Overview
IAM Engineer focused on AI security, designing and implementing identity and access governance that enables safe adoption of AI agents and related non-human identities.
What you'll do
- Design, implement, and maintain IAM solutions securing AI usage across the organization.
- Support discovery, inventory, and governance of non-human identities and machine access, including shadow AI identification.
- Partner to implement AI-aware access controls (runtime authorization, contextual boundaries, DLP) for AI-driven workflows.
- Implement intent-aware authorization capabilities that assess AI behavior before granting backend access.
- Transition from static credentials to credential-less authentication models for AI and machine workloads.
- Implement and maintain security controls over MCP and similar model-connectivity integrations with safe/fail-closed behavior.
- Assist IAM operations with access triage, entitlement anomaly detection, and audit evidence collection.
What you'll need
- Minimum 5 years of hands-on IAM experience, including experience with an IGA platform (e.g., Saviynt, SailPoint IdentityNow/IdentityIQ, Oracle Identity Manager, or similar).
- Working knowledge of AI agent and non-human identity governance concepts (e.g., discovery, credential lifecycle, runtime authorization, intent/behavior validation).
- Familiarity with modern authentication protocols and credential-less architectures (e.g., federated identity, short-lived/ephemeral tokens, workload identity models).
- Exposure to Model Context Protocol (MCP) or similar machine/model connectivity standards.
- Hands-on experience with connected/disconnected application onboarding (request forms, dynamic attributes, mapping, data types).
- Hands-on experience with REST & SOAP connectors (JSON building, mapping, reconciliation, provisioning use cases).
- General understanding of SSO, MFA, and PAM & cloud technologies/tools.
Nice to have
- Prior AI/ML engineering exposure (e.g., Python, LLM or agent frameworks) and experience in coding/development is preferred.
Details
Read the full description and apply on the company’s own careers page.