Résumé du poste par JobGrid
Engineering Manager - Security Squad at blablacar: Paris, France; Sur site; Lead; IT; Engineering Manager. JobGrid adds normalized role facts, source context, and a path to the employer application page so candidates can compare the listing before applying.
- Location and workplace: Paris, France, Sur site
- Role classification: IT, Engineering Manager, Lead
- Source freshness: checked by JobGrid on 2026-06-03.
- Application path: candidates continue to the employer application page with non-personal referral tags.
About BlaBlaCar
BlaBlaCar is the world’s leading community-based travel app enabling 27 million members a year to carpool or travel by bus in 21 countries. Our team of 800 employees counts over 50 nationalities and is spread across our 5 global offices, 30% working fully remotely.
By joining our Corporate Services department, you will be working alongside talented individuals grouped in small agile teams that each have strong ownership on their stack and goals.
Corporate Services is composed of six teams which “Provide tools, services, and expertise that enable BlaBlaCar internal teams to fulfill their mission with efficiency, productivity, and comfort.”.
The Security Team has three main objectives, driving the security team roadmap:
-
Reduce BlaBlaCar risk exposure by defining and implementing a strategy to identify, report and tackle the most critical risks
-
Implement a shift-left strategy and autonomy within the teams via training, guidelines and tooling
-
Detect, investigate and respond to security incidents
By design, the role requires a global vision of BBC perimeter, risks and regulation. You will have to ensure that the security practices and security frameworks are well implemented across our various business lines or locations. To accomplish the security mission, some of the processes / framework are directly operated by the security team, while others are delegated within the organization.
To fulfill the mission, you will be working with several stakeholders :
-
The Legal team,especially the DPO team, as a daily partner
-
The IT Ops team to deploy security tools and best practices to all employees and contractors
-
The Product & Engineering teams, working with each service and infrastructure teams to ensure our product and our user's data are secure and protected.
Your Responsibilities
Plan and implement comprehensive risk-driven security strategies
Manage the security team (4 Individual Contributors) and the associated cost center (security tools contract management and financial follow up)
Ensure a strong coordination with department managers to determine security needs and ensure security strategy is well understood and implemented
Ensure processes within the company and with external stakeholders are robust and properly followed
Define a middle to long-term Security strategy which would fit with BBC values. A key aspect would be to preserve secure processes within an international context
Ensure compliance with company policies and security industry regulations or recommendations
Your Qualifications
Experience in risk management, auditing internal processes and tools
Proven track record of team management and leadership skills
Strong interpersonal and communication skills, ability to explain complex security subjects to non-technical people
Global and broad knowledge in security on main attacks vectors and associated defense strategies
Knowledge on security/privacy regulations and standards (GDPR, PCI DSS,…)
Relevant experience in a company operating large-scale production systems and web services / relevant experience in Security Audits for consulting firms
Optional : Advanced ability to coordinate responses to security breaches and threats
Technical stack
Security tooling : SentinelOne, Splunk, OneLogin, Wiz, Datadome, Sysdig
IT environment: Windows, MacOS and Chromebook with a BeyondCorp- inspired vision
Core Infrastructure: Kubernetes, Google Cloud Platform, Istio
Languages: Go for Infra/Tooling, Java and PHP for backend services. Go for the custom security tooling.
GitOps/Delivery: GitHub, Terraform, Flux, Helm, Jenkins
Datastores: MariaDB, PostgreSQL, Kafka
Observability: Datadog, Grafana
What we have to offer
Hybrid position : 2 days at the office per week
50% healthcare coverage (Alan)
4 additional weeks on top of legal maternity/paternity leaves
Financial support for home office equipment
Minimum 25 days holiday per year
Local meal plan policy (Swile card)
50% transportation paid (Forfait Mobilité Durable)
Free unlimited carpooling & bus rides
Personal growth via trainings, mentorship, and internal mobility programs
Employee Stock ownership plan
Regular team building events
1 day off per year to test our product
Hiring process
45-min interview with Chloé FRIESS, Talent Acquisition Manager - career path, growth mindset
60-min interview with Jérémy COURTIAL, Senior Security Engineer - Security knowledge, risk management, people management, teamwork - based on Case Study
60-min interview with Camille MARSIGNY,CISO & Head of corporate Services - strategic thinking, delivery & people management, and teamwork - based on Case Study
30-min skip-level with Nicolas SALVY, CTO - culture fit and career aspirations