NscaleHouston; New York; San Francisco; Seattle$190k-$230k
Mistral AIPosted 2mo ago
CyberSecurity, Offensive Security Engineer at Mistral AI scores 72 out of 100 on AI centrality, which makes it AI Level 3 of 4 (Works on AI) on this board. The level measures how much of the work is AI, not seniority.
AI in this role
About Mistral
Mistral provides full-stack AI solutions: from frontier models to developer tools, applications, and compute. We partner with enterprises tackling the hardest problems across high-stakes industries like finance, manufacturing, defense, healthcare, and the public sector, co-creating customized AI systems that they can run on their terms.
We are a dynamic, collaborative team passionate about AI and its potential to transform society. Our diverse workforce thrives in competitive environments and is committed to driving innovation. Our teams are distributed between Europe, North America, Asia and the Middle East. We are creative, low-ego and team-spirited.
Role summary
At Mistral AI, we’re pushing the boundaries of what’s possible with agentic systems—building products like Mistral Studio and Mistral Vibe that redefine how users interact with AI.
As an Offensive Security Pentester, you’ll play a pivotal role in safeguarding these innovations by anticipating, identifying, and mitigating risks before they materialize. This isn’t just about finding vulnerabilities; it’s about shaping the future of secure AI by embedding an attacker’s mindset into everything we build.
You’ll work at the intersection of offensive security, AI safety, and product development, collaborating with cross-functional teams to harden our systems against evolving threats. Your expertise will directly influence how we design, deploy, and protect our most critical assets, ensuring our agents remain resilient, trustworthy, and ahead of adversaries.
This role is ideal for those who thrive in dynamic environments, where creativity, technical depth, and a passion for security converge to solve unprecedented challenges.
What you will do
Proactively hunt for vulnerabilities in the interactions between our agentic applications, cloud infrastructure, and foundational models, with a focus on realistic, high-impact attack vectors.
Design and execute red and purple team exercises, simulating sophisticated adversarial scenarios to stress-test our defenses and refine our detection capabilities.
Partner with defensive teams to translate offensive insights into actionable improvements, from detection engineering to incident response.
Conduct in-depth penetration testing across our product suite, including AI-driven workflows, custom infrastructure, and user-facing interfaces.
Build and automate offensive tooling to scale your impact, leveraging cutting-edge techniques to stay ahead of emerging threats.
Communicate findings with clarity and conviction, ensuring technical and non-technical stakeholders understand risks and prioritize mitigations effectively.
Shape Mistral AI’s security strategy by contributing attacker-informed perspectives to threat modeling, risk assessment, and architectural decisions.
About you
You’re likely a strong fit if you bring:
7+ years of offensive security experience, with a track record of identifying and exploiting subtle vulnerabilities in complex systems—or equivalent expertise demonstrated through exceptional achievements.
Deep knowledge of AI/ML security risks, including prompt injection, data leakage, model manipulation, and abuses of dynamic UI components.
Hands-on experience assessing modern technology stacks, such as:
Custom Kubernetes deployments and containerized environments
Cloud-native architectures (AWS, GCP, or Azure)
CI/CD pipelines and GitHub security best practices
macOS/Linux internals and Python/React-based applications
Data science toolchains and AI/ML infrastructure
A builder’s mindset: The ability to write robust tools, automate offensive workflows, and contribute to defensive solutions in complex codebases.
Strong intuition for trust boundaries and risk assessment in fast-moving, high-stakes environments.
Outstanding communication skills, with the ability to distill technical nuances into compelling narratives that drive change.
A collaborative spirit, eager to work alongside engineers, researchers, and product teams to embed security into every phase of development.
Now, it would be ideal if you had experience with:
Background in AI, data science, or related fields, with an understanding of how security intersects with model behavior and system design.
Experience in high-growth startups or research-driven organizations, where agility and innovation are paramount.
Expertise in adjacent disciplines, such as software engineering, detection engineering, SRE, or security architecture.
What We Offer
We offer a comprehensive benefits package designed to support your well-being, growth, and work-life balance. Benefits vary by country and may include healthcare coverage, parental leave, retirement plans, relocation support, wellness programs, meal and transportation allowances, and other location-specific perks.
For the most up-to-date details on benefits available in your location, please refer to our Benefits page.
Privacy Policy
Your privacy matters to us. You can learn more about how we handle your personal data in our Applicant Privacy Policy.
Prepare for this job
A free preview built only from this posting: what it asks for, what you could be asked in an interview, and how to adjust your resume.
Skills and AI tools this role asks for
Questions you could be asked
- How do you think about the risk of an AI system in this kind of role failing silently?
- Describe a typical day in a role like this one: which parts run through AI directly?
- If you removed AI from this role, what would be left, and how do you decide what still needs a human?
Adapt your resume
- List these exact terms on your resume: AI Safety. An applicant tracking system matches the wording, not the idea.
- Attach one line of real, concrete experience to at least one of them — a tool named with nothing behind it rarely survives a human read.
- Show where AI is part of your daily process, not a one-off project — this role expects it to be a running habit.
Want your resume actually rewritten for this job?
The free preview above is everything we have today. A full resume rewrite is not live yet and has no price set. Join the waitlist and we will email you if we open it.
Similar roles
Security roles rated AI Level 3 at other companies.
WriterRemote · London, UK
AnthropicSan Francisco, CA | Seattle, WA | New York City, NY | Washington, DC$270k-$345k
AmazonUS, MA, Boston$159k-$202k
RobinhoodBellevue, WA; Denver, CO; Menlo Park, CA$187k-$220k
OpenAISan Francisco$266k-$335k




