Security Analyst
Vestiairecollective
- Paris, Paris, France
- Hybrid
- Posted Jun 2, 2026
Job description
About the role
The Senior Security Analyst joins the Security team to ensure a safe, trustworthy experience for users and protect company assets while meeting regulatory compliance. Focused on security operations, risk and assurance, the role monitors alerts, manages vulnerabilities, supports incident response, drives audit evidence and works daily with a stack that includes Datadog SIEM, SentinelOne, Upwind CSPM, Cloudflare and AWS/GCP environments, reporting to the Head of Security.
About the company
Vestiaire Collective is the leading global platform for desirable pre‑loved fashion, a pioneer transforming fashion consumption with a mission to make circular fashion the norm. Founded in Paris in 2009, it now operates a worldwide marketplace from offices in Paris, London, Berlin, New York, Singapore and Ho Chi Minh City with about 600 employees across 50 nationalities.
Requirements
- 3+ years experience as a security analyst, SOC or security operations professional, preferably in a fast‑paced startup/scale‑up environment
- Strong analytical and problem‑solving abilities, rigorous documentation habits and clear communication with technical and non‑technical stakeholders
- Hands‑on experience with SIEM and log analysis platforms (e.g., Datadog, Splunk, Elastic) for alert triage and investigation; familiarity with EDR tools (e.g., SentinelOne, CrowdStrike) is a strong plus
- Working familiarity with AWS and/or GCP cloud environments and cloud security fundamentals to understand and address CSPM and WAF findings
- Solid understanding of vulnerability management and common application threats such as the OWASP Top 10 to validate findings and discuss remediation with engineers
- Knowledge of compliance frameworks and regulations (ISO 27001, PCI DSS, SOC 2, GDPR, DSA) and ability to translate requirements into controls, procedures and audit evidence
- Scripting or query skills (Python, SQL) for automating routine analysis and investigations
- Ability to adapt to a rapidly changing environment and manage multiple priorities
- Bachelor’s or Master’s degree in Computer Science, Information Security or a related field (nice to have)
- Relevant certifications such as CompTIA Security+, CySA+, GIAC GCIH/GCIA, CISA or ISO 27001 Lead Auditor/Implementer (nice to have)