CyberSecurity Engineer, Incident Response Lead

mistral.ai
Paris

About Mistral

Mistral provides full-stack AI solutions: from frontier models to developer tools, applications, and compute. We partner with enterprises tackling the hardest problems—across high-stakes industries like finance, manufacturing, defense, healthcare, and the public sector—co-creating customized AI systems that they can run on their terms.

We are a dynamic, collaborative team passionate about AI and its potential to transform society. Our diverse workforce thrives in competitive environments and is committed to driving innovation. Our teams are distributed between Europe, North America, Asia and the Middle East. We are creative, low-ego and team-spirited.

About Mistral

At Mistral AI, we believe in the power of AI to simplify tasks, save time, and enhance learning and creativity. Our technology is designed to integrate seamlessly into daily working life.

We democratize AI through high-performance, optimized, open-source and cutting-edge models, products and solutions. Our comprehensive AI platform is designed to meet enterprise needs, whether on-premises or in cloud environments. Our offerings include le Chat, the AI assistant for life and work.

We are a dynamic, collaborative team passionate about AI and its potential to transform society.

Our diverse workforce thrives in competitive environments and is committed to driving innovation. Our teams are distributed between France, USA, UK, Germany and Singapore. We are creative, low-ego and team-spirited.

Join us to be part of a pioneering company shaping the future of AI. Together, we can make a meaningful impact. See more about our culture on .

Role Summary

Mistral AI is looking for a senior Incident Response and Digital Forensics specialist to lead our incident response capability across a complex, rapidly evolving AI ecosystem.

Reporting to the SOC Lead, you will take end-to-end ownership of major security incidents, from initial investigation and containment through remediation and post-incident improvement. During critical events, you will act as the incident commander, bringing structure, sound judgment, and calm leadership to high-pressure situations.

This is a hands-on, player-coach position combining deep technical investigations with capability building. You will help define our incident response methodology, forensic tooling, runbooks, exercises, and post-mortem practices. As the organization grows, the role may also offer opportunities to build and lead a dedicated incident response team.

What You Will Do

  • Own the incident response lifecycle for high-severity security events, including triage, investigation, containment, remediation, recovery, and post-incident review.

  • Act as incident commander, coordinating technical teams and key stakeholders during complex security incidents.

  • Build, maintain, and test incident response runbooks covering Mistral’s most important risk scenarios.

  • Develop and operate forensic capabilities across cloud, containerized, on-premises, and endpoint environments.

  • Preserve, collect, and analyze digital evidence using rigorous and repeatable forensic methodologies.

  • Partner with SOC and Detection Engineering teams to strengthen detection-to-response workflows and improve investigative readiness.

  • Design and facilitate tabletop exercises with engineering, legal, communications, and leadership stakeholders.

  • Lead blameless post-mortems and ensure lessons learned translate into durable technical and organizational improvements.

  • Define clear incident communication and escalation practices for both technical and non-technical stakeholders.

  • Contribute to the long-term development of Mistral’s incident response function, with the potential to mentor or lead future team members.

About You

  • Significant experience leading complex incident response and digital forensics investigations in cloud-native, technology, or similarly high-stakes environments.

  • Demonstrated ability to take command during critical incidents and coordinate multidisciplinary teams under pressure.

  • Strong knowledge of cloud and container forensics, including environments such as AWS, GCP, Kubernetes, and on-premises infrastructure.

  • Hands-on experience with endpoint forensics, ideally including macOS environments.

  • Strong understanding of attacker behaviors, investigation methodologies, evidence handling, and the MITRE ATT&CK framework.

  • Experience building incident response runbooks, forensic workflows, tabletop exercises, and post-incident review practices.

  • Ability to automate investigative or response workflows using Python, Go, or similar languages.

  • Excellent written and verbal communication skills, with the ability to communicate clearly with engineers, legal teams, executives, and other stakeholders.

  • A calm, methodical, and pragmatic approach, combined with a strong sense of ownership.

  • Experience mentoring others or helping build an incident response capability is highly valued.

Hiring Process

  • Introduction call: 30 minutes

  • Hiring Manager interview: 30 minutes

  • Technical panel: 60 minutes

  • Culture and values discussion: 30 minutes

  • Reference checks

Location: Paris, France
Working model: Hybrid
Scope: Global
Level: Senior / Staff

Location & Remote

The position is based in our Paris HQ offices and we encourage going to the office as much as we can (at least 3 days per week) to create bonds and smooth communication. Our remote policy aims to provide flexibility, improve work-life balance and increase productivity. Each manager can decide the amount of days worked remotely based on autonomy and a specific context (e.g. more flexibility can occur during summer). In any case, employees are expected to maintain regular communication with their teams and be available during core working hours.

What we offer

Competitive salary and equity package

‍⚕️ Health insurance

Transportation allowance

Sport allowance

Meal vouchers

Private pension plan

Generous parental leave policy

By applying, you agree to our Applicant Privacy Policy .

What we offer

We offer a comprehensive benefits package designed to support your well-being, growth, and work-life balance. Benefits vary by country and may include healthcare coverage, parental leave, retirement plans, relocation support, wellness programs, meal and transportation allowances, and other location-specific perks.

For the most up-to-date details on benefits available in your location, please refer to our Benefits page .

Privacy Policy

Your privacy matters to us. You can learn more about how we handle your personal data in our Applicant Privacy Policy .

Publié le 2026-07-03

Emplois Recommandés

Chef.fe en restauration durable - Tout Day

Tout Day
Paris

Rejoins Tout Day et réinvente la restauration durable On veut prouver qu’une consommation plus responsable peut être cool, accessible et désirable. On créé un lieu unique qui mixe shopping, food et …

Voir les Détails
Publié le 2026-06-30

Chef de Cuisine pour une ouverture de Restaurant (H/F)

Machefert
Paris

Le Groupe Machefert recrute son Chef de Cuisine (H/F) pour renforcer son équipe ! Sous la responsabilité du Chef Exécutif et du Directeur de l’établissement vous serez en charge des missions suiv…

Voir les Détails
Publié le 2026-04-04

Cardiologue - Paris 75019 H/F

JoberGroup
Paris 19e

Présentation de l'entrepriseRetrouvez plus de 4000 offres d'emploi santé sur notre site et application mobile Jober Group. Profitez d'un réseau de 2000 partenaires sur toute la France, d'une équip…

Voir les Détails
Publié le 2026-05-06

Stagiaire Finance Commercial & Global Alliances (6 mois) /Commercial & Global Alliances Finance Intern (6 months)

Forums Talents Handicap
Paris 15e

Poste ouvert aux personnes en situation de handicap. WHAT - Summary & Purpose of the Position As part of the Commercial & Global Alliances financial team, you will contribute to the financial contr…

Voir les Détails
Publié le 2026-06-27

Responsable Transformation IA

Hunteed
Paris

La mission Missions et responsabilités : 1-Conseil stratégique et pilotage de la mutation technologique Apporter un éclairage décisionnel à la gouvernance concernant l'exécution du plan de …

Voir les Détails
Publié le 2026-05-29

Christian Dior Assistant Wholesale F/H - Stage Septembre

Christian Dior Couture
Paris

Missions From the House of Dream to the House of Talents « Quoi que vous fassiez - pour le travail ou le plaisir - faites-le avec passion ! Vivez avec passion... »* Christian Dior Christian D…

Voir les Détails
Publié le 2026-05-15

Storage Expert (NetApp)

AXA
Paris

VOTRE RÔLE ET VOS MISSIONS Sous le groupe IT Services Distribués, le produit « Stockage » vise à fournir des capacités de stockage de classe mondiale (SAN – produit Sunset, NAS, Hyperconvergé) p…

Voir les Détails
Publié le 2026-04-30

Chargé de projets O&M H/F - Apprentissage

NW
Paris

Type de contrat : Apprentissage Localisation : Paris - présentiel Date de début : dès que possible À propos de NW NW a pour ambition de rendre la transition énergétique accessible à to…

Voir les Détails
Publié le 2026-04-11

Chef de partie pâtisserie (H/F) - Ouverture juillet 2026

Nouvelle Garde
Paris

L’ouverture de notre 10ème brasserie approche à grand pas ! On débarque en juillet Avenue Victoria à Paris avec la Brasserie Casel. Si tu veux participer à l’expérience d’une ouverture, on recrute en…

Voir les Détails
Publié le 2026-06-13

Technicien Multi Technique Itinérant (m/f/d)

Apleona France SAS
Paris

Apleona recherche aujourd'hui un(e) Technicien(ne) Multi Technique Itinérant pour rejoindre nos équipes. Au sein du Pôle Technique, le/la Technicien(ne) est responsable de la maintenance, de la ré…

Voir les Détails
Publié le 2025-12-24