956,701open jobs
57,832companies
158,324added this week
Browse all
Salary
≈ $58k – $131k per year (Estimated)
Location
Remote (likely France)
Seniority
Senior · 5+ years exp
Employment
Full-Time

First seen by Alion on Aug 4, 2026. Epicompany scores A on the Alion truth index.

Overview
Company
Impact
Profile match
EPI is a payment scheme, built by European payment industry leaders, to create Wero, a unified pan-European payment solution leveraging SCT Inst.

Be part of a movement to change the way Europe pays

In today’s digital Europe, payments still feel too complicated. Random delays, confusing rules, extra apps and accounts make it harder than it should be to pay and get paid.

The European Payments Initiative is changing that with Wero, a proudly European digital wallet to make payments easier, clearer and more secure. Online, in store, at home and across borders, with your money and data protected under European laws and regulations.

Wero is live in Belgium, France, Germany and the Netherlands and launching very soon in Luxembourg and Austria. Backed by 17 major banks and the two largest European acquirers, we’re building a brand new, proudly European payment system. Why not join us?

What's in it for you

Play a key role in protecting Europe’s next-generation payment infrastructure. As an Operations Security Engineer, you will be at the heart of EPI’s Security Operations capability: triaging alerts, responding to incidents, improving detection coverage and proactively hunting for threats across cloud, identity, endpoint and application environments.

This is a high-impact opportunity to combine hands-on SOC expertise, threat hunting and detection engineering in a remote-first, pan-European company where security directly supports the resilience and trust of Wero.

About the team

You’ll join the Security Operations team within Operations Services Delivery. The team brings together highly skilled security profiles, including SOC, IAM, general security, threat hunting and penetration testing expertise.

You’ll collaborate closely with Security, Engineering, DevOps, IT and Operations teams to strengthen detection and response capabilities, improve tooling and ensure strong visibility across our environments. This role is ideal for someone who enjoys hands-on investigation, structured incident response and clear communication with both technical and non-technical stakeholders.

Your impact

  • Act as a central point of contact for alert triage, incident identification and security event investigation across EPI environments.

  • Execute incident response activities using structured frameworks such as SANS PICERL, from preparation and identification through containment, eradication, recovery and lessons learned.

  • Conduct proactive, hypothesis-driven threat hunts based on attacker behaviour, emerging threats, threat intelligence and MITRE ATT&CK techniques.

  • Parse, analyse and correlate logs from authentication, application, system, endpoint and cloud telemetry sources, including AWS and Azure.

  • Design, tune and maintain detection rules, use cases, dashboards, custom alerts and automation workflows to identify anomalies, lateral movement and persistent threats.

  • Contribute to the development and continuous improvement of SOC playbooks, runbooks, SIEM and EDR integrations.

  • Document and communicate threat findings, incident outcomes and remediation recommendations clearly to technical and non-technical stakeholders.

  • Collaborate with engineering, SOC, IR and IT teams to improve detection coverage, response readiness and operational resilience.

Technology stack & way of working

  • Primary security tools: Rapid7, Microsoft Defender, SIEM and EDR technologies

  • Cloud, identity & operations: AWS, Azure, Microsoft Entra ID, Okta, PagerDuty

  • Scripting, querying & automation: Python, PowerShell, KQL, custom alerting and auto-remediation workflows

  • Collaboration & delivery: Jira, Confluence, GitHub

To succeed, you should meet at least 70% of these requirements

  • +5 years of experience in cybersecurity, with strong hands-on experience as a SOC analyst, incident responder, detection engineer or similar role.

  • Fluent in English (CEFR C1 or C2); French, German, Dutch or other European languages are a plus.

  • Thrive in a remote-first, multicultural and fast-paced environment.

  • Strong familiarity with the full SOC lifecycle, from Tier 1 to Tier 3, including alert triage, incident response, threat hunting and threat intelligence.

  • Proven experience in threat hunting, detection engineering or threat intelligence, with the ability to turn attacker behaviours into actionable detections.

  • Solid understanding of SIEM and EDR technologies, log parsing, detection engineering and alert tuning.

  • Hands-on experience with scripting and querying tools such as Python, PowerShell or KQL to support automation, investigations and custom alerting.

  • Ability to analyse and correlate logs from diverse sources, including authentication, application, system and cloud telemetry across AWS and Azure.

  • Knowledge of attacker TTPs, MITRE ATT&CK, threat exposure and attack path analysis.

  • Experience creating or improving incident response playbooks, runbooks and automation workflows.

  • Strong communication skills, with the ability to explain technical findings and security risks clearly to both technical and non-technical stakeholders.

  • Willingness to participate in a 24/7 on-call rotation, approximately one week per month, to support incident response and operational continuity.

Nice to haves

  • Experience with Rapid7 and with TaHiTI.

  • Familiarity with Microsoft Entra ID and its integration into detection and response workflows.

  • Nice-to-have certifications such as GSEC, GCIH, BTL1/2, SC-200 or AZ-500.

  • Experience in payments, banking, fintech or another highly regulated environment.

If this looks like you, the recruitment steps are:

  • A first call with one of our recruiters

  • A technical interview with our CISO and a security expert

  • A final interview with our COO

  • Hopefully, an offer you can’t refuse

Turn back if …

  • You prefer a purely reactive SOC role where you only handle out-of-the-box alerts and escalations.

  • You don’t enjoy digging into logs, building queries, tuning detections or investigating ambiguous signals across distributed systems.

  • You are looking for a role with no on-call responsibilities or no operational incident response exposure.

  • You prefer working in isolation rather than collaborating with engineering, DevOps, IT and business stakeholders.

What we can offer

  • Remote-first culture with quarterly and annual all-staff in-person meetups to keep teams connected and collaborative

  • Possibility to work from another EU country for up to 3 months per year

  • Competitive compensation package, featuring salary, performance-based bonus and a thoughtfully designed, high-quality benefits programme

  • The opportunity to be part of a true pan-European company

  • Learning & development budget: €5,000 training budget per year

Otherwise apply!

Our commitment to equal employment opportunities

EPI offers the same job opportunities to all, without distinction of gender, ethnicity, religion, sexual orientation, social status, disability or age. EPI promotes the development of an inclusive work environment that mirrors the diversity of the clients our product is serving.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
956,701 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
Paris
$56k – $62k per year • Remote (likely Poland) • Full-Time • 3+ years exp • Wrocław
Python
AI/ML
LangGraph
LangChain
AWS Bedrock AgentCore
DevOps
GCP
AWS
Cybersecurity
Okta
Open Policy Agent
Microsoft Entra ID
Apply
$138k – $151k per year • Remote (United States, EST hours) • Public Trust • 8+ years exp • Bachelor's Degree
Python
Bash
Databases
Apache Kafka
DevOps
Splunk
Terraform
GitHub Actions
Datadog
Prometheus
GitLab CI
CI/CD
Jenkins
Git
AWS
Docker
Kubernetes
Grafana
Platform Engineering
Configuration Management
Incident Management
GitHub
Amazon CloudWatch
Linux
Cybersecurity
Least Privilege
Management
Agile
Apply
≈ $60k – $137k per year (Estimated) • Remote (Italy) • Full-Time • 5+ years exp • Bachelor's Degree • Rome
Cybersecurity
Threat Modeling
Apply
≈ $117k – $213k per year (Estimated) • Remote (United States) • Full-Time • 3+ years exp • United States
Apply
$125k – $135k per year • Remote (United States) • Secret • 8+ years exp • High School Diploma
AI/ML
Red Teaming
DevOps
CI/CD
GitLab
IAM
Cybersecurity
Sonatype Nexus IQ
NeuVector
Apply
≈ $20k – $42k per year (Estimated) • In office • Full-Time • 6+ years exp • Bachelor's Degree • New Delhi
Python
JavaScript
TypeScript
Node JS
Databases
Microsoft Fabric
AI/ML
Copilot
Claude Code
AI Agents
Copilot Studio
DevOps
Azure
AWS
Apply
≈ $102k – $171k per year (Estimated) • Hybrid • Full-Time • London
Python
Databases
Databricks
AI/ML
AI Agents
TensorFlow
PyTorch
LLM
Hugging Face
Machine Learning
DevOps
Azure
Management
Agile
Apply
≈ $20k – $52k per year (Estimated) • In office • Full-Time • 3+ years exp • Bachelor's Degree • Bengaluru
Python
Java
Databases
Redis
AI/ML
RAG
Edge AI
DevOps
CI/CD
Jenkins
Docker
Kubernetes
Incident Management
Apply
Hybrid • Internship • Moscow
Python
SQL
Databases
PostgreSQL
MS SQL
DevOps
Docker
QA
Selenium
Apply
≈ $18k – $47k per year (Estimated) • In office • 8+ years exp • Pune
Python
DevOps
Incident Management
SLI/SLO/SLA
BGP
MPLS
Management
ITIL
Apply
Remote (likely Belgium) • Full-Time • 3+ years exp • Bachelor's Degree • Brussels
DevOps
Rest API
Management
Confluence
Jira
Agile
QA
Postman
Apply
≈ $111k – $204k per year (Estimated) • Remote (likely Belgium) • Full-Time • 9+ years exp • Brussels
Design
Figma
Apply
≈ $63k – $173k per year (Estimated) • Remote (likely Belgium) • Full-Time • 7+ years exp • Bachelor's Degree • Brussels
JavaScript
Kotlin
TypeScript
Kotlin
Ktor
Kotest
Frontend
Next.js
Yarn
React.js
Material UI
DevOps
Rest API
Datadog
Docker
Kubernetes
QA
Playwright
Jest
Apply
≈ $57k – $97k per year (Estimated) • Remote (likely France) • Full-Time • 8+ years exp • Bachelor's Degree • Paris
Python
SQL
Databases
Databricks
Delta Lake
Apache Kafka
AI/ML
dbt
DevOps
Terraform
GitHub Actions
CI/CD
AWS
Amazon S3
IAM
Cybersecurity
GDPR
Management
Slack
Confluence
Jira
Apply
≈ $42k – $100k per year (Estimated) • Remote (likely Belgium) • Full-Time • 3+ years exp • Brussels
Databases
Databricks
DevOps
SLI/SLO/SLA
Management
Jira
Service Desk
Apply
≈ $45k – $107k per year (Estimated) • In office • 4+ years exp • Paris
Apply
≈ $27k – $51k per year (Estimated) • In office • Internship • Master's Degree • Paris
Apply
$67k – $101k per year • Hybrid • Full-Time • 4+ years exp • Bachelor's Degree • Warsaw • Paris
Apply
≈ $27k – $59k per year (Estimated) • In office • 2+ years exp • Paris
Apply
See all jobs
This is one of many
956,701 more open roles from verified company boards, updated every day.