
Security & Identity Engineer
Posted 5 days ago

Posted 5 days ago
This is a fully remote position, open to applicants in United States.
• Collaborate with an external software development organization as a member of Inviso’s delivery team.
• Partner closely with client product, engineering, security, and business stakeholders.
• Assist in the design, security, and delivery of the fundamental components of an enterprise AI platform.
• Conduct threat modeling activities.
• Design and assess tenant isolation across control plane, data plane, application, and infrastructure boundaries.
• Establish identity and authorization frameworks.
• Ensure secure delivery practices and integrate compliance-by-design principles.
• Safeguard systems that operate with untrusted content, code, tools, or agent actions.
• Implement security considerations in architecture, engineering, and delivery decisions.
• Support controls, evidence management, data handling, and security documentation efforts.
• Offer practical security advice to client teams.
• Aid client teams in delivering reliable, compliant, and secure platform functionalities.
• Elevate security standards while allowing delivery teams to operate swiftly and responsibly.
• Travel as required based on client needs.
• Proven experience in designing and securing production software platforms, ideally in multi-tenant or regulated settings.
• In-depth knowledge of authentication, authorization, delegated access, token exchange, service identity, and least-privilege access methodologies.
• Experience in defining or contributing to platform threat models and utilizing them in architectural, engineering, and delivery decisions.
• Capability to design and evaluate tenant isolation frameworks across control plane, data plane, application, and infrastructure boundaries.
• Experience in securing systems that process untrusted content, code, tools, or agent actions.
• Familiarity with secure CI/CD practices, including secrets management, scanning, policy enforcement, and secure release controls.
• Ability to support compliance-by-design methodologies involving controls, evidence management, data handling, and security documentation.
• Excellent communication skills with the ability to collaborate with engineers, product leaders, client stakeholders, and customer security teams.
• Pragmatic judgment to balance security, speed, reliability, and business value.
• Interest in responsible AI, secure AI systems, and controls for model, agent, and tool-based workflows.
• Experience in designing authentication and authorization systems for a multi-tenant SaaS or platform environment.
• Extensive knowledge of OAuth, OIDC, SAML, Entra ID, cloud IAM, or related identity technologies.
• Familiarity with compliance frameworks such as SOC 2, ISO 27001, GDPR, or similar standards.
• Experience in securing AI, LLM, RAG, agentic, or tool-calling systems.
• Background in enterprise-scale software, regulated delivery environments, or mission-critical systems.
• Experience with AI-assisted development tools while maintaining a strong focus on review and security discipline.
• Medical insurance
• Dental insurance
• Vision insurance
• 401(k) plan with company match
• Annual training reimbursement
• Paid time off
• Paid holidays
• Additional perks designed to support well-being and long-term success
• Room to grow
GitLab
GitLab
Cisco
Lovesac
Get handpicked remote jobs straight to your inbox weekly.