Title: Senior IAM Automation & DevOps Engineer
Location: Boston, MA
Hybrid Work
Role Overview:
We are seeking a Senior Identity Access Management (IAM) Engineer who approaches identity through the lens of software engineering and systems architecture rather than traditional administration. The ideal candidate doesn''t just manage tools; they build ecosystems. You will be responsible for designing and automating robust identity frameworks that secure our global infrastructure, with a heavy focus on Zero Trust, Workload Identity (NHI), and the emerging frontier of AI Security
Job Responsibilities:
· Engineering over Administration: Move beyond "clicking buttons" in consoles. You will design, develop, and maintain identity solutions as code.
· Identity Automation: Build and scale automation pipelines and custom tooling from scratch to eliminate manual touchpoints in the identity lifecycle.
· Architecture & Strategy: Implement Zero Trust architectures that verify every request, regardless of origin, ensuring seamless and secure access across the enterprise.
· Workload Identity: Standardize and secure Non-Human Identities (NHI) using advanced patterns like SPIFFE/SPIRE.
· AI Integration: Develop security protocols for AI agents and large language models (LLMs), protecting both the AI itself and the identities it interacts with.
Job Description:
1. Zero Trust & Identity Strategy
· Strong practical understanding of Zero Trust Architecture (ZTA).
· Proven experience moving organizations away from perimeter-based security to identity-centric security.
2. Identity Automation & DevOps
· The Engineering Mindset: Ability to treat identity infrastructure as code (IaC).
· Scripting & Development: Advanced proficiency in languages such as Python, Go, or PowerShell.
· Tooling: Experience developing custom tools and CI/CD pipelines to automate complex IAM workflows.
3. Workload & Non-Human Identity (NHI)
· Deep familiarity with NHI governance concepts.
· Hands-on experience with SPIFFE (Secure Production Identity Framework for Everyone) and SPIRE (the SPIFFE Runtime Environment).
· Experience managing certificates, secrets, and short-lived credentials at scale.
4. AI Security & Innovation
· Practical experience securing AI agents and machine learning workflows
· Understanding the unique challenges of protecting non-human identities in an AI-driven environment.