Mistral

CyberSecurity, Offensive Security Engineer at Mistral (Paris, France)

Mistral· Paris, France·

Role details

Employment
Full-Time

Mistral at a glance

A French AI lab building open and frontier-grade large language models, with the full developer and enterprise stack around them.

Mistral is a French AI lab that builds open and frontier-grade large language models and sells the full stack around them: developer tooling, an agent studio, consumer and enterprise apps like Le Chat and Vibe, custom model training, and its own GPU compute. Its edge is deployment control, with open weights, EU hosting, and self-hosting for regulated and sovereign buyers.

$3B+ raised · latest: Series C · 1.7B euros · Sept 2025 · backed by ASML, Nvidia, Andreessen Horowitz, DST Global

Job description

ABOUT MISTRAL

Mistral provides full-stack AI solutions: from frontier models to developer tools, applications, and compute. We partner with enterprises tackling the hardest problems—across high-stakes industries like finance, manufacturing, defense, healthcare, and the public sector—co-creating customized AI systems that they can run on their terms.

We are a dynamic, collaborative team passionate about AI and its potential to transform society. Our diverse workforce thrives in competitive environments and is committed to driving innovation. Our teams are distributed between Europe, North America, Asia and the Middle East. We are creative, low-ego and team-spirited.

Role summary

At Mistral AI, we’re pushing the boundaries of what’s possible with agentic systems—building products like Mistral Studio and Mistral Vibe that redefine how users interact with AI.

As an Offensive Security Pentester, you’ll play a pivotal role in safeguarding these innovations by anticipating, identifying, and mitigating risks before they materialize. This isn’t just about finding vulnerabilities; it’s about shaping the future of secure AI by embedding an attacker’s mindset into everything we build.

You’ll work at the intersection of offensive security, AI safety, and product development, collaborating with cross-functional teams to harden our systems against evolving threats. Your expertise will directly influence how we design, deploy, and protect our most critical assets, ensuring our agents remain resilient, trustworthy, and ahead of adversaries.

This role is ideal for those who thrive in dynamic environments, where creativity, technical depth, and a passion for security converge to solve unprecedented challenges.

What you will do

  • Proactively hunt for vulnerabilities in the interactions between our agentic applications, cloud infrastructure, and foundational models, with a focus on realistic, high-impact attack vectors.
  • Design and execute red and purple team exercises, simulating sophisticated adversarial scenarios to stress-test our defenses and refine our detection capabilities.
  • Partner with defensive teams to translate offensive insights into actionable improvements, from detection engineering to incident response.
  • Conduct in-depth penetration testing across our product suite, including AI-driven workflows, custom infrastructure, and user-facing interfaces.
  • Build and automate offensive tooling to scale your impact, leveraging cutting-edge techniques to stay ahead of emerging threats.
  • Communicate findings with clarity and conviction, ensuring technical and non-technical stakeholders understand risks and prioritize mitigations effectively.
  • Shape Mistral AI’s security strategy by contributing attacker-informed perspectives to threat modeling, risk assessment, and architectural decisions.

About you

You’re likely a strong fit if you bring:

  • 7+ years of offensive security experience, with a track record of identifying and exploiting subtle vulnerabilities in complex systems—or equivalent expertise demonstrated through exceptional achievements.
  • Deep knowledge of AI/ML security risks, including prompt injection, data leakage, model manipulation, and abuses of dynamic UI components.
  • Hands-on experience assessing modern technology stacks, such as:
  • Custom Kubernetes deployments and containerized environments
  • Cloud-native architectures (AWS, GCP, or Azure)
  • CI/CD pipelines and GitHub security best practices
  • macOS/Linux internals and Python/React-based applications
  • Data science toolchains and AI/ML infrastructure
  • A builder’s mindset: The ability to write robust tools, automate offensive workflows, and contribute to defensive solutions in complex codebases.
  • Strong intuition for trust boundaries and risk assessment in fast-moving, high-stakes environments.
  • Outstanding communication skills, with the ability to distill technical nuances into compelling narratives that drive change.
  • A collaborative spirit, eager to work alongside engineers, researchers, and product teams to embed security into every phase of development.

Now, it would be ideal if you had experience with:

  • Background in AI, data science, or related fields, with an understanding of how security intersects with model behavior and system design.
  • Experience in high-growth startups or research-driven organizations, where agility and innovation are paramount.
  • Expertise in adjacent disciplines, such as software engineering, detection engineering, SRE, or security architecture.

WHAT WE OFFER

We offer a comprehensive benefits package designed to support your well-being, growth, and work-life balance. Benefits vary by country and may include healthcare coverage, parental leave, retirement plans, relocation support, wellness programs, meal and transportation allowances, and other location-specific perks.

For the most up-to-date details on benefits available in your location, please refer to our Benefits page app.notion.com

PRIVACY POLICY

Your privacy matters to us. You can learn more about how we handle your personal data in our Applicant Privacy Policy legal.mistral.ai

Why work at Mistral

  • Culture: Flat structure, high ownership, low ego, and a "builders, not order takers" mentality. The company values audacity, speed, rigor, and customer centricity.
  • Remote/Hybrid/Office: Based in Paris (15 rue des Halles); relocation support and visa sponsorship offered. Specific remote/hybrid policy not detailed, but global team suggests flexibility.
  • Notable perks and benefits (from careers page):
    • 20 weeks paid parental leave for all birthing parents.
    • 100% employer-sponsored medical, dental, and vision coverage for employees and dependents.
    • 6% 401k match (US) / 5% pension contribution (UK).
    • Childcare support (reserved daycare seats or financial assistance).
    • Meal allowances and transportation support.
    • Fitness and wellness subsidies.
    • Relocation and settling-in services.
    • Financial and career planning support.
  • Team composition: 900+ employees from 30+ nationalities; 50% female leaders.
  • Interview process: For science, product, and engineering roles: intro conversation → 2-5 technical exercises → 1-3 interviews (hiring manager + teammates) → values conversation → reference checks.

Application questions