Senior Information Security Specialist

  • Paris, France
  • Full-time

Company Description

As one of the leading websites for sharing videos, Dailymotion attracts hundreds of millions of unique monthly visitors and streams billions of videos views worldwide every month. The platform offers the best content from independent content creators to premium partners, being the 35th website worldwide. With 45 localized versions, our mission is to provide the best possible entertainment experience for users and the best marketing opportunities for advertisers, while respecting content protection. This is a unique opportunity to combine a fun start-up environment with the massive scale of one of the largest players in the online video industry.

Job Description

The Security and Privacy team has a very important role within the company as it creates and institutes measures to safeguard sensitive information and make sure that all private data belonging to the company, its employees, and its users, remains confidential. The Privacy and Security team is tasked with anticipating new threats and actively working to prevent data breach or security incident from occurring

As part of the Engineering department, the main responsibility for this position is to second the CISO in the performance of his governance and operational duties in order to structure and develop the information security program across the company. As an early joiner in this team in its infancy, the role requires an ability to contribute -in various capacities- to all the disciplines of information security. As the team grows, there will be an opportunity for the applicant to specialize in one or more of the areas of preference.

Responsibilities

  • Design and redaction of the security policy and technical standards
  • Be part of the Security Assurance program by:
    • Conducting or overseeing the delivery of security assessment such as Architecture reviews, penetration tests, code reviews, vulnerability scans, bug bounty programs, vulnerability watch.
    • Coordinating and reviewing the mitigation of discovered vulnerabilities in order to drive the risks down to an acceptable level
    • Execute or oversee projects that improves the security or privacy posture for the organization (ex: Full HTTPS transition, log aggregation, 2 Factor Authentication, implement SPF-DMARC-DKIM, etc)
  • Respond to security incidents and lay the buliding blocks of the Security Operating Center
  • Work on the compliance program by contributing to Privacy Impact assessments and advising on privacy risk mitigation techniques

Qualifications

• Minimum of 5 years of experience in a related role with proven ISS experience
• Strong understanding of information technology and security
• Experience with risk management and auditing
• Effectively able to manage priorities and work autonomously
• Strong organizational skills with the ability to multi-task
• Excellent communications, teamwork, leadership and conflict management skills
• Ability to work in an international environment and across multiple departments (legal, Engineering, finance, content, …)
• Curious, independent and a solution-oriented thinkers to solve problems efficiently in a scalable manner
• English fluent



Additional Information

Technical environnent @ dailymotion :

• Languages: PHP, Python, Go, Shell, SQL
• Databases: MySQL, BigQuery, ElasticSearch
• Frameworks: React, GraphQL, REST, Symphony
• Devops: Git, Jenkins, Docker, Kubernetes, Salt, Consul, Quay
• Cloud services: GCP, AWS, office365