Principal Forward Deployed Engineer
Core
Embed as a dedicated technical partner for enterprise customers to architect, deploy, and secure AI agent identity solutions within their infrastructure.
Role type
Principal Forward Deployed Engineer (AI Agent Security)
Builds
Bespoke agent identity solutions (Cross-App Access, Fine-Grained Authorization, MCP Gateway) integrated into customer environments.
Domain
Enterprise AI Security / Identity & Access Management (IAM)
Deliverable
client delivery
Required skills
Production software engineering (7+ years), Identity protocols (OAuth 2.0, OIDC, SAML, SCIM, DPoP), Agent security frameworks (OWASP Agentic, NIST AI RMF, MITRE ATLAS), Fine-grained authorization (ReBAC, ABAC, OPA, Cedar), AI integration (LangChain, CrewAI, OpenAI Agents SDK, MCP), AI-native development tools (Claude Code, Cursor), Customer-facing technical leadership.
Preferred skills
Experience with regulated environments (HIPAA, FedRAMP, SOC 2), Knowledge of ISO/IEC 42001 and EU AI Act.
Technologies
Python, OPA, Cedar, OpenFGA, LangChain, CrewAI, OpenAI Agents SDK, MCP, Claude Code, Cursor.
Responsibilities
Architect and deploy agent security stacks (XAA, FGA, MCP Gateway) inside customer infrastructure; Engage senior leadership (CISO, CIO, Chief AI Officer) to translate governance mandates into architecture; Deliver white-glove deployments with full identity coverage and security reviews; Maintain defensible architectures aligned with OWASP, NIST, and regulatory standards; Integrate Okta with customer IdP, IGA, SIEM, and policy engines; Build observability for authorization latency, scope sprawl, and rogue agent detection; Convert field patterns into reusable product modules; Maintain regular on-site presence at customer locations.
Seniority
Principal, hands-on IC with strategic customer ownership