Platform Architect - Agentic Trust

Entrust Corporation
UK
23 days ago
Apply on eu.experteer.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Working hours
Regular working hours

Tech stack

Artificial Intelligence Amazon Web Services User Authentication Microsoft Azure Cyber Security Federal Information Processing Standards (FIPS) OAuth Public Key Infrastructure Management of Software Versions Google Cloud Information Technology

Job description

Experteer Overview As Platform Architect for Entrust Agentic Trust, you define and govern the four-plane reference architecture to enable multiple product teams to operate within a cohesive, scalable trust layer. You partner with executives and engineers to ensure secure, compliant, and interpretable identity and authorization infrastructure. You will shape AI-driven decision making with governance and standards that support enterprise agility and safety. This role offers the chance to influence industry standards and drive a trusted, enterprise-wide platform. Pay / Benefits * Define and maintain the four-plane architecture strategy and roadmap across product lines * Set architectural principles, standards, patterns, and governance processes, including boundary arbitration * Own LOB dependency contracts (interfaces, SLAs, versioning, internal transfer-pricing) * Serve as design authority and gate on Agentic Trust Layer build tracks * Own Agent Passport specifications (SPIFFE/SPIRE, SVID, attestation, binding to Entrust roots/HSM) * Own the Permission Slip framework and its cross-boundary exchanges * Oversee the Evidence Ledger and Replay architecture for verifiable records * Own the Policy Engine, MCP Gateway, and Just-in-Time Authorization across planes * Oversee Continuous Authentication, content provenance (C2PA signing), and related governance * Establish frameworks for responsible AI, model governance, and explainability * Partner with business leaders to identify high-value agentic use cases * Ensure solutions meet security, compliance, scalability, and regulatory standards * Chair Architecture Review Board and Boundary Review forum; communicate with executive leadership * Lead technology strategy, vendor diligence, and cross-functional collaboration Tasks * Bachelor’s degree in Computer Science, Information Technology, Engineering, or a related field * 15+ years of progressive technology leadership experience * 7+ years leading enterprise architecture programs or platform/security architecture for identity, cryptography, or trust infrastructure products * Deep expertise in cryptography and PKI (CAs, key lifecycle, HSMs, signing services, hardware roots of trust) * Experience with workload identity (SPIFFE/SPIRE, SVID, mutual TLS) and modern delegated authorization (OAuth 2.x, token exchange, externalized policy, PBAC/ABAC) * Proven track record designing tamper-evident/append-only verifiable systems (Merkle logs, Certificate Transparency) * Deep expertise in cloud platforms (Azure, AWS, GCP), including confidential computing and external/customer-managed KMS * Experience shipping products under third-party assurance regimes (FIPS 140-3, Common Criteria, eIDAS, SOC 2, FedRAMP) * Proven ability to influence executive stakeholders and drive strategic decisions * Experience leading cross-functional teams in global organizations Key requirements * health and well-being programs * generous 401(k) matching * paid time off and holidays * par·ental leave * education reimbursement * professional development opportunities

Requirements

with attestation, binding to Entrust roots/HSM) * Own the Permission Slip framework and its cross-boundary exchanges * Oversee the Evidence Ledger and Replay architecture for verifiable records * Own the Policy Engine, MCP Gateway, and Just-in-Time Authorization across planes * Oversee Continuous Authentication, content provenance (C2PA signing), and related governance * Establish frameworks for responsible AI, model governance, and explainability * Partner with business leaders to identify high-value agentic use cases * Ensure solutions meet security, compliance, scalability, and regulatory standards * Chair Architecture Review Board and Boundary Review forum; communicate with executive leadership * Lead technology strategy, vendor diligence, and cross-functional collaboration Tasks * Bachelor’s degree in Computer Science, Information Technology, Engineering, or a related field * 15+ years of progressive technology leadership experience * 7+ years leading enterprise architecture aaaaaa

  • or platform/security architecture for identity, cryptography, or trust infrastructure products * Deep expertise in cryptography and PKI (CAs, key lifecycle, HSMs, signing services, hardware roots of trust) * Experience with workload identity (SPIFFE/SPIRE, SVID, mutual TLS) and modern delegated authorization (OAuth 2.x, token exchange, externalized policy, PBAC/ABAC) * Proven track record designing tamper-evident/append-only verifiable systems (Merkle logs, Certificate Transparency) * Deep expertise in cloud platforms (Azure, AWS, GCP), including confidential computing and external/customer-managed KMS * Experience shipping products under third-party assurance regimes (FIPS 140-3, Common Criteria, eIDAS, SOC 2, FedRAMP) * Proven ability to influence executive stakeholders and drive strategic decisions * Experience leading cross-functional teams in global organizations Key requirements * health and well-being programs * generous 401(k) matching * paid time off and holidays * par·ental a aaL_ * education reimbursement * professional development opportunities

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on eu.experteer.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:30 min

Operating developer-friendly identity infrastructure using Affinity Elements

Adam Larter Adam Larter · World Congress 2024

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

6:10 min

Unlocking free learning credits via Google Cloud Innovators

Asrar Asrar · World Congress 2024

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

3:45 min

Fusing developer experience and platform engineering for agentic SDLC

Julia Kordick Julia Kordick · World Congress 2026 Europe

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

Videos

See all

Related articles

See all