
Security & Identity Engineer
Posted Sep 3

Posted Sep 3
This is a fully remote position, open to applicants in Canada.
• Assist an external software development organization as a member of Inviso’s delivery team.
• Collaborate closely with client product, engineering, security, and business stakeholders.
• Contribute to the design, security, and delivery of the foundational elements of an enterprise AI platform.
• Conduct threat modeling and integrate findings into architectural, engineering, and delivery decisions.
• Design and assess tenant isolation across control plane, data plane, application, and infrastructure boundaries.
• Establish identity, authorization, secure delivery practices, and compliance-by-design principles.
• Secure systems that execute untrusted content, code, tools, or agent actions.
• Offer practical security guidance that empowers teams to deliver reliable, compliant, and secure platform capabilities.
• Elevate the security standards while allowing delivery teams to operate swiftly and responsibly.
• Travel as needed to meet client requirements.
• Experience in designing and securing production software platforms, ideally in multi-tenant or regulated settings.
• Strong expertise in authentication, authorization, delegated access, token exchange, service identity, and least-privilege access patterns.
• Experience in defining or contributing to platform threat models and applying them to architectural, engineering, and delivery decisions.
• Capability to design and evaluate tenant isolation models across control plane, data plane, application, and infrastructure boundaries.
• Experience in securing systems that handle untrusted content, code, tools, or agent actions.
• Familiarity with secure CI/CD practices, including secrets management, scanning, policy enforcement, and safe release controls.
• Ability to support compliance-by-design practices involving controls, evidence, data handling, and security documentation.
• Excellent communication skills and the ability to collaborate with engineers, product leaders, client stakeholders, and customer security teams.
• Pragmatic judgment with the capability to balance security, speed, reliability, and business value.
• Interest in responsible AI, secure AI systems, and controls for model, agent, and tool-based workflows.
• Experience in designing authentication and authorization mechanisms for a multi-tenant SaaS or platform environment.
• Deep understanding of OAuth, OIDC, SAML, Entra ID, cloud IAM, or similar identity technologies.
• Experience with SOC 2, ISO 27001, GDPR, or comparable compliance frameworks.
• Experience in securing AI, LLM, RAG, agentic, or tool-calling systems.
• Background in enterprise-scale software, regulated delivery environments, or mission-critical systems.
• Experience utilizing AI-assisted development tools while maintaining rigorous review and security discipline.
• Annual training allowance of $2,000.
• Paid time off.
• Paid holidays.
• Additional benefits.
Sony Interactive Entertainment
Squads
Neo4j
PingWind Inc. (SDVOSB)
Get handpicked remote jobs straight to your inbox weekly.