Security Lead
Health can’t wait .
Not for symptoms to get worse. Not for a six‑month appointment. Not for a system to catch up. But that’s exactly how healthcare works today. You wait, until you can’t.
Alan exists to end the wait.
Health is a universal right, and we believe this right can only become real when it’s coupled with prevention. We need to stop treating health as something we repair and start treating it as something we build, every day. It’s not solely a question of willpower. It’s the healthcare system itself that needs to work for everyone, in a sustainable way.
So we are building the new standard in prevention insurance. Alan is the first company that integrates insurance, prevention, and care into a single, acclaimed user experience.
We are on an incredible journey to build a global leading company, with a unique culture . We already partner with 40K+ companies of all sizes, serving more than 1M+ members, and have reached €800M+ in ARR.
Prevention as the new norm. That's what we're building with our team of 800+ people. If it speaks to you: we're hiring across France, Spain, Belgium, and Canada. And beyond.
The team and your missions
You will lead Alan's Security team, a highly technical group operating across 10+ countries in a regulated health insurance environment. As Security Lead, your missions span four core areas:
Lead and grow the security team: Coach, structure, and elevate a team of security experts. Set clear priorities, define ownership, and create conditions for genuine professional growth.
Own security in the AI era: Define Alan's posture on AI-driven threats and opportunities. Build frameworks that let product and engineering teams ship AI-powered features safely and at speed.
Scale security across 10+ countries: Own the ISMS and certification programme (ISO 27001), navigate a complex multi-regulatory environment (DORA, HDS, RGPD, NIS2, PGSSI-S), and ensure Alan's security programme keeps pace with its geographic expansion.
Build and evolve Alan's security strategy: Position security as a long-term business asset and trust-builder for members, regulators, and partners. Align Legal, DPO, Risk, Engineering, and Product on security requirements, and build a security culture that empowers rather than restricts.
The challenge
Alan is a fast-growing health insurer operating in a uniquely complex environment. The challenges you will navigate include:
A shifting threat landscape: AI is reshaping both attack vectors and defensive possibilities. You will need a clear point of view on LLM security, agent risks, and AI governance, and the ability to translate that into concrete, actionable priorities.
Multi-country regulatory complexity: Operating across 10+ countries means managing a dense, evolving regulatory stack (DORA, HDS, RGPD, NIS2, PGSSI-S) while keeping the business moving. You will need to translate regulatory requirements into technical controls without creating bottlenecks.
Health sector specifics: Alan handles sensitive health data at scale. This comes with sector-specific requirements (ANS framework, CERT Santé, HDS) that demand both technical precision and operational rigor.
Influencing at scale without direct authority: Security touches every function. Your ability to align Legal, DPO, Risk, Engineering, Product, and Operations, and make them come to you early, will be as important as your technical depth.
Running security as a living programme, not a compliance exercise: The goal is not to pass audits. It is to build a programme that feeds real decisions, scales with the company, and earns genuine trust.
Who we are looking for
Proven experience leading a security (or security-adjacent) team, with concrete examples of people development and growth
At least one full ISO 27001 certification or recertification cycle led end-to-end
Solid understanding of the regulatory stack relevant to Alan's context: DORA, HDS, RGPD, NIS2, PGSSI-S
Experience running security risk cartography, ideally with EBIOS RM- Experience conducting vendor security assessments and defining contractual security requirements
Clear understanding of AI security: LLM threats, agent risks, AI governance frameworks (OWASP LLM Top 10, MITRE ATLAS, EU AI Act)
Full professional fluency in English required; French is a plus
Bonus: experience in a regulated health sector environment (ANS framework, CERT Santé, HDS)
This position targets level F+ on our level grid .
How we work
Location: You must be legally eligible to work from France. We offer remote work flexibility, but we value in-person collaboration
Important note: we hire people, not roles.
If you're excited about this opportunity but don't check every box, we'd love to hear from you. Everyone, no matter how underrepresented, should feel free to apply, as it can only bring learnings or success.
If you identify yourself as a woman: Did you know that research shows women often apply only when meeting 100% of requirements?
Remember, this is just a guide, not a checklist. We'll be thrilled to receive your application!
Check out our About Alan and Career pages, as well as our Medium , blog and Glassdoor page for more info.
You want to know more about Alan?
Perks & Benefits : Alaners are provided with a stimulating environment and perks ensuring they are happy, efficient and spend only high-quality time with co-workers.
A strong culture : People joining Alan are often surprised and delighted by our innovative working method. We have a set of cultural values that guide our approach to work
Emplois Recommandés
Responsable de Service Pôle Enfance Jeunesse - IEM MARRIERE
APF France handicap - Pôle Enfance Jeunesse 44 L'IEM de la MARRIERE, accueillant des jeunes de 0 à 20 ans en situation de handicap moteur : Recherche un ou une Responsable de service à temps pl…
Tuyauteur acier chaufferie H/F
Description du poste : CONNECTT GRAND OUEST est une agence d'intérim et de recrutement spécialisée dans le BTP et l'industrie. CONNECTT GRAND OUEST recherche un Tuyauteur acier chaufferie, vous inter…
Talent Acquisition Recruiter - CDD ( H/F)
Chez Experis France, l’Humain, l’Expertise et l’Innovation sont bien plus que des valeurs : c’est notre ADN . ESN de ManpowerGroup certifiée Top Employer 2025 , Experis s’impose comme un act…
Automaticien H/F
Notre client est un acteur français reconnu, spécialisé dans la conception la réalisation et l'intégration de solutions automatisées (agroalimentaire, cosmétique, pharmaceutique notamment). NOVA…
Psychomotricien H/F
Réseau d'agences d'intérim et de recrutement développé en franchise, Vitalis Médical a été imaginé par des professionnels expérimentés du secteur. Il s'appuie sur deux valeurs fortes : l'esprit entrep…
Alternance - Chargé(e) de marketing
Au sein de la Direction Communication, Marketing et RSE, vous contribuerez à renforcer la connaissance de nos publics, à éclairer les décisions stratégiques et à accompagner le développement de nos ac…
Distributeur F/H du
Nombre de postes : 5 Métier : Distributeur F/H Contexte : Roadshow Sodastream Missions : Dégustation à proposer LIEU & PLANNING : Date de la mission : Du 30/06/2026 au 01/07/202…
Agent des services généraux F/H
Nombre de postes : 1 Métier : Agent des services généraux F/H Contexte : Mission en environnement logistique Missions : Réalisation de petits travaux, Opérations simples de déména…
Chargé de développement commercial en alternance (H/F)
Vous souhaitez évoluer dans un environnement dynamique et développer vos compétences commerciales tout en poursuivant votre formation ? Pigier Nantes , école de commerce spécialisée dans l’alterna…
développeur.se Python-Django-Vue.js F/H
Le réchauffement de la planète et la qualité de l’air vous concernent ? Envie de rejoindre une association conviviale, à taille humaine (34 personnes) et travailler sur des projets innovants dans l’e…