Senior Security Engineer, Identity & Machine Access
Core
Own and mature the identity and access program, focusing on machine, workload, and non-human identities in a multi-cloud, AI-driven enterprise.
Role type
Senior Security Engineer (Identity & Machine Access)
Builds
Identity fabric for agentic AI systems, service accounts, workload identities, and privileged access controls.
Domain
Cybersecurity, Identity & Access Management (IAM), Cloud Security
Deliverable
production ML models | infrastructure
Required skills
Identity and Access Management (IAM) engineering, machine/non-human identity security, Privileged Access Management (PAM), secrets management, authorization models (RBAC/ABAC), multi-cloud identity (AWS IAM, OIDC, mTLS), Infrastructure as Code (Terraform)
Preferred skills
AI/ML/LLM identity security, MCP tool-access authorization, scripting (Python/PowerShell), workload identity tooling (HashiCorp Vault, SPIFFE/SPIRE)
Technologies
AWS IAM, OIDC, JWT, HashiCorp Vault, Terraform, Entra, OAuth 2.0
Responsibilities
Inventory and govern service accounts, workload identities, API keys, and certificates; design credential issuance and rotation models; define authorization for AI agents; manage PAM and just-in-time access; centralize secrets management; automate access reviews; architect least-privilege IAM across multi-cloud; partner with DevOps on identity controls in CI/CD.
Seniority
Senior, hands-on IC