cover image
NEVERHACK

NEVERHACK

neverhack.com

5 Jobs

622 Employees

About the Company

NEVERHACK is a French group specialized in cybersecurity for over 40 years.

Founded in 2021 and operating in 10 countries, the group now has over 1200 collaborators worldwide.
Our ambition is to expand internationally to build a secure digital world for all.

🌎 What do we believe in?

Creating a safer digital world by offering innovative and ethical cybersecurity solutions, empowering businesses with the keys to project success.

🧐 How do we do this?

We support companies and individuals in protecting their data through a unique offering of consulting, training, cyber risk assessment, and AI-driven innovations.

⭐ What are our strengths?

Expertise, proximity, and trust!
Our expertise is demonstrated through our collaborators' certifications and rigorous recruitment process. We select top talent and offer ambitious career paths, with over 1000 certifications earned annually.
We maintain close relationships with our partners, both in terms of client relations and geographically, both in France and abroad.
We designate single points of contact (both commercial and technical) for increased responsiveness and availability to meet our clients' needs.

Co-founder of Cyber On Board

Listed Jobs

Company background Company brand
Company Name
NEVERHACK
Job Title
Business Manager
Job Description
Job Title: Business Manager Role Summary Lead commercial, project, and talent management activities for a cybersecurity consulting firm. Drive business development, oversee delivery of client projects, recruit and manage cybersecurity consultants, and develop strategic plans to achieve revenue and margin targets. Expectations - Achieve annual revenue and margin goals as outlined in the business plan. - Build and maintain a high-performing client portfolio, ensuring sustained client satisfaction and contract renewals. - Deliver projects on time, within scope and budget while maintaining quality standards. - Recruit, onboard, and retain top cybersecurity, IT, and infrastructure talent, fostering a collaborative team culture. - Contribute to agency strategy and continuous improvement of internal processes. Key Responsibilities - Identify and pursue new business opportunities with large accounts, SMEs, and mid‑market companies. - Prospect, qualify, and grow client relationships; create and negotiate proposals and contracts. - Understand client requirements and collaborate with technical experts to design optimal solutions. - Manage contractual, operational, and financial aspects of missions, ensuring compliance and profitability. - Oversee recruitment: source, screen, interview, and onboard consultants; track performance and career progression. - Develop annual business plan and monitor KPIs (revenue, margin, recruitment, billing). - Coordinate with HR, marketing, and technical teams to support business growth and talent strategies. Required Skills - Strong commercial acumen and proven drive to meet sales targets. - Excellent written and verbal communication skills. - Ability to juggle multiple priorities: sales, delivery, recruitment, and strategy. - Highly autonomous, results‑oriented, entrepreneurial mindset. - Basic understanding of cybersecurity, IT, and infrastructure environments (technical literacy). - Experience in team management and client service in a fast‑changing sector. Required Education & Certifications - Bac +5 level degree in business, engineering, management, or equivalent. - Prior commercial development experience in consulting (internship/alternance acceptable). - Willingness to obtain relevant industry certifications (e.g., CISSP, PMP, ITIL) if not already held.
Toulouse, France
Hybrid
17-12-2025
Company background Company brand
Company Name
NEVERHACK
Job Title
ChargĂ©(e) d’Homologation SĂ©curitĂ© SI
Job Description
Job Title: Security System Accreditation Officer Role Summary: Lead the safety accreditation of information systems, ensuring projects comply with regulatory and normative references, manage security risk, and support governance activities. Coordinate cross‑functional teams in an R&D context and produce regulatory documentation and risk reports. Expectations: - 3–5 years of proven experience in system accreditation or information security. - Demonstrated autonomy in managing accreditation dossiers. - Strong grasp of regulatory frameworks and risk‑management processes. Key Responsibilities: 1. **Accreditation Process** – Define security scope, align regulatory requirements (GRC, compliance), and oversee initial and evolving accreditation of cloud/hybrid environments. 2. **Regulatory Documentation** – Produce risk analyses, security requirements, action plans, recommendations, and maintain a cybersecurity knowledge base. 3. **Risk & Compliance Analysis** – Conduct EBIOS, COBIT, PCA/PRA assessments, identify non‑conformities, propose corrective measures, and monitor alerts through logs, EDR/XDR, IAM. 4. **Governance & Committees** – Prepare presentations for stakeholders, support decision‑making, and participate in accreditation and security governance committees. 5. **Project Support & Advisory** – Provide methodological guidance to project teams on IAM, security, compliance; educate teams on regulatory expectations; promote collective skill development. Required Skills: - Governance frameworks: ISO 27001/27002, NIST, ANSSI, PCI‑DSS. - Risk & resilience tools: EBIOS, PCA/PRA, SOC analysis, EDR/XDR, IAM (Azure AD). - Cloud & hybrid environment expertise (Azure, general cloud security). - Document production, SQL/database interaction, log analysis (static/dynamic). - Automation & CI/CD concepts, familiarity with AI/NLP in security context. - Strong communication, presentation, and training abilities. - Proficiency in French and English (verbal and written). Required Education & Certifications: - Bachelor’s or Master’s degree in Computer Science, Information Security, or related field. - Relevant certifications strongly preferred: ISO 27001 Lead Implementer/Auditor, CISA, CISSP, or equivalent.
Paris, France
On site
Junior
17-12-2025
Company background Company brand
Company Name
NEVERHACK
Job Title
Assistant RSSI H/F
Job Description
**Job Title:** Assistant Chief Information Security Officer (CISO) **Role Summary:** Assist the CISO in managing information security, compliance, risk, and incident response across the organization, ensuring alignment with internal and external audit requirements. **Expectations:** - Support the CISO in leading cybersecurity initiatives and ensuring regulatory compliance. - Demonstrate senior-level security expertise, capable of interfacing with business units and auditors. - Maintain autonomy, rigor, and a strong service orientation while collaborating cross-functionally. **Key Responsibilities:** - Respond to internal and external audit inquiries (IGL, ACPR, BCE, etc.). - Contribute to security awareness programs and incident monitoring. - Support the CISO in steering cybersecurity and compliance projects. - Participate in security committees, prepare agendas, minutes, and reports. - Track and update the security action plan, incidents, access controls, and policy exceptions. - Execute phishing simulation campaigns using Blusecure. - Conduct risk analyses (EBIOS, ISO 27005) and Data Protection Impact Assessments (DPIA). - Produce security dashboards, key performance indicators, and risk summaries. - Monitor third‑party vendor security and critical outsourcing contracts. - Assist in data mapping and review of sensitive applications. **Required Skills:** - 7–8 years of experience in cybersecurity, CISO, or compliance roles. - Strong knowledge of M365 and Blusecure environments. - Proficient in risk assessment and incident management methodologies. - Excellent written communication, synthesis, and presentation skills. - Proven ability to interact with business stakeholders and auditors. - Autonomy, meticulousness, and a customer‑service mindset. - Preferably experience in the banking sector. **Required Education & Certifications:** - Bachelor’s degree in Computer Science, Information Security, or related field. - Certifications preferred: ISO 27001 Lead Implementer, ISO 27005, CISSP, CISA, EBIOS RM.
Paris, France
Hybrid
Senior
06-01-2026
Company background Company brand
Company Name
NEVERHACK
Job Title
Ingénieur DevSecOps
Job Description
**Job Title** DevSecOps Engineer **Role Summary** Implement, automate, and secure Identity & Access Management (IAM) solutions for a defense‑grade project. Drive secure infrastructure as code, CI/CD pipelines, and continuous monitoring while ensuring compliance with national security standards. **Expectations** - Minimum 3 years of DevSecOps experience within a cyber‑security context. - Bachelor’s or Master’s degree in Engineering, Computer Science, or equivalent (Bac+5). - French Defence Secret clearance (or ability to obtain one). - Proven track record of delivering secure, scalable infrastructure solutions. **Key Responsibilities** 1. Design, develop, and maintain secure IAM architecture for defense stakeholders. 2. Build and maintain CI/CD pipelines (Jenkins, Ansible, Terraform). 3. Provision and manage Linux servers, containers (Docker, Kubernetes), and infrastructure as code. 4. Develop secure web services (PHP/Symfony, Java, Python) and database components (MariaDB, Galera). 5. Configure and administer web and reverse‑proxy servers (NGINX, HAProxy). 6. Implement logging, monitoring, and alerting (Kibana, ELK stack) to detect anomalies. 7. Collaborate with security, architecture, and operations teams to enforce best practices. 8. Participate in security reviews, threat modeling, and risk assessments. 9. Contribute to internal tooling, automation scripts, and documentation. 10. Stay current with emerging security tools, cloud services, and IAM standards. **Required Skills** - Linux system administration - DevOps tools: Jenkins, Ansible, Docker, Kubernetes, Terraform - Programming: PHP (Symfony), Java, Python, Bash/Shell scripting - Databases: SQL, MariaDB, Galera Cluster - Web & network: NGINX, HAProxy, RPo, IAM protocols (OAuth, OpenID Connect) - Monitoring & observability: ELK stack, Kibana, log analytics - Security fundamentals: vulnerability scanning, secure code review, threat modeling **Required Education & Certifications** - Master’s level (Bac+5) in Engineering, Computer Science, Cyber‑Security or related field. - Valid French Defence Secret clearance (or ability to obtain). - Relevant certifications (e.g., AWS Certified DevOps Engineer, Kubernetes Administrator, OSCP, or equivalent) are a plus but not mandatory.
Rennes, France
On site
13-01-2026