Senior Cybersecurity Engineer – Identity Platform and Access Management

NVIDIA NVIDIA · Semiconductors · Santa Clara, CA

Senior Cybersecurity Engineer focused on leading the development and improvement of large-scale identity and access management systems, with a specific emphasis on modernizing authentication for agentic AI and developer workflows within NVIDIA's global infrastructure.

What you'd actually do

  1. Lead enterprise identity strategy and platform architecture, encompassing cloud identity, directory services, and the transition of applications to modern authentication standards (OAuth 2.0, OIDC, SAML).
  2. Define and implement reference architectures for secure authentication across CLI, browser, and agentic workflows.
  3. Architect and stand up a centralized token issuance and validation service for developer and CLI workflows, ensuring consistent trust and verification across device and session contexts.
  4. Establish agent identities as an outstanding element within the identity platform, enabling robust access control and audit-ability for automated and machine-assisted workflows.
  5. Build and implement advanced identity security controls such as Conditional Access policies, Privileged Identity Management (PIM), and risk-based authentication.

Skills

Required

  • platform or infrastructure engineering
  • authentication
  • authorization
  • identity systems
  • modern token-based protocols
  • federated identity standards
  • device attestation
  • Zero Trust architecture
  • identity-based attack techniques
  • modern IAM controls
  • securing automated or computer-controlled workflows
  • service-to-service identity
  • non-human access patterns
  • communication skills

Nice to have

  • building token services
  • centralized auth platforms
  • high availability
  • low latency
  • delegated access flows
  • managed device trust models
  • human and non-human identities
  • agent or service identities
  • complex, multi-tenant environments
  • application development
  • auth libraries and SDKs
  • enterprise identity transformations
  • directory modernization programs
  • migration from legacy authentication protocols

What the JD emphasized

  • extensive knowledge in authentication, authorization, and identity systems
  • crafting and leading identity or access management platforms within large-scale organizations
  • securing automated or computer-controlled workflows, including service-to-service identity and non-human access patterns
  • building token services or centralized auth platforms that run at enterprise scale with high availability and low latency
  • establish agent or service identities as an outstanding construct in complex, multi-tenant environments