> Markdown version of [/jobs/ext/1416424-cybersecurity-offensive-security-engineer](https://www.wearedevelopers.com/jobs/ext/1416424-cybersecurity-offensive-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # CyberSecurity, Offensive Security Engineer - **Company:** Mistral AI - **Location:** Paris, France - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Amazon Web Services, Software System Penetration Testing, Microsoft Azure, Cloud Computing, Cloud Engineering, Cyber Security, Information Leak Prevention, Github, Intrusion Detection and Prevention, Python (Programming Language), Linux Kernel, Software Architecture, Reliability Engineering, Software Safety, Software Engineering, ReactJS, Containerization, Material UI, Kubernetes, Machine Learning Operations, Purple Team (Cyber Security), Service Stack - **Published:** July 24, 2026 - **Apply:** https://fr.indeed.com/viewjob?jk=57e89a2ad790e2a9 ## About the Role You're likely a strong fit if you bring: * 7+ years of offensive security experience, with a track record of identifying and exploiting subtle vulnerabilities in complex systems-or equivalent expertise demonstrated through exceptional achievements. * Deep knowledge of AI/ML security risks, including prompt injection, data leakage, model manipulation, and abuses of dynamic UI components. * Hands-on experience assessing modern technology stacks, such as: + Custom Kubernetes deployments and containerized environments + Cloud-native architectures (AWS, GCP, or Azure) + CI/CD pipelines and GitHub security best practices + macOS/Linux internals and Python/React-based applications + Data science toolchains and AI/ML infrastructure * A builder's mindset: The ability to write robust tools, automate offensive workflows, and contribute to defensive solutions in complex codebases. * Strong intuition for trust boundaries and risk assessment in fast-moving, high-stakes environments. * Outstanding communication skills, with the ability to distill technical nuances into compelling narratives that drive change. * A collaborative spirit, eager to work alongside engineers, researchers, and product teams to embed security into every phase of development. Now, it would be ideal if you had experience with: * Background in AI, data science, or related fields, with an understanding of how security intersects with model behavior and system design. * Experience in high-growth startups or research-driven organizations, where agility and innovation are paramount. * Expertise in adjacent disciplines, such as software engineering, detection engineering, SRE, or security architecture. ## Description As an Offensive Security Pentester, you'll play a pivotal role in safeguarding these innovations by anticipating, identifying, and mitigating risks before they materialize. This isn't just about finding vulnerabilities; it's about shaping the future of secure AI by embedding an attacker's mindset into everything we build. You'll work at the intersection of offensive security, AI safety, and product development, collaborating with cross-functional teams to harden our systems against evolving threats. Your expertise will directly influence how we design, deploy, and protect our most critical assets, ensuring our agents remain resilient, trustworthy, and ahead of adversaries. This role is ideal for those who thrive in dynamic environments, where creativity, technical depth, and a passion for security converge to solve unprecedented challenges. What you will do * Proactively hunt for vulnerabilities in the interactions between our agentic applications, cloud infrastructure, and foundational models, with a focus on realistic, high-impact attack vectors. * Design and execute red and purple team exercises, simulating sophisticated adversarial scenarios to stress-test our defenses and refine our detection capabilities. * Partner with defensive teams to translate offensive insights into actionable improvements, from detection engineering to incident response. * Conduct in-depth penetration testing across our product suite, including AI-driven workflows, custom infrastructure, and user-facing interfaces. * Build and automate offensive tooling to scale your impact, leveraging cutting-edge techniques to stay ahead of emerging threats. * Communicate findings with clarity and conviction, ensuring technical and non-technical stakeholders understand risks and prioritize mitigations effectively. * Shape Mistral AI's security strategy by contributing attacker-informed perspectives to threat modeling, risk assessment, and architectural decisions. ## Related Videos - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Innovating Developer Tools with AI: Insights from GitHub Next](https://www.wearedevelopers.com/videos/1268-innovating-developer-tools-with-ai-insights-from-github-next) - [Watch Tests Go Brrrr! : Getting Started with Cypress in ReactJS](https://www.wearedevelopers.com/videos/282-watch-tests-go-brrrr-getting-started-with-cypress-in-reactjs) - [Understanding Kubernetes in a visual way](https://www.wearedevelopers.com/videos/100085-understanding-kubernetes-in-a-visual-way) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [Bringing AI Model Testing and Prompt Management to Your Codebase with GitHub Models](https://www.wearedevelopers.com/videos/1536-bringing-ai-model-testing-and-prompt-management-to-your-codebase-with-github-models) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated)