W

Security Engineer (SOC & AppSec) - Full Stack Security Leadership

wooclap France
Remote
Apply
AI Summary

Lead Wooclap’s operational and application security as a hybrid SOC/AppSec Engineer, owning incident detection, response, and product security lifecycle. Drive ISO 27001 compliance, threat modeling, and DevSecOps integration while collaborating with engineering, legal, and compliance teams. Requires 5+ years in SOC/AppSec with hands-on SIEM/EDR, SAST/DAST, and CI/CD security expertise.

Key Highlights
Hybrid SOC/AppSec role with full ownership of detection, response, and application security
Lead ISO 27001 certification, annual security audits, and compliance with GDPR/NIS2
High autonomy with dedicated budget for tooling (SIEM/EDR, SAST/DAST/SCA) and direct reporting to Director of Engineering
Key Responsibilities
Own and evolve SIEM/EDR tooling, including selection, tuning, and industrialization of detection rules
Lead first- and second-level incident response, including triage, log analysis, event correlation, and post-incident reporting
Conduct code security reviews (SAST), penetration testing (DAST/manual), and third-party dependency analysis (SCA) to mitigate CVEs
Integrate security controls into CI/CD pipelines and train development teams in secure coding best practices
Maintain ISO 27001 certification framework, coordinate annual security audits, and manage compliance with GDPR/NIS2
Collaborate with Legal & Compliance on security questionnaires, contractual clauses (DPA/SLA), and incident management
Threat model new features/architectures and monitor emerging threats via threat intelligence
Technical Skills Required
SIEM/EDR (Security Incident & Event Management / Endpoint Detection & Response) SAST/DAST (Static/Dynamic Application Security Testing) CI/CD Security (DevSecOps)
Benefits & Perks
100% remote work with flexible hours and no on-call duty
Health insurance fully covered for employee and dependents (Alan)
Learning budget of €150/year (Woocredits) + Claude AI subscription
Nice to Have
OSCP, eWPT, GWAPT, CEH, or Security+ certification
Experience in pentesting or bug bounty programs
Familiarity with compliance frameworks (ISO 27001, GDPR, NIS2)

Job Description


Wooclap is a fast-growing edtech company on a mission to make learning more interactive and impactful. Used by millions of teachers, trainers, and studentsworldwide, our platform helps turn passive audiences into active participants.


Our flagship product, Wooclap, is trusted by leading educational institutions such as University of Montreal, Duke University, Université libre de Bruxelles (ULB), HEC Paris and École Polytechnique, as well as major companiesincluding Solvay, Deloitte, BNP Paribas Fortis, TotalEnergies, and Vinci. More recently, we launched Wooflash, a revision platform designed to complement Wooclap by supporting pedagogical continuity and personalized learning paths.


With a team of 80+ passionate people, you can choose to work from our Brussels or Paris office, joining a diverse, supportive, and collaborative environment focused on building meaningful products with real-world impact.


----------------------------------------------


As a Security Engineer (SOC/AppSec), you will own Wooclap's operational and application security, reporting to the Director of Engineering. You will be the go-to person for security incident detection and response (SOC) as well as for securing the application lifecycle (AppSec), working closely with the Engineering, DevOps and Product teams, as well as with the Legal & Compliance officer.


This hybrid role combines continuous security monitoring with dedicated expertise in reducing our products' attack surface from the design stage onwards. It is a role with a high level of autonomy and responsibility: you set your own priorities and evolve your tooling and processes, with the direct support of the Director of Engineering and a dedicated budget. Rigour and confidentiality are non-negotiable: you will handle sensitive information relating to the security of the company and its customers. You will communicate mainly in English.


Key responsibilities :


Detection & response (SOC)

  • Own and evolve the detection tooling (SIEM / EDR): selection, tuning, industrialisation.
  • Qualify incidents and lead first- and second-level investigations: triage, log analysis, event correlation.
  • Drive incident response and write post-incident reports (root cause, remediation, lessons learned).
  • Evolve detection rules (use cases, correlation, false-positive reduction) and keep watch on emerging threats (threat intelligence).


Application security (AppSec)

  • Carry out code security reviews (SAST) and application penetration tests (DAST, manual testing).
  • Analyse dependencies and third-party components (SCA) to identify known vulnerabilities (CVEs) and drive their remediation with the development teams.
  • Maintain and improve security controls in the CI/CD pipelines (DevSecOps) to catch issues as early as possible.
  • Take part in threat modelling for new features and architectures.
  • Raise awareness and train the development teams in security best practices (secure coding).


Compliance & assurance

  • Own the ISO 27001 certification: maintaining the framework, preparing and following up on audits, driving action plans.
  • Lead the annual security audit and the pentest campaign: scoping, relationship with providers, remediation follow-up.
  • Work closely with the Legal & Compliance officer: responses to customer security questionnaires, security-related contractual clauses (DPA, SLA), and management of incidents with a contractual or regulatory dimension.
  • Maintain and improve operational security processes, tools and metrics, and report regularly to the Director of Engineering on the security posture and identified risks.
  • Benefit from a dedicated budget for security tooling (SIEM/EDR, SAST/DAST/SCA scanners, etc.).


Tech stack :


  • Frontend : React, TypeScript
  • Backend : Node.js, Go
  • Infra : AWS, Kubernetes, Terraform
  • AI : Claude subscription covered by the company


Who we're looking for :


  • More than 5 years of experience in operational security (SOC) and/or application security (AppSec), ideally in a SaaS or fast-growing tech environment.
  • Strong command of SOC detection mechanisms (SIEM, EDR, event correlation, threat hunting).
  • Good knowledge of AppSec methodologies: OWASP Top 10, OWASP ASVS, SAST/DAST/SCA.
  • Working knowledge of scripting/programming (Python, JavaScript/TypeScript, or equivalent) for automation and code analysis.
  • Hands-on DevSecOps practice and integration into CI/CD pipelines (GitHub Actions, GitLab CI, Jenkins, etc.).


Bonus points if you...

  • Hold a security certification (OSCP, eWPT, GWAPT, CEH, Security+, etc.).
  • Have experience in pentesting or bug bounty.
  • Are familiar with compliance frameworks (GDPR, ISO 27001, NIS2).


Why join Wooclap :


  • Meaningful impact - Make a real contribution to helping millions of students and trainers around the world engage better with their learning.


  • A collaborative, international team - Join a team of 80+ Wooclapers who value trust, curiosity and mutual support across borders.


  • Flexibility - A 100% remote role, with flexible hours and no on-call duty.


Tangible benefits

  • 🏥 Health insurance fully covered for you and your children (Alan)
  • 📚 Learning budget: €150/year on top of training (Woocredits)
  • 📱 Phone subscription reimbursement
  • 🍽️ Meal vouchers
  • 🏠 Monthly remote-work allowance
  • 🤖 Claude (Anthropic) subscription covered by the company
  • 🇧🇪 Belgium: extra days off, eco-vouchers, mobility budget


Interview process :


  • ☎️ 30' Screening interview with the Talent Acquisition Manager
  • 🧭 45' Managerial interview with the Director of Engineering
  • 🧩 45' Technical case study (SOC/AppSec) with the Engineering team
  • 🤝 60' Culture fit interview with 2 or 3 Wooclapers
  • 🔊 30' Interview with the CEO



Similar Jobs

Explore other opportunities that match your interests

Security Operations Center (SOC) Analyst

Cyber Security
16h ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

Huntress

United State

Cybersecurity GRC & Risk Manager

Cyber Security
4d ago
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Mid-Senior level

iTechScope

Greece

Security Researcher (Remote)

Cyber Security
5d ago
Visa Sponsorship Relocation Remote
Job Type Contract
Experience Level Associate

hire feed

Philippines

Subscribe our newsletter

New Things Will Always Update Regularly