Staff Product Engineer - AI Identity & Governance

Jobgether — United States · Posted ~2 hours ago

Lead Full-time

Skills

software engineering cloud infrastructure identity systems authorization AI systems AI authorization systems

🔓 Log in to save this job, tailor your resume & track your apply process — 7 days free, no card needed.

Log in to add to target list

Summary ✨ AI‑Generated

A technology organization is seeking a staff-level product engineer to design secure AI infrastructure, build identity and authorization systems, and deliver production-grade solutions across engineering teams.

Highlights

High-impact engineering role focused on technical direction, scalable systems, AI infrastructure, and security-focused development.

Description

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Staff Product Engineer, Agentic Identity & Governance, AI Platform based in United States. As a Staff Product Engineer, you will own the technical direction for identity, authorization, and delegation systems powering enterprise AI agents. You will shape how agents authenticate, access data, and act on behalf of humans or other agents in security-conscious production environments. The role spans both the agentic data platform and cloud infrastructure, giving you broad technical influence across multiple engineering teams. You will combine strategic architectural leadership with hands-on engineering, designing and shipping production-hardened systems rather than stopping at technical proposals. You will work at the intersection of rapidly evolving agent identity standards, enterprise security requirements, and practical customer needs. This is a high-autonomy individual contributor role where you will influence technical decisions through code, RFCs, design work, and collaboration. You will also mentor engineers and help define the future of identity and governance for AI-powered systems within a globally distributed engineering organization. Accountabilities Own the technical direction for authentication (AuthN), authorization (AuthZ), and on-behalf-of (OBO) access across the agentic data platform and cloud platform. Evaluate emerging identity and authorization patterns and determine which approaches should be adopted, adapted, or deliberately avoided. Design, build, and ship production systems supporting OAuth 2.1 authorization, token management, delegated tool access, and cryptographic delegation models. Develop mechanisms that allow AI agents to act on behalf of humans or other agents while maintaining a provable and auditable chain of authority. Build identity-federation capabilities that integrate effectively with enterprise identity providers such as Okta, Microsoft Entra, Ping, and similar platforms. Ensure identity and authorization architecture meets the requirements of security-conscious enterprise customers. Partner closely with engineering, security, product, and other cross-functional teams to validate technical decisions against real-world customer requirements. Represent the organization's technical perspective on agent identity through customer security discussions, technical documentation, and relevant industry or standards initiatives. Drive initiatives through production delivery, with success measured by reliable, scalable systems shipped to customers. Influence technical direction across multiple engineering teams without relying on formal reporting authority. Mentor engineers across the agentic data and cloud platform teams on identity, access management, authorization, and delegation concepts. Identify systemic technical challenges and communicate risks, impediments, mitigation plans, and contingency strategies to engineering leadership. Participate in strategic technical discussions with senior engineering peers and directors to help shape the broader engineering environment. Track progress and proactively communicate the status, risks, dependencies, and outcomes of initiatives under your ownership. Requirements 10+ years of software development and delivery experience, including deep hands-on expertise in authentication, authorization, identity, or access-management systems. Production experience with OAuth 2.0/2.1, OIDC, token exchange, delegation patterns, or related identity protocols. Practical experience operating authorization servers, token-management infrastructure, or comparable identity systems at scale. Strong understanding of token exchange and on-behalf-of patterns, including standards such as RFC 8693. Current knowledge of emerging agent identity and authorization approaches, including MCP authentication, A2A, cross-application access, and related token-exchange patterns. Ability to make sound technical decisions in areas where industry standards and best practices are still evolving. Experience designing identity systems that federate with, rather than replace, enterprise identity providers such as Okta, Microsoft Entra, Ping, or similar technologies. Demonstrated Staff- or Principal-level individual contributor experience driving technical direction across multiple teams or engineering organizations. Strong ability to lead through influence using technical proposals, RFCs, architecture discussions, code, and direct collaboration. Experience working with globally distributed engineering teams and collaborating effectively in open, GitHub-based development environments. Excellent written and verbal communication skills, including the ability to explain complex identity and delegation concepts to engineers, security professionals, and customers with varying technical backgrounds. Strong ownership, accountability, self-direction, and execution skills. Ability to thrive in a fast-moving environment where priorities, technologies, and industry standards evolve rapidly. Direct experience with agent-specific identity or delegation protocols is highly valuable. Experience contributing to or closely following relevant identity, OAuth, or agent-authorization standards bodies and working groups is an advantage. Experience working in regulated or security-sensitive enterprise environments is a plus. Prior experience influencing technical direction across multiple engineering organizations is strongly valued. Benefits Competitive U.S. base salary range of $220,000–$260,000, with the specific range determined by location, role level, experience, skills, education, and training. Fully remote work opportunity for candidates based in United States. High-autonomy Staff-level individual contributor position with broad technical ownership and influence. Opportunity to shape emerging standards and technical approaches in agentic identity, authorization, and AI governance. Hands-on ownership of production systems with direct customer impact. Opportunity to collaborate with globally distributed engineering, security, product, and cloud platform teams. Access to modern AI tools and resources designed to support engineering productivity. Learning and professional development opportunities in a rapidly evolving technical domain. Culture emphasizing trust, transparency, communication, collaboration, and kindness. Opportunity to mentor engineers and influence technical practices across multiple teams. How Jobgether Works We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team. We appreciate your interest and wish you the best! Why Apply Through Jobgether? Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time. We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.