Cybersecurity Team Lead, Infrastructure and Application

Mistral AI Mistral AI · AI Frontier · Paris, France · Engineering & Infra

This role focuses on architecting and enforcing the security posture of Mistral AI's technical stack, including on-premise and cloud-native deployments. The primary responsibility is owning the vulnerability management lifecycle, from defining standards and automating detection to facilitating remediation. The role involves integrating security controls into CI/CD pipelines, partnering with engineering teams, defining security guidelines, leading security awareness programs, and tracking key security metrics.

What you'd actually do

  1. Oversee the identification, prioritization, and remediation of vulnerabilities across both On-Prem and Cloud infrastructures as well as internal applications.
  2. Select, deploy, and maintain the tools needed for visibility and protection, including CNAPP, CSPM, SAST/DAST, secret scanning, and SBOM/CVE tracking.
  3. Integrate security controls and automated gates directly into CI/CD pipelines to catch vulnerabilities before deployment (Shift Left).
  4. Partner with engineering teams to interpret findings and "ease the fix," providing patches, code snippets, or architectural advice to resolve issues quickly.
  5. Define and maintain rigorous security guidelines and best practices for developers and system administrators.

Skills

Required

  • Information Security
  • Application Security
  • Cloud Security
  • DevSecOps
  • Scripting (Python, Go, or Bash)
  • CI/CD ecosystems
  • Container orchestration (Kubernetes/Docker)
  • Modern security tooling (e.g., Wiz, Snyk, SonarQube, Prisma, or similar enterprise tools)
  • Communication
  • Autonomy

Nice to have

  • CISSP, CCSP, OSCP, or cloud-specific security certifications
  • Infrastructure as Code (IaC) with Terraform or Ansible
  • Offensive security (Penetration Testing)
  • Securing large-scale AI or Machine Learning infrastructure

What the JD emphasized

  • 6+ years of experience in Information Security
  • Strong scripting skills (Python, Go, or Bash)
  • Deep understanding of CI/CD ecosystems and container orchestration (Kubernetes/Docker)
  • Hands-on experience with modern security tooling
  • Prior experience securing large-scale AI or Machine Learning infrastructure