Director Cloud Security
Company | Protegrity |
---|---|
Location | Palo Alto, CA, USA, Stamford, CT, USA |
Salary | $286000 – $325000 |
Type | Full-Time |
Degrees | |
Experience Level | Expert or higher |
Requirements
- 12+ years of experience as a Cloud Security Engineer or in a related role, with a focus on IAM and cloud-native architectures.
- Expertise in IAM solutions such as AWS IAM, Azure Active Directory, GCP Identity, or third-party tools (e.g., Okta, Ping Identity).
- Experience in writing and integrating open-source policy and authorization frameworks including OPA, Cedar, and OpenFGA into complex B2B and data security products.
- Strong understanding of GenAI systems, including LLMs and RAG pipelines, with a focus on securing data retrieval and usage.
- Proficiency in implementing least-privilege principles, federated identity, and service-to-service authentication for AI/ML systems including spiffe/spire.
- Hands-on experience with cloud automation tools (e.g., Terraform, CloudFormation) to manage IAM policies and configurations.
- Knowledge of cryptographic protocols for securing AI workflows, such as tokenization, hashing, and encryption.
- Familiarity with secure software development practices and AI-specific security challenges (e.g., adversarial attacks, data poisoning).
- Experience working with compliance frameworks (e.g., GDPR, HIPAA, PCI DSS) and applying them to AI products.
- Advanced scripting and programming skills in languages such as Python, Rust, and Java.
- Strong analytical and problem-solving skills, with a proven ability to secure complex, distributed systems.
Responsibilities
- Design and implement IAM architectures for GenAI systems, ensuring secure runtime access controls across multi-cloud environments (AWS, Azure, GCP).
- Contribute and lead software engineering to integrate and enforce role-based access control (RBAC), attribute-based access control (ABAC), and context-based access control (CBAC) policies tailored to AI/ML workloads and RAG pipelines.
- Collaborate with AI/ML teams to integrate IAM solutions into GenAI safety features, ensuring seamless scalability and performance.
- Lead efforts to secure data ingestion and retrieval processes in RAG pipelines, mitigating risks such as unauthorized access and data leakage.
- Evaluate and implement zero-trust security frameworks for cloud-native AI applications.
- Research emerging trends in cloud security and IAM technologies, applying insights to improve GenAI product capabilities.
- Contribute to the design and development of automated governance tools for managing IAM policies in AI systems.
- Document and communicate IAM best practices, providing training and guidance to cross-functional teams.
Preferred Qualifications
- Exceptional problem-solving skills, with a focus on secure AI system development.
- Comfort working in ambiguous technology areas across a flat product led organization.
- A collaborative mindset to work effectively in cross-functional environments.
- Strong communication skills to articulate complex AI concepts to diverse audiences, including executives and customers.
- A commitment to continuous learning and a passion for emerging AI technologies.
- Intellectual curiosity with a passion for solving complex AI and security challenges.