AI/Agentic Identity Engineer

Remote • Posted 1 day ago • Updated 1 day ago
Contract W2
12 Months
No Travel Required
Remote
Depends on Experience
Fitment

Dice Job Match Score™

👾 Reticulating splines...

Job Details

Skills

  • Agentic Identity Engineer
  • security engineer
  • zero trust
  • AI/LLM
  • IAM
  • LLM
  • AI
  • artificial intelligence

Summary

Agentic Identity Engineer

Remote - with occasional travel to the Miami office 

6 months 

Notes

  • Looking for a senior-level Security Engineer to support a strategic initiative to establish an identity and access management (IAM) program for AI agents
    • They will treat each agent as a governed non-human identity (NHI) with a tracked owner, a pre-approved permission set (persona), and strong workload identity.
    • This includes both consumer-facing and internal agentic services
  • They will design and operationalize runtime guardrails, identity-aware authorization, and policy enforcement across both guest-facing and internal systems.
  • Design and implement security control planes for agentic AI systems
  • Support human-in-the-loop workflows for sensitive or high-risk AI-initiated actions
  • Ensure end-to-end attribution across user → agent → tool execution chains
  • Implement SPIFFE/SPIRE (or equivalent) for cryptographic agent identity.
  •  Implement OAuth 2.0/2.1, OIDC, On-Behalf-Of (RFC 8693) token exchange, and audience-bound tokens (RFC 8707); enforce least privilege and temporal / just-in-time constraints.
  • 8+ years of experience in security engineering, application security, or platform security
  • Proven experience delivering enterprise IAM / non-human identity solutions.
  • Experience designing fine-grained least-privilege access models for distributed systems
  • Experience working with AI-enabled or automation-heavy systems
  • Familiarity with risks unique to agentic or autonomous systems
  • Deep working knowledge of OAuth 2.0/2.1, OIDC, token exchange (OBO), and modern token security (PKCE, audience binding, short-lived tokens).
  • Experience with workload identity: SPIFFE/SPIRE, mTLS, and PKI/certificate-based authentication.
  • Experience with secrets management and eliminating static/long-lived credentials.
  • Solid grasp of Zero Trust, least privilege, and identity lifecycle/recertification.
  • Experience with AI/LLM security risks (e.g., OWASP Top 10 for LLM Applications, agentic threat models).
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 91132487
  • Position Id: 9031701
  • Posted 1 day ago
Contact the job poster
GV

Gaurav Verma

Recruiter @ Techgroup America Inc.
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Remote or Miami, Florida

Today

Third Party, Contract

$36.55 - $49.45 hourly

Remote

2d ago

Easy Apply

Contract

Depends on Experience

Remote

Today

Easy Apply

Contract

$80 - $110

Remote

Today

Full-time

USD 209,000.00 - 309,000.00 per year

Search all similar jobs