Search Remote Jobs

Staff Security Engineer, IAM

🔥 0 minutes ago

🌐 United States, Canada – Remote

infoinfo

💵 $168k - $238k / year

⏰ Full Time

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer

👻 Ghost score 0%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of GitLab

GitLab

1001 - 5000 employees

Founded 2014

💼 Consulting

📣 Marketing

🤖 Artificial Intelligence

💰 Secondary Market on 2020-11

Consulting • Marketing • Artificial Intelligence

GitLab is the most comprehensive AI-powered DevSecOps platform, offering tools for automated software delivery, security, and compliance throughout the software development lifecycle. It provides solutions across areas such as AI-assisted development, continuous integration/continuous deployment (CI/CD), source code management, and vulnerability management. GitLab aims to simplify and accelerate software delivery by uniting development, security, and operations on a unified platform. It is particularly recognized for its AI code assistants and has been named a leader in the Gartner Magic Quadrant™ for DevOps Platforms, making it a preferred choice for many enterprises.

📋 Description

• Design comprehensive identity and AI access solutions, including AI agent governance frameworks and privileged access workflows with just-in-time provisioning • Replace low-code automation with engineered Python services on GCP Cloud Run with source control, tests, CI, and observability • Codify Okta, Lumos, and non-human identity platforms in Terraform/OpenTofu/Pulumi and migrate click-ops to peer-reviewed infrastructure-as-code • Re-architect identity and access across GCP and AWS organizations, including resource hierarchy, secure-by-default guardrails, workload identity federation, and least-privilege access • Lead identity and access engineering for enterprise AI platforms, including administration, SSO and SCIM integration, audit logging, data controls, and policy enforcement • Design monitoring and management solutions for service accounts, API keys, certificates, AI agents, and MCP integrations; deploy and operationalize the NHI platform • Drive cross-functional initiatives with Security, IT, Engineering, Enterprise AI, and the Office of the CIO • Mentor senior and intermediate engineers on technical implementation and strategic thinking

🎯 Requirements

• Extensive IAM experience designing and implementing enterprise-scale solutions, with demonstrated time at a Staff or senior IC level • Expert-level Okta expertise including Identity Engine, advanced authentication policies, lifecycle workflows, and API automation • Strong infrastructure-as-code practice with Terraform/OpenTofu/Pulumi, including provider experience for SaaS identity platforms and a track record of migrating click-ops to code • Proficiency writing and shipping Python as a software engineer, designed as modular, tested, code-reviewed, deployed as services (GCP Cloud Run or equivalent serverless runtime) and instrumented for failure • Cloud identity depth in GCP and/or AWS, including resource hierarchy and organization design, IAM policy models, workload identity federation, and preventive controls such as org policies, SCPs, and permission boundaries • Hands-on experience administering or governing enterprise AI platforms (Anthropic Claude preferred; OpenAI ChatGPT Enterprise, Google Gemini Enterprise, or similar acceptable) • Awareness of AI-specific risks including prompt injection, MCP attack surface, agent identity, and data leakage • Daily engineering practice with AI tooling such as Claude Code, Cursor, or similar • Experience with IGA platforms like Lumos, ConductorOne, or similar, with a preference for managing them declaratively • Experience in regulated environments with knowledge of compliance frameworks (FedRAMP, SOC2, SOX), including change management, evidence collection, and audit support • Passion for emerging identity challenges including AI agent governance, non-human identity management, zero-trust architecture, and behavioral analytics • Experience carrying a cloud org restructuring through to completion, including migration and stakeholder work

🏖️ Benefits

• Benefits to support your health, finances, and well-being • Flexible Paid Time Off • Team Member Resource Groups • Equity Compensation & Employee Stock Purchase Plan • Growth and Development Fund • Parental Leave

Apply Now

Similar Jobs

🕒 2 days ago

Zeiders Enterprises, Inc.

1001 - 5000

💼 Consulting

🏥 Healthcare

🎖️ Defense

Information System Security Officer supporting Zeiders’ cloud-hosted federal digital services platforms. Managing cybersecurity controls, compliance, authorization, and secure system operations.

🕒 2 days ago

Ziply Fiber

1001 - 5000

💼 Consulting

📦 Logistics

📡 Telecommunications

Principal Architect securing Ziply Fiber’s broadband network, enterprise systems, and cloud environments. Defining Zero Trust, IAM, detection, application, and AI security architecture.

🕒 2 days ago

Hyland

1001 - 5000

🤝 B2B

☁️ SaaS

🏢 Enterprise

Director of Application Security leading secure software development, risk mitigation, and compliance at Hyland, a provider of enterprise content intelligence and automation solutions.

🕒 2 days ago

Synack, Inc.

201 - 500

🔒 Cybersecurity

📋 Compliance

☁️ SaaS

Information Security Compliance Manager automating compliance and AI governance for Synack’s penetration-testing platform. Maintaining security controls across cloud infrastructure serving enterprise customers and US agencies.

🕒 2 days ago

Danaher

10,000+ employees

🧬 Biotechnology

🏥 Healthcare

🔬 Science

Global security director protecting Beckman Coulter Diagnostics’ people, facilities, and operations. Leading enterprise risk, crisis management, executive protection, and travel security programs.