Skip to content

Open nowPosted 37 days ago

Staff Security Engineer

swile32 open roles

Where
Paris, France
Work mode
Hybrid
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowStaff Security Engineerswile · Paris, France
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on swile's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.8% of postings close within 7 days. Measured by our own scanner across the market.

Share of postings closed within
  1. 1.6%1 day
  2. 3.4%3 days
  3. 7.8%7 days
  4. 14.3%14 days
  5. 33.7%30 days
This job: posted 37 days ago

The posting

Build security platforms, not security processes

We are looking for a Staff Security Engineer to strengthen the security of our products, data and engineering platform.

This is a highly technical and hands-on role. You will work closely with Engineering teams to continuously harden our systems while helping design the next generation of our security architecture.

You will operate across two horizons:

  • Strengthen security today: continuously harden our applications, access controls and data-protection mechanisms against evolving threats.
  • Build the privacy architecture of tomorrow: move beyond traditional perimeter and access-control security by designing systems where sensitive data is cryptographically isolated, minimally exposed, and increasingly usable without being directly revealed.

The ultimate objective is not simply to make Swile harder to breach. It is to make a breach increasingly uninteresting, because there is less usable data available to steal.

What you will do

  • Identify and reduce high-impact security risks across our applications, APIs and internal tools.
  • Strengthen authentication, authorization and access controls.
  • Improve the protection of sensitive and personal data.
  • Design controls that limit the blast radius of compromised accounts, services or infrastructure.
  • Improve security monitoring, auditability and detection of suspicious access patterns.
  • Perform threat modelling and targeted security reviews.
  • Build reusable security capabilities directly into our engineering platform and development lifecycle.
  • Contribute to long-term architectures around data isolation, encryption, tokenisation and privacy-preserving systems.
  • Partner with engineering teams to address systemic security risks rather than individual findings.

What we are looking for

  • Application and Product Security
  • API Security
  • IAM, authentication and authorization
  • OAuth2 / OIDC, WebAuthn / FIDO2
  • RBAC / ABAC and privilege management
  • Cloud security
  • Cryptography, KMS / HSM and envelope encryption
  • Tokenisation and secrets management
  • Data Security and Privacy Engineering
  • Threat modelling and secure software architecture
  • Security monitoring and detection
  • What happens if this employee becomes malicious?
  • What happens if this backend is compromised?
  • What happens if someone dumps this database?
  • Can this endpoint be called directly?
  • How much data can one account access before we notice?
  • Where else does this information get replicated?
  • Why do we have this data at all?
  • something that needs to be fixed this week;
  • something that requires an architectural redesign;
  • something cryptographically elegant but operationally unnecessary.
  • large-scale SaaS or fintech platforms;
  • highly sensitive or regulated data;
  • multi-tenant architectures;
  • insider risk or data-loss prevention;
  • advanced cryptographic or privacy-enhancing technologies.
  • Sensitive data is exposed to fewer systems and people.
  • Access to sensitive resources is increasingly scoped, attributable and auditable.
  • Compromising a single account or service has a limited blast radius.
  • Security controls are increasingly enforced by the platform rather than by process.
  • Product teams can build secure systems faster and with less friction.

Localization of this position

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against swile's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on swile's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    swile's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.