- Location: Paris , 2 days remote/week
- Company: Escape – Leading AI Cybersecurity Startup
- Cofounders: CEO (Tristan Kalos) and CTO (Antoine Carossio)
- Engineering Team: 16 Engineers, 4 Technical Leads, 1 Product Owner, 3 Pentesters
- You'll be building and leading the offensive security practice, managing a team of 3 red teamers while remaining hands‑on with technical work
- Team Leadership & Management: Build, mentor, and manage a team of 3 red teamers, establishing offensive security best practices, methodologies, and quality standards. Foster a culture of continuous learning and technical excellence while ensuring operational efficiency.
- Offensive Security Operations: Design and execute penetration tests, red team engagements, and adversary simulations against modern web applications, APIs, cloud infrastructure, and codebases to validate Escape's detection capabilities.
- Research‑to‑Detection Pipeline: Collaborate with the Security Research team to discover novel attack techniques, validate vulnerability detection logic, and ensure our scanners catch what real attackers would exploit.
- Customer‑Facing Validation: Support enterprise customer engagements by demonstrating real‑world exploitability of findings, conducting proof‑of‑concept attacks, and helping VP Security and Security Engineer personas understand risk severity.
- Attack Scenario Development: Build realistic attack chains and scenarios that combine Code‑to‑cloud vulnerabilities, helping customers understand end‑to‑end exploitation paths from code to runtime.
- Scanner Quality Assurance: Act as the final validator for scanner accuracy by attempting to exploit reported vulnerabilities, reducing false positives, and identifying false negatives through manual testing.
- Offensive Tooling & Automation: Develop custom tools, exploits, and automated attack workflows that can be integrated into our continuous security validation processes.
- Strategic Planning: Define the offensive security roadmap, prioritize testing initiatives, and allocate team resources to maximize impact on product quality and customer success.
- Knowledge Transfer: Train Security Engineers and developers on offensive security techniques, helping them build security intuition and understand attacker perspectives.
- Target Environment: Modern web applications, REST/GraphQL APIs, cloud‑native infrastructure (AWS/Kubernetes), CI/CD pipelines, container environments
- Offensive Tools: Burp Suite, custom Python/Go exploits, browser automation (Playwright), Metasploit Framework, cloud pentesting toolkits (Pacu, ScoutSuite)
- Languages: Python (primary), Go, Bash scripting, proficiency in reading/writing exploits in multiple languages
- Infrastructure: Kubernetes (EKS), Docker, AWS services
- Collaboration: GitLab, Slack, direct integration with our scanner codebase (Python/Go)
-
Se requiere un Lead de Seguridad para integrar una equipe en charge d'accompagner nos clients sur des missions d'expertise en cyberdéfense. · Formación Bac+5 (École d'ingénieur, Université ou équivalent …) en informatique avec idéalement une spécialisation en sécurité · ...
Parisil y a 3 semaines
-
act digital est un groupe international de conseil et d'ingénierie qui accompagne ses clients dans leurs projets de transformation numérique. · Présent dans 12 pays et fort de plus de 5 600 collaborateurs, nous mettons nos expertises au service de leurs enjeux en développement lo ...
Parisil y a 1 semaine
-
Nous recherchons les services d'un expert externe en vulnérabilités pour renforcer notre équipe d'experts techniques. Le prestataire devra avoir une vision globale et identifier les exigences nécessaires à la mise en place d'un service opérationnel. · ...
Parisil y a 3 semaines
-
Rejoindre act digital France c'est intégrer une organisation agile et engagée, · Qui fait avancer les projets avec ses clients pour transformer les idées en résultats concrets, · avec pragmatisme et exigence.Vous êtes issu(e) d'une formation Bac+5 (École d'ingénieur, Université o ...
Parisil y a 3 semaines
-
act digital est un groupe international de conseil et d'ingénierie qui accompagne ses clients dans leurs projets de transformation numérique. · Présent dans 12 pays et fort de plus de 5 600 collaborateurs, nous mettons nos expertises au service de leurs enjeux en développement lo ...
Parisil y a 1 semaine
-
+Nosotros estamos buscando un Security Lead para nuestra organización. · ...
Paris ()il y a 1 mois
-
Somos un grupo internacional de consejo y ingeniería que acompaña a nuestros clientes en sus proyectos de transformación digital. Buscamos un Lead de seguridad para acompañar a nuestros clientes en misiones de experticia en seguridad operacional. · ...
Parisil y a 3 semaines
-
L'équipe Cloud de Skello souhaite migrer vers un modèle où la sécurité n'est plus une option mais un pilier intégré. · ...
Paris ()il y a 1 mois
-
Skello est une solution RH qui vise à simplifier le quotidien des managers et des employés en Europe. L'entreprise cherche un Lead Security Engineer pour migrer vers un modèle où la sécurité est un pilier intégré. · ...
Parisil y a 1 mois
-
Chez Skello, on développe la solution RH de référence pour planifier et manager les équipes de terrain. · En Europe, les équipes de terrain représentent 50 % des travailleurs, mais seulement 20 % des solutions digitales leur sont réellement adressées · Skello est né pour combler ...
Parisil y a 1 mois
-
· Skello en bref · Chez Skello, on développe la solution RH de référence pour planifier et manager les équipes de terrain. · En Europe, les équipes de terrain représentent 50 % des travailleurs, mais seulement 20 % des solutions digitales leur sont réellement adressées. · Sk ...
Parisil y a 1 semaine
-
Chez Skello, · on développe la solution RH · de référence pour planifier · et manager les équipes de terrain. · ...
Paris À temps pleinil y a 1 mois
-
Description · Artisans contemporains depuis 1837, nous devenons également artisans du logiciel · Hermès Digital développe, maintient et met à disposition la plateforme web et e-commerce de la Maison Hermès dans 34 sites à travers le monde. Dans un contexte d'hyper-croissance, et ...
PARIS, Île-de-France, Franceil y a 1 semaine
-
Somos una start-up especializada en Deep Tech que busca un Offensive Security Lead para reforzar su equipo. · Pilotar una equipe de 3 pentesters. · Mettre en place les opérations de sécurité offensive. · Développer les outils de cybersécurité. · ...
Fresnesil y a 1 mois
-
+Job summary · Hermès Digital développe, maintient et met à disposition la plateforme web et e-commerce de la Maison Hermès dans 34 sites à travers le monde.Définition et mise en œuvre de la politique de résilience et de sécurité des plateformes web et de la plateforme e-commerce ...
Parisil y a 1 mois
-
We are seeking an Offensive Security Lead to join Escape's growing team. You will lead offensive security initiatives, conduct penetration testing and red team operations on customer applications. · ...
Parisil y a 1 mois
-
+ Escape is on a mission to reinvent how we protect our applications against hackers. · Our growing team of passionate Escapers tackles profound tech challenges and drives innovation in cybersecurity. This role is central to Escape's mission: · ensuring our security scanners accu ...
Parisil y a 1 mois
-
We are seeking a Lead Security Researcher to join Escape and play a central role in advancing the detection capabilities of our DAST and ASM products. · Research and identify new classes of vulnerabilities and novel detection techniques across web applications, APIs, and modern a ...
Parisil y a 2 semaines
-
Escape is on a mission to reinvent how we protect our applications against hackers. · We love to break down barriers and bring innovation from R&D to the final product stages. · We are seeking our first Offensive Security Lead You will lead offensive security initiatives, · condu ...
Parisil y a 2 semaines
-
We are seeking a Lead Security Researcher · To join Escape and play a central role in advancing the detection capabilities of our DAST and ASM products. · Research and identify new classes of vulnerabilities and novel detection techniques across web applications APIs and modern ...
Parisil y a 1 mois
-
Escape is on a mission to reinvent how we protect our applications against hackers. Backed by YC, and with a growing customer base including industry giants like Société Générale, Lightspeed, and the Olympic Games, we're on the road for our Series A funding round. · Our growing t ...
Paris, Île-de-il y a 9 heures
Offensive Security Lead - Paris - Escape
Description
Escape is on a mission to reinvent how we protect our applications against hackers. Backed by YC, and with a growing customer base including industry giants like Société Générale, Lightspeed, and the Olympic Games, we're on the road for our Series A funding round.
Our growing team of 23 passionate Escapers is at the core of the company's success, tackling profound tech challenges and driving innovation in cybersecurity.
We love to break down barriers and bring innovation from R&D to the final product stages. At Escape, every team member has the chance to take on important responsibilities that drive impact.
We believe it's time to bring more AI‑driven innovation to the cybersecurity field. We'd love your help in building this dream
We are seeking our first Offensive Security Lead to join Escape and play a key role in validating and enhancing our AI‑powered Code‑to‑cloud ASM and DAST platform. This role is central to Escape's mission: ensuring our security scanners accurately detect real‑world vulnerabilities by thinking like an attacker. You will lead offensive security initiatives, conduct penetration testing and red team operations on customer applications, and work closely with our Security Research and Scanners teams to continuously improve our detection capabilities.
As the Offensive Security Lead, you will be responsible for designing and executing sophisticated attack scenarios, validating scanner findings against real‑world exploitation techniques, and translating your offensive research into actionable improvements for our platform. You will be the internal adversary who stress‑tests our technology and helps our enterprise customers understand their true security posture.
Context
Key Responsibilities
Tech Stack
4+ years of experience: Proven experience in offensive security roles (Penetration Tester, Red Teamer, Security Researcher) with at least 1+ years in a leadership or team lead capacity. Strong track record of finding and exploiting real vulnerabilities in production environments while coaching others.
People Leadership: Demonstrated ability to build, mentor, and manage technical teams. Experience setting technical direction, conducting performance reviews, and fostering a high‑performing offensive security culture.
Application Security Expertise: Deep understanding of web application vulnerabilities (OWASP Top 10, API security, business logic flaws), modern frameworks, and cloud‑native architectures. Demonstrated ability to exploit complex vulnerability chains.
Hands‑on Exploitation: Strong practical experience with exploitation techniques, custom exploit development, and proof‑of‑concept creation. Comfortable with both manual testing and automated attack techniques. Maintains hands‑on technical skills while managing a team.
Code Analysis Skills: Ability to perform security code review and identify vulnerabilities in Python, Go, JavaScript/TypeScript, and other common languages. Experience bridging static analysis findings with runtime exploitation.
Cloud & Container Security: Experience with cloud infrastructure pentesting (AWS, Azure, GCP), Kubernetes security, container escape techniques, and CI/CD pipeline attacks.
Tooling & Automation: Proficiency in Python or Go for developing custom offensive security tools, exploits, and automation scripts. Experience extending or contributing to open‑source security tools.
Research Mindset: Curiosity‑driven approach to security, constantly exploring new attack vectors, staying current with security research, and translating findings into practical detection improvements.
Startup Enthusiast: Motivated by joining a fast‑growing deep‑tech startup, eager to have a direct impact on product quality and team building, and interested in shaping the future of AI‑driven cybersecurity from an adversarial perspective.
We respect your time and will make it quick and efficient. The entire process will be completed within 2 weeks.
1 meeting with HR representative – 30 minutes
Technical challenge
1 technical deep dive with Technical Lead – 1 hour
1 personal experience interview with Head of Engineering – 1 hour
1 leadership & strategy interview with CTO – 30 minutes
Formal hiring proposal.
#J-18808-Ljbffr
-
Security Lead
Réservé aux membres inscrits Paris
-
Security Lead
Réservé aux membres inscrits Paris
-
SECURITY LEAD
Réservé aux membres inscrits Paris
-
Security Lead
Réservé aux membres inscrits Paris
-
Security Lead
Réservé aux membres inscrits Paris
-
Security Lead
Réservé aux membres inscrits Paris ()
-
Security Lead
Réservé aux membres inscrits Paris
-
Lead Security Engineer
Réservé aux membres inscrits Paris ()
-
Lead Security Engineer
Réservé aux membres inscrits Paris
-
Lead Security Engineer
Réservé aux membres inscrits Paris
-
Lead Security Engineer
Réservé aux membres inscrits Paris
-
Lead Security Engineer
À temps plein Réservé aux membres inscrits Paris
-
CDI - Security Lead (H/F)
Réservé aux membres inscrits PARIS, Île-de-France, France
-
Offensive Security Lead
Réservé aux membres inscrits Fresnes
-
CDI - Security Lead (H/F)
Réservé aux membres inscrits Paris
-
Offensive Security Lead
Réservé aux membres inscrits Paris
-
Offensive Security Lead
Réservé aux membres inscrits Paris
-
Lead Security Researcher
Réservé aux membres inscrits Paris
-
Offensive Security Lead
Réservé aux membres inscrits Paris
-
Lead Security Researcher
Réservé aux membres inscrits Paris
-
Offensive Security Lead
Réservé aux membres inscrits Paris, Île-de-