> Markdown version of [/jobs/ext/1833246-principal-cybersecurity-architect-identity-access-management-for-ai-systems](https://www.wearedevelopers.com/jobs/ext/1833246-principal-cybersecurity-architect-identity-access-management-for-ai-systems). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Principal Cybersecurity Architect Identity & Access Management for AI Systems - **Company:** GE Vernova - **Location:** Boston, MA, United States (Remote available) - **Experience:** Expert - **Salary:** $165,800.0 - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Amazon Web Services, Microsoft Azure, Cloud Computing, Cyber Security, Identity and Access Management, Open Web Application Security, Role-Based Access Control, Cloud Services, Zero Trust Network Access, Delivery Pipeline, Large Language Models, Multi-Cloud, AI Platforms, Virtual Agents - **Published:** July 9, 2026 - **Apply:** https://dejobs.org/x/x/3BC360BBD70E432C8CEA4C84396B0229/job/ ## About the Role * Experience: 12+ years in cybersecurity, with a heavy emphasis on IAM. * Senior Leadership: 7+ years in Principal/Senior Architect roles for large-scale enterprise or cloud-native environments. * Cloud Expertise: Expert-level knowledge of AWS IAM (roles, policies, SCPs, federation) and AWS Identity Center. * AI Security: Proficiency with AWS Bedrock Identity/AgentCore and similar frameworks. * Conceptual Depth: Expert understanding of Zero Trust architecture and its application to AI/agentic workloads. * Communication: Exceptional ability to distill complex technical risks for executive stakeholders. Preferred Qualifications * Multicloud: Experience with Microsoft Azure IAM (Entra ID, Managed Identities, Azure AI). * Governance Tools: Familiarity with IGA technologies (e.g., Saviyant) and NHI (Non Human Identity) governance. * Agentic Security: Knowledge of LLM-specific threats (OWASP LLM Top 10) and prompt injection mitigation. * Frameworks: Understanding of SPIFFE/SPIRE for workload identity. * Certifications: AWS Certified Security - Specialty, CISSP, CISM, or CCSP. ## Description We are seeking a Principal Cybersecurity Architect to serve as a technical leader on identity and access management (IAM) for AI systems, large language models (LLMs), and autonomous AI agents. This is a position reserved for seasoned technical leaders who operate at the intersection of deep architecture expertise, enterprise-wide influence, and forward-looking security vision. As a Principal Architect, you will not simply implement solutions - you will define the strategy, set the standards, and shape the future of how AI systems are secured across our enterprise. You will drive alignment across engineering, platform, and business teams, and your architectural decisions will have lasting impact. You will serve as a key technical partner to our AI Foundry, embedding security-by-design principles into AI platforms and agent frameworks from inception. You will own the identity lifecycle for AI agents - from onboarding and certification through recertification and decommissioning - ensuring every AI entity operating in our environment is accountable, traceable, and governed under the principle of least privilege. Principal Architects at our organization are recognized technical leaders. You will be expected to drive clarity in ambiguous problem spaces, influence without authority across organizational boundaries, mentor the next generation of security architects, and represent our security posture in executive and cross-functional forums. If you are energized by solving security challenges that have no playbook yet - and by building the playbook yourself - this role is for you., Technical Leadership & Strategy * Enterprise Vision: Act as the primary authority on AI identity security, providing guidance to executive leadership and engineering teams. * Cross-Functional Alignment: Drive strategy across cybersecurity, cloud platforms, GRC, legal, and business units. * Thought Leadership: Represent the organization in external forums, industry working groups, and vendor discussions regarding AI security standards. * Architecture Ownership: Define the long-term IAM architecture for AI systems and agents in cloud and hybrid environments, establishing reusable patterns and reference designs. AI Agent Lifecycle & Governance * Identity Management: Oversee the full lifecycle for AI agents, from initial onboarding and cryptographic identity assignment to decommissioning. * Accountability: Maintain an unbroken chain of human ownership and traceability for all autonomous agents. * Access Control: Architect and enforce the Principle of Least Privilege (PoLP), Just-in Time (JIT), and Just-Enough-Access (JEA) patterns for AI workloads. * Compliance: Partner with GRC and privacy teams to ensure AI agent governance meets rigorous regulatory requirements., * 30 Days: Establish core partnerships with AI Foundry and engineering leads. * 60 Days: Complete an authoritative assessment of the current AI IAM risk posture. * 90 Days: Publish the AI agent identity lifecycle framework and enterprise standards. * 8-12 Months: Scale governance, implement recurring recertification campaigns, and integrate full IAM controls into the AI Foundry delivery pipeline. ## Related Videos - [The Open-source Java SDK for Multi-Cloud Development - Sandeep Pal](https://www.wearedevelopers.com/videos/2113-the-open-source-java-sdk-for-multi-cloud-development-sandeep-pal) - [This App Reached 10,000 Users in One Week. Here's How.](https://www.wearedevelopers.com/videos/100329-this-app-reached-10-000-users-in-one-week-here-s-how) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [How to govern Vibe Coding for the Enterprise](https://www.wearedevelopers.com/videos/100290-how-to-govern-vibe-coding-for-the-enterprise) - [Leverage Cloud Computing Benefits with Serverless Multi-Cloud ML ](https://www.wearedevelopers.com/videos/78-leverage-cloud-computing-benefits-with-serverless-multi-cloud-ml) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [Got AI ideas but no money? Here are 10 free ways to level up your AI skills with Google Cloud](https://www.wearedevelopers.com/magazine/600-got-ai-ideas-but-no-money-here-are-10-free-ways-to-level-up-your-ai-skills-with-google-cloud) - [Stephan Gillich - Bringing AI Everywhere](https://www.wearedevelopers.com/magazine/489-stephan-gillich-bringing-ai-everywhere) - [Dev Digest 164: AI Agents, AI Blindspots and MCP security problems](https://www.wearedevelopers.com/magazine/578-dev-digest-164-ai-agents-ai-blindspots-and-mcp-security-problems) - [Dev Digest 210: AI Agents Are Go! Is MCP Dead? LLMs Crack Anonymity](https://www.wearedevelopers.com/magazine/709-dev-digest-210-ai-agents-are-go-is-mcp-dead-llms-crack-anonymity) - [Coffee with Developers - Maria Apazoglou - Making AI understandable for all in production](https://www.wearedevelopers.com/magazine/475-coffee-with-developers-maria-apazoglou-making-ai-understandable-for-all-in-production) - [Everything a Developer Needs to Know About MCP with Neo4j](https://www.wearedevelopers.com/magazine/604-everything-a-developer-needs-to-know-about-mcp-with-neo4j)