Security Automation Engineer
TLDR
Automate security tooling, pipelines, and vulnerability detection within a DevSecOps team.
As a core technical member of the DevSecOps Team, you will transition security from manual processes to automated pipelines. Your responsibilities include:
AI-Driven Vulnerability Discovery: Develop, orchestrate, and automate AI agent workflows (leveraging LLMs and autonomous security tools) to proactively scan, identify, and validate vulnerabilities across our codebase and infrastructure.
Security Tooling Automation: Develop, deploy, and maintain automation scripts and integrations for our security toolstack (e.g., SAST/DAST in CI/CD pipelines, automated in-house scanning capabilities, and CSPM).
Vulnerability Management: Automate the tracking, reporting, and follow-up of vulnerability resolution actions across infrastructure and applications.
Continuous Improvement: Participate in technical security audits and penetration tests, utilizing the findings to write new automated detection rules.
Team Collaboration: Share your knowledge, document automated workflows, and assist engineering teams in adopting secure-by-default and automated practices.
Education & Experience
You hold a Master’s degree (Bac +5) or equivalent in Computer Science, Cybersecurity, or Software Engineering.
You have initial experience (0 to 3 years, including solid internships or work-study programs) focusing on DevSecOps, security engineering, or backend development with a strong security mindset.
Technical Competencies
Automation & Scripting: Strong proficiency in Python and Shell scripting.
AI & Emerging Tech: Basic understanding of integrating AI/LLM/MCP APIs into automated workflows or custom scripts is a strong plus.
DevOps & CI/CD Tooling: Hands-on familiarity with modern development ecosystems, particularly GitHub (GitHub Actions), Terraform, ArgoCD, and Ansible.
Cloud & Containers: Good understanding of AWS and/or Azure architectures, as well as containerization technologies (Kubernetes, Docker).
Security Fundamentals: Strong grasp of cybersecurity concepts and applied methodologies: OWASP Top 10, public key encryption, TLS, IAM, and secure credentials management.
Familiarity with our Tech Stack: Exposure to tools like Google SecOps, Crowdstrike, Datadog ASM (WAF), and frameworks like NestJS, Vue.js, or Angular.
Soft Skills
You possess an "automate-first" mindset: if you have to do a manual security task twice, you want to script it the third time.
You demonstrate rigor, curiosity, and strong analytical problem-solving skills.
You thrive in a collaborative team environment but are fully capable of driving your technical tasks independently.
Fluent in English and French (both written and spoken).
Benefits
Country-specific benefits
And more benefits tailored to each country
Paid Time Off
Generous paid time-off policy (every location is different)
Remote-Friendly
Work flexibility: hybrid and remote work policies
Stock Options
Every full-time employee receives stock options, allowing them to share in the company’s success
Wellness Stipend
Lifestyle allowance
Contentsquare builds an all-in-one experience intelligence platform that empowers organizations to understand their customers' digital journeys comprehensively. Designed for ease of use, our scalable solution helps businesses from various sectors optimize online experiences by gaining deep insights into user behavior. As a leader in the experience analytics space, we simplify data-driven decision-making for teams at all levels.
- Founded
- Founded 2012
- Employees
- 500+ employees
- Industry
- Internet Software & Services
- Total raised
- $310M raised