Swile

Staff Security Engineer

Swile
Apply
10 days ago
Paris, FranceStaff+

Responsibilities

  • Identify and reduce high-impact security risks across applications, APIs, and internal tools.
  • Strengthen authentication, authorization, access controls, and privilege management.
  • Improve protection of sensitive and personal data and limit the blast radius of compromised accounts, services, or infrastructure.
  • Improve security monitoring, auditability, and detection of suspicious access patterns.
  • Perform threat modeling and targeted security reviews.
  • Build reusable security capabilities into the engineering platform and development lifecycle.
  • Contribute to architectures involving data isolation, encryption, tokenisation, and privacy-preserving systems.
  • Partner with engineering teams to address systemic security risks and ship security capabilities into production.

Requirements

  • Significant experience building or securing production software and distributed systems.
  • Ability to read and write production code, design systems, and work directly with engineering teams.
  • Deep security engineering expertise across several areas including application and product security, API security, IAM, authentication and authorization, cloud security, cryptography, data security, privacy engineering, threat modeling, secure software architecture, and security monitoring.
  • Experience with OAuth2/OIDC, WebAuthn/FIDO2, RBAC/ABAC, KMS/HSM, envelope encryption, tokenisation, and secrets management.
  • An attacker mindset focused on attack paths, blast radius, least privilege, and systemic risk rather than only compliance.
  • Experience with large-scale SaaS or fintech platforms, sensitive or regulated data, multi-tenant architectures, insider risk or data-loss prevention, or advanced cryptographic and privacy-enhancing technologies is advantageous.

Benefits

  • Flex-remote work from the Paris, Toulouse, or Montpellier offices.

Categories

Swile

About Swile

501-1,000 employees
Contact me