Staff AI Security Engineer
Job Description
Okta is seeking a Staff AI Security Engineer to shape the technical direction for securing AI models and agentic systems. This senior individual contributor role focuses on scalable AI security infrastructure, hands-on control development, and cross-functional partnership to enable safe AI innovation.
Responsibilities
- Secure AI implementations: Design and deploy enterprise AI guardrails, gateways, and related controls to protect agentic workflows from emerging threats.
- Agent hardening and sandboxing: Create security architectures for local and hosted agents to reduce risks including tool-calling abuse, prompt injection, goal misalignment, and data exfiltration.
- Define paved roads and security standards: Develop secure design patterns and developer tools that help engineering teams build and ship AI features safely and efficiently.
- Threat modeling for AI workflows: Lead threat modeling and security reviews for agentic AI systems, enterprise deployments, and agent ecosystems.
- AI discovery and visibility: Build systems to discover, inventory, and evaluate AI usage and data flows across the enterprise.
- Agentic platform infrastructure: Design and operate internal AI security platforms and create integrated capabilities to automate complex security operations.
- Technical leadership and mentorship: Align product, security, and infrastructure teams on technical strategy while mentoring engineers and security practitioners across domains.
Requirements
- AI threat expertise: Deep knowledge of the AI threat landscape, including OWASP, MITRE ATLAS, and NIST AI RMF, with practical experience addressing threats such as prompt injection and excessive agency.
- Security engineering or backend experience: 8+ years in security engineering or backend software development, with strong coding proficiency in Python or Go and hands-on cloud experience.
- Agentic framework security: Experience securing or auditing agentic frameworks (examples include LangChain, Strands, Claude Agent SDK, or custom tool-calling agents) in sandboxed environments.
- Cloud and access control: Proven ability to design scalable cloud infrastructure (AWS/GCP), API gateways, proxy architectures, and enterprise access controls.
- Developer-first tooling: Track record of building developer-first security tools and platform controls that support engineering velocity.
- Communication and influence: Strong communication skills, including experience driving technical strategy, influencing engineering leaders, and mentoring engineers.
- Education: Bachelor’s degree in Computer Science, Cybersecurity, Information Security, or equivalent practical experience.
Technologies
- Python, Go
- OWASP, MITRE ATLAS, NIST AI RMF
- LangChain, Strands, Claude Agent SDK
- AWS, GCP
Role Details
- Location: Washington, DC (hybrid)
- Salary: USD 180,000 - 247,500 per year
The Okta Experience
- Supporting Your Well-Being
- Driving Social Impact
- Developing Talent and Fostering Connection + Community