Staff Security Engineer, IAM
Core
Designing and implementing enterprise-scale identity and access solutions, including AI agent governance and non-human identity management.
Role type
Staff Security Engineer (IAM & Cloud Infrastructure)
Builds
Enterprise identity platforms, AI access governance frameworks, and automated security services on GCP/AWS.
Domain
Cybersecurity, Identity & Access Management (IAM), Cloud Infrastructure, AI Security
Deliverable
production ML models | product features | infrastructure
Required skills
Enterprise IAM architecture, Okta Identity Engine, Infrastructure as Code (Terraform/OpenTofu/Pulumi), Python software engineering, Cloud identity (GCP/AWS), AI platform administration, Non-human identity governance, Compliance frameworks (FedRAMP/SOC2/SOX)
Preferred skills
IGA platforms (Lumos/ConductorOne), Cloud org restructuring, Zero-trust architecture, Behavioral analytics
Technologies
Okta, Terraform, OpenTofu, Pulumi, Python, GCP Cloud Run, AWS, Anthropic Claude, MCP
Responsibilities
Architect enterprise-scale conditional access policies and AI agent governance frameworks; Migrate iPaaS automation to Python services on GCP Cloud Run; Codify identity platforms using IaC for global critical policies; Re-architect identity and access across GCP and AWS organizations; Lead engineering for enterprise AI platforms including SSO, SCIM, and policy enforcement; Pioneer non-human identity governance for service accounts and AI agents; Mentor senior and intermediate engineers on modern identity and AI security practices.
Seniority
Staff, strategic anchor & hands-on IC