Skip to main content
LTS

Senior AI Identity Platform Engineer

RemoteUnited States only
Published
Role
Fullstack
Experience
Senior
Employment
Full-time
Salary not disclosed
Check eligibility

Open to US only. Set where you work from to check your eligibility.

No BS summary

We're building an AI-native engineering platform supporting the modernization of mission-critical healthcare systems serving millions of Veterans nationwide. The platform is designed for deployment across federal enterprise environments and is being engineered to align with FedRAMP security controls, Zero Trust principles, and policy-driven access controls.

Core skills

Identity protocols/OAuth 2.0/OpenID Connect (OIDC)/JWT/SAML/PKI

Required skills

Identity providers/Microsoft Entra ID/Okta/Active DirectoryRESTPythonGoJavaTypeScriptCloud platforms/Azure/AWS/GCP

Optional skills

Experience developing AI platforms, Agentic AI systems, or Large Language Model (LLM) applicationsExperience securing Retrieval-Augmented Generation (RAG) systems and AI tool integrationsFamiliarity with Model Context Protocol (MCP) and secure AI tool invocationExperience with HashiCorp Vault, Azure Key Vault, AWS Secrets ManagerExperience implementing identity services in Kubernetes and cloud-native environmentsFamiliarity with LangGraph, LangChain, CrewAI, Semantic Kernel, AutoGenExperience supporting Federal Government or healthcare environmentsIdentity or cloud certifications such as Microsoft Identity and Access Administrator, CISSP, Security+, CCSP

Required languages

English unknown

What you'll do

  • Design AI Identity Architecture: Design identity services supporting autonomous and multi-agent AI systems; establish secure identities for AI agents, enterprise services, users, and external integrations; define identity lifecycles for AI agents including provisioning, credential management, rotation, and decommissioning; build reusable identity capabilities that scale across the AI platform.
  • Authentication & Authorization: Design and implement modern authentication and authorization frameworks for AI agents and platform services; implement OAuth 2.0, OpenID Connect (OIDC), JWT, service principals, mutual TLS (mTLS), and delegated authorization models; apply least-privilege and Zero Trust principles throughout AI workflows; build fine-grained authorization models controlling AI access to enterprise data, APIs, tools, and services.
  • Enterprise Identity Integration: Integrate AI platforms with enterprise identity providers such as Microsoft Entra ID, Okta, Active Directory, and other IAM solutions; enable secure identity federation across cloud and on-premises environments; design secure service-to-service authentication supporting distributed AI architectures; collaborate with enterprise security teams to align AI identity with organizational security standards.
  • Secure Agent & Tool Access: Design secure frameworks governing how AI agents discover, authenticate to, and invoke enterprise APIs, databases, and external tools; build authorization models controlling agent capabilities and delegated permissions; protect sensitive enterprise resources through policy-driven access; implement secure credential handling and secrets management across AI workflows.
  • Platform Engineering: Develop reusable identity services, SDKs, APIs, and libraries supporting secure AI application development; automate identity provisioning, credential lifecycle management, and authorization policies; improve development productivity through standardized identity services and engineering patterns.
  • Governance & Auditability: Ensure every AI action is authenticated, authorized, attributable, and auditable; implement identity-aware logging and policy enforcement; support compliance and governance for highly regulated environments.

What they require

  • Bachelor's degree in Computer Science, Software Engineering, Cybersecurity, Information Systems, or a related technical discipline (or equivalent professional experience)
  • 7+ years of experience in software engineering, identity engineering, or cloud security
  • Experience designing authentication and authorization architectures for enterprise applications
  • Strong knowledge of OAuth 2.0, OpenID Connect (OIDC), JWT, SAML, PKI, and modern identity protocols
  • Experience integrating enterprise identity providers such as Microsoft Entra ID, Okta, Active Directory
  • Experience building secure REST APIs, microservices, and distributed systems
  • Knowledge of Zero Trust Architecture, RBAC, ABAC, delegated authorization, and identity federation
  • Experience with Microsoft Azure, AWS, or Google Cloud Platform
  • Strong programming skills in Python plus experience with Go, Java, or TypeScript
  • Hands-on experience with cloud-native architecture and modern authentication frameworks
  • Strong ability to stay current with emerging AI technologies and evolving identity standards
  • Ability to collaborate effectively across engineering and security disciplines

Benefits

  • The Opportunity to support high-visibility federal missions
  • A culture that values innovation, growth, and collaboration
  • Access to cutting-edge tools and technologies
  • Comprehensive benefits for you and your family
  • A career path that rewards ambition and performance

LTS

LTS supports mission-focused programs that improve healthcare services and outcomes for Veterans nationwide.

AI
Salary not disclosed