DevSecOps (French Speaker) | BPCE-SI

AI overview

Play a critical role in enabling IT teams to develop and release secure applications through comprehensive Application Security testing and promoting security best practices.

We are seeking a skilled DevSecOps Engineer to join our Security team at BPCE SI (Solutions Informatiques). In this role, you will play a critical part in enabling our IT teams to develop and release secure applications by implementing comprehensive Application Security testing solutions and promoting best practices across the organization. In this role, you will contribute to shaping a secure digital environment and protecting the interests of our clients and stakeholders.If you are passionate about DevSecOps and application security, and you thrive in a collaborative, innovative environment, we encourage you to apply and become a vital part of our dynamic team!

Main Responsibilities:

  • Application Security Testing Solutions: Study, test, deploy, and maintain Application Security Testing tools and methodologies, including SAST (Static Application Security Testing), SCA (Software Composition Analysis), DAST (Dynamic Application Security Testing), and RASP (Runtime Application Self-Protection).
  • Security Scanning: Conduct application security scans on various business applications to identify vulnerabilities and ensure adherence to security standards.
  • Collaboration with DevOps: Work closely with DevOps teams and other security professionals to automate application security testing and integrate security controls into the development and release pipelines (CI/CD).
  • Code Security Reviews: Collaborate with developers to perform thorough security reviews of the bank’s applications, providing actionable recommendations for vulnerability remediation and mitigation.
  • Guideline Development: Draft, update, and maintain application security guidelines to ensure secure development practices across teams.
  • Reporting Platform Development: Develop and maintain a platform for aggregating and reporting application security results, enabling better visibility and informed decision-making regarding security posture.

Hard Skills:

  •  Minimum of 5 years in programming languages (e.g., Java, Angular, .NET, PHP, Python).
  • Understanding of software development best practices and awareness of source code vulnerabilities.
  • Familiarity with HTTP and API protocols for secure data transmission.
  • Basic experience with CI/CD tools, such as GIT, Jenkins, and Azure DevOps.
  • Previous experience with static or dynamic security scanning tools.
  • Fluency in French (mandatory), proficiency in English (a plus)

Soft Skills:

  • Strong communication skills to effectively collaborate with business units.
  • Demonstrated ability to understand and prioritize user requirements effectively.
  • Strong problem-solving skills for effective incident management and minimizing operational impact.

We will only consider CVs in English.

Our workplace reflects the vibrant spirit of our locations, with initiatives such as a Green Transportation Budget, electric bikes and a flexible Hybrid Work Policy. We promote wellbeing through the Honolulu Wellness Club, a Prayer Room, a Lactation Room, and themed Villages that inspire creativity and collaboration. Through our ESG and DEI strategies, we are commited to being inclusive, caring, and fair, ensuring every voice is heard and valued.

Perks & Benefits Extracted with AI

  • Wellness initiatives & themed Villages: We promote wellbeing through the Honolulu Wellness Club, a Prayer Room, a Lactation Room, and themed Villages that inspire creativity and collaboration.

Natixis in Portugal is fully integrated in the global organization of Natixis, a French multinational financial services firm specialized in Asset & Wealth Management, Corporate & Investment Banking, Insurance and Payments. A subsidiary of Groupe BPCE, Natixis counts nearly 16.000 employees across 38 countries.Based in Porto, Natixis Centre of Expertise mission is to transform traditional banking by developing innovative solutions for the bank’s business, operations and work culture worldwide, as a key driver of the company’s culture of agility and innovation. Teams of IT and Banking Support Activities work in an integrated, inclusive and transversal way, supporting all the business lines and country platforms.Natixis in Portugal is the best combination of a “start-up mindset” with a large, solid structure. Its unique culture gives true meaning to a “beyond banking” personality: to be a real entrepreneur, self-challenging, ever striving to excel and go that extra mile.

View all jobs
Report this job
Apply for this job