DevSecOps
Wakam
Who are we?
Wakam is a B2B2C insurance company that creates white-label insurance solutions via its Play&Plug® technology platform for more than 80 partners. We provide most of our insurance products through API, and hosts white label insurance solutions via our Play&Plug technology platform.
With a footprint spanning 32 countries and revenue of more than €900 million in 2023, mostly generated outside France, Wakam is the European leader in digital and embedded insurance.
Strongly committed to social responsibility, Wakam is a mission-driven company dedicated to "enabling transparent and impactful insurance".
About the Team
Join the Digital Office at Wakam and help revolutionize the insurance industry through innovation and technology.
We are a center of expertise where cutting-edge tools meet strategic thinking. Our teams design, develop, and optimize robust digital solutions that improve efficiency and user experience - all within an Agile, collaborative, and fast-paced environment.
Your Mission
As DevSecOps, you'll be responsible for leading and implementing a DevSecOps approach across all teams involved in building and maintaining Wakam's digital assets. Your mission will be to raise security maturity levels across the organisation, prioritising initiatives based on risk.
Key Responsibilities
Strategy & Assessment
At Wakam, AI and automation are transforming the insurance experience. We're looking for curious, open-minded teammates who are ready to adopt AI tools to:
You don't need to be a technical expert-what matters most is your adaptability and eagerness to learn. Our team will support your upskilling so you can help build the transparent, high-impact insurance of tomorrow.
Why Join Wakam?
At Wakam, we're on a mission to reinvent insurance with tech, transparency, and purpose. You'll join a bold, international company where experimentation is encouraged, ideas are valued, and personal growth is supported.
We aim to keep the process transparent, engaging, and efficient. Here's what to expect:
AI-Assisted Interview Process Policy | Notion
Recruitment Agencies:
Wakam has an in-house recruitment team, which focuses on sourcing great candidates directly. Wakam does not accept unsolicited resumes from agency or search firm recruiters.
Fees will not be paid in the event a candidate submitted by a recruiter without an agreement in place is hired. When we do use agencies, we have a PSL in place, so please do not contact our managers directly.
More About Us
Check out our website to learn about the 11 cultural markers that make Wakam truly special! If you're adventurous, impact-driven, and ready to shape the future of insurance, we'd love to meet you!
What Makes Us Unique:
• True remote work flexibility with our Wakam From Anywhere (WFA) program - yes, we even have a teammate working from a sailboat!
• Flat hierarchical system promoting direct impact and autonomy
• Monthly Free.day: dedicated time for personal growth and skills development
• Lunch voucher with Swile card
• A meaningful company: we became a Mission-driven company in March 2021
• Work alongside passionate experts: who will share their knowledge and help you develop and grow in your career.
At Wakam, our "Free to Impact" culture is built on four essential pillars that shape everything we do :
Communication & Knowledge Management
• Foster transparent collaboration across our flat organizational structure
• Share knowledge freely in our highly collaborative environment
• Contribute to our collective intelligence through open dialogue
Curiosity
• Embrace our monthly Free.day for learning and skills sponsorship
• Think big and challenge conventional insurance norms
• Stay eager to learn and explore new possibilities
Continuous Improvement
• Take initiative to transform the insurance industry
• Turn challenges into opportunities for innovation
• Constantly evolve our ways of working
Outcome Oriented
• Focus on impact rather than hierarchy
• Drive results through clear objectives and autonomy
• Transform bold ideas into concrete solutions
At Wakam, we are committed to fostering an inclusive environment where diversity is celebrated. If you require any reasonable adjustments during the recruitment process, please feel free to reach out to your recruiter.
Wakam is a B2B2C insurance company that creates white-label insurance solutions via its Play&Plug® technology platform for more than 80 partners. We provide most of our insurance products through API, and hosts white label insurance solutions via our Play&Plug technology platform.
With a footprint spanning 32 countries and revenue of more than €900 million in 2023, mostly generated outside France, Wakam is the European leader in digital and embedded insurance.
Strongly committed to social responsibility, Wakam is a mission-driven company dedicated to "enabling transparent and impactful insurance".
About the Team
Join the Digital Office at Wakam and help revolutionize the insurance industry through innovation and technology.
We are a center of expertise where cutting-edge tools meet strategic thinking. Our teams design, develop, and optimize robust digital solutions that improve efficiency and user experience - all within an Agile, collaborative, and fast-paced environment.
Your Mission
As DevSecOps, you'll be responsible for leading and implementing a DevSecOps approach across all teams involved in building and maintaining Wakam's digital assets. Your mission will be to raise security maturity levels across the organisation, prioritising initiatives based on risk.
Key Responsibilities
Strategy & Assessment
- Conduct a comprehensive assessment of the current security landscape, including AI-based solutions for proactive vulnerability detection.
- Define a clear DevSecOps target and roadmap integrating AI capabilities (e.g., smart automation of controls), in coordination with the architecture committee, and support its implementation.
- Prioritise actions using a global risk-based approach (not limited to security) tailored to the company's context.
- Evaluate and optimise existing architectures based on secure, modular design principles.
- Define performance and reliability metrics for security testing.
- Provide hands-on support to development and operations teams.
- Align business and technical risk perspectives.
- Train and raise awareness among teams on security best practices and the secure and ethical use of AI (e.g., compliance, bias).
- Foster a DevSecOps and AI-Driven Security culture within the organisation.
- Promote and implement shift-left security practices.
- Initiate, evolve, and monitor early-stage security practices.
- Maximise automation of security controls and tests.
- Design and deploy fast and reliable security test suites.
- Integrate SAST, DAST, and SCA tools into CI/CD pipelines with optimised response times.
- Implement parallel testing strategies and real-time feedback loops.
- Act across the entire value chain (development, deployment, production, monitoring).
- Ensure consistency of DevSecOps practices across all teams.
- Maintain a comprehensive view of risks and opportunities.
- Promote modular architectures and secure patterns (API Gateway, Zero Trust).
- Design resilient systems with clear responsibility segregation and critical component isolation.
- Document data flows and model attack surfaces.
- Automate security testing and code analysis.
- Deploy and configure static and dynamic analysis tools.
- Implement auto-rollback mechanisms and multi-level validation.
- Orchestrate secure deployments.
- Develop custom automation tools where necessary.
- Ensure comprehensive version control: code, infrastructure, security configurations, policies.
- Implement Infrastructure as Code (IaC) with integrated security checks.
- Manage secrets and certificates through dedicated tools (e.g., Vault).
- Conduct regular security audits.
- Ensure compliance with standards and frameworks.
- Maintain application and risk mapping.
- Participate in defining security policies.
- Deploy security monitoring tools.
- Participate in incident response activities.
- Automate anomaly detection and incident response.
- Implement real-time security dashboards.
- Set up smart alerts and automated escalation processes.
- Lead a DevSecOps watch and knowledge-sharing practice.
- Evaluate and integrate new DevSecOps technologies and best practices.
- Track AI evolution in cybersecurity (LLMs, ML, anomaly detection).
- Promote innovation and safe experimentation.
- Share best practices and feedback across the community.
- Minimum 7 years in Software Engineering and/or Operations.
- Solid background in software development and Ops.
- Strong experience in application security and SOC environments.
- Hands-on experience in cloud production environments.
- Experience with AI-based security tools (e.g., AI SIEM, behavioural detection) is a plus.
- DevOps & Automation: CI/CD (Azure DevOps, GitHub Actions)
- Containerisation: Docker, Kubernetes
- Infrastructure as Code: Terraform, Ansible
- Cloud Platforms: Azure, AWS
- Scripting Languages: Python, Bash, PowerShell
- Application Security: OWASP, secure coding principles
- Security Tools & Approaches: SAST, DAST, SCA, vulnerability scanners
- AI in Security: Knowledge of ML/LLMs for code analysis or augmented SOC use cases
- Strong understanding of security protocols and cryptography
- Familiarity with compliance frameworks
- Hands-on experience with vulnerability scanning tools
- Deep knowledge of infrastructure security best practices
- Strong coaching skills: influence, pedagogy, support
- Excellent communication: able to simplify technical risks
- Technical leadership: able to drive change across teams
- High autonomy and initiative
- Strategic vision with holistic understanding of business and tech challenges
- Ability to adapt to fast-changing environments
- Passionate about AI and cybersecurity with ongoing curiosity
At Wakam, AI and automation are transforming the insurance experience. We're looking for curious, open-minded teammates who are ready to adopt AI tools to:
- Streamline day-to-day workflows
- Automate repetitive tasks
- Enrich data analysis and decision-making
You don't need to be a technical expert-what matters most is your adaptability and eagerness to learn. Our team will support your upskilling so you can help build the transparent, high-impact insurance of tomorrow.
Why Join Wakam?
At Wakam, we're on a mission to reinvent insurance with tech, transparency, and purpose. You'll join a bold, international company where experimentation is encouraged, ideas are valued, and personal growth is supported.
- Be at the heart of tech-led transformation
- Collaborate with passionate experts across disciplines
- Enjoy a culture that promotes ownership, agility, and innovation
We aim to keep the process transparent, engaging, and efficient. Here's what to expect:
- Interview with Talent Acquisition Partner
- Technical interview with Hiring Manager
- Team interview Case study
- Final Interview with VP & HR Business Partner
AI-Assisted Interview Process Policy | Notion
Recruitment Agencies:
Wakam has an in-house recruitment team, which focuses on sourcing great candidates directly. Wakam does not accept unsolicited resumes from agency or search firm recruiters.
Fees will not be paid in the event a candidate submitted by a recruiter without an agreement in place is hired. When we do use agencies, we have a PSL in place, so please do not contact our managers directly.
More About Us
Check out our website to learn about the 11 cultural markers that make Wakam truly special! If you're adventurous, impact-driven, and ready to shape the future of insurance, we'd love to meet you!
What Makes Us Unique:
• True remote work flexibility with our Wakam From Anywhere (WFA) program - yes, we even have a teammate working from a sailboat!
• Flat hierarchical system promoting direct impact and autonomy
• Monthly Free.day: dedicated time for personal growth and skills development
• Lunch voucher with Swile card
• A meaningful company: we became a Mission-driven company in March 2021
• Work alongside passionate experts: who will share their knowledge and help you develop and grow in your career.
At Wakam, our "Free to Impact" culture is built on four essential pillars that shape everything we do :
Communication & Knowledge Management
• Foster transparent collaboration across our flat organizational structure
• Share knowledge freely in our highly collaborative environment
• Contribute to our collective intelligence through open dialogue
Curiosity
• Embrace our monthly Free.day for learning and skills sponsorship
• Think big and challenge conventional insurance norms
• Stay eager to learn and explore new possibilities
Continuous Improvement
• Take initiative to transform the insurance industry
• Turn challenges into opportunities for innovation
• Constantly evolve our ways of working
Outcome Oriented
• Focus on impact rather than hierarchy
• Drive results through clear objectives and autonomy
• Transform bold ideas into concrete solutions
At Wakam, we are committed to fostering an inclusive environment where diversity is celebrated. If you require any reasonable adjustments during the recruitment process, please feel free to reach out to your recruiter.
JOB SUMMARY
DevSecOps
Wakam
Paris
2 days ago
N/A
Full-time
DevSecOps
