Product Security Engineer
As a Product Security Engineer at FDJ OBG, you will support the security of our platforms by maintaining, improving, and developing internal security tools used by engineering teams. Your primary responsibility is to ensure teams have reliable security tooling to protect our platform against threats such as automated scraping, credential stuffing, and common web vulnerabilities. You will work closely with members of the Product Security team, architects, and engineering teams to operate and enhance tools like our bot blocking solution, in-house secret detection tool, and to build automation that improves our overall security posture.
- Operate and maintain security tools
- Maintain and tune internal tools and ensure they run reliably and efficiently.
- Update configurations, rules, and templates
- Adjust tool configurations, signatures, and templates based on guidance from the product security team and feedback from engineering teams.
- Support tool onboarding and integrations
- Assist engineering teams in integrating security tools into their services and CI/CD pipelines.
- Develop scripts and small features
- Implement small changes, scripts, and minor features in existing tools to improve functionality and support integrations or reporting.
- Monitor security tooling
- Perform functional and basic operational testing of security tools, filter obvious false positives, and identify improvement areas.
- Collaborate with engineering teams
- Help engineers understand how to use the tools, interpret results, and request changes or enhancements.
- Contribute to documentation and knowledge sharing
- Document tool usage, configurations, and processes, and participate in internal knowledge‑sharing sessions.
- Continuously learn and improve
- Stay updated with the latest security vulnerabilities, threats, and mitigation techniques, applying this knowledge to internal solutions.
- 1–2 years of experience in software development or scripting (or equivalent hands‑on project experience)
- Proficiency in at least one programming language such as Java, JavaScript/TypeScript, Python, or Node.js
- Understanding of web application security and modern web security patterns
- Experience building small internal tools, bots, or automation scripts
- Familiarity with CI/CD pipelines and monitoring solutions
- Ability to work effectively with security and engineering teams and follow guidance to deliver secure solutions.
- Excellent verbal and written communication skills in English
- Well-being allowance
- Learning and development opportunities
- Inclusion networks
- Charity days
- Long service awards
- Social events and activites
- Private medical insurance
- Life assurance and income protection
- Employee Assistance Programme
- Pension

