Senior Cybersecurity Engineer – Identity Platform & Access Management
Tech Stack
Tag name is followed by "@" symbol and proficiency level value.
About proficiency levels:
- 1-2 — basic awareness. Minimal hands-on experience, and a rudimentary understanding of the technology's purpose;
- 3-6 — daily use. Comfortable and regular usage, capable of handling common tasks and challenges related to the technology;
- 7-9 — you are an expert, you can teach others, you know all the pitfalls and tricks;
- 10 — exceptional knowledge, comprehensive understanding, and adeptness in all aspects of the technology, including advanced problem-solving. Think twice before claiming or demanding such level.
AI
Agentic AI
Communication @ 6
Compliance
OAuth
Security
- 1-2 — basic awareness. Minimal hands-on experience, and a rudimentary understanding of the technology's purpose;
- 3-6 — daily use. Comfortable and regular usage, capable of handling common tasks and challenges related to the technology;
- 7-9 — you are an expert, you can teach others, you know all the pitfalls and tricks;
- 10 — exceptional knowledge, comprehensive understanding, and adeptness in all aspects of the technology, including advanced problem-solving. Think twice before claiming or demanding such level.
Details
NVIDIA's Enterprise Security organization is seeking a Senior Cybersecurity Engineer to lead the development, deployment, and improvement of large-scale identity and access management systems. The role will establish and guide the identity framework protecting developers, services, and AI agents across NVIDIA's worldwide cloud, on-premises, and managed-device infrastructure.
This high-impact, cross-functional position connects security architecture, platform engineering, and AI infrastructure. The engineer will work with device management, identity governance, and platform teams to define technical strategy and operational ownership, with a focus on modernizing authentication for agentic AI and developer-scale workflows.
Responsibilities
- Lead enterprise identity strategy and platform architecture, including cloud identity, directory services, and application transitions to modern authentication standards such as OAuth 2.0, OIDC, and SAML.
- Define and implement reference architectures for secure authentication across CLI, browser, and agentic workflows.
- Architect and establish a centralized token issuance and validation service for developer and CLI workflows, ensuring consistent trust and verification across device and session contexts.
- Establish agent identities as a core element of the identity platform, enabling robust access control and auditability for automated and machine-assisted workflows.
- Build and implement advanced identity security controls, including Conditional Access policies, Privileged Identity Management (PIM), and risk-based authentication.
- Scale device management and identity governance systems for AI-powered operations while ensuring reliability, performance, and compliance across large organizational environments.
- Partner with security, infrastructure, and product teams to align architecture, development strategy, and operational ownership.
Requirements
- Bachelor's or master's degree, or equivalent experience, in Computer Science or a related field.
- More than 12 years of experience in platform or infrastructure engineering, with extensive knowledge of authentication, authorization, and identity systems, including modern token-based protocols, federated identity standards, and device attestation.
- Demonstrable experience designing and leading identity or access management platforms within large-scale organizations.
- Solid understanding of Zero Trust architecture, identity-based attack techniques, and modern IAM controls.
- Experience securing automated or computer-controlled workflows, including service-to-service identity and non-human access patterns.
- Excellent written and verbal communication skills, with the ability to drive architecture decisions across senior and executive audiences.
Preferred Qualifications
- Experience building token services or centralized authentication platforms operating at enterprise scale with high availability and low latency.
- Deep understanding of delegated access flows, managed-device trust models, and securing both human and non-human identities.
- Experience establishing agent or service identities as a core construct in complex, multi-tenant environments.
- Hands-on application development experience, including the ability to contribute directly to authentication libraries and SDKs.
- Experience leading enterprise identity transformations or directory modernization programs, including large-scale migration from legacy authentication protocols.
Benefits
The base salary range is USD 196,000–310,500 per year, determined by location, experience, and pay for similar positions. The role also includes eligibility for equity and benefits.
Applications will be accepted at least until August 16, 2026. NVIDIA is an equal opportunity employer.