""的0个结果
08/27/2026
Au sein du Kering-CERT, en charge des activités de détection et de réponse aux incidents de cybersécurité (SOC, VOC, CTI et CSIRT), vous contribuez activement au renforcement des capacités de détection, d’investigation et de remédiation du Groupe, tout en participant à l’amélioration continue des outils et des processus opérationnels.
Nous sommes actuellement à la recherche d’un(e) Cybersecurity Automation Engineer pour intégrer l’équipe.
Votre opportunité
Au sein du CERT, vous contribuez à la sécurisation du système d’information du Groupe et de ses Maisons en participant aux activités de détection et de réponse aux incidents de cybersécurité. Vous intervenez à la fois sur l’amélioration des capacités opérationnelles, l’automatisation, l’outillage et la documentation, en lien étroit avec les équipes SOC, CSIRT et plus largement avec les équipes IT et cybersécurité.
Comment vous allez contribuer
En tant que Cybersecurity Automation Engineer, vous accompagnez l’équipe SOC et CSIRT dans ses activités quotidiennes de détection, d’analyse et de remédiation des incidents de sécurité. Vous contribuez à l’amélioration de la gestion des alertes, à l’intégration de nouvelles sources de détection et au renforcement des mécanismes de réponse au sein de la plateforme de sécurité et dans une optique de sécurité opérationnelle.
Vous participez au déploiement de nouveaux outils, au développement de scripts et de programmes d’automatisation, ainsi qu’à l’administration de systèmes Linux et Windows nécessaires au bon fonctionnement des services du CERT. Vous contribuez par ailleurs à l'intégration de solutions d'IA au service des opérations du CERT (enrichissement et priorisation des alertes, aide à l'investigation, automatisation assistée). Votre action vise à fiabiliser, industrialiser et accélérer les opérations de sécurité, dans une logique d’amélioration continue et de montée en maturité.
Membre à part entière du CERT, vous intervenez sur l’ensemble des sujets traités : de la détection à la réponse à incident en passant par la CTI et la gestion de vulnérabilité, en coordination avec le reste de l’équipe.
Vous assurez également la production de livrables associés à l’activité, tels que des procédures, plans d’action, recommandations d’amélioration, documentations techniques et rapports d’incident. Enfin, vous prenez part à l’astreinte de réponse à incident, en rotation avec l’équipe, afin de garantir un niveau de réactivité adapté aux enjeux de sécurité du Groupe.
Qui êtes-vous
Idéalement diplômé(e) d’un Bac+4/5 (Master ou école d’ingénieur) avec une spécialisation en cybersécurité, systèmes, réseaux ou développement, vous justifiez d’une expérience significative dans un environnement SOC, CSIRT, CERT ou en sécurité opérationnelle. Une expérience sur des sujets d’automatisation, d’outillage sécurité ou d’administration système constitue un atout important.
L’outillage du CERT étant une brique essentielle de la capacité de détection et de réaction, vous vous assurez que l’architecture choisie est cohérente avec les besoins de sécurité & disponibilité nécessaires. Vous maîtrisez les environnements Linux et Windows ainsi que le Scripting, notamment en Python et PowerShell. Vous disposez d'une bonne connaissance des solutions SIEM (administration, ingestion de données, règles de détection) et vous avez démontré des usages concrets de solutions s'appuyant sur l'IA en production, avec un regard critique sur leurs apports et leurs limites. Vous êtes à l’aise avec les problématiques de détection, de traitement des alertes, d’investigation et de remédiation. Vous savez déployer et administrer des plateformes cloud (AWS, GCP…) et évoluer dans des environnements techniques variés nécessitant rigueur, autonomie et réactivité.
Sur le plan humain, vous êtes curieux(se), structuré(e) et orienté(e) à l’amélioration continue. Vous aimez travailler au croisement de l’ingénierie, de l’exploitation et de la cybersécurité. Vos qualités rédactionnelles, votre sens du collectif et votre capacité à documenter clairement vos actions sont essentiels pour réussir dans ce poste.
Vous maîtrisez l’anglais à l’écrit comme à l’oral.
Pourquoi nous rejoindre ?
Cette opportunité vous permet de rejoindre une équipe CERT au cœur des enjeux de cybersécurité d’un grand groupe international, dans un environnement exigeant, stimulant et en constante évolution. Vous contribuerez directement au renforcement des capacités de détection et de réponse aux incidents, tout en participant à des projets concrets d’automatisation, d’intégration d’alertes et d’amélioration des outils de sécurité.
Au travers de ReconKering, la transformation du groupe entre dans une nouvelle phase d’accélération, avec la technologie et la cybersécurité au cœur des activités critiques. Pour soutenir cette ambition, nous renforçons nos équipes et internalisons des compétences techniques stratégiques. Nous rejoindre, c’est contribuer à une transformation d’envergure, développer des capacités de cybersécurité de pointe et protéger certaines des Maisons les plus prestigieuses au monde. Vous évoluerez dans un environnement international et stimulant, aux côtés d’experts passionnés, avec l’autonomie nécessaire pour construire, innover et avoir un impact concret. Prêt(e) à relever ce défi unique ?
Kering s'engage en faveur de la diversité. Nous croyons que la diversité sous toutes ses formes - genre, âge, nationalité, culture, handicap, croyances religieuses et orientation sexuelle - enrichit le lieu de travail. Nos collaborateurs ont ainsi des opportunités pour exprimer leurs talents, à la fois individuellement et collectivement, et cela contribue à renforcer notre capacité d'adaptation à un monde en mutation. En tant qu'employeur de l'égalité des chances, nous accueillons et considérons les candidatures de tous les candidats qualifiés, indépendamment de leurs antécédents.
English Version
Kering is a global, family-led luxury group, home to people whose passion and expertise nurture creative Houses across couture and ready-to-wear, leather goods, jewelry, eyewear and beauty: Gucci, Saint Laurent, Bottega Veneta, Balenciaga, McQueen, Brioni, Boucheron, Pomellato, Dodo, Qeelin, Ginori 1735, as well as Kering Eyewear. Inspired by their creative heritage, Kering Houses design and craft exceptional products and experiences that reflect the Group’s commitment to excellence, sustainability and culture. This vision is expressed in our signature: Creativity is our Legacy. In 2025, Kering employed 44,000 people and generated revenue of €14.7 billion.
Within the Kering-CERT, responsible for cybersecurity incident detection and response activities (SOC, VOC, CTI, and CSIRT), you actively contribute to strengthening the Group’s detection, investigation, and remediation capabilities, while participating in the continuous improvement of operational tools and processes.
We are currently seeking a Cybersecurity Automation Engineer to join our team.
Your opportunity
Within the CERT, you contribute to securing the Group’s and its Houses’ information systems by participating in cybersecurity incident detection and response activities. You are involved in enhancing operational capabilities, automation, tooling, and documentation, while working closely with the SOC and CSIRT teams, and more broadly with IT and cybersecurity teams.
How you will contribute
As a Cybersecurity Automation Engineer, you support the SOC and CSIRT teams in their day-to-day detection, analysis, and remediation activities related to security incidents. You contribute to improving alert management, integrating new detection sources, and strengthening response mechanisms within the security platform, with a strong focus on operational security.
You participate in the deployment of new tools, the development of automation scripts and applications, and the administration of Linux and Windows systems required to ensure the proper operation of CERT services. You also contribute to the integration of AI-driven solutions supporting CERT operations, including alert enrichment and prioritization, investigation assistance, and assisted automation. Your role is aimed at increasing the reliability, scalability, and efficiency of security operations through a continuous improvement and maturity-driven approach.
As a fully integrated member of the CERT, you are involved across the entire spectrum of activities, from detection and incident response to CTI and vulnerability management, in close coordination with the rest of the team.
You are also responsible for producing activity-related deliverables, including procedures, action plans, improvement recommendations, technical documentation, and incident reports. Finally, you participate in the incident response on-call rotation alongside the team, ensuring an appropriate level of responsiveness to support the Group’s security requirements.
Who you are
You hold a Master’s degree or have graduated from an Engineering school, with a specialization in cybersecurity, systems, networking, or software development. You have significant experience in a SOC, CSIRT, CERT or operational security environment. Experience in automation, security tooling, or system administration is considered a plus.
As the CERT’s tooling forms a critical component of its detection and response capabilities, you ensure that the selected architecture is aligned with the required security and availability objectives. You have strong expertise in Linux and Windows environments, as well as scripting, particularly in Python and PowerShell. You possess a solid understanding of SIEM solutions, including administration, data ingestion, and detection rule management, and you have demonstrated practical experience implementing AI-powered solutions in production environments, with a critical understanding of both their benefits and limitations. You are comfortable with detection, alert handling, investigation, and remediation activities. You are also capable of deploying and administering cloud platforms (AWS, GCP, etc.) and working in diverse technical environments that require rigor, autonomy, and responsiveness.
On a personal level, you are curious, well-organized, and committed to continuous improvement. You enjoy working at the intersection of engineering, operations, and cybersecurity. Your strong written communication skills, team-oriented mindset, and ability to clearly document your work are essential to succeeding in this role.
You have full proficiency in English, both written and spoken.
Why work with us?
This opportunity offers you the chance to join the CERT team at the heart of the cybersecurity challenges of a major international Group, within a dynamic and constantly evolving environment. You will directly contribute to strengthening detection and incident response capabilities, while participating in hands-on projects involving automation, alert integration, and the continuous enhancement of security tools.
Through ReconKering, the Group’s transformation is entering a new phase of acceleration, with technology and cybersecurity playing a central role in supporting critical business activities. To support this ambition, we are strengthening our teams and bringing strategic technical expertise in-house. Joining us means contributing to a large-scale transformation, developing cutting-edge cybersecurity capabilities, and protecting some of the world’s most prestigious Houses. You will thrive in a stimulating international environment alongside passionate experts, with the autonomy to build, innovate, and make a tangible impact. Are you ready to take on this unique challenge? Join us!
Kering is committed to diversity and inclusion and to providing equal opportunities in employment. We believe diversity in all its forms – disability, age, color, ancestry, sex, national origin, sexual orientation, citizenship, marital status, gender identity, religion – enriches the workplace. It opens opportunities for people to express their talent, both individually and collectively, and it helps foster our ability to adapt to a changing world. As an Equal Opportunity Employer, we welcome and consider applications from all qualified candidates, regardless of their background.