> Markdown version of [/jobs/ext/1417454-cybersecurity-platform-security-engineer](https://www.wearedevelopers.com/jobs/ext/1417454-cybersecurity-platform-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # CyberSecurity, Platform Security Engineer - **Company:** Mistral AI - **Location:** Paris, France - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Application Lifecycle Management, Cloud Computing Security, Static Program Analysis, Cyber Security, Continuous Integration, Distributed Systems, Python (Programming Language), Key Management, Performance Tuning, Software Vulnerability Management, AI Infrastructure, Cloud Platform System, Delivery Pipeline, Software Security, Containerization, Kubernetes, Security Orchestration, Automation & Response - **Published:** July 24, 2026 - **Apply:** https://fr.indeed.com/viewjob?jk=4ac432fd4700ed59 ## About the Role * Five or more years of experience in Platform Security, Security Engineering, or Cloud Security, ideally as an early security hire in a fast-scaling environment. * Deep understanding of container orchestration and container security, alongside strong experience securing Infrastructure-as-Code across major cloud providers. * Strong programming and scripting skills in languages such as Python or Go to build security automation and integrate diverse security tools into developer workflows. * Extensive experience deploying and tuning modern security tooling with a pragmatic approach to vulnerability management and threat modeling. * Strong communication skills with a proven track record of partnering with developers and researchers to embed secure defaults without creating engineering friction. ## Description As a Platform Security Engineer on the Security team, you will architect and maintain the security posture of our rapidly scaling AI infrastructure and application lifecycle. Security is not a gate but an enabler, and you will embed robust controls into our continuous integration and deployment pipelines, infrastructure environments, and developer workflows to protect our systems without sacrificing velocity. Your role exists to ensure that our research and engineering teams can move fast while staying secure. You will shape how security integrates with every layer of our stack, from code to cloud, making secure practices invisible to developers and automatic by default. What you will do * Drive threat modeling and risk prioritization exercises as the security counterpart in system-design reviews for core infrastructure and new products. * Own end-to-end vulnerability management across continuous integration and deployment pipelines and runtime environments, covering infrastructure and applications. * Secure our container orchestration deployments and containerized workloads, implementing advanced hardening to prevent lateral movement across distributed systems. * Define and enforce Infrastructure-as-Code security by building robust guardrails and integrating policy-as-code directly into deployment pipelines. * Design and execute a comprehensive security tooling strategy, managing solutions for cloud-native application protection, cloud security posture, static code analysis, dependency scanning, secrets management, and vulnerability tracking. * Champion developer enablement by building secure defaults, streamlining remediation workflows, and drafting actionable security guidelines. * Build foundational security automation to scale alongside hyper-growth, minimizing manual overhead while establishing a pragmatic security culture. ## Related Videos - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Understanding Kubernetes in a visual way](https://www.wearedevelopers.com/videos/100085-understanding-kubernetes-in-a-visual-way) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [This Machine Ends Data Breaches](https://www.wearedevelopers.com/videos/574-this-machine-ends-data-breaches) - [Enabling automated 1-click customer deployments with built-in quality and security](https://www.wearedevelopers.com/videos/83-enabling-automated-1-click-customer-deployments-with-built-in-quality-and-security) - [Securing Your Web Application Pipeline From Intruders](https://www.wearedevelopers.com/videos/53-securing-your-web-application-pipeline-from-intruders) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking)