Security Engineer - Barcelona

CDI
Barcelona
Salaire : Non spécifié
Télétravail fréquent
Postuler

Papernest
Papernest

Cette offre vous tente ?

Postuler
Questions et réponses sur l'offre

Le poste

Descriptif du poste

This year marks 10 years since we launched the idea that simplifying our customers' lives is possible by offering an innovative solution that allows them to easily subscribe to, manage, and switch all types of contracts through a unique and intuitive platform.

In that time, we have supported more than 1.5 million customers in France, Spain, and Italy, while investing in new verticals and positioning ourselves as a highly efficient, innovative, and competitive scale-up in a rapidly growing market.

With over 900 employees across 3 locations, we are solidifying our position as a market leader in Europe. We are always on the lookout for talent ready to join a dedicated and motivated team driven by a meaningful project. Working with us means embracing a culture of excellence, innovation, and real impact.

As a Security Engineer, you will play a key team role in ensuring the organisation and its technology infrastructure remain secure.


Your responsibilities : 

  • Collaborate with the DevOps team to enhance the security of our AWS cloud infrastructure, integrating robust security measures into our CI/CD pipelines.
  • Work closely with the IT team to ensure security coverage of internal systems, including devices, networks, and account management, aligned with industry best practices and regulatory requirements.
  • Develop, implement, and enforce security policies and procedures to meet cloud and internal IT security needs effectively.
  • Monitor and analyze security alerts, identify potential threats, and lead incident response efforts across both cloud and internal environments.
  • Conduct regular security assessments and audits across AWS and internal systems, identifying vulnerabilities and devising robust mitigation strategies.
  • Oversee and support third-party penetration tests and facilitate the achievement of essential security certifications.
  • Stay updated on the latest security trends and emerging threat landscapes, applying this knowledge to strengthen our security posture.
  • Communicate complex security concepts to a range of stakeholders, from technical teams to non-technical colleagues, ensuring security policies are understood and adopted.
  • Act as the owner of NIS2 compliance initiatives within the security team, managing requirements specific to essential entities, including mandatory risk management and incident reporting protocols.
  • Create and maintain detailed compliance documentation, regularly reviewing and updating it to reflect any regulatory changes, and coordinating with national cybersecurity authorities for compliance alignment.
  • Cloud: AWS
  • Compliance frameworks and security standards (e.g., PCI DSS, ISO 27001, GDPR)
  • Proven experience in cloud security (preferably within AWS) and internal IT security.
  • Familiarity with compliance frameworks and security standards (e.g., PCI DSS, ISO 27001, GDPR) with an emphasis on risk management, vulnerability management, and incident response.
  • Strong skills in network security, encryption, security monitoring tools, and conducting security assessments.
  • Ability to manage compliance audits, including developing and maintaining documentation for regulatory reviews.
  • Relevant certifications (e.g., CISSP, CEH, AWS Certified Security).
  • Experience in infrastructure automation, scripting languages, and container security.
  • You are speaking fluently English and a second language (Spanish or French is a big plus).
  • A first call with Julie, Talent Acquisition Manager.
  • Interview with Andrea, Head of infrastructure and your future manager.
  • A technical test with a feedback interview.
  • Final interview with Cyril, our CTO.

Envie d’en savoir plus ?

Postuler