601,468open jobs
31,006companies
86,237added this week
Browse all
Salary
$46k – $120k per year (Estimated)
Location
Remote (France)
Seniority
Middle · 3+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
HarfangLab is a Paris cybersecurity company founded in 2018 that develops a European endpoint detection and response solution. Its agent is certified by the French national cybersecurity agency and can be deployed on premises or in a sovereign cloud. The company protects public administrations, defence suppliers and large industrial groups.

Who we are?

HarfangLab is a French cybersecurity scale-up developing a unified platform powered by a single lightweight agent and AI built for cybersecurity. Continuously enhanced through R&D, our portfolio includes EDR (Endpoint Detection and Response), EPP (Endpoint Protection Platform), ASM (Attack Surface Management), ITDR (Identity Threat Detection and Response), and Email Security, with the latter two joining the platform in 2026. Together, these solutions detect and neutralize threats across endpoints, servers, identities, and email environments. Our engines, models, and algorithms identify abnormal behaviour, generate security alerts, and block malicious activity.

Founded in 2018, HarfangLab has earned strong industry recognition: its EDR was the first to be certified by ANSSI in 2020, the first to obtain ANSSI qualification in 2025, and the first EDR to receive BSI certification in Germany. We also joined the French Tech 2030 programme, alongside 80 innovative French companies, as cyber resilience becomes a strategic priority for Europe.

Backed by €30 million in funding, we have grown from 40 employees in 2023 to 140 today and expanded internationally across Europe.

HarfangLab now protects the endpoints of more than 1,000 clients across all sectors, including CAC 40 industrial companies, government entities, SMEs, hospitals, and local authorities. Driven by a strong collective spirit and international ambitions, we remain committed to our original mission: protecting organizations against increasingly complex cyber threats while enabling them to retain full control over their data.

Why are we hiring? 

The company's growth continues, and our ecosystem of technology partners is expanding day by day. We are receiving more and more requests to integrate our product with other cybersecurity solutions.

What you will do with us?

  • As a Detection Engineer, you will be responsible forimproving our EDR detection capabilities by transforming threat intelligence into actionable detections. You will continuously monitor the threat landscape, design and maintain Sigma and YARA rules, validate detection quality, and identify opportunities to strengthen the product against new attack techniques.

  • Continuously monitor the threat landscape and analyze emerging threats, malware, and attacker techniques.

  • Design, develop, and maintain detection content, primarilySigma rules for behavioral detections andYARA rules for malware identification.

  • Validate, tune, and monitor detection rules to ensure their effectiveness while minimizing false positives.

  • Research new detection opportunities and prototype improvements to strengthen the EDR detection engine.

  • Develop internal tools and automation to accelerate threat research and detection engineering workflows.

  • Contribute to threat reports, blog posts, and internal or external communications on the evolving threat landscape.

  • Provide technical guidance and expertise to selected customers when required.

About you

Soft Skills

  • Strong interest in cybersecurity and Cyber Threat Intelligence.

  • Reliable, diligent, and collaborative.

  • Curious, proactive, resourceful, and able to work autonomously.

  • Passionate about learning, sharing knowledge, and discussing technical topics.

Hard Skills

  • At least 2-3+ years of hands-on experience in Cyber Threat Intelligence, Detection Engineering, Malware Analysis, or a related cybersecurity field.

  • Proficient in Python with working knowledge of Rust and/or C.

  • Strong understanding of Windows, Linux, and ideally macOS internals.

  • Experience in system and/or network administration.

  • Good knowledge of attack techniques and adversary tradecraft.

  • Hands-on experience in malware reverse engineering.

  • Experience creating and maintaining detection rules (YARA, Sigma, IDS/IPS, EDR detections). This is a key requirement for the role.

  • Fluent in French and English.

  • Familiar with AI-powered tools and their application to CTI activities.

Bonus Skills

  • Incident Response experience.

  • Red Team / Penetration Testing experience.

  • Blue Team / SOC experience.

  • Experience tracking threat actors and producing actionable threat intelligence.

What you can expect from your future team?

You will evolve inside a team of 7 people who are very keen to continuously make sure the product is able to efficiently detect cyberthreats. Like every team at HarfangLab, we have a lot of autonomy, and we have great confidence in our colleagues. You will also be able to drive your own projects based on your preferences.

About us

Our office and Team Life:

  • Offices located in the heart of Paris, near Bourse (75002),

  • High-quality equipment based on preferences and needs (PC, Mac, additional screens, etc.),

  • Thanks to our Office Manager, we regularly organize events such as seminars, happy hours, themed evenings, and more,

  • An onboarding process to welcome each new colleague with an explanation of the roles and a mentor to support you during your early days!"

  • A great team that always seeks to improve their skills

And more:

  • An attractive package: Base salary 45 K€ to 57 K€ + profit sharing,

  • Flexible remote work options,

  • A mentor to guide you throughout your probationary period,

  • Health insurance: The best health insurance with Alan,

  • Meal vouchers: We use the Swile card and also have access to a discount platform through our works council,

  • 7 to 11 additional days off (RTT) per year, in addition to the 25 days of paid vacation.

    GymLib subscription, covered 80% by HarfangLab,

  • Access to training and events of your choice and according to your professional needs.

Le processus de recrutement

  • A 30-minutes Visio with our Talent Acquisition Specialist 

  • A 30 minutes Visio with the lead 

  • A test to assess your skills 

  • A 1,5 hour on-site interview including a teamfit 

  • A final HR video appointment to review your soft skills and motivations.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
601,468 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Paris
In office • 3+ years exp • PhD
Python
SQL
DevOps
GCP
Docker
Apply
$98k – $244k per year (Estimated) • In office • Full-Time • 5+ years exp • Bachelor's Degree • Tunis
Python
Python
SQLAlchemy
FastAPI
Pydantic
Databases
PostgreSQL
AI/ML
Model Context Protocol
Prompt Engineering
AI Agents
LLM
DevOps
Kong
Azure
CI/CD
Docker
Kubernetes
API Gateway
Cybersecurity
Microsoft Entra ID
Apply
$56k – $164k per year (Estimated) • In office • Full-Time • 3+ years exp • Bachelor's Degree • Tunis
Python
AI/ML
Model Context Protocol
AI Agents
DevOps
Helm
Azure DevOps
GitHub Actions
Azure
CI/CD
GitOps
ArgoCD
AWS
Docker
Kubernetes
Amazon EKS
Azure AKS
Apply
$80k – $214k per year (Estimated) • In office • Full-Time • 3+ years exp • Bachelor's Degree • Tunis
Python
AI/ML
Model Context Protocol
AI Agents
DevOps
Helm
Azure DevOps
GitHub Actions
Azure
CI/CD
GitOps
ArgoCD
AWS
Docker
Kubernetes
Amazon EKS
Azure AKS
Apply
$68k – $165k per year (Estimated) • In office • Full-Time • 3+ years exp • Bachelor's Degree • Tunis
Python
AI/ML
Model Context Protocol
Dagster
AI Agents
RAG
Semantic Search
Semantic Search
DevOps
Rest API
Azure
Docker
Vector
Analytics
ETL/ELT
Apply
AI Engineer 1 month ago
$51k – $63k per year • In office • Full-Time • Paris
Python
Assembly
AI/ML
LangGraph
LangChain
Fine-tuning
Scikit-learn
Function Calling
Haystack
Pydantic AI
PyTorch
RAG
Tokenization
Tool Use
DevOps
CI/CD
Apply
$64k – $75k per year • Remote • Full-Time • 5+ years exp • Master's Degree • Paris
JavaScript
TypeScript
Assembly
Frontend
Vue.js
Sass
DevOps
Git
Management
Agile
Apply
In office • Full-Time • Master's Degree • Paris
Python
Rust
Assembly
DevOps
GitHub Actions
GitLab CI
CI/CD
Jenkins
Kubernetes
GitLab
Management
Agile
QA
Playwright
Pytest
Apply
$45k – $94k per year (Estimated) • In office • Full-Time • 3+ years exp • Paris
Python
JavaScript
PHP
TypeScript
SQL
Python
FastAPI
PHP
Laravel
Symfony
Databases
MySQL
PostgreSQL
ClickHouse
Frontend
Next.js
React.js
DevOps
CI/CD
Git
Docker
Apply
Apply
$55k – $105k per year (Estimated) • In office • Full-Time • Bachelor's Degree • Paris
Python
Java
SQL
C++
C++
TensorFlow C++
PyTorch C++
AI/ML
TensorFlow
PyTorch
LLM
DevOps
HPC
Apply
Analyste SOC N2 1 day ago
$42k – $105k per year (Estimated) • In office • Full-Time • 2+ years exp • Paris
DevOps
Splunk
Cybersecurity
IBM QRadar
Apply
$75k – $153k per year (Estimated) • Remote/Hybrid • 5+ years exp • Paris
AI/ML
AI Agents
Marketing
Salesforce
Spotify
Apply
See all jobs
This is one of many
601,468 more open roles from verified company boards, updated every day.