Job Description
Roles & Responsibilities
Job Description Context As part of strengthening the Scalian Group's Cybersecurity team, we are recruiting an Operational Cybersecurity Engineer to support the cybersecurity manager across a very broad scope (SOC, incidents, audits, penetration testing, compliance, etc.). The position is highly operational, with a global view of the group's IT security (multi-country). Reporting to the Group IT Infrastructure Manager, within the Group IT Infrastructure team. Main responsibilities: Operational Security & SOC: Monitoring and management of the SOC (external or internal provider); Analysis of security alerts; Qualification/prioritization of incidents; Monitoring of corrective actions; Active participation in security incident management; Investigation (SIEM, logs, endpoints, networks); Root cause analysis (RCA); Contribution to lessons learned (REX); Contribution to the continuous improvement of detection rules and SOC processes. Penetration Testing & Vulnerability Management: Monitoring of external penetration tests (and internal tests if applicable); Test scoping (scope, objectives); Analysis of reports; Vulnerability qualification; Coordination of remediation plans with IT teams; Participation in vulnerability management (scanning, prioritization, monitoring). Cross-functional Governance & Security: Contribution to the implementation and maintenance of requirements. Security: Best practices, hardening, technical guides. Participation in security audits (ISO 27001, TISAX, clients). Security support for IT teams (systems, networks, workstations). Security monitoring (threats, vulnerabilities, best practices).
Desired Candidate Profile
Search profile
Formation & exp rience
- Bachelor's degree (Bac+3) or Master's degree (Bac+5) in cybersecurity / computer science
- Minimum 3 years' experience in operational security (SOC), incident response, or general IT security with a strong cybersecurity focus
Expected technical skills
- Good understanding of environments: Systems (Windows, Linux), Networks (TCP/IP, firewall, proxy, VPN), Workstations
- Experience or strong sensitivity: SOC / SIEM Log analysis Security incident management Volunteers and intrusion testing
- Desired skills: EDR/XDR tools, attack methodologies (OWASP, MITRE ATT&CK), ISO 27001 / TISAX standards
Soft skills
- Analytical and methodical mind
- Ability to keep a cool head in an incident situation
- Good interpersonal skills (changes with IT, service providers, management)
- Ability to simplify security topics
- Autonomy, rigor, sense of priorities
LANGUAGES
- Professional English (international context)