You and the process

With a person
Anna, in-house recruiter
9 years hiring engineers
30 minutes with a real recruiter
They read your CV with you, on a call, and say where the offers are being lost.
Didn’t find what you were looking for? Tell us what to build
Be the first to open itNo views yet
Doctolib

Platform Security Engineer (x/f/m)

  • Hybrid
  • 3-6 years
  • English (C1)

Salary

Not stated

Similar roles pay €85K - 105K a year · our estimate

AI summary

For members

The whole posting in a few lines. Sign up to read it here and on every role you open.

Sign Up to Read

Description

Set a new pulse for healthcare!

We are looking for a Platform Security Engineer to join the Security team at Doctolib.

Your mission will be to protect sensitive healthcare data while enabling rapid, secure innovation. You will be responsible for securing Doctolib's cloud infrastructure and application ecosystem, combining multi-cloud security expertise with hands-on platform engineering — contributing directly to the safety of millions of patients and care teams who rely on our platform every day.

Working in the tech team at Doctolib means building innovative products and features to improve the daily lives of care teams and patients.

Responsibilities

  • Your responsibilities include but are not limited to:
  • Own a platform security workstream end to end, from architecture to enforcement: scope it with your tech lead, design the control, roll it out progressively (report-only, then enforce), handle exceptions, and see it through to full coverage. Typical examples: hardening IAM across our AWS accounts, tightening cluster admission policies, or closing a class of misconfiguration for good.
  • Ship every change as code: Terraform and GitHub pull requests, peer-reviewed and always reversible. No console clicking, no undocumented state.
  • Harden our cloud and infrastructure baseline and keep it hardened: IAM permissions and access reviews, secrets management, network and cluster guardrails, CI/CD and supply chain controls — building the guardrails and driving remediation of what they surface with platform and engineering teams, turning recurring findings into automation rather than tickets.
  • Investigate and improve: lead incident investigations on the platform perimeter end to end, and continuously improve detection rules and response playbooks in our Elastic SIEM.
  • Work in the open: write clear technical notes, drive adoption of your changes with the engineering teams they affect, and grow through code review and pairing with the rest of the team.

Requirements

  • Before you read on: if you don't have the exact profile described below, but you feel this job description matches your skill set, we still encourage you to apply.
  • You'll be a great fit if you:
  • Have 1 to 3 years of hands-on experience in security engineering, security operations, SRE, infrastructure or platform engineering, including some exposure to a cloud environment (AWS, GCP or Azure) in production — an internship or apprenticeship in one of those roles counts.
  • Work daily with infrastructure as code and GitHub: you have written and shipped your own Terraform through reviewed pull requests, and you are comfortable operating and debugging workloads on Kubernetes.
  • Use AI coding assistants (Claude or equivalent) as a normal part of how you work.
  • Have carried at least one project through to production — security or not — and stayed with it past the first deployment until it was actually adopted.
  • Have solid fundamentals: Linux, networking, cloud, Kubernetes and development/scripting, a pragmatic mindset, the ability to make decisions under uncertainty and follow through, and strong written communication skills — you can carry a proposal from draft to cross-team adoption.
  • Are fluent in English (working language in writing); daily team conversations happen mostly in French, so being a French speaker or willing to learn is a strong plus.
  • It would be fantastic if you:
  • Have worked with a SIEM (Elastic, Splunk, or equivalent), writing and tuning your own queries.
  • Have done detection engineering, incident response, threat hunting, or CTFs.
  • Can point to public write-ups, open-source contributions, or a home lab.
  • Have prior experience in a regulated industry (healthcare, fintech, or public sector).
  • Life at Doctolib Tech
  • Our solutions are built on a single fully cloud-native platform that supports web and mobile app interfaces, multiple languages, and is adapted to country and healthcare specialty requirements.
  • Our stack is composed of Rails, TypeScript, Java, Python, Kotlin, Swift, and React Native.
  • We leverage AI ethically across our products to empower patients and health professionals. Discover our AI vision here .
  • Want to learn more about our tech culture and environment? Visit the Doctolib Tech site .

Benefits

  • Free comprehensive health insurance (basic package) for you and your children
  • 25 days of paid vacation per year, plus up to 14 days of RTT
  • Free mental health and coaching services through our partner Moka.care
  • Work from abroad for up to 10 days per year thanks to our flexibility days policy
  • Lunch vouchers (Swile card) worth €8.50 per working day, with €4.50 covered by Doctolib
  • A subsidy from the work council to refund part of the membership to a sport club or a creative class
  • 50% reimbursement of your public transport subscription
  • ParentCare Program: Enjoy full salary coverage (100%) during your first month of birth leave and 75% during the second, covered by Doctolib
  • Enrollment in Doctolib's long-term employee value sharing plan called DoctoGrowth
  • For caregivers and workers with disabilities, a package including an adaptation of the remote policy, extra days off for medical reasons, and psychological support
  • Relocation support in case of international mobility
  • Access to the best AI tools for coding, development and dedicated training
  • Our interview process
  • Recruiter Interview
  • Feature Building Interview
  • System Design Interview
  • Behavioral Interview
  • At least one reference check
  • We want your experience to be clear, respectful, and transparent. Learn more about our hiring process on our candidate experience page .
  • Job details
  • Permanent position
  • Tech stack: Terraform, AWS, Kubernetes, Elastic SIEM
  • Full-time
  • Levallois-Perret, France
  • Hybrid work setup (up to 2 remote days per week)
  • Start date: as soon as possible
  • We welcome everyone
  • At Doctolib, we are committed to improving access to healthcare for everyone. This translates into our recruitment process. We evaluate candidates based solely on qualifications and motivation, without any form of discrimination.
  • The more diverse ideas are heard, the more our product will truly improve healthcare for all. You are welcome to apply to Doctolib, regardless of your gender, religion, age, sexual orientation, ethnicity, or disability.
  • To ensure equal opportunities, we invite you to exclude personal information (e.g., pictures, age) from your applications. If you require any accommodation, please let us know for support during the hiring process.
  • Join us in building the healthcare we all dream of!
  • Your data privacy
  • All information provided is processed by Doctolib for application management. For data processing details, click here: France . Please contact hr.dataprivacy(at)doctolib.com for inquiries or to exercise your rights.

Where you’d work

Part of the week in the office

Relocation offered

About the company

Doctolib

  • Industry: HealthTech

Office in Paris, France

Also hiring in Berlin, Germany, Nantes, France and Milan, Italy

1 of their 12 open roles is remote

Your chances

Worth a look before you spend an evening tailoring a CV for it.

  • 20 checks run
  • 3 red flags

Still hiring?

13 checks

1 red flag

How crowded?

7 checks

2 red flags

Fits Me

How well does this role fit you?

Answer a few questions or drop your CV, and every role gets a fit score with the reasons, this one first.

  • Your field
  • Level
  • Stack
  • Work model
  • Salary floor
  • Must-haves
Details13 facts · Role, Location, Compensation, Employment, Company, Requirements
Tech stack
  • Python
  • AWS
  • Kubernetes
  • Terraform
  • Azure
  • Linux
  • CI/CD
  • Splunk
Type
Internship
Industry
HealthTech
Specialty
Security
Region
Europe
Pay period
Annual
Show 7 more factsShow less

Role

Category
DevOps & Infrastructure
Specialty
Security
Experience
3+ years
Tech stack
  • Python
  • AWS
  • Kubernetes
  • Terraform
  • Azure
  • Linux
  • CI/CD
  • Splunk

Location

Work model
Hybrid
Region
Europe
Office
  • Paris, France
Relocation
Offered

Compensation

Salary
Salary by agreement
Pay period
Annual

Employment

Type
Internship

Company

Industry
HealthTech

Requirements

Languages
  • English (C1)

Something wrong with this vacancy?

Similar vacancies

  • Early Window: Be the first to open itNo views yetCloses in
    Company hidden

    Security Engineer, New Grad

    Salary by agreement

    • Office · Dublin
    • Junior
  • Early Window: Be the first to open itNo views yetCloses in
    Company hidden

    Senior Security Operations Analyst

    Salary by agreement

    • Hybrid · Wellington, Auckland
    • Senior
  • Early Window: Be the first to open itNo views yetCloses in
    Company hidden

    Platform Security Engineer

    £90,000 - 160,000 / year

    • Hybrid · London
    • Mid-Level
  • Early Window: Be the first to open itNo views yetCloses in
    Company hidden

    Security Engineer

    $275,000 - 345,000 / year

    • Office · London

Share this vacancy

What's wrong with it?

The employer never sees who reported.

Reason