Senior Security Architect, Cloud Authentication and Authorization
$184k - $287.5kNVIDIA
Senior Security Architect, Cloud Authentication and Authorization
NVIDIA has continuously reinvented itself over two decades. Our invention of the GPU in 1999 fueled the growth of the PC gaming market, redefined modern computer graphics, and revolutionized parallel computing! More recently, GPU deep learning ignited modern AI - the next era of computing. NVIDIA is a "learning machine" that constantly evolves by adapting to new opportunities that are hard to solve, that only we can pursue, and that matter to the world.
Are you ready to influence the future of AI and cloud security? Join NVIDIA's groundbreaking team in Santa Clara, CA, as a Senior Security Architect, Cloud Authentication and Authorization. This outstanding position enables you to guide the architectural vision for identity and authorization systems, collaborating with a group of world-class authorities committed to delivering impeccable solutions. With NVIDIA's history of innovation and your proven cybersecurity skills, you'll have the chance to drive meaningful change in the next generation of computing!
What you'll be doing:
- Outline the security architecture strategy for cloud authentication, authorization, workload identity, and agent identity across NVIDIA cloud platforms, AI-enabled systems, enterprise connectors, services, and automation.
- Outline processes for establishing, linking, authorizing, delegating, auditing, and retiring human, workload, service, and autonomous agent identities, including attestation-supported identity issuance and certificate-based or temporary credentials.
- Develop authorization and delegation frameworks for AI agents and enterprise connectors, encompassing consent, token exchange, prioritized authority, sensitive-action approval, revocation, and protections against confused-deputy behavior.
- Lead architecture reviews and threat modeling for high-risk identity and access flows, turning ambiguous scenarios into practical controls that engineering teams can build and verify.
- Establish identity lifecycle, telemetry, and emergency-disablement patterns for token issuance, policy decisions, privilege elevation, tool invocation, data access, credential rotation, grant revocation, and compromised or untrusted identities.
- Convert emerging AI security risks into authentication, authorization, audit, and execution-boundary requirements.
- Partner with identity, cloud, platform, application, AI security, governance, detection, and incident response teams to align architecture decisions with risk strategy and operational reality.
- Build reusable architecture patterns, decision records, exception criteria, and implementation mentorship, staying engaged through adoption, validation, and residual-risk closure.
What we need to see:
- 8+ years experience in cybersecurity, security architecture, cloud security, IAM, application security, product security, platform security, infrastructure security, or security engineering for distributed systems.
- Extensive knowledge in cloud authentication, authorization, IAM, workload identity, agent identity, non-human identity, or identity architecture, combined with hands-on experience in developing, managing, deploying, or assuming direct responsibility for authentic security controls.
- Bachelor's degree in Engineering, Cybersecurity, Data Engineering, or a related technical field, or equivalent experience.
- Proficiency in authentication and authorization protocols and frameworks, such as OIDC, OAuth 2.0, SAML, federation, delegation, token exchange, token scope, issuer and audience boundaries, consent, mTLS, certificate-backed identity, prioritized access, and associated technologies.
- Direct involvement in handling workload and agent identities, covering attestation processes, Zero Trust Architecture concepts, short-lived credentials, and temporary identities.
- Experience developing authorization boundaries for distributed systems, including fine-grained authorization patterns, control points, prioritized delegation, model/data/tool access controls, sensitive-action approval, and execution boundaries.
- Proficiency with identity and certificate lifecycle management, including enrollment, provisioning, scope definition, prioritized issuance, renewal, rotation, revocation, expiration, auditability, deprovisioning, lifecycle automation, and awareness of crypto-agility and post-quantum cryptography implications.
- Hands-on understanding of AI security risks combined with adequate proficiency in AI-enabled systems to assess timely injection, data exfiltration, unsafe tool use, overbroad authorization, and loss of human accountability.
- Strong foundational cybersecurity judgment, including threat modeling, architecture review, risk analysis, practical mitigation development, clear communication of assumptions, partner-team alignment, and follow-through through implementation, verification, documentation, and closure.
Ways to stand out from the crowd:
- Experience crafting or adopting workload identity systems such as SPIFFE/SPIRE, workload identity federation, service mesh identity, policy engines, or attestation-backed identity provisioning.
- Extensive knowledge of autonomous agent identity, delegated authority, token exchange, prioritized credentials with limited scope, certificate-backed identities, identity-aware policy controls, or ownership models for human, workload, service, and agent identities.
- Experience crafting controls for AI agent tool use, such as per-tool authorization, policy controls points, approval gates, egress restrictions, connector-scoped credentials, or emergency disablement of compromised agents.
- Background with crafting security architecture for enterprise connectors, AI assistants, tool integrations, automation systems, sensitive-action approvals, or cross-system authorization boundaries.
- Experience reducing or eliminating static credentials through workload identity, short-lived credentials, certificate lifecycle improvements, auditable service identity, or automated revocation and rotation.
Your base salary will be determined based on your location, experience, and the pay of employees in similar positions. The base salary range is 184,000 USD - 287,500 USD.
You will also be eligible for equity and benefits.
Applications for this job will be accepted at least until May 23, 2026.
This posting is for an existing vacancy.
NVIDIA uses AI tools in its recruiting processes.
NVIDIA is committed to fostering a diverse work environment and proud to be an equal opportunity employer. As we highly value diversity in our current and future employees, we do not discriminate (including in our hiring and promotion practices) on the basis of race, religion, color, national origin, gender, gender expression, sexual orientation, age, marital status, veteran status, disability status or any other characteristic protected by law.
$172k - $225.7k
...Senior Security Architect At Snowflake, we are powering the era of the agentic enterprise.... ...business within the Snowflake AI Data Cloud while maintaining a world-class... ...Management (IAM): Expertise in modern authentication/authorization protocols (OAuth 2.0, OpenID...CloudSeniorFlexible hours$174k - $252k
Google Inc. is seeking a Senior Software Engineer in Cloud Security, specializing in Identity and Access Management. The role focuses on developing features for Google Cloud Platform's authorization infrastructure and requires strong experience in C++, designing back-end...CloudSenior$186k - $279k
...Senior Security Architect - AI/CI Santa Clara, California We're in an unbelievably exciting area of tech and are fundamentally reshaping... ...mission of embedding robust security by design across our global cloud, infrastructure, and platform environments. Partnering...CloudSeniorWork at officeFlexible hours$186k - $279k
Pure Storage, Inc. is looking for a Senior Security Architect in Santa Clara, CA, who will lead the security mission across the global cloud infrastructure. You will architect secure multi-cloud designs, advise engineering teams to integrate secure practices, and enhance...CloudSeniorWork at office$125k - $180k
...here to stop breaches, and we've redefined modern security with the world's most advanced AI-native... ...the Role: CrowdStrike is looking for a Sr. Cloud Security Architect to serve as the primary technical authority for our Google Cloud Platform (GCP) ecosystem....CloudSeniorFull timeWork at officeLocal areaRemote work- ...leading IT consulting firm based in California is seeking a Senior Network Security Engineer/Architect with extensive experience in network and security... ...Familiarity with VPN technologies and experience with cloud services like AWS or Azure are desirable. #J-18808-Ljbffr...CloudSenior
$170.6k - $390k
...grow your career in information security! The opportunity The Senior Network Security Architect is a strategic and hands‑on... ...The architect serves as the authority on network security design, providing... ...across on‑premises, cloud, and hybrid environments, and...CloudSeniorSummer holidayRemote workFlexible hours- ...Senior Network Security Architect Palo Alto Elite Placement Services has an immediate full-time position available with one of our clients. Come... ...configure Palo Alto Networks technologies, including Strata Cloud Manager (Panorama / centralized management), ION (SD-WAN)...CloudSeniorFull timeImmediate startRemote work
$167.6k - $271.15k
...Summary The Team Information Security - We're not your ordinary... ...Summary As a Principal Security Architect, you will serve as the technical authority for our multi-cloud security strategy, defining... ...and mentorship to Staff and Senior security engineers, fostering...CloudFull timeWork at office- A leading energy company in San Jose is seeking a Senior Security Architect to develop robust security architectures and lead incident response... ...Ideal candidates will have proficiency in security frameworks, cloud security, and strong communication skills. This full-time...CloudSeniorFull time
$174k - $299k
Coupang is seeking a highly skilled Senior Staff Software Engineer in Mountain View, California, to provide technical leadership in building secure and scalable backend systems. The role is focused on architecture and hands-on development, ensuring system reliability and...CloudSeniorFlexible hours$178.8k - $257.2k
...st century. We are looking for a Senior Security Architect to join our team in one of today's most... ..., network infrastructure, and cloud services. Incident Response: Assist... ...including secure network strategies, strong authentication policies, and risk management...CloudSeniorFull timeWork at officeWorldwide$165k - $242k
...Senior Security Engineer, PKI & Secrets Livingston, NJ / New York,... ...CoreWeave is The Essential Cloud for AI™. Built for pioneers... ...confidentiality, integrity, and authenticity of CoreWeave's data and... ...designs backing our certificate authorities and signing services....CloudSeniorTemporary workCasual workWork at officeRemote workFlexible hours$146k
.... Join us. Product Security Architect III Our Technology Team... ...You will join a small, senior team of hands-on product security... ...security controls (authentication, authorization, encryption, key management... ..., cryptography usage, and cloud-native security controls,...CloudLocal areaFlexible hours$184k - $287.5k
...world. We are looking for an outstanding engineer to be a Senior Security Architect focused on securing at-scale infrastructure, high-... ...Ways to stand out from the crowd: Experience with modern authentication and identity frameworks such as OAuth 2.1, OIDC, Kerberos...Senior$182k - $260k
...efficient, resilient, and secure. As an AI-forward enterprise... ...data lake to power our cloud-native Zero Trust Exchange... ...looking for an Agentic AI - Architect/Security Engineer to join our... ...connector patterns with robust authentication, authorization, and audit logging...CloudFull timeWork at officeLocal areaRemote work$216k - $264k
...Job Description Senior Security Engineer Fortinet (NASDAQ: FTNT... ...system and network security, authentication and security protocols,... ...Company's discretion. Must be authorized to work in the U.S. without... ...in networked, application, cloud or mobile environments....CloudSeniorFull timeWork experience placementWorldwideFlexible hours$154k - $249.5k
...As a Principal Network Security Engineer at Palo Alto... ...operate as a recognized authority within your domain,... ...Key Responsibilities Architect, implement, and... ...efforts across on-prem and cloud environments, simplifying... ...mentorship to senior engineers, contribute...CloudFull timeWork at officeLocal areaVisa sponsorshipWork visa$157k - $271.4k
...for the best talent for our Lead Product Security Architect position. This position will be located... ...is not focused on enterprise IT, or cloud security operations. This individual will... ...) stakeholders Act as the technical authority for cybersecurity decisions and...CloudLocal areaImmediate startRemote work$196k - $310.5k
...NVIDIA's Enterprise Security organization is looking for a Senior Cybersecurity... ...infrastructure across cloud, on-premises, and... ...on modernizing authentication patterns for... ...agentic workflows. Architect and stand up a... ...authentication, authorization, and identity systems...CloudSeniorWorldwide- ...empowered to bring your authentic self to work and be... ...As a hands-on Architect/Senior Manager you will architect... ...Architects, PMs, and Cloud software teams). Our... ...vendors SDKs, IT, Cloud, Security, Cyber stakeholders.... ...from field. AUTHORITY / DECISION MAKING...CloudSeniorFor contractorsLocal areaImmediate startRemote work
$185k - $210k
Cacheflow is seeking an experienced Cloud Security Engineer to design, implement, and maintain the security of our cloud infrastructure. This role involves ensuring compliance with regulatory standards, identifying security risks, and collaborating with DevOps teams. Candidates...CloudSenior$138.7k - $190.7k
...Title: Lead Embedded Systems Security Architect Job Location: Sunnyvale,... ...Future of Secure Positioning: Senior Embedded Systems Engineer... ...between engineering, the Trimble Cloud team, and global Product... ...Security: Act as the primary authority on cybersecurity issues,...CloudOngoing contractFull timeLocal areaWorldwide$87k - $107k
...Provide technical support to customers on security devices and cloud deployments. Perform collection,... ...(OSPF, BGP) Knowledge of authentication protocols and methods (LDAP, SSO, 2-... ...the Company's discretion. Must be authorized to work in the U.S. without sponsorship...CloudSeniorFull timeRemote work- ...connect across email, cloud, and... ...empower people to work securely and confidently.... ...Job Title: Senior Proxy Engineer... ...deep experience architecting proxy systems, and... ...as the technical authority on how traffic flows... ...policies, rate limits, authentication schemes, and traffic...CloudSeniorFlexible hours
- ...Senior Software Engineer Location: Santa Clara... ...would be at ease architecting and implementing hardware... ...in mind! ~ Authorized to work in the US and... ...experience with encryption, authentication, and security in embedded... ...of BMC software for cloud scale fleet management...CloudSeniorPermanent employmentFull timeImmediate start
$183k - $265k
Technical Security Architect, Global Partnerships, Google Cloud Benefits for this role include: Health, dental, vision, life, disability insurance Retirement... ...security, security assessments and pen testing, authentication and access control, applied cryptography and...CloudFull timeTemporary work- .... Powered by the Illumio AI Security Graph, our breach containment... ...threats across hybrid multi-cloud environments - stopping the... ...background check through an authorized third-party vendor. If you receive... ...immediately to verify the authenticity of the request. Your...CloudSeniorImmediate start
$150k - $175k
...digital world by ensuring the security, privacy, and authenticity of every interaction. Our... ...verifiable, authorized, and safe. You will be instrumental... ..., AI/ML innovators, cloud infrastructure experts, and... ...digital interactions. * Architect and build the Identity Foundation...CloudSeniorFull time- .... Powered by the Illumio AI Security Graph, our breach containment... ...threats across hybrid multi-cloud environments - stopping the... ...background check through an authorized third-party vendor. If you receive... ...immediately to verify the authenticity of the request. Your...CloudSeniorImmediate start
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Security Architect, Cloud Authentication and Authorization. Be the first to apply!
- cyber security architect Santa Clara, CA
- security architect Santa Clara, CA
- senior development executive Santa Clara, CA
- senior technical manager Santa Clara, CA
- senior software development engineer in test Santa Clara, CA
- senior manager data science Santa Clara, CA
- senior platform engineer Santa Clara, CA
- senior procurement Santa Clara, CA
- senior director product management Santa Clara, CA
- senior electronic design engineer Santa Clara, CA

