Senior Identity Security Engineer
$95k - $142kPalantir Technologies
Senior Identity Security Engineer
Palantir builds the world's leading software for data-driven decisions and operations. By bringing the right data to the people who need it, our platforms empower our partners to develop lifesaving drugs, forecast supply chain disruptions, locate missing children, and more.
The Role
As a Senior Identity Security Engineer on Palantir's Identity Security team, you will own the security posture of the identity infrastructure that Palantirians, customers, and services rely on every day. The Identity Security team is responsible for all identity types at Palantir - workforce, customer, workload, and agentic - giving you the rare ability to architect, threat model, and drive security outcomes across the full identity surface. You will help shape the technical direction for identity security at Palantir, reduce standing access, lead identity threat modeling, and contribute to the next generation of identity primitives including agent identity, JIT-native governance, and unified policy enforcement across workforce and customer IAM. As part of Palantir's best-in-class Information Security organization, you will research, architect, and scale solutions that help Palantir stay ahead of a dynamic identity threat landscape.
Core Responsibilities
- Own the day-to-day identity security posture across corporate, production, customer, and US Government identity planes
- Drive the rollout of agent identity infrastructure - short-lived credentials, lifecycle bound to a human principal, controlled workload onboarding
- Architect authentication, federation, and authorization systems - including SAML, OIDC, and policy-driven access control models (RBAC, ABAC, policy-as-code) - across workforce and workload identity
- Scale non-human identity patterns across service, workload, and agent populations - short-lived credentials, mTLS, identity-based networking
- Drive adoption of just-in-time access patterns across the identity program, partnering with platform and engineering teams on governance rollout and policy enforcement
- Lead identity threat modeling on a regular cadence; publish findings and track remediation
- Serve as a primary security reviewer on identity architecture decisions and cross-team RFCs
- Research and drive adoption of emerging identity security primitives and standards in partnership with Security Engineers across InfoSec
- Partner with engineering teams across Palantir to reduce the attack surface of identity integrations at scale
What We Value
- Experience with cloud IAM and workload identity patterns - service accounts and identity-based access in distributed environments
- Experience designing or evaluating non-human identity (NHI) architectures - service, workload, and agent - and a strong point of view on where the industry is headed
- Familiarity with privileged access management and secrets management patterns at scale
- A track record of reducing standing access and shifting organizations toward just-in-time access postures in production environments
- Experience with identity governance platforms and a clear-eyed view of their security implications
- Identity threat detection and response experience, including detection engineering against identity telemetry
- Red team, offensive security, or incident response background - especially with an identity focus
- Exposure to regulated environments (FedRAMP, SOX, IL-levels)
- Desire to further the identity security community through substantive contributions (e.g. conference talks, blog posts, public tool development, RFCs)
- Current US security clearance, or eligibility to obtain clearance
What We Require
- 5+ years of experience in Information Security, Identity and Access Management, or an equivalent discipline, with demonstrated depth in identity-specific security
- Hands-on production experience with at least one enterprise identity provider (Entra ID, Okta, or equivalent), including its governance and security surface
- Deep technical proficiency in identity protocols (SAML, OIDC, OAuth 2.0, SCIM, FIDO2, WebAuthn) and their attack surface
- Working proficiency in Go, Python, PowerShell, or TypeScript - enough to prototype tooling, analyze identity-handling code for security defects, scale automation across the environment, and engage in code review
- Strong communication skills and ability to communicate to a wide-ranging audience - from engineer-facing design reviews to leadership-facing risk calls
Salary
The salary range for this position is estimated to be $95,000 - $142,000/year. Total compensation for this position may also include Restricted Stock units, sign-on bonus and other potential future incentives. Further note that total compensation for this position will be determined by each individual's relevant qualifications, work experience, skills, and other factors. This estimate excludes the value of any potential sign-on bonus; the value of any benefits offered; and the potential future value of any long-term incentives.
Our benefits aim to promote health and wellbeing across all areas of Palantirians' lives. We work to continuously improve our offerings and listen to our community as we design and update them. The list below details our available benefits and some of the perks that can be enjoyed as an employee of Palantir Technologies.
Benefits
• Employees (and their eligible dependents) can enroll in medical, dental, and vision insurance as well as voluntary life insurance
• Employees are automatically covered by Palantir's basic life, AD&D and disability insurance
• Commuter benefits
• Take what you need paid time off, not accrual based
• 2 weeks paid time off built into the end of each year (subject to team and business needs)
• 10 paid holidays throughout the calendar year
• Supportive leave of absence program including time off for military service and medical events
• Paid leave for new parents and subsidized back-up care for all parents
• Fertility and family building benefits including but not limited to adoption, surrogacy, and preservation
• Stipend to help with expenses that come with a new child
• Employees can enroll in Palantir's 401k plan
Life at Palantir
We want every Palantirian to achieve their best outcomes, that's why we celebrate individuals' strengths, skills, and interests, from your first interview to your longterm growth, rather than rely on traditional career ladders. Paying attention to the needs of our community enables us to optimize our opportunities to grow and helps ensure many pathways to success at Palantir. Promoting health and well-being across all areas of Palantirians' lives is just one of the ways we're investing in our community. Learn more at Life at Palantir and note that our offerings may vary by region.
In keeping consistent with Palantir's values and culture, we believe employees are "better together" and in-person work affords the opportunity for more creative outcomes. Therefore, we encourage employees to work from our offices to foster connectivity and innovation. Many teams do offer hybrid options (WFH a day or two a week), allowing our employees to strike the right trade-off for their personal productivity. Based on business need, there are a few roles that allow for "Remote" work on an exceptional basis. If you are applying for one of these roles, you must work from the state in which you are employed. If the posting is specified as Onsite, you are required to work from an office.
If you want to empower the world's most important institutions, you belong here. Palantir values excellence regardless of background. We are proud to be an Equal Opportunity Employer for all, including but not limited to Veterans and those with disabilities. Palantir is committed to making the application and hiring process accessible to everyone and will provide a reasonable accommodation for those living with a disability. If you need an accommodation for the application or hiring process, please reach out and let us know how we can help.
Please note that you will never be asked to submit a payment or share financial information to participate in our interview process. If you suspect that you've been contacted by a scammer, we recommend you cease all communication with the individual and consider reporting them to the relevant authorities, such as the US FBI Internet Crime Complaint Center (IC3). If you would like to understand more about how your personal data will be processed by Palantir, please see our Privacy Policy.
- ...We are in search of a highly motivated candidate to join our talented Team. Job Title: Senior Identity, Credential, and Access Management (ICAM) Security Engineer Location: Washington, DC Responsibilities: Support the deployment and management of...SeniorWork at office
$175.1k - $236.9k
...Description Come help us secure critical platform services in the AWS cloud and... ...customers! Amazon Web Services (AWS) Identity and Governance service teams build and... ...individual security requirements. As a Senior Security Engineer at Amazon, you will lead the design,...SeniorInternshipFlexible hours- ...of State's Bureau of Diplomatic Security (DS) - Training - Technical Security Engineering. The Advisor will play a critical... ...track record of engagement with senior-level DS personnel and contract... ...citizenship, sexual orientation, gender identity, marital status, childbirth and...SeniorContract workWork at office
- ...Solutions Company focused on building, securing and supporting our clients' mission... ...customers. We're seeking an experienced Senior Network Engineer who enjoys hands-on technical work, takes... ..., administer, and troubleshoot Cisco Identity Services Engine (ISE), including...SeniorPermanent employmentFull time
- ...As a Sr. Network Security Engineer III, you'll provide hands-on expertise securing mission-critical networks for a high-visibility customer... .... Experience supporting Zero Trust architectures and identity-centric network security patterns. Ability to contribute...SeniorImmediate start
$180k - $240k
...Security Lead You'll be the hands-on security lead embedded with core product teams to... ...protected in production. We are looking for engineers who have expertise in cloud/... ...Kubernetes security (e.g., GCP/AWS IAM, workload identity, admission controls, network policies)....SeniorWork at officeImmediate startFlexible hours- ...Senior IT Security Engineer Location: Hybrid 3 days on DC Interview Type: In-Person Number of Openings: 3 Short Description: IT Security... ...systems across the enterprise, including directory and identity management solutions Implementation of business-driven...SeniorWork at officeLocal area
- ...Senior Security Engineer Washington, D.C. Metro - hybrid/remote At Ardent, we hire people who want more than a job — they want to serve... ..., disability, veteran's status, sexual orientation, gender identity, gender expression, or any other basis protected by state,...SeniorLocal areaRemote workFlexible hours3 days per week
- ...Senior Network Security Engineer Suitland, MD Tria Federal delivers digital services and technology solutions that support the health and safety... ...ForeScout CounterACT NAC/NAM system and adopts Cisco Identity Services Engine (ISE) as the new access-control platform....Senior
- ...Senior Offensive Security Engineer - Pentester Denver, Colorado;Seattle, Washington; Charlotte, North Carolina; Jacksonville, Florida; Jersey City... ...sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry,...SeniorWork at officeRemote workShift workDay shift
- ...Senior Security Engineer Evolver Federal is seeking a Senior Security Engineer to fulfill a requirement for a potential government client.... ..., ancestry, religion, gender, age, national origin, gender identity or expression, sexual orientation, genetic factors, pregnancy...SeniorContract workFlexible hours
- ...today! Position Overview: We are seeking an experienced Senior Security Engineer to work in Washington DC to join our team supporting an... ...of race, color, sex (including pregnancy), age, gender identity, creed, religion, national origin, sexual orientation, marital...SeniorFor contractorsWork at officeLocal area
- ...Senior Microsoft Security Engineer The Senior Microsoft Security Engineer will be responsible for identifying potential threats to the IT infrastructure... ..., age, marital status, sex, sexual orientation, gender identity, gender expression, disability, religion, ancestry,...Senior
$55 - $65 per hour
...IT - Systems Engineer III Location: Home, District of Columbia (Onsite... ...This position is for a Senior Information Systems Engineer focused on Endpoint Security and Certification & Accreditation... ...sex, sexual orientation, gender identity, national origin, disability, or...SeniorContract work- ...Senior Security Engineer II For Identity And Access Management (Iam) As a Senior Security Engineer II for Identity and Access Management (IAM) at Aledade, you will play a central role in enhancing the security posture of our enterprise, cloud-native environments, and...SeniorTemporary workRemote workFlexible hours
$99k - $225k
...Security Engineer, Senior The Opportunity: Are you looking for an opportunity to share your experience in security engineering... ...posting will close within 90 days from the Posting Date. Identity Statement As part of the hiring process, we will ask...SeniorFull timeContract workPart timeWork at officeLocal areaRemote work$149k - $248k
...regulated commercial clients to design, engineer, and operate modern security capabilities that enable mission... ...aligned to enterprise objectives. As a Senior Security Engineer, you will lead... ...architectures and roadmaps across identity, device, network/environment, application...SeniorTemporary workRemote workFlexible hours- ...Senior Network Security Engineer II As a Senior Network Security Engineer II you will lead the design, implementation, and maintenance of our organization... ...conditions related to pregnancy or childbirth), gender identity or expression, religion, physical or mental disability,...SeniorRemote workFlexible hours
$135k - $225k
...Sr. Principal Security Engineer As a Sr. Principal Security Engineer at MKS Inc., you will be a partner with all Engineering Teams, Operations... ...services, veteran status, sexual orientation, gender identity or expression, genetic information, or any other category protected...SeniorPermanent employmentWork experience placementWork at officeRemote workRelocation package- ...Identity And Authentication Security Engineer Comtech is a woman-owned small business founded in 1998 and headquartered in Reston, VA. We offer IT solutions across the disciplines of program/project management, applications development, infrastructure, Cyber security...Remote work
- ...Identity And Authentication Security Engineer The Identity and Authentication Security Engineer/Admin will be responsible for technical support to security technologies supporting implementation and evolution and operations of the multi-layer authentication infrastructure...Work at officeRemote workNight shift
$186.07k - $218.9k
...expected and fully supported. The Application Security org at Coinbase is hiring for a Senior Offensive Security Engineer, Offensive Security. We are seeking a highly... ..., veteran status, sex, gender expression or identity, sexual orientation or any other basis protected...SeniorLocal area$88.2k - $173.5k
...Information Systems Security Engineer (ISSE) - Senior Category: Cyber Security Main location: United States, Virginia, Arlington Position... ...or perceived sexual orientation, gender, gender identity, and gender expression, familial status or responsibilities...SeniorFull timeLocal area$140k - $165k
...Senior Product Security Engineer Uplight is creating a new category of energy. We make software that manages energy resources in homes and businesses... ..., protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by...SeniorLocal areaFlexible hoursShift work- ...Artificial Intelligence Senior Security Engineer Chicago, Illinois;Washington, District of Columbia; Boston, Massachusetts; Denver, Colorado... ...sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry,...SeniorWork at officeShift workDay shift
$107.9k - $195.05k
...Digital Modernization sector is seeking an experienced Senior Information System Security Engineer to support the delivery, enhancement, and adoption of... ..., domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any...SeniorInterim roleLocal areaImmediate start$86.8k - $198k
A leading technology firm in Arlington, Virginia, seeks a Ping Identity Engineer to enhance identity and access management (IAM) systems. This role involves analyzing identity lifecycles and ensuring secure user access. Candidates must have at least 3 years of IAM design...Remote job- ...Senior Security Operations Engineer Job Title: Senior Security Operations Engineer Location: Washington, DC Note: This is an onsite position Place... ...including cloud-native monitoring, workload protection, identity security, and compliance monitoring capabilities....Senior
- A technology solutions provider is seeking an Identity and Authentication Security Engineer to support the implementation and operations of a multi-layer authentication infrastructure. You will manage security technologies, provide Tier 3 support, and troubleshoot complex...
- ...Senior Security Tools Engineer Ashburn Consulting, LLC, based in the Washington, DC metropolitan area, specializes in providing network and network... ...race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status. Ashburn...SeniorWork at office
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Identity Security Engineer. Be the first to apply!
- information system security engineer Washington DC
- senior application security engineer Washington DC
- sr information security engineer Washington DC
- security engineering manager Washington DC
- security operations engineer Washington DC
- cloud security engineer Washington DC
- azure security engineer Washington DC
- endpoint security engineer Washington DC
- physical security engineer Washington DC
- systems security engineer Washington DC

