Strong appetite and interest in cybersecurity concepts, threat environments, or SOC/CSIRT operations
Proven track record of working closely with infrastructure or production teams
Ability to build clean, maintainable code for automation and internal tooling
Familiarity or experience with regulated/highly secure cloud compliance frameworks (SecNumCloud environment) is a strong asset
Time management & organization: Ability to prioritize tasks effectively in an evolving environment
Clear communication: Strong capability to share information efficiently with both technical and non-technical stakeholders
Problem-solving: Analytical mindset focused on creating practical solutions for complex security needs
Adaptability: Comfortable shifting focus to match the rapid rhythm of a cloud provider's security ecosystem
Curiosity: A natural desire to keep learning, explore new technical architectures, and dive deep into security mechanisms
Hybrid work: We offer up to 3 days of remote work per week.
Offices: Our offices are spacious, dynamic workspaces with bold design, conveniently located near public transport. Most of our offices feature outdoor spaces (terraces) and bike parking facilities.
Dining: Our chef provides a healthy meal service at the headquarters, and breakfast is available across all our sites year-round. Scalers working from regional sites enjoy a Swile card for lunches.
Well-being commitments: Whether it’s access to a gym, daycare places, or discounted services for caring services, Scaleway is committed to supporting Scalers in maintaining a balanced life.
International environment: With dozens of nationalities, Scaleway offers a stimulating environment where English is as widely spoken as French.
Career & Mobility: Our managers value internal mobility, and opportunities to transition to other entities within the Iliad Group are accessible to all Scalers.
🚀 Why join the Scaleway adventure?
✔ A rich and diverse product offering: Scaleway offers over 100 public cloud products in IaaS, PaaS, and AI.
✔ A cutting-edge technical environment: Scaleway provides modern infrastructures, including high-performance bare metal servers, to tackle exciting technical challenges.
✔ Commitment to responsible cloud: Scaleway is dedicated to a more responsible cloud, with data centers powered solely by renewable energy since 2017, minimizing our ecological footprint and holding top-level certification.
Discovery call with a recruiter (30 min)
Technical interview with the team to understand your technical skills and approach to the role (45 min)
Technical deep dive / Use case review to validate your expertise (1h)
Management interview with the Security Manager to deepen discussions and assess your fit with the team (45 min)
HR interview & final on-site visit to tour our offices and meet your future colleagues
🚀 ABOUT THE TEAM Join the Digital Office at Wakam and help transform the insurance industry through innovation and technology. We are a center of expertise where cutting-edge tools meet strategic thinking. Our teams design, develop, and optimize robust digital solutions that improve efficiency, resilience, security, and user experience — all within an Agile, collaborative, and fast-paced environment. ---------------------------------------------------------------------------------------------------------------------------------- 🎯 YOUR MISSION As a DevSecOps expert, your mission will be to strengthen Wakam’s security posture by embedding security into our development, infrastructure, and operations practices. You will work closely with development, operations, architecture, workplace, and security teams to define a clear DevSecOps roadmap, implement the right tools and practices, and help teams build and operate secure systems at scale. ---------------------------------------------------------------------------------------------------------------------------------- ✏️ YOUR RESPONSIBILITIES DEVSECOPS STRATEGY & ROADMAP You will: * Assess the current DevSecOps maturity and define a clear roadmap in coordination with the Architecture Committee. * Prioritize actions using a global risk-based approach — not only security risk — adapted to Wakam’s context. * Define performance and reliability metrics for security processes. TEAM SUPPORT & ENABLEMENT You will: * Support development and operations teams on day-to-day security topics. * Put business and technical risks into perspective to help teams make informed decisions. * Train and raise awareness among teams on security best practices, including secure coding, threat modeling, and related practices. * Help build a sustainable DevSecOps culture across the organization. SHIFT-LEFT SECURITY You will: * Integrate SAST, DAST, and SCA tests directly into CI/CD pipelines with optimized response times. * Design and deploy fast, reliable, parallelized security test suites with immediate feedback for developers. * Document data flows and model attack surfaces from the design phase. AUTOMATION & TOOLING You will: * Deploy and configure static and dynamic analysis tools such as SonarQube, Trivy, Snyk, OWASP ZAP, and similar solutions. * Orchestrate secure deployments through CI/CD pipelines, including automatic rollback mechanisms and multi-level validation. * Develop custom automation tools when market solutions do not fully meet Wakam’s needs. VERSIONING & CONFIGURATION MANAGEMENT You will: * Implement Infrastructure as Code (IaC) with embedded security controls using tools such as Terraform and Ansible. * Ensure full versioning of code, infrastructure, configurations, and security policies. * Manage secrets and certificates through dedicated solutions such as HashiCorp Vault or equivalent tools. MONITORING & INCIDENT MANAGEMENT You will: * Deploy and maintain security monitoring tools, including SIEM, alerting, and monitoring solutions. * Automate anomaly detection and incident response through SOAR and automated runbooks. * Actively contribute to the management and resolution of security incidents. WORKPLACE ENVIRONMENT SECURITY SUPPORT You will: * Provide technical support to the team managing the workplace environment, including Microsoft 365, Exchange Online, and SharePoint, on security and monitoring topics. * Contribute to integrating collaborative tools into global security policies, including authentication, conditional access, DLP, and SIEM alerts. * Help automate recurring administration tasks and implement alerts for abnormal behaviours. TECHNOLOGY WATCH & CONTINUOUS IMPROVEMENT You will: * Maintain active monitoring of DevSecOps trends, new threats, and emerging practices. * Evaluate and integrate relevant technologies for Wakam’s environment. * Share best practices and lessons learned internally and within the DevSecOps community. ---------------------------------------------------------------------------------------------------------------------------------- ✨ WHO YOU ARE You bring: * 7+ years of experience in software engineering and/or operations. * A solid development background, either as a Developer or DevOps profile. * Strong hands-on experience in application security and infrastructure security. * A good understanding of cloud-based production environments. * Experience with Security Operations / SOC is a plus. TECHNICAL SKILLS You are comfortable with: * DevOps & Automation: CI/CD, Azure DevOps, GitHub Actions * Containers: Docker, Kubernetes * Infrastructure as Code: Terraform, Ansible * Cloud Platforms: Azure, AWS * Scripting: Python, Bash, PowerShell * Application Security: OWASP, secure coding practices * Security Tools: SAST, DAST, SCA, vulnerability scanning SECURITY EXPERTISE You have: * Knowledge of security protocols and cryptography. * Familiarity with compliance frameworks and standards. * Experience using vulnerability scanning and mitigation tools. * Strong infrastructure security practices. ---------------------------------------------------------------------------------------------------------------------------------- 🧠 WHAT YOU BRING Beyond your technical skills, you bring: * Strong mentoring, influence, and support skills. * Excellent communication skills, with the ability to explain technical risks and concepts clearly. * Proven technical leadership and change management capabilities. * High autonomy and a proactive, solution-focused mindset. * A 360° vision, with the ability to balance security, business, and technology needs. * Adaptability and comfort working in a transforming environment. ---------------------------------------------------------------------------------------------------------------------------------- 🌟 WHY JOIN WAKAM? At Wakam, we’re on a mission to reinvent insurance with technology, transparency, and purpose. You’ll join a bold, international company where experimentation is encouraged, ideas are valued, and personal growth is supported. Joining Wakam means: * Being at the heart of tech-led transformation. * Collaborating with passionate experts across disciplines. * Joining a culture that promotes ownership, agility, and innovation. * Benefiting from flexible working arrangements — hybrid ---------------------------------------------------------------------------------------------------------------------------------- 🏆 HIRING PROCESS We aim to keep the process transparent, engaging, and efficient. Here’s what to expect: 1. Interview with our Talent Acquisition Partner 2. Manager interview with our Head of Information Security 3. Case study with the Digital Team 4. HRBP interview AI-Assisted Interview Process Policy | Notion More About Us Check out our website to learn about the 11 cultural markers that make Wakam truly special! If you're adventurous, impact-driven, and ready to shape the future of insurance, we'd love to meet you! 💫 What Makes Us Unique: • True remote work flexibility with our Wakam From Anywhere (WFA) program - yes, we even have a teammate working from a sailboat! ⛵ • Flat hierarchical system promoting direct impact and autonomy 🚀 • Monthly Free.day: dedicated time for personal growth and skills development 📚 • Lunch voucher with Swile card • A meaningful company: we became a Mission-driven company in March 2021 • Work alongside passionate experts: who will share their knowledge and help you develop and grow in your career. At Wakam, our "Free to Impact" culture is built on four essential pillars that shape everything we do : 🗣️ Communication & Knowledge Management • Foster transparent collaboration across our flat organizational structure • Share knowledge freely in our highly collaborative environment • Contribute to our collective intelligence through open dialogue 🔍 Curiosity • Embrace our monthly Free.day for learning and skills sponsorship • Think big and challenge conventional insurance norms • Stay eager to learn and explore new possibilities 🔄 Continuous Improvement • Take initiative to transform the insurance industry • Turn challenges into opportunities for innovation • Constantly evolve our ways of working 🎯 Outcome Oriented • Focus on impact rather than hierarchy • Drive results through clear objectives and autonomy • Transform bold ideas into concrete solutions At Wakam, we are committed to fostering an inclusive environment where diversity is celebrated. If you require any reasonable adjustments during the recruitment process, please feel free to reach out to your recruiter.
SpaceXAI’s mission is to create AI systems that can accurately understand the universe and aid humanity in its pursuit of knowledge. Our team is small, highly motivated, and focused on engineering excellence. This organization is for individuals who appreciate challenging themselves and thrive on curiosity. We operate with a flat organizational structure. All employees are expected to be hands-on and to contribute directly to the company’s mission. Leadership is given to those who show initiative and consistently deliver excellence. Work ethic and strong prioritization skills are important. All employees are expected to have strong communication skills. They should be able to concisely and accurately share knowledge with their teammates. ABOUT THE ROLE: We are seeking a skilled Azure Security Engineer to design, implement, and maintain robust security controls across our Azure Gov Cloud environment (including hybrid and multi-cloud scenarios). In this hands-on role, you will build, strengthen, and maintain our cloud security posture, protect critical workloads, and collaborate with engineering, DevOps, and compliance teams to embed security throughout the development lifecycle. You will develop, implement, and leverage Microsoft’s native security tools to detect threats, respond to incidents, and ensure alignment with industry standards and regulations. Lastly, you will be required to both achieve and maintain compliance with government regulations such as FedRAMP and CMMC. RESPONSIBILITIES: * Implement, design, and manage security architecture for Azure Government and Commercial deployments (with considerations for DoD IL5\IL6 and FedRAMP High controls) * Configure and optimize Microsoft Defender for Cloud, Microsoft Sentinel, Microsoft Defender for Endpoint, and related services for threat detection, vulnerability management, and automated response * Design and enforce identity & access management using Microsoft Entra ID, Privileged Identity Management (PIM), Conditional Access policies, RBAC, and just-in-time access * Secure network architectures with Azure Firewall, Network Security Groups (NSGs), DDoS Protection, Web Application Firewall (WAF), Network Watcher, and private endpoints * Protect data at rest and in transit via Azure Key Vault, encryption strategies, data classification, and information protection controls * Develop and maintain security policies, initiatives, and blueprints using Azure Policy and Microsoft Purview for compliance (NIST, FedRAMP, CMMC, STIGs, etc.) * Perform threat hunting, incident response, and forensics using Sentinel playbooks, Log Analytics, and KQL queries * Conduct security reviews of Infrastructure as Code (IaC), containers, Kubernetes (AKS), and serverless workloads * Collaborate with developers and architects to implement DevSecOps practices, including secure CI/CD pipelines, code scanning, and secure defaults * Monitor and remediate security findings, reduce attack surface, and improve overall security posture per the Microsoft Cloud Security Benchmark (MCSB) * Deploy configurations and compliance policies to Azure AVD endpoints using Intune and other Azure native services. BASIC QUALIFICATIONS: * Active U.S. security clearance (e.g., Secret, Top Secret) or eligibility to obtain one. * 3+ years of experience in cloud security, cybersecurity engineering, or related roles (with strong Azure focus) * Deep hands-on expertise with core Azure security services: Microsoft Defender suite, Sentinel, Intune, Entra ID, Key Vault, Azure Policy, Firewall, Network Watcher, and Purview * Strong understanding of DLP implementation both in cloud and on endpoints utilizing Purview and other Microsoft native controls * Experience implementing security in hybrid/multi-cloud environments * Proficiency in scripting/automation (PowerShell, Azure CLI, Bicep/ARM templates, Terraform) * Strong understanding of identity federation, zero-trust principles, encryption, network security, and vulnerability management * Familiarity with compliance frameworks (NIST, FedRAMP, CMMC, STIGs, etc.) and regulatory requirements * Excellent problem-solving, analytical, and communication skills * Strong verbal and written communication skills and the ability to stay composed under pressure. PREFERRED SKILLS AND EXPERIENCE: * Microsoft Certified: Azure Security Engineer Associate (AZ-500), Microsoft Cybersecurity Architect (SC-100) * Additional relevant certifications (e.g., CISSP, CCSP, Microsoft Certified: Azure Administrator, AWS Security Specialty, SANS GCPS, SANS GCAD) * Deep experience with detection and response engineering and SOC operations * Knowledge of container security (Docker, AKS), secure DevOps, or AI/ML workload protection * Prior experience in government regulations frameworks such as FedRAMP and CMMC. COMPENSATION AND BENEFITS: $100,000 - $258,000 USD Base salary is just one part of our total rewards package at SpaceXAI, which also includes equity, comprehensive medical, vision, and dental coverage, access to a 401(k) retirement plan, short & long-term disability insurance, life insurance, and various other discounts and perks. ITAR REQUIREMENTS: * To conform to U.S. Government export regulations, applicant must be a (i) U.S. citizen or national, (ii) U.S. lawful, permanent resident (aka green card holder), (iii) Refugee under 8 U.S.C. § 1157, or (iv) Asylee under 8 U.S.C. § 1158, or be eligible to obtain the required authorizations from the U.S. Department of State. Learn more about the ITAR here. SpaceXAI is an equal opportunity employer. For details on data processing, view our Recruitment Privacy Notice.
LIVE THE MUSIC WITH US From a pioneer tech start-up created in 2007, Deezer has become one of the first French unicorns and the second largest independent music streaming platform in the world. At eighteen years old, we’re only just coming of age. Now listed on #EuroNext, Deezer is a rapidly-growing, cutting-edge player in the music streaming market. If you want an environment where you can make your voice heard and be at the forefront of music and tech, look no further! We believe music is all about embracing the things that make us different. Deezer is a vibrant community that celebrates uniqueness, diversity and individuality, and thrives on collaboration. Our international and passionate teams pride themselves on being at the forefront of the music experience, going beyond streaming and helping the world to Live the Music. We’re constantly evolving alongside our customers, partners, artists and employees — striving to make Deezer the most personal and innovative streaming service in the world. Ready for an electrifying journey? Apply now and do your part in bringing extraordinary music experiences to people’s lives! **Join Us** JOB DESCRIPTION Position based in Paris As a Senior Expert Platform Engineer in the DevXP team, you will shape our Internal Developer Platform (IDP). You will drive platform strategy, architecture, and execution to help engineers ship faster, safer, and with higher quality. A key part of your role will be to actively collect needs and best practices from engineering teams, turning those insights into relevant, well-grounded platform solutions. You will set engineering standards along with senior engineers from the whole company, mentor peers, and bridge platform engineering with AI and cybersecurity. Responsibilities * Platform Engineering - Architect and evolve the IDP, CI/CD pipelines, and automation frameworks. Own the long-term technical vision, define platform standards (IaC, GitOps), and select best-in-class tooling across build, deployment, monitoring, and security. * Developer Experience - Proactively identify and eliminate friction across the software lifecycle. Track DX metrics (DORA, SPACE) and use data to prioritize platform investments. Be the internal advocate for developers. * AI-Augmented Platform - Integrate AI capabilities into the platform (intelligent code review, anomaly detection, smart test generation). Evaluate and operationalize AI tools (GitHub Copilot, LLM-based assistants) and explore agentic automation to reduce developer toil. * Security & Compliance - Embed security-by-design into every platform layer: secure CI/CD (SAST, DAST, SCA, secret scanning), supply chain integrity (SLSA, SBOM), and least-privilege access. Lead our journey toward a DevSecOps culture, building the practices, automation, and mindset that will make security a first-class citizen across all engineering teams - an ambition we are actively working toward. * Reliability & Observability - Define SLOs/SLAs for platform services, ensure full-stack observability, lead incident response, and conduct blameless post-mortems. * Cross-functional Leadership - Collaborate with Engineering, SRE, Infrastructure, and Security teams. Mentor engineers, represent DevXP in architectural forums, and communicate technical trade-offs to diverse audiences. QUALIFICATIONS Qualifications * Degree in Computer Science or equivalent. * 8+ years in platform engineering or DevOps, with 3+ years at senior/expert level. * Track record of operating platforms at scale; fluency with TDD, trunk-based development, and continuous delivery. Required Skills * Platform & DevOps - CI/CD (GitHub Actions), GitOps, IaC (Terraform), Kubernetes, Docker, ArgoCD, GCP (GKE) * Observability - Prometheus, Grafana; SLO/SLI/error budget management. * AI & Automation - Hands-on integration of AI tools in engineering workflows; MLOps familiarity. * Leadership - Technical influence without direct authority, mentoring, strong communication. Nice to Have Skills * Platform & DevOps - Jenkins, Ansible, Cloud Run), testing strategies, Python/Go/Bash. * Observability - OpenTelemetry * Security - DevSecOps pipelines, SAST/DAST/SCA, SBOM, SLSA, policy-as-code (OPA, Kyverno), zero-trust principles. At Deezer, diversity drives innovation. Whatever makes you uniquely you, your experiences, your way of thinking, your journey, might be exactly what we need. If this role speaks to you and aligns with your interests and capabilities, even if you don’t meet 100% of the qualifications listed, please give it a try and tell us more! #BeYou ADDITIONAL INFORMATION At Deezer, you can be your true self as we believe that #everyvoicematters. We strive to build an inclusive culture and foster a diverse environment. Because we care and want to ensure each employee feels welcome and safe at work, we continuously focus on fighting biases and helping diverse teams work well together through multiple learning opportunities, e-learnings and workshops right from the onboarding : * Regular Diversity & Inclusion internal and external talks * Dedicated employee work streams on Gender equity, Ethnicity & Culture, Disability, Parenthood (signatory of the Parental Challenge) and LGBTQIA+ * Multiple e-learnings and mandatory training sessions for all managers * English and French courses for all, so that everyone can connect and feel included Beyond benefits like transportation, we offer you extra perks like: * A Deezer premium family account for free * Access to gym classes * Join over 70 Deezer Communities to connect beyond your day-to-day work, share passions, learn from each other and #Belong * Deezer parties several times a year and drinks every thursday * Allowance for sports, travelling and culture * Meal vouchers * Mental health and well-being support from Moka.Care * Great offices always located in dynamic and attractive districts, whether in Paris, London or Sao Paulo! * Hybrid remote work policy If you want to learn more about life and culture at Deezer, please visit our Welcome to the Jungle page here!