Staff AI Security Engineer
Job Description
Okta is hiring a Staff AI Security Engineer (senior individual contributor) on the Security team to shape the technical vision, architecture, and hands-on security controls for AI models, agentic workflows, and autonomous systems. This role focuses on building secure AI infrastructure that can scale, while helping other engineering teams move quickly with clear security patterns and developer tools.
Location: New York, NY (hybrid)
Compensation: USD 180,000 - 247,500 per year
What you’ll do
- Secure AI Implementations: Design and deploy enterprise AI guardrails, gateways, and other controls to protect agentic workflows against emerging threats.
- Agent Hardening & Sandboxing: Establish security architectures for local and hosted agents to reduce risks from tool-calling abuse, prompt injection, goal misalignment, and data exfiltration.
- Define Paved Roads & Security Standards: Create secure design patterns and developer tools so engineering teams can build and deploy AI features safely and faster.
- Threat Modeling for AI Workflows: Lead threat modeling and security reviews for agentic AI systems, enterprise deployments, and agent ecosystems.
- AI Discovery & Visibility: Build systems to discover, inventory, and assess AI usage and data flows across the enterprise.
- Agentic Platform Infrastructure: Design and operate internal AI security platforms and develop integrated AI capabilities that automate complex security operations.
- Technical Leadership & Mentorship: Drive technical alignment across product, security, and infrastructure teams, and mentor engineers and security practitioners across domains.
What you bring
- AI Security Expertise: Deep knowledge of the AI threat landscape, including OWASP, MITRE ATLAS, and NIST AI RMF, with practical experience addressing prompt injection, excessive agency, and other AI-related threats.
- Software Engineering: 8+ years of experience in security engineering or backend software development, with strong coding proficiency in Python or Go, plus hands-on cloud experience.
- Agentic Framework Knowledge: Experience securing or auditing agentic frameworks such as LangChain, Strands, Claude Agent SDK, or custom tool-calling agents, especially in sandboxed environments.
- Architectural Expertise: Proven ability to design scalable cloud infrastructure on AWS or GCP, including API gateways, proxy architectures, and access controls for enterprise systems.
- Paved Road Construction: Demonstrated track record building developer-first security tools and platform controls that help maintain engineering velocity.
- Technical Leadership: Strong communication skills, with a history of driving technical strategy, influencing engineering leaders, and mentoring engineers.
- Education: Bachelor’s degree in Computer Science, Cybersecurity, Information Security, or equivalent practical experience.
Technologies you may work with
Python, Go, AWS, GCP, OWASP, MITRE ATLAS, NIST AI RMF, LangChain, Strands, Claude Agent SDK
The Okta experience
- Supporting Your Well-Being
- Driving Social Impact
- Developing Talent and Fostering Connection + Community