> Markdown version of [/jobs/ext/3134616-it-security-engineer-m-h-f](https://www.wearedevelopers.com/jobs/ext/3134616-it-security-engineer-m-h-f). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # IT Security Engineer - M H/F - **Company:** Pasqal - **Location:** Massy, France - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Audit Trail, Bash Shell, Software as a Service, Cloud Computing Security, Cyber Security, Continuous Integration, Identity and Access Management, Intrusion Detection and Prevention, Intrusion Detection Systems, Python (Programming Language), OpenID, Role-Based Access Control, Ansible, Security Assertion Markup Language (SAML), Security Information and Event Management, Single Sign-On, Software Vulnerability Management, Data Logging, Cloud Platform System, Infrastructure Automation Frameworks, Terraform, Devsecops, Vulnerability Analysis - **Published:** September 29, 2026 - **Apply:** https://www.hellowork.com/fr-fr/emplois/83875859.html ## About the Role 5-7 years of hands-on experience in cybersecurity, IT security, or a closely related infrastructure engineering role - Strong foundations in IAM, endpoint security, system hardening, vulnerability management, security monitoring, audit logging, and incident response - Hands-on experience with identity technologies such as SSO, SAML, OIDC, SCIM, MFA, and RBAC - Solid understanding of application and DevSecOps security practices, including CI/CD security, vulnerability scanning, threat modeling, and software supply-chain security - Ability to translate risks and security requirements into pragmatic technical controls and propose secure alternatives without unnecessarily blocking operations or research - Ability to document controls, decisions, and technical activities so they remain measurable, traceable, and auditable - Active technology and cybersecurity watch, with the ability to assess emerging threats and solutions and turn relevant insights into continuous security improvements - Experience in working in controlled environments - Affinity with AI tools is a bonus - Fluency in professional English and ability to work effectively in an international and multicultural environment 5-7 years of hands-on experience in cybersecurity, IT security, or a closely related infrastructure engineering role Strong foundations in IAM, endpoint security, system hardening, vulnerability management, security monitoring, audit logging, and incident response Hands-on experience with identity technologies such as SSO, SAML, OIDC, SCIM, MFA, and RBAC Solid understanding of application and DevSecOps security practices, including CI/CD security, vulnerability scanning, threat modeling, and software supply-chain security Ability to translate risks and security requirements into pragmatic technical controls and propose secure alternatives without unnecessarily blocking operations or research Ability to document controls, decisions, and technical activities so they remain measurable, traceable, and auditable Active technology and cybersecurity watch, with the ability to assess emerging threats and solutions and turn relevant insights into continuous security improvements Experience in working in controlled environments Affinity with AI tools is a bonus Fluency in professional English and ability to work effectively in an international and multicultural environment Nice to have Soft Skills - Collaborative team player able to build strong relationships with technical, operational, and business stakeholders - Clear communicator able to influence decisions and adapt messages to both technical and non-technical audiences - Strong sense of ownership and autonomy, with sound judgment on when to coordinate or escalate decisions to the ISM and other relevant stakeholders - Rigorous, pragmatic, and solution-oriented approach ## Description As a Senior IT Security Engineer, you will join PASQAL's IT team to design, operate, and continuously improve security across workplace, identity, networks, SaaS, infrastructure, and cloud environments. Working closely with the Information Security Manager, you will turn security requirements and risks into pragmatic solutions that support business needs. Your main responsibilities will be to: - Strengthen identity, endpoint, network, and cloud security through access controls, hardening, segmentation, monitoring, and vulnerability management. - Deploy and operate protection and detection capabilities such as EDR/XDR, SIEM, IDS/IPS, logging, and alerting, while managing security incidents and remediation. - Automate and standardize security controls using Python/Bash, Terraform, Ansible, Infrastructure as Code, and DevSecOps practices across IT and CI/CD environments. - Support ISO/IEC 27001 certification by maintaining auditable technical controls and evidence, contributing to audits, and collaborating with IT, Engineering, Legal, HR, Procurement, and other teams to embed security by design. Strengthen identity, endpoint, network, and cloud security through access controls, hardening, segmentation, monitoring, and vulnerability management. Deploy and operate protection and detection capabilities such as EDR/XDR, SIEM, IDS/IPS, logging, and alerting, while managing security incidents and remediation. Automate and standardize security controls using Python/Bash, Terraform, Ansible, Infrastructure as Code, and DevSecOps practices across IT and CI/CD environments. Support ISO/IEC 27001 certification by maintaining auditable technical controls and evidence, contributing to audits, and collaborating with IT, Engineering, Legal, HR, Procurement, and other teams to embed security by design. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Dev & Test in the Cloud? Deploy your cloud environments with Ansible & Terraform](https://www.wearedevelopers.com/videos/1607-dev-test-in-the-cloud-deploy-your-cloud-environments-with-ansible-terraform) - [Delegating the chores of authenticating users to Keycloak](https://www.wearedevelopers.com/videos/1558-delegating-the-chores-of-authenticating-users-to-keycloak) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) ## Related Articles - [Best Companies to Work For in Paris: Top 25 Companies in 2023 ](https://www.wearedevelopers.com/magazine/190-best-companies-to-work-for-in-paris-top-25-companies-in-2023) - [Best Companies to Work For in France: Top 25 Companies in 2023 ](https://www.wearedevelopers.com/magazine/189-best-companies-to-work-for-in-france-top-25-companies-in-2023) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market)