Staff Product Security Engineer
Core
Conduct offensive security research on agentic AI systems, build reusable security tooling, and translate findings into actionable guidance for engineering teams.
Role type
Staff Product Security Engineer (AI/Agentic Systems)
Builds
Reusable security tooling, benchmarking harnesses for AI security tools, and threat models for agentic architectures.
Domain
Identity security, Artificial Intelligence, Agentic Systems, LLM-integrated products
Deliverable
production ML models | product features | research | infrastructure
Required skills
Offensive security research, LLM-integrated system assessment, security tooling and automation, threat modeling, manual code review, penetration testing, authentication/authorization protocols (OIDC, OAuth 2.0, SAML), multi-language programming (Python + Go/Java/TypeScript/C++)
Preferred skills
Agentic framework internals (MCP, function-calling), SAST/DAST/SCA/fuzzing for AI pipelines, cryptographic implementation analysis, proof-of-concept exploit development, security standards contribution
Technologies
Python, Go, Java, TypeScript, C++, OIDC, OAuth 2.0, SAML, SAST, DAST, SCA, fuzzing tools
Responsibilities
Conduct offensive security research on prompt injection, privilege escalation, and supply chain attacks in agentic AI systems; Perform security assessments of Okta's AI platforms across design, code, and runtime; Build reusable security tooling and operate a benchmarking harness for AI security tools; Perform manual code review of AI and agent-based system implementations; Develop threat models for agentic architectures and orchestration layers; Translate research findings into actionable guidance for engineering teams; Represent Okta externally through security research, conference presentations, and publications; Mentor engineers on AI/agentic security concepts and assessment methodology
Seniority
Staff, hands-on IC with strategic impact