Staff Security Engineer - PAM and Agentic Identity

NVIDIA Corporation
Santa Clara, CA, United States
24 days ago
Apply on nvidia.wd5.myworkdayjobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
4 years minimum
Compensation
$168,000.0 - $270,250.0
Working hours
Regular working hours

Tech stack

Microsoft Windows Application Programming Interfaces (APIs) Artificial Intelligence Microsoft Azure Cloud Computing Databases Continuous Integration Linux Identity and Access Management Reliability Engineering Software Engineering Systems Integration
+10 more
Policy as Code Data Storage Technologies Cyberark Power Platform Integration Large Language Models Multi-Agent Systems Software Security Kubernetes Information Technology Hashicorp

Job description

NVIDIA seeks a skilled engineer to upgrade, automate, tailor, and expand our Privileged Access Management (PAM) and Non-Human Identity (NHI) capabilities to fit agentic era expectations. This position will focus on improving the value of current platforms. It will also simplify the user and operator experience and expand secure access controls for infrastructure, automation, service identities, and agentic workflows. As AI agents, coding agents, internal developer platforms, and autonomous workflows become more common across NVIDIA, this role will help ensure privileged access and infrastructure access services can scale with stronger identity, authorization, observability, and auditability.

You will engage with Enterprise Security, Product Security, infrastructure and platform SRE, developer efficiency, and business teams to reduce standing privilege, boost auditability, simplify adoption, and facilitate self-servicing at scale. This role calls for balanced hands-on experience in both infrastructure engineering and software engineering, robust system/platform engineering expertise, an SRE viewpoint, and the aptitude to build reliable automation, integrations, APIs, and internal tooling within hybrid technology environments, including AI/LLM-enabled applications and agentic workflows.

What you will be doing:

  • Modernize PAM, secure infrastructure access, and NHI services for NVIDIA’s agentic era, covering privileged users, service accounts, AI/coding/service agents, and autonomous workflows.
  • Automate and extend existing platforms through APIs, custom connectors, policy-as-code, onboarding templates, reporting, and service catalog integrations to improve self-service adoption and reduce toil.
  • Integrate PAM, NHI, and secure access controls into AI/LLM-enabled applications, agent frameworks, internal developer platforms, and autonomous workflows.
  • Expand our services coverage across Linux/Windows, cloud and on-prem systems, container orchestration platforms, data storage solutions, network devices, developer platforms, IaC, CI/CD, and internal tools.
  • Mature core controls including JIT access, zero standing privilege, session recording, break-glass access, credential rotation, access reviews, and audit evidence.
  • Own service reliability with SRE rigor, including monitoring, alerting, incident response, operational readiness, continuous improvement, and practical technology evaluation.

Requirements

  • Bachelor’s degree or Master’s degree in computer science or equivalent experience
  • 8+ years of experience in security, infrastructure/platform engineering, SRE, IAM, or related enterprise technology roles, including 4+ years directly related to PAM and NHI solutions.
  • Balanced infrastructure and software development skills, with the ability to operate complex production services and build automated processes, system connections, application interfaces, connectors, and operational tooling.
  • Practical experience working within Linux and Windows environments, on-prem and cloud infrastructure, Kubernetes, databases, CI/CD systems, and production operations.
  • Experience with PAM, or secrets platforms such as Idira/CyberArk, Teleport, Azure PIM, HashiCorp Vault, or similar technologies.
  • Strong SRE mentality, operational rigor, and collaboration skills across global engineering, IT, security, and platform teams.

Ways to stand out from the crowd:

  • Hands-on ability to maintain access platforms, build custom connectors, integrate unsupported targets, and automate onboarding, credential, and session workflows.
  • Familiarity with modern access patterns such as short-lived credentials, identity-aware proxies, session recording, access requests, device trust, and workload identity.

Benefits & conditions

Your base salary will be determined based on your location, experience, and the pay of employees in similar positions. The base salary range is 168,000 USD - 270,250 USD.

About the company

NVIDIA is widely considered to be one of the technology world’s most desirable employers. We have some of the most intelligent and hardworking people in the world working for us. If you’re creative and autonomous, we want to hear from you!

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on nvidia.wd5.myworkdayjobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:39 min

Generating dynamic application secrets using HashiCorp Vault engines

Alex Soto Alex Soto · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

5:24 min

Demonstrating database encryption at rest with HashiCorp Vault

Alex Soto Alex Soto · LIVE

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

Videos

See all

Related articles

See all