Full Time
Quick Summary
Free2move is seeking a highly motivated Security Platform Engineer to join their Cybersecurity Team and shape the future of mobility. This is a unique opportunity to build and automate security solutions, empowering developers to ship secure code within a dynamic and innovative environment. If you're passionate about DevSecOps and thrive in a remote-first setting, this role is for you.
Key Responsibilities
- Architect and build high-level security abstractions, providing a seamless Security-as-a-Service experience for engineering teams.
- Automate security checks within CI/CD pipelines and cloud infrastructure, eliminating manual toil and improving efficiency.
- Manage security dashboards and automated remediation tools using DefectDojo and Backstage to enhance visibility and response capabilities.
Requirements
- 5-10 years of experience in DevSecOps or Security Engineering, demonstrating a strong understanding of security principles.
- Deep expertise in AWS and Kubernetes/Docker, showcasing cloud-native mastery and practical implementation skills.
- Strong fundamentals in backend engineering, preferably with proficiency in Python or Rust.
Benefits
- Full-time, 100% remote position with hubs in Paris, Madrid, or Berlin, offering flexible work arrangements.
- Competitive compensation and attractive salary package.
- Professional growth opportunities through collaboration with multidisciplinary and international teams, and access to an E-Learning platform.
Required Skills
AWS
Kubernetes
Docker
Python
Rust
DevSecOps
Security Engineering
DefectDojo
Dependency-Track
WAF
Estimated Salary Range for Security Platform Engineer (f/m/d) in Remote
BELOW AVERAGE
< $150k/yr
β¨
AVERAGE RANGE
$150k - $180k
/year
ABOVE AVERAGE
> $180k/yr
π‘ Salary estimates based on aggregated data from public sources. Actual salaries may vary.
Job Description
Created in 2016, Free2move simplifies mobility-related uses by offering a wide range of services to satisfy everyone's π travel needs.
With Free2move, you can rent a city car for shopping or for your stay in Italy or book a car park during your weekend in Paris... all in one click, on our web/mobile platform! π²
Born from the merger of the Stellantis Group π and the start-up TravelCar, Free2move, thanks to its agility and its spirit of conquest has managed to establish itself in just few years as a reference player to revolutionize the mobility of all travelers.
Having become the #1 reflex for more than 6 million users, Free2move operates in more than 170 countries across 5 continents π and is available in 30 languages and 26 currencies. 5000 partners trust us and several hundred thousand vehicles are available!
If you want to join a team of +750 experts and bold international projects, then you're in the right place! π―
You will evolve in an ultra-dynamic, innovative, agile, internationally-focused structure and integrate our talented teams, full of ideas and motivation and with multidisciplinary skills, at the crossroads of the digital eco-system and the fast-changing automotive sector.
Are you a Builder or an Auditor? π οΈ
At our core, we believe security should be a facilitator of innovation, not a bottleneck. We are looking for a Security Platform Engineer who doesn't just find vulnerabilities but engineers the solutions to prevent them.
You will join our Cybersecurity Team to architect the "paved road"βa seamless, automated security ecosystem that empowers our developers to ship secure code by default. If you have an "automation-first" mindset and love turning complex requirements into elegant, scalable abstractions, this is the role for you.
The Mission π
As a key driver within our internal Security Guild, you will:
Architect Security-as-a-Service: Build high-level security abstractions to provide a seamless experience for our engineering teams.
Automate Guardrails: Identify and automate security checks within CI/CD pipelines and cloud infrastructure to eliminate manual toil.
Empower through Visibility: Manage security dashboards and automated remediation tools using DefectDojo and Backstage.
Defend the Infrastructure: Optimize security rules for edge components (WAF, Shield, Firewalls, IDS/IPS).
Drive Detection Engineering: Design automated correlation and detection standards across logs in collaboration with the Architecture Guild.
Own the Lifecycle: Manage the automated vulnerability lifecycle from identification to remediation using Dependency-Track.
Your Profile π€
Experience: 5 to 10 years in DevSecOps or Security Engineering.
Cloud Native Mastery: Deep expertise in AWS and Kubernetes/Docker.
Software Craftsmanship: Strong fundamentals in backend engineering (Python or Rust preferred).
Security Ecosystem: Hands-on experience with ASPM tools (DefectDojo, Dependency-Track) and integrating SAST/DAST into GitHub Actions or GitLab CI.
The "Soft" Edge: You are a pedagogue who can explain complex issues with empathy, an autonomous worker who thrives in a remote-first environment, and a stakeholder who takes full ownership.
Languages: Fluency in English and French is required.
Bonus Points: If youβve worked with Backstage, hold an OSCP or AWS Certified Security credential, or have a background in Pentesting, we definitely want to hear from you!
Why Join Us? β¨
Work Your Way: Full-time, 100% remote position based out of our hubs in Paris, Madrid, or Berlin.
Impact: Move beyond simple auditing to building the actual security DNA of the platform.
Innovation: Work in a fast-paced environment where we prioritize shifting security left and empowering developers.
What we offer π
Working at Free2move means becoming part of a tribe in which the culture of performance rhymes with a good atmosphere. It is also:
A start-up spirit supported by a large Group
The opportunity to revolutionize the uses of mobility with us!
A neat integration to start well
Lots of possibilities for development
Collaboration with multidisciplinary and international teams
International projects to perfect your background!
An attractive salary
An access to our E-Learningplatform π : for the development of languages and other skills
No-meetings days to boost your efficiency!
...This list is not exhaustive...
Job type:
- Permanent contract
Only application in English will be reviewed πΊπ²
Originally posted on Himalayas