Talent.com
Veepee
Security Engineer - Purple Team specialist H/FVeepee • Paris
Security Engineer - Purple Team specialist H/F

Security Engineer - Purple Team specialist H/F

Veepee • Paris
Il y a 25 jours
Type de contrat
  • Temps plein
Description de poste
Pioneer of online flash sales since 2001 and key player in European e-commerce, Veepee collaborates with over 7,000 brands to offer highly discounted products available for a limited time. Operating across various sectors, including fashion, home, wine, travel or beauty... Veepee achieved a turnover of billion euros incl. VAT in 2024 and employs 5,000 staff members across 10 countries.Organization and team

The cybersecurity team includes Red/Purple/Blue teamers and risk & compliance oriented profiles, all working together to fix security weaknesses with innovative solutions, adapted to business needs. A Bug Bounty program, an authenticated program on our partner-facing platforms, an annual external Red Team engagement and recurring compliance assessments keep us honest, and our radar sharp.

Our threat detection & incident response runs fully in-house, nothing is outsourced: you can touch everything, from detection engineering, case management and response, threat intelligence and the vulnerability lifecycle to the AI agents orchestrated on top of it all. Automation and AI are at the core of everything (who doesn't?): agents triage our alerts 24/7 so humans focus on what matters, an LLM pipeline audits our code, and every confirmed finding feeds a remediation loop with product teams.

Responsibilities

  • Attack Veepee's perimeter the way a real adversary would: red team, penetration tests (grey/black/white/AI box), Active Directory attack paths, phishing campaigns and the business web based processes themselves (member journeys, seller flows, payment chains), hunting for logic flaws no scanner will ever find.

  • Put our risk register and threat intelligence to the test: take a stated risk or an emerging threat and confirm it, or refute it, with a working attack scenario.

  • Qualify what comes in from the outside: Bug Bounty reports (public and authenticated programs) and alerts escalated by our RAG agents during the cyber-watching rotation.

  • Convert every confirmed attack path into something that runs without you: a detection rule, a hunting query, an automated control. If a bot can do it, we automate it.

  • Build and improve the team's tooling: AI-assisted code audit, password auditing, secret hunting, attack-surface monitoring.

  • Carry your findings through to remediation: explain the impact to product and infra teams, propose the fix, track it through our vulnerability-management lifecycle, and re-attack to prove it's closed.

  • Share your discoveries with technical and business teams and spread security culture in accordance with day-to-day constraints.

Required skills

  • The most important thing is motivation! Naturally curious profiles who enjoy proving or disproving that an attack works, and who don't consider the job done until it's fixed.

  • Solid offensive skills: web and API penetration testing (OWASP), Active Directory attack techniques, and a taste for business-logic abuse beyond the technical stack.

  • Investigation fundamentals: comfortable digging through EDR, logs and network data to reach a verdict, and turning attacker behavior into detection logic or solid on the offensive side with a strong will to grow there.

  • Scripting and automation (Python, Bash, PowerShell); interest in AI-assisted security tooling (LLM-based code audit, agentic workflows) is a strong plus.

  • You document what you do and make it reproducible.

  • Strong communication skills: you can convince a product team to fix something they didn't want to hear about.

  • Experience: ~35 years in offensive security, detection engineering or a mixed red/blue role.

  • Language: French and professional English.

BENEFITS Variable bonus The dynamic and creative environment within international teams The variety of self-education courses on our e-learning platform Participation in meetups and conferences locally and internationally Flexible Office with up to 2 days at home Health insurance ️RECRUITMENT PROCESS 1️ 30-minute HR Screen with a Veepee Recruiter 2️ Technical and operational exchange with the team 3️ Last Interview with Head of cybersecurity We are convinced that it is up to you to define the way you work, to develop yourself, and to progress. At Veepee we guarantee that you can just be yourself! For the service of diversity and inclusion, Veepee is committed to reviewing all applications received on an equal basis. COMPANY For more information about our ecosystem: The Veepee Group processes your data collected as part of the management of your recruitment in order to manage your application file for the position for which you have applied. To find out more about our , we invite you to consult it on our career site. We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
Créer une alerte emploi pour cette recherche

Security Engineer - Purple Team specialist H/F • Paris

Offres similaires

Consultant Cybersécurité / Onboarding Lead

HuxleyParis, Île-de-France, France
Temps plein

Consultant Cybersécurité / Onboarding Lead.Consultant Cybersécurité / Onboarding Lead.Accompagner les entités dans leur.Structurer et documenter les processus de. Voir plus

 • Offre sponsorisée

Architecte Identity Security - F/H

Accenture Franceparis, île- e france, France
Temps plein

Imaginez, transformez et impactez le monde positivement : venez vivre au cœur du changement en tant qu’Architecte ou Expert technique spécialisé dans les problématiques de sécurité des identités di... Voir plus

 • Offre sponsorisée

Security Engineer

YoutrustParis, Île-de-France, France
Temps plein

Youtrust is a European Digital Trust provider, fully compliant with eIDAS and the highest European standards.Our three modules – electronic signatures, identity and document verification, and e-sea... Voir plus

Ai Security Lead For Secure Ai Deployments

HermèsLe Pré-Saint-Gervais, France, FR
Temps plein

Dans un contexte de très forte croissance, la maison Hermès place la cybersécurité au cœur de ses préoccupations depuis de nombreuses années.Au sein du pôle Data, Technologies & Innovation, la ... Voir plus

 • Offre sponsorisée • Nouvelle offre

Ingénieur Sécurité Si H/F - €50.000 - €55.000 Par An

TalentsITSaint-Cloud, France, FR
Temps plein

Talents IT est un cabinet de recrutement national spécialisé dans les MÉTIERS DE L'IT ET DU DIGITAL, NOUS VOUS PROPOSONS RÉGULIÈREMENT DES OFFRES D'EMPLOI DANS CES DOMAINES : DÉVELOPPEMENT,... Voir plus

 • Offre sponsorisée

Ingénieur Cybersécurité - Soar (H/F) - €45.000 Par An

ITS ServicesParis, France, FR
Temps plein

L'ingénieur en cybersécurité, spécialisé en automatisation, déploie et exploite des solutions SOAR pour les clients, participant à la conception, à l'intégration et à la maintenance de la p... Voir plus

 • Offre sponsorisée

S3ns - Identity & Security Engineer F/H

ThalesParis, France, FR
Temps plein

QUI SOMMES-NOUS ?S3NS est né du partenariat industriel entre Thales, leader mondial de la cyber sécurité, et Google Cloud, leader mondial des solutions cloud.Nous avons pour ambition d'offrir l... Voir plus

 • Offre sponsorisée • Nouvelle offre

Ingénieur Cybersécurité — Déployez Et Sécurisez Nos Plates-Formes - €35.000 Par An

DAVIDSON PACAParis, France, FR
Temps plein

Une entreprise d'ingénierie recherche un Ingénieur cybersécurité pour déployer et valider des plateformes de cybersécurité.Vous définirez les processus et directives et assurerez la liaison ent... Voir plus

 • Offre sponsorisée

Expert Kubernetes Security - Hardening & Incidents

GazelTechParis, France, FR
Temps plein

Overview Expert en sécurité Kubernetes à Paris.Responsibilities Hardening des clusters Kubernetes Implémenter les contrôles de sécurité (RBAC, Network Policies) Déployer des outils de sécurité (Fal... Voir plus

 • Offre sponsorisée

Devsecops Senior - Infra & Security Lead (Remote 2d/Wk) - €50.000 - €60.000 Par An

TALENT BRUT RECRUTEMENTParis, France, FR
Temps plein

Entreprise en croissance cherche un DevSecOps pour gérer son infrastructure cloud et sa sécurité, avec une expérience en environnements réglementés et audits ISO. Voir plus

 • Offre sponsorisée

Ingénieur D'Études Cybersécurité H/F (69) - €9.100 Par An - Sans Expérience

LiveCampusParis, France, FR
Temps plein

Apprentissage en cybersécurité industrielle (OT) pour la mise en conformité des systèmes, analyses de risques et renforcement de la sécurité des environnements industriels. Voir plus

 • Offre sponsorisée

Ingénieur Cybersécurité (H/F) - €40.000 - €60.000 Par An

EliquansParis, France, FR
Temps plein

Ingénieur cybersécurité pour ELIQUANS, responsable de la sécurisation des applications et des systèmes, de la gestion des vulnérabilités et des incidents, et de la veille technologique.Maîtrise de ... Voir plus

 • Offre sponsorisée

Ingénieur Cybersécurité H/F - €43.000 Par An

Expleo GroupParis, France, FR
Temps plein

Au sein de l’équipe Digital & Technology rattaché à l’agence de Montigny Le Bretonneux vous occuperez le rôle d’Ingénieur Cybersécurité H/F.Vous ferez partie d’une équipe dynamique et passionné... Voir plus

 • Offre sponsorisée

Security Engineer, Applications - $110,000 - $160,000 A Year

BetterHelpParis, France, FR
Temps plein

Security Engineer needed to lead application security team.Responsibilities include vulnerability triage, code review, and implementing security automation. Voir plus

 • Offre sponsorisée

Ingénieur Réseau & Sécurité H/F - €50.000 - €57.000 Par An

Consort GroupParis, France, FR
Temps plein

L'Ingénieur Réseau & Sécurité est responsable du déploiement et de l'exploitation des infrastructures cloud, de l'automatisation, et de la sécurité réseau. Voir plus

 • Offre sponsorisée

Cloud Security Engineer Senior F/H

Devoteam | Cyber TrustLevallois-Perret, France, FR
Temps plein

Présentation de l’entrepriseDevoteam est une entreprise de conseil en technologies, cloud, cyber, IA et développement durable.Avec plus de 11 000 collaborateurs dans plus de 25 pays, nous guidons n... Voir plus

 • Offre sponsorisée

Ingénieur Contrôle-Commande & Systèmes De Sécurité

agap2Nanterre, France, FR
CDI

Qui sommes-nous ?Acteur dans le domaine du conseil en ingénierie, agap2 met à la disposition de ses clients — des PME aux grands groupes industriels — son expertise métier dans plus de 10 secteurs ... Voir plus

 • Offre sponsorisée

Architecte IAM & Identity Security - Remote

Accenture Franceparis, île- e france, France
Temps plein

Une entreprise de conseil technologique recherche un Architecte ou Expert technique spécialisé en IAM pour intégrer ses équipes Identity Security.Le candidat doit avoir un BAC+5 et 5 ans d'expérien... Voir plus