This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
We are looking for a Lead Cybersecurity Analyst who can take ownership of the organization’s overall security posture and work closely with engineering, architecture, and leadership teams. This role is both strategic and hands-on. You will help define security policies, assess and manage application and cloud risks, and ensure that security is embedded into how we design, build, and operate our systems. The environment is primarily AWS based, with backend services built in Java, modern frontend applications using Vue.js, and MySQL as the core database platform. The right person will be comfortable working across cloud infrastructure, application code, and operational processes, and will be able to translate security requirements into practical, actionable guidance for teams.
Job Responsibility:
Define and maintain the organization’s security strategy, policies, standards, and architecture principles
Act as a security advisor to engineering, product, and leadership teams, ensuring alignment with business and regulatory requirements
Design and govern secure AWS architectures, including IAM, networking, and core AWS security services
Continuously assess cloud environments and drive remediation of security risks and misconfigurations
Lead application security reviews, threat modeling, and risk assessments for Java based backend services and Vue.js frontend applications
Embed security into the SDLC through secure coding practices, CI/CD security controls, and vulnerability management
Define and enforce data and database security controls, including encryption, access management, and auditing
Support compliance, audits, DPAs, BCDR planning, vulnerability assessments, and penetration testing activities
Lead incident response processes, security monitoring, and post-incident improvement initiatives
Collaborate with engineering and DevOps teams to promote a security-by-design culture and provide practical security guidance
Requirements:
Experience in cloud and application security, with hands-on AWS production environments
Strong knowledge of Java (Spring/Spring Boot) and frontend security (Vue.js)
Solid understanding of MySQL security and data protection
Experience with risk assessment, vulnerability management, and incident response
Working knowledge of DPAs, BCP/DR, VAPT, and bug bounty programs
Relevant security or cloud certifications such as AWS Security Specialty, CISSP, CISM, or similar
Experience with containerized workloads and Kubernetes security
Familiarity with modern authentication and authorization approaches such as OAuth2 and OpenID Connect
Experience working in agile or Descopes environments
What we offer:
Competitive compensation, benefits, and opportunities for growth