Senior Security Engineer, Identity & Machine Access

Posted One Month Ago
Be an Early Applicant
2 Locations
In-Office
Senior level
Artificial Intelligence • Machine Learning
Uniphore is the Business AI Company powering the agentic enterprise.
The Role
Lead and mature non-human identity and machine access: inventory and secure service accounts, API keys, tokens, certificates, and secrets; implement least-privilege, short-lived credentials, PAM, secrets management, identity governance, cross-account trust across multi-cloud (AWS primary), and automate identity controls via IaC and CI/CD.
Summary Generated by Built In

Uniphore is the Business AI company. Our sovereign, composable and secure AI platform connects enterprise data, fine-tunes AI models and deploys agentic AI across the enterprise. We empower every worker to boost productivity and help businesses grow faster, operate smarter and reduce costs. Trusted by more than 2,000 businesses globally, and recognized on the Deloitte Fast 500, Uniphore delivers on the promise of AI as a transformative force for business.


Job Description: 

About The Role

We are looking for a Senior Security Engineer to own and mature our identity and access program, with a primary focus on machine and non-human identity. Traditional human IAM is the foundation, but this role exists for what is coming: as we deploy agentic AI, every agent, MCP server, service, workload, and pipeline becomes an identity that must be authenticated, scoped to least privilege, governed, and retired. You will own the credentials, secrets, and privileged access that hold a complex multi-cloud, AI-driven enterprise together, and build the identity fabric that lets us scale agentic systems without expanding our attack surface. This role owns machine, workload, and non-human identity and the credentials behind our platform.

This is a hands-on role for an engineer who is passionate about automation, security-as-code, and treating both human and non-human identity as first-class security problems.

What You Will Do (Key Responsibilities)

  • Own the non-human identity (NHI) program: inventory, govern, and secure service accounts, workload identities, API keys, tokens, OAuth clients, and certificates used by applications, pipelines, AI agents, and MCP servers.
  • Drive machine access toward least-privilege, short-lived, and fully auditable credentials, and design the model for how non-human identities are issued, scoped, rotated, and revoked at scale.
  • Define and govern the authorization model for AI agent and tool access (including MCP), ensuring agents can reach only what they are explicitly entitled to.
  • Own Privileged Access Management (PAM) across engineering and cloud environments: vaulting, just-in-time access, session control, and the elimination of standing privilege.
  • Own secrets management: centralize and rotate secrets, eliminate hardcoded credentials, and embed secret hygiene into CI/CD and runtime.
  • Own identity governance: periodic access reviews (User Access Reviews), entitlement management, and least-privilege enforcement across human and non-human identities, automating the end-to-end review process. Workforce IdP administration is owned by IT and partner on governance and access policy.
  • Architect least-privilege IAM across our multi-cloud estate (AWS primary), including workload identity and cross-account and cross-provider trust, reducing identity blast radius across our hybrid (AWS and Rackspace) seam.
  • Govern application and agent identity, including Entra app-registration governance and OAuth scope management.
  • Partner with DevOps and engineering to embed automated identity controls into pipelines and Infrastructure as Code (Terraform).
  • Partner with IT on corporate endpoint and email security baselines (e.g., CIS Benchmarks), supporting rather than owning, as IT leads corporate device management.
  • Create and maintain clear documentation and standards for all identity, secrets, and privileged-access processes.

Required Qualifications

  • 5 to 7 years of hands-on Identity and Access Management engineering experience.
  • Expert-level proficiency securing machine and non-human identity: service accounts, workload identity (e.g., AWS IAM roles, OIDC federation, or equivalent), API keys and tokens, and certificate and secrets management (e.g., HashiCorp Vault, cloud secret managers).
  • Deep understanding of service-to-service authentication and authorization such as OAuth 2.0, OIDC, JWT, mTLS, and workload authentication patterns.
  • Hands-on experience deploying and operating a Privileged Access Management (PAM) solution in engineering environments, with just-in-time and least-privilege models.
  • Deep, mandatory experience securing resources with AWS IAM and multi-cloud identity is a strong plus.
  • Strong grasp of authorization models (RBAC, ABAC, least privilege) and identity governance.

Preferred Qualifications

  • Experience securing identity for AI, ML, LLM, or agentic systems, including non-human identity, agent credentials, and MCP or tool-access authorization at scale.
  • Scripting for automation (Python, PowerShell) and Infrastructure as Code (Terraform) for identity resources.
  • Hands-on with workload-identity and secrets tooling such as HashiCorp Vault, cloud secret managers, certificate lifecycle, and SPIFFE/SPIRE or equivalent workload identity.
  • Experience with secrets and certificate lifecycle automation.
  • Relevant certifications (e.g., CISSP) and a degree in Computer Science, Information Security, or a related field.


 


Location preference:

India - Bangalore, India - Chennai


Uniphore is an equal opportunity employer committed to diversity in the workplace. We evaluate qualified applicants without regard to race, color, religion, sex, sexual orientation, disability, veteran status, and other protected characteristics.
 
For more information on how Uniphore uses AI to unify—and humanize—every enterprise experience, please visit www.uniphore.com.

Skills Required

  • 5 to 7 years of hands-on Identity and Access Management engineering experience
  • Expert-level proficiency securing machine and non-human identity: service accounts, workload identity (e.g., AWS IAM roles, OIDC federation), API keys, tokens, certificates, and secrets management
  • Deep understanding of service-to-service authentication and authorization (OAuth 2.0, OIDC, JWT, mTLS) and workload authentication patterns
  • Hands-on experience deploying and operating a Privileged Access Management (PAM) solution with just-in-time and least-privilege models
  • Deep experience securing resources with AWS IAM and familiarity with multi-cloud identity patterns
  • Strong grasp of authorization models (RBAC, ABAC) and identity governance, including access reviews and entitlement management
  • Experience securing identity for AI/ML/agentic systems, non-human/agent credentials, and tool-access authorization at scale
  • Scripting for automation (Python, PowerShell) and Infrastructure as Code (Terraform) for identity resources
  • Hands-on with workload-identity and secrets tooling such as HashiCorp Vault, cloud secret managers, certificate lifecycle, and SPIFFE/SPIRE
  • Experience with secrets and certificate lifecycle automation
  • Relevant certifications (e.g., CISSP) or degree in Computer Science, Information Security, or related field
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Palo Alto, CA
465 Employees
Year Founded: 2008

What We Do

The Business AI Cloud is the only sovereign, composable and secure AI platform that enables businesses to rapidly adopt, significantly transform and immediately unlock the value of their data. Trusted by more than 2,500 of the world’s largest enterprises and recognized by Gartner, Forrester, IDC and the Deloitte Fast 500, Uniphore is where enterprise AI moves from ambitions to production. A Complete, Composable Platform Uniphore is designed to be: Sovereign — run on any public cloud, private cloud or on-premises with full control over your data and AI models. Composable — choose your layer, model, or component—vector DBs, knowledge graphs, data compute, and beyond. Secure — embedded guardrails, observability, and AI security ensure trusted, compliant, and enterprise-grade protection. Trusted at Scale Over 2,000 global businesses — including many of the Fortune 500 — rely on Uniphore every day to drive growth, improve efficiency, and deliver personalized customer experiences. Customers include leaders across industries, like Skechers, LastPass, Atlassian, HP, Allstate, Sony, and more. Industry Recognition Named to Inc.'s Best in Business List Listed on the Deloitte Technology Fast 500 Recognized in reports by Gartner, Forrester, and IDC From Pilot to Production Through strategic collaborations with industry leaders like KPMG, Cognizant, Rackspace, Databricks and Snowflake, Uniphore helps organizations move beyond experimental AI pilots to production-grade deployment — operationalizing AI agents across internal and client-facing workflows at scale.

Similar Jobs

Capco Logo Capco

Alteryx Developer - PC

Fintech • Professional Services • Consulting • Energy • Financial Services • Cybersecurity • Generative AI
Remote or Hybrid
India
6000 Employees

TransUnion Logo TransUnion

Lead Engineer, Quality Assurance

Big Data • Fintech • Information Technology • Business Intelligence • Financial Services • Cybersecurity • Big Data Analytics
Hybrid
2 Locations
13000 Employees

CSC Logo CSC

Accountant

Fintech • Legal Tech • Software • Financial Services • Cybersecurity • Data Privacy
Remote or Hybrid
2 Locations
8500 Employees

Coursera + Udemy  Logo Coursera + Udemy

LLMops Engineer

Artificial Intelligence • Consumer Web • Edtech • Enterprise Web • HR Tech • Social Impact • Generative AI
Remote or Hybrid
India
1500 Employees

Similar Companies Hiring

Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees
Blee Thumbnail
Artificial Intelligence • Marketing Tech • Software
New York, New York
30 Employees
Vega Thumbnail
Artificial Intelligence • Automotive • Insurance • Transportation
US
43 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account