Principal Forward Deployed Engineer - Okta for AI Agents

1 week, 3 days ago
Full-time
Lead
Software Development
Okta

Okta

Okta is a leading independent provider of identity solutions for enterprises, offering a comprehensive range of products and services to connect and protect employees, partners, and customers. With a focus on secure access, authentication, and automati...

Professional Services
5K-10K
Founded 2009

Description

  • Define the canonical reference architecture for agent identity, delegation, audit, and kill-switch patterns across the portfolio.
  • Personally lead the most strategic, regulated, and technically novel customer deployments.
  • Review and improve architectures proposed by other field engineers and coach senior customer-facing technical staff.
  • Synthesize patterns across accounts into actionable recommendations for product and engineering leadership.
  • Represent Okta as a technical authority in briefings with CISO, CIO, and Chief AI Officer audiences.
  • Contribute to external standards and frameworks shaping agent identity.
  • Resolve complex technical and political issues that others cannot unblock.
  • Define evaluation and observability standards for authorization latency, scope sprawl, delegation anomalies, audit completeness, and kill-switch verification.
  • Turn recurring field work into reusable modules, internal tooling, and enablement.
  • Stay hands-on in code while setting technical direction and multiplying the effectiveness of the broader team.

Requirements

  • 10+ years shipping production software, with deep distributed systems and identity experience.
  • Experience staying hands-on while setting technical direction.
  • Deep knowledge of OAuth 2.0, OIDC, SAML, SCIM, RFC 8693 token exchange, act claims, CIMD, DCR, and DPoP.
  • Contribution to standards or open source is a plus.
  • Working knowledge of OWASP Top 10 for Agentic Applications, NIST AI RMF, MITRE ATLAS, MCP, A2A, ISO/IEC 42001, and the EU AI Act.
  • Ability to apply security and compliance frameworks in HIPAA, FedRAMP, and SOC 2 environments.
  • Expertise in ReBAC and ABAC with policy engines such as OPA, Cedar, OpenFGA, or equivalent.
  • Production integrations across major agent platforms and MCP, plus daily AI-native development experience.
  • A record of setting technical direction across multiple teams or accounts and mentoring senior engineers.
  • Credibility with both technical and executive audiences, including CISOs and principal engineers.
  • High-agency, founder’s mindset focused on building a function rather than just supporting an account.

Benefits

  • Annual base salary range of $269,000 to $369,000 for candidates in the San Francisco Bay Area.
  • Annual base salary range of $240,000 to $330,000 for candidates in California outside the Bay Area, Colorado, Illinois, New York, and Washington.
  • Equity eligibility where applicable.
  • Bonus eligibility.
  • Health, dental, and vision insurance.
  • 401(k) plan.
  • Flexible spending account.
  • Paid leave, including PTO and parental leave.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Senior Solutions Engineer, Strategic/Major -UK/I

Wiz 251-1K IT Services

Wiz is hiring a Senior Solutions Engineer to support strategic or major customers in London, partnering with sales teams to advance cloud security conversations across AWS, Azure, and GCP.

AWS Azure Cybersecurity Docker GCP Kubernetes Terraform
8 hours, 32 minutes ago

AI Solutions Architect- Federal

HiddenLayer 11-50 IT Services

HiddenLayer is hiring a remote AI Solutions Architect for federal pursuits to lead technical pre-sales, design and deploy AI security platform implementations, and help mission owners secure AI systems across government environments.

AWS Azure CI/CD Docker GitHub Helm Hugging Face Kubernetes Machine Learning MLOps OpenShift Python PyTorch
8 hours, 47 minutes ago

Solution Consultant

66degrees 251-1K IT Services

66degrees is seeking a Solution Consultant to support Google Cloud–based pre-sales, solution design, and managed services delivery for enterprise clients.

AWS Azure Docker GCP Kubernetes Machine Learning Terraform
8 hours, 47 minutes ago

Saviynt IAM Specialist

The Missing Link 51-250 Internet Software & Services

The Missing Link is seeking a Security Engineer - Saviynt to support large enterprise identity governance initiatives, design and deliver Saviynt-based solutions, and strengthen its growing cyber security practice.

Active Directory Azure Cybersecurity JavaScript PowerShell REST API SAP SQL
9 hours, 2 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers