Skip to content
OktaOktaBellevue, WA

Staff AI Security Engineer

Staff AI Security Engineer building enterprise guardrails, threat models, and secure architectures for Okta's agentic AI workflows, models, and autonomous systems. Requires 8+ years security/backend engineering experience, deep AI threat knowledge (prompt injection, OWASP, MITRE ATLAS), and Python/Go proficiency.

161k – 248k/yr
Hybrid8+ YOESecurity Engineering

About the role

What you’ll be doing

  • Design and deploy enterprise AI guardrails, gateways, and other controls to protect agentic workflows from emerging threats.
  • Establish security architectures for local and hosted agents to mitigate tool-calling, prompt injection, goal misalignment, and data exfiltration risks.
  • Develop secure design patterns and developer tools that allow engineering teams to build and deploy AI features safely and quickly.
  • Lead threat modeling and security reviews for agentic AI systems, enterprise deployments, and agent ecosystems.
  • Build systems to discover, inventory, and assess AI usage and data flows across the enterprise.
  • Design and operate internal AI security platforms and develop integrated AI capabilities that automate complex security operations.
  • Drive technical alignment across product, security, and infrastructure teams. Mentor engineers and security practitioners across domains.

What you’ll bring to the role

  • Deep knowledge of the AI threat landscape, including OWASP, MITRE ATLAS, NIST AI RMF with practical experience in prompt injection, excessive agency, and other AI-related threats.
  • 8+ years of experience in security engineering or backend software development, with strong coding proficiency in Python or Go and hands-on cloud experience.
  • Experience securing or auditing agentic frameworks (such as LangChain, Strands, Claude Agent SDK, or custom tool-calling agents) operating within sandboxed environments.
  • Proven ability to design scalable cloud infrastructure (AWS/GCP), API gateways, proxy architectures, and access controls for enterprise systems.
  • Track record of building developer-first security tools and platform controls that maintain engineering velocity.
  • Strong communication skills with a history of driving technical strategy, influencing engineering leaders, and mentoring engineers.
  • Bachelor's degree in Computer Science, Cybersecurity, Information Security, or equivalent practical experience.

Skills

ai securityPythonGoAWSGCPLangChainThreat Modelingprompt injectionmitre atlasnist ai rmfowaspapi gatewaysCloud Infrastructure
Shield AI

Senior Staff Cybersecurity Engineer, Platform Security

Shield AISan Diego, CA

Senior technical owner building secure-by-default infrastructure, IaC modules, policy-as-code guardrails, and CI/CD security tooling for cloud and platform engineering teams.

160k – 240k/yr
On-site7+ YOESecurity Engineering
ezCater

Staff GRC Engineer

ezCaterUnited States

Senior individual contributor leading GRC program maturity, control automation, data security governance, and AI governance for a SaaS food tech platform. Requires 8+ years in security compliance with strong automation and cross-functional influence skills.

165k – 210k/yr
Remote8+ YOESecurity Engineering
Huntress

Staff Cloud Security Engineer

HuntressUnited States

Designs and implements secure cloud architectures for AWS and Azure, integrates security into DevSecOps pipelines, manages vulnerabilities, and leads threat detection/response for a B2B SaaS cybersecurity platform. Requires deep cloud expertise and SaaS production security experience.

165k – 193k/yr
RemoteSecurity Engineering
Twilio

Staff Engineer

TwilioUnited States

Technical lead performing advanced offensive security work including full-stack pentesting, red team operations, custom exploit development, AI/LLM red teaming, and bug bounty management. Requires 7-10 years experience, deep expertise in MITRE ATT&CK and OWASP, and proficiency with industry tools and scripting.

156k – 229k/yr
Remote7+ YOESecurity Engineering
Ironclad

Staff IAM Engineer

IroncladSan Francisco, CA

Own security-critical identity and corporate security controls, managing IAM platforms, SSO/MFA integrations, RBAC policies, and endpoint trust for macOS/Windows environments.

170k – 190k/yr
Hybrid4+ YOESecurity Engineering