Senior Cybersecurity Engineer – Identity Platform and Access Management
at Nvidia
USD 196,000-310,500 per year
Used Tools & Technologies
Not specified
Required Skills & Competences
Tag name is followed by "@" symbol and proficiency level value.
About proficiency levels:
- 1-2 — basic awareness. Minimal hands-on experience, and a rudimentary understanding of the technology's purpose;
- 3-6 — daily use. Comfortable and regular usage, capable of handling common tasks and challenges related to the technology;
- 7-9 — you are an expert, you can teach others, you know all the pitfalls and tricks;
- 10 — exceptional knowledge, comprehensive understanding, and adeptness in all aspects of the technology, including advanced problem-solving. Think twice before claiming or demanding such level.
Security @ 4
Hiring @ 4
Communication @ 6
OAuth @ 4
Compliance @ 4
AI @ 4
Agentic AI @ 4
- 1-2 — basic awareness. Minimal hands-on experience, and a rudimentary understanding of the technology's purpose;
- 3-6 — daily use. Comfortable and regular usage, capable of handling common tasks and challenges related to the technology;
- 7-9 — you are an expert, you can teach others, you know all the pitfalls and tricks;
- 10 — exceptional knowledge, comprehensive understanding, and adeptness in all aspects of the technology, including advanced problem-solving. Think twice before claiming or demanding such level.
Details
NVIDIA's Enterprise Security organization is hiring a Senior Cybersecurity Engineer focused on Identity Platform and Access Management. The role leads development, deployment, and improvement of large-scale identity and access management systems that protect developers, services, and AI agents across cloud, on-premises, and managed device environments. This is a multi-functional position connecting security architecture, platform engineering, and AI infrastructure, with a focus on modernizing authentication patterns for agentic AI and developer-scale workflows.
Responsibilities
- Lead enterprise identity strategy and platform architecture, including cloud identity and directory services.
- Transition applications to modern authentication standards (OAuth 2.0, OIDC, SAML) and define reference architectures for secure authentication across CLI, browser, and agentic workflows.
- Architect and deploy a centralized token issuance and validation service for developer and CLI workflows, ensuring consistent trust and verification across device and session contexts.
- Define and integrate agent (non-human) identities into the identity platform to enable robust access control and auditability for automated workflows.
- Build and implement advanced identity security controls such as Conditional Access policies, Privileged Identity Management (PIM), and risk-based authentication.
- Scale device management and identity governance systems for AI-powered operations, ensuring reliability, performance, and compliance at enterprise scale.
- Partner with cross-functional teams across security, infrastructure, and product to align architecture, build strategy, and operational ownership.
Requirements
- Bachelor’s or Master’s degree in Computer Science or a related field, or equivalent experience.
- 12+ years of experience in platform or infrastructure engineering with extensive knowledge of authentication, authorization, and identity systems.
- Experience with token-based protocols and federated identity standards (OAuth 2.0, OIDC, SAML) and device attestation.
- Demonstrable experience designing and leading identity or access management platforms in large-scale organizations.
- Strong understanding of Zero Trust architecture, identity-based attack techniques, and modern IAM controls.
- Experience securing automated or computer-controlled workflows, including service-to-service identity and non-human access patterns.
- Excellent written and verbal communication skills; experience influencing architecture decisions with senior and executive stakeholders.
Ways to Stand Out
- Background building enterprise-scale token services or centralized auth platforms with high availability and low latency.
- Deep knowledge of delegated access flows, managed device trust models, and securing both human and non-human identities.
- Experience establishing agent/service identities as first-class constructs in complex, multi-tenant environments.
- Hands-on application development experience contributing to auth libraries and SDKs.
- Experience leading enterprise identity transformations or directory modernization programs, including migrations from legacy authentication protocols at scale.
Benefits and Additional Information
- Base salary range: 196,000 USD - 310,500 USD (determined by location, experience, and pay of employees in similar positions).
- Eligible for equity and company benefits.
- Applications accepted at least until April 24, 2026.
- NVIDIA uses AI tools in its recruiting processes.
- NVIDIA is an equal opportunity employer committed to diversity and inclusion.