
Senior Cyber Securité Engineer (dev sec ops)
ContentsquarePosted 6/5/2025

Senior Cyber Securité Engineer (dev sec ops)
Contentsquare
Job Location
Job Summary
Contentsquare is seeking a Senior Cyber Securité Engineer to join their Development, Security, and Operations Team. The ideal candidate will have practical security experience and knowledge of state-of-the-art detection and response methods. They will work closely with the R&D team to ensure the integrity of Contentsquare's products and keep users and customers safe. Responsibilities include responding to security incidents, designing security utilities and tools, and auditing technical platforms for security best practices. The role requires strong analytical skills, autonomy, and accountability, as well as fluency in English (French is a plus). Contentsquare offers flexible work arrangements, competitive benefits, and opportunities for career development and growth.
Job Description
Responsabilities
- Confidently and intelligently respond to security incidents, and proactively consider how to prevent the same type of incidents from occurring in the futureDevelop security utilities and tools for internal use that enable you and your fellow Security Engineers to operate at high speed and wide scaleDesign and maintain a portfolio of security alerts, automated actions and escalation workflows in support of a high-performing 24/7 incident response capability
- Constantly audit our technical platform and application to ensure the follow-up of security best-practices and identify security misconfigurationsImprove the ability to respond to threats by leading new technology selection, configuration, internal product development, obtaining-buy-in, and implementations with a heavy emphasis on automation
- Design and coordinate cohesive responses to security events that involve multiple teams across the organisationEvaluate the impact to the organisation of current security trends, advisories and public exploits.
- Coordinate responses as necessary across affected teams to do the right thing for our customers and our organisationManage and extend our security detection capabilities (SIEM, WAF, honeypot, open source tools)Recognize, adopt and share the best practices on security engineering fields throughout the organisation: development, network security, application security, cryptography, security operations, incident responsesCommunicate efficiently (in English) at multiple levels of sensitivity and multiple audiences
- Establish metrics that demonstrate continuous improvements of the Security Monitoring & Incident Response Engineering capabilities and execute on your proposed strategy for improvements
- Fulfil regular on-call responsibilities
Qualifications and skills
- 3-5 years of previous practical experience on Security Operations, especially experience coordinating responses to security incidents
- Experience in building effective partnerships with internal customers
- Experience building out detection and response programs for a SaaS or cloud-native companySolid experience with developing security toolings and integrating security layers to
- Devops pipelinesExtensive knowledge of web protocols, security issues, common attacks, Linux/Unix tools, cloud architectures and threat landscape
- Expertise with Security Information and Event Management (SIEM) and incident platforms, such as: Google SecOps, PagerDutyDeep knowledge of our technical stack and how to secure it :
- AWS and Azure
- Kubernetes / Docker
- Ansible, Helm, Terraform
- Datadog ASM as WAF, Google SecOps
- Github Action, ArgoCD
- Solid scripting skills: shell, python
- Nestjs, Vuejs, Reactjs
- Strong understanding of security concepts, standard methodologies and how to apply them, such as SSH, public key encryption, access credentials, certificates, TLS, data encryption, OWASP top 10
- Analytical skills, Autonomy and AccountabilityFluent in English (French is a plus)
- Solid understanding of MITRE ATTACK, NIST or similar threat frameworks is strongly preferred
- LocationParis (France), Barcelona (Spain) or Remotely.