Mistral is looking for a Security Platform Engineer to architect and maintain the infrastructure ensuring the observability of our production systems. You will treat the SIEM and logging infrastructure as a high-performance data product. Your objective is to ensure the reliability, scalability, and cost-efficiency of the pipelines ingesting security telemetry from our GPU clusters, cloud environments, and applications.
What you will do
• Own the set-up, lifecycle, availability, and performance of the SIEM solution, ensuring 99.9% uptime for log ingestion and query availability.
• Design and maintain high-throughput data pipelines to collect, buffer, and transport logs from distributed systems to the SIEM.
• Implement parsing logic and schema standardization to ensure unstructured logs are searchable and actionable for analysts.
• Manage alert rules, connectors, and dashboard configurations, avoiding manual console configuration ("ClickOps").
• Analyze ingestion patterns to identify noisy, low-value data. Implement filtering and aggregation at the source to maximize signal-to-noise ratio.
• Architect data tiers to balance query performance with compliance retention requirements and cloud costs.
About you
• 5+ years of experience in Site Reliability Engineering (SRE), Data Engineering, or Security Engineering with a focus on logging infrastructure.
• Deep understanding of log management challenges at scale (indexing strategies, sharding, partitioning, throughput tuning).
• Strong experience deploying and monitoring stateful workloads on Kubernetes and Cloud providers (Azure/GCP) and On-Prem.
• Ability to write production-grade Python or Go for automation and custom log exporters.
• Experience managing monitoring, alerting, and on-call rotations for critical infrastructure.
Hiring Process
• Introduction call - 30 min
• Hiring Manager interview - 30 min
• Technical Rounds I - 45 min
• Technical Rounds II - 60 min
• Culture-fit discussion - 30 min
• References
Location & Remote
The position is based in our Paris HQ offices and we encourage going to the office as much as we can (at least 3 days per week) to create bonds and smooth communication. Our remote policy aims to provide flexibility, improve work-life balance and increase productivity. Each manager can decide the amount of days worked remotely based on autonomy and a specific context (e.g. more flexibility can occur during summer). In any case, employees are expected to maintain regular communication with their teams and be available during core working hours.
What we offer
Competitive salary and equity package
Health insurance
Transportation allowance
Sport allowance
Meal vouchers
Private pension plan
Generous parental leave policy