DevOps Cybersecurity Engineer
Job description
About the role
You will design, develop, and maintain custom security automation tools that directly protect Scaleway's infrastructure and data. You will own the full lifecycle of Python-based applications and scripts used by the SOC and CSIRT to detect and respond to threats. You will act as a bridge between production infrastructure teams and security operations to ensure deployed solutions meet strict compliance and availability standards. You will continuously refine detection workflows to reduce noise and accelerate incident response times. You will translate complex security requirements into robust, scalable software components that operate reliably in a cloud-native environment. You will proactively identify risks in the threat landscape and build tools that enable the security team to stay ahead of adversaries.
Key facts
What you'll do
Design and develop automated tools, scripts, and applications to support the Security Operations Center, CSIRT, and Trust & Safety teams.
Equip field security teams with tailor-made solutions that improve their efficiency, visibility, and consistency in handling security events.
Adapt and extend internal security tooling to align with the company's evolving corporate security strategy and regulatory obligations.
Collaborate closely with product and engineering teams across Scaleway to integrate security capabilities into platforms and services.
Operate and optimize solutions within a highly secure, SecNumCloud-compliant environment and adhere to strict operational standards.
Refine existing scripts, workflows, and automation to streamline threat detection, analysis, and remediation processes.
Act as a technical owner for security tools, ensuring reliability, maintainability, and clear documentation for operational use.
Communicate effectively with both technical and non-technical stakeholders to gather requirements, explain constraints, and share updates.
Support day-to-day security operations by providing reliable tooling that reduces manual effort and improves detection fidelity.
Contribute to the continuous improvement of the security tooling landscape through code reviews, testing, and best practices.
Work within a small, focused development sub-team to deliver impactful security solutions quickly and iteratively.
Participate in on-call activities or support rotations as needed to ensure tool availability and rapid response to issues.
Leverage your understanding of infrastructure and production environments to build tools that are practical and resilient.
Drive adoption of new security tools by working directly with SOC analysts and internal departments during rollout and training.
Requirements
Intermediate to advanced experience in software development and tool creation using languages such as Python.
Strong appetite and interest in cybersecurity concepts, threat environments, and SOC/CSIRT operations.
Proven track record of working closely with infrastructure or production teams to solve operational problems.
Ability to build clean, maintainable, and well-documented code for automation and internal tooling.
Familiarity or experience with regulated or highly secure cloud compliance frameworks, especially SecNumCloud, is a strong asset.
Solid understanding of security operations, incident response processes, and common detection methodologies.
Strong time management and organization skills to prioritize tasks effectively in a fast-evolving environment.
Clear communication skills to share information efficiently with both technical and non-technical stakeholders.
Analytical mindset focused on creating practical solutions for complex security needs while considering operational constraints.
Comfort shifting focus to match the rapid rhythm of a cloud provider's security ecosystem and evolving threat landscape.
Natural curiosity and a desire to keep learning new technical architectures, tools, and security mechanisms.
Willingness to collaborate within a structured security organization and adhere to defined processes and standards.
Ability to work independently and as part of a small team to deliver reliable security tooling under deadlines.
Commitment to maintaining high-quality code and contributing to an efficient, scalable security toolset.
Practical notes
Hybrid work: We offer up to 3 days of remote work per week.
Offices: Our offices are spacious, dynamic workspaces with bold design, conveniently located near public transport. Most of our offices feature outdoor spaces (terraces) and bike parking facilities.
Dining: Our chef provides a healthy meal service at the headquarters, and breakfast is available across all our sites year-round. Scalers working from regional sites enjoy a Swile card for lunches.
Well-being commitments: Whether it's access to a gym, daycare places, or discounted services for caring services, Scaleway is committed to supporting Scalers in maintaining a balanced life.
International environment: With dozens of nationalities, Scaleway offers a stimulating environment where English is as widely spoken as French.
Career & Mobility: Our managers value internal mobility, and opportunities to transition to other entities within the Iliad Group are accessible to all Scalers.
🚀 Why join the Scaleway adventure?
✔ A rich and diverse product offering: Scaleway offers over 100 public cloud products in IaaS, PaaS, and AI.
✔ A cutting-edge technical environment: Scaleway provides modern infrastructures, including dedicated servers, containerization, serverless platforms, and AI offerings, all designed to support ambitious projects.