372,956open jobs
9,661companies
50,233added this week
Browse all
Salary
$121k – $242k per year (Estimated)
Location
Remote/Hybrid (Palo Alto, United States)
Seniority
Senior · 5+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Palantir Technologies is an American software company founded in 2003 that builds platforms for integrating, analysing and acting on large and fragmented datasets. Its Gotham platform serves defence, intelligence and law enforcement customers, Foundry brings the same data-operating model to commercial industries such as manufacturing, healthcare and energy, and the Artificial Intelligence Platform layers large language models over both. Headquartered in Denver, Colorado and listed on the New York Stock Exchange since 2020, the company is known for deploying forward engineers directly inside customer organisations.

The Role

As a Senior Identity Security Engineer on Palantir's Identity Security team, you will own the security posture of the identity infrastructure that Palantirians, customers, and services rely on every day. The Identity Security team is responsible for all identity types at Palantir - workforce, customer, workload, and agentic - giving you the rare ability to architect, threat model, and drive security outcomes across the full identity surface. You will help shape the technical direction for identity security at Palantir, reduce standing access, lead identity threat modeling, and contribute to the next generation of identity primitives including agent identity, JIT-native governance, and unified policy enforcement across workforce and customer IAM. As part of Palantir's best-in-class Information Security organization, you will research, architect, and scale solutions that help Palantir stay ahead of a dynamic identity threat landscape.

Core Responsibilities

  • Own the day-to-day identity security posture across corporate, production, customer, and US Government identity planes
  • Drive the rollout of agent identity infrastructure - short-lived credentials, lifecycle bound to a human principal, controlled workload onboarding
  • Architect authentication, federation, and authorization systems - including SAML, OIDC, and policy-driven access control models (RBAC, ABAC, policy-as-code) - across workforce and workload identity
  • Scale non-human identity patterns across service, workload, and agent populations - short-lived credentials, mTLS, identity-based networking
  • Drive adoption of just-in-time access patterns across the identity program, partnering with platform and engineering teams on governance rollout and policy enforcement
  • Lead identity threat modeling on a regular cadence; publish findings and track remediation
  • Serve as a primary security reviewer on identity architecture decisions and cross-team RFCs
  • Research and drive adoption of emerging identity security primitives and standards in partnership with Security Engineers across InfoSec
  • Partner with engineering teams across Palantir to reduce the attack surface of identity integrations at scale

What We Value

  • Experience with cloud IAM and workload identity patterns - service accounts and identity-based access in distributed environments
  • Experience designing or evaluating non-human identity (NHI) architectures - service, workload, and agent - and a strong point of view on where the industry is headed
  • Familiarity with privileged access management and secrets management patterns at scale
  • A track record of reducing standing access and shifting organizations toward just-in-time access postures in production environments
  • Experience with identity governance platforms and a clear-eyed view of their security implications
  • Identity threat detection and response experience, including detection engineering against identity telemetry
  • Red team, offensive security, or incident response background - especially with an identity focus
  • Exposure to regulated environments (FedRAMP, SOX, IL-levels)
  • Desire to further the identity security community through substantive contributions (e.g. conference talks, blog posts, public tool development, RFCs)
  • Current US security clearance, or eligibility to obtain clearance

What We Require

  • 5+ years of experience in Information Security, Identity and Access Management, or an equivalent discipline, with demonstrated depth in identity-specific security
  • Hands-on production experience with at least one enterprise identity provider (Entra ID, Okta, or equivalent), including its governance and security surface
  • Deep technical proficiency in identity protocols (SAML, OIDC, OAuth 2.0, SCIM, FIDO2, WebAuthn) and their attack surface
  • Working proficiency in Go, Python, PowerShell, or TypeScript - enough to prototype tooling, analyze identity-handling code for security defects, scale automation across the environment, and engage in code review
  • Strong communication skills and ability to communicate to a wide-ranging audience - from engineer-facing design reviews to leadership-facing risk calls
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
372,956 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Palo Alto
$195k – $264k per year • In office • Full-Time • 15+ years exp • Master's Degree • United States
Python
AI/ML
Amazon SageMaker
Keras
Kubeflow
MLFlow
PyTorch
Scikit-learn
TensorFlow
Vertex AI
XGBoost
DevOps
AWS
Azure
CI/CD
CloudFormation
Docker
GCP
Kubernetes
Terraform
Cybersecurity
FedRAMP
NIST 800-53
Apply
$143k – $173k per year • Remote/Hybrid • Full-Time • 10+ years exp • Bachelor's Degree • Wiesbaden
Python
DevOps
Ansible
Terraform
Cybersecurity
Defense in Depth
Wireshark
Zero Trust
Apply
Network Engineer 1 day ago
$83k – $113k per year • In office • Full-Time • 8+ years exp • Bachelor's Degree • Raleigh
JavaScript
Perl
Python
DevOps
Splunk
Apply
$128k – $173k per year • In office • Full-Time • 7+ years exp • United States
Python
SQL
Databases
Databricks
Snowflake
DevOps
AWS
SLI/SLO/SLA
Analytics
Power BI
Tableau
Management
Confluence
Jira
Apply
$60k – $149k per year (Estimated) • In office • Full-Time • Bachelor's Degree • Ottobrunn • Ulm
Python
AI/ML
Red Teaming
Cybersecurity
MITRE ATT&CK
Apply
$83k – $187k per year (Estimated) • Remote/Hybrid • Full-Time • 4+ years exp • Washington
Python
AI/ML
LLM
AI Agents
Red Teaming
DevOps
AWS
Azure
CI/CD
Docker
GCP
Kubernetes
IAM
Cybersecurity
BloodHound
Burp Suite
Certipy
Impacket
Nuclei
Pacu
ScoutSuite
Apply
$145k – $200k per year • Equity • Remote/Hybrid • Full-Time • 4+ years exp • Washington
Python
AI/ML
LLM
AI Agents
Red Teaming
DevOps
AWS
Azure
CI/CD
Docker
GCP
Kubernetes
IAM
Cybersecurity
BloodHound
Burp Suite
Certipy
Impacket
Nuclei
Pacu
ScoutSuite
Apply
$85k – $172k per year (Estimated) • Remote/Hybrid • Full-Time • 2+ years exp • Huntsville
Apply
$83k – $169k per year (Estimated) • In office • Full-Time • 2+ years exp • Washington
Apply
$95k – $191k per year (Estimated) • In office • Full-Time • 2+ years exp • New York
Apply
$87k – $173k per year (Estimated) • Remote • Contractor • 6+ years exp • Palo Alto
AI/ML
AI Agents
Model Context Protocol
Apply
In office • Internship • Master's Degree • Palo Alto
Python
SQL
AI/ML
AI Agents
Analytics
Power BI
Tableau
Management
Confluence
Jira
Microsoft Project
Apply
In office • Internship • Bachelor's Degree • Palo Alto
Python
SQL
AI/ML
AI Agents
Analytics
Power BI
Tableau
Management
Confluence
Jira
Microsoft Project
Apply
Senior ML Engineer 1 day ago
$149k – $224k per year • In office • Full-Time • 5+ years exp • Master's Degree • San Francisco • Washington • Palo Alto
Python
Python
pySpark
Databases
Apache Kafka
AI/ML
AI Agents
Agentforce
Airflow
Anomaly Detection
Feature Store
Flink
Ray
Red Teaming
Spark
DevOps
CI/CD
Docker
Kubernetes
Cybersecurity
MITRE ATT&CK
Marketing
Salesforce
Apply
$110k – $240k per year (Estimated) • In office • Bachelor's Degree • Palo Alto
Java
Python
Scala
AI/ML
AI Agents
Fine-tuning
LLM Guardrails
DevOps
AWS
Azure
GCP
Git
GitHub
Marketing
Salesforce
Apply
See all jobs
This is one of many
372,956 more open roles from verified company boards, updated every day.