mycareers logo


Showing: 4034  jobs
US - IT - Solutions Architect V
Spectraforce
Mount Laurel, New Jersey

2 hours ago

Job Description

Position Title: IAM Engineer-AI# of positions: 1Start Date: ASAPDuration: Oct 30th 2026 Extension possible: YesConversion Possible: YesBilling Cost Center: 004-6285 - TD U.S.Schedule: M-F Core business hours OT: As needed Rotation: No Budget/TD Bill Rate: $148.45Work Location:-Remote, Onsite, or Hybrid: Hybrid - 4 days a week -Anchor Days (if applicable): n\ a -Address: Mt Laurel - Technology Center - 17000 Horizon Way, Mount Laurel, New Jersey – This location is mandatory Travel Required: No Possibility of any Additional Upcoming Furlough: No STORY BEHIND THE NEED:Reason for request/why opened: Support existing project Scope of Project: Secure Azure AI service -primary services AI Team Size/Culture: 7 ppl Training Period: 1 month Selling Points of Position (CVP): Working within a leading FI organizationCANDIDATE PROFILE DETAILS:Degree/Level of Education: No Certifications Required: No Years of Overall Experience: 8yrs+ within access management How will performance be measured:Preferred/Ideal Candidate Background:Large organization in a similar role SUMMARY OF THE ROLE:IAM Engineer-AIWe are seeking an AI IAM & Infrastructure Sr. Engineer to be a key technical leader, bridging the gap between cutting-edge AI innovation and our core IAM framework. Your mission will be to drive forward-looking security strategies and engineering solutions for Generative AI and LLM platforms, while specializing in leveraging AI security capabilities to augment and fortify existing enterprise solutions.Key Responsibilities: Research, Evaluation, and DesignThis role is primarily focused on providing AI Security/IAM Infrastructure solutions, researching, assisting in designing, and implementing solutions that mitigate gaps in security/IAM controls, and support leadership strategy and road maps. You will be responsible for conducting proof-of-concepts (PoC's) for new security technologies and protocols, and support hardening efforts to protect our mission-critical assets deployed across Azure, Google Cloud, and On-Premises environments.1. Advanced Protocol and Application SecurityGenerative AI Protocols: Evaluate and secure emerging standards for multi-agent workflows, such as the Agent-to-Agent (A2A) and Model Context Protocol (MCP).Threat Modeling: Support threat modeling exercises for new AI applications and pipelines to proactively identify design flaws and adversarial attack vectors (e.g., prompt injection paths).Mitigation Solutions: Support the design, build, and testing of security controls to mitigate common AI/ML attacks as outlined by frameworks like the OWASP Top 10 for LLM Applications, Mitre Atlas.2. Access, Identity, and Cloud Controls IAM Design/implementation: Define and implement security designs for Identity and Access Management (IAM), specializing in securing non-human identities, service principles, and cross-cloud access.API Security: Own the security strategy for all AI service consumption, including hardening of API Gateways and securing authentication flows (e.g., OAuth 2.0/OIDC) for model endpoints.Secrets Management: Design and PoC the secure storage, injection, and rotation of confidential data (API keys, model weights, database credentials) using solutions like Azure Key Vault and GCP Secret Manager in support of AI Security Infrastructure initiatives.AI Cloud Hardening: Establish security configuration baselines, AI IAM framework, and network segmentation (e.g., Private Link, VPC Service Controls) for AI-specific cloud resources on Azure and GCP.3. Collaboration and Strategy TranslationAI Red Team Support: Provide essential infrastructure security expertise and tooling to support the AI Red Team program, helping them build secure testing environments and validate attack findings.Translation to Production: Collaborate with IAM, DevOps, Governance, Vulnerability Management, and Platform Engineering partners to translate successful security PoC's and designs into robust, production-ready solutions and Infrastructure as Code (IaC) controls.-Typical Day-to-Day Responsibilities -How much time is being spent in meetings ; As needed-Who are they interacting with (internal/external) internal-Will the contractor have access to any customer data? YESMUST-HAVE Hard Skills:Technical Skills 1.Cloud KMS & Crypto KMS concepts (GCP KMS, Azure Key Vault, HSM vs software keys) Enveloping encryption patterns full Key lifecycle experience: create ? rotate ? revoke ? audit IAM bindings at the key / key-ring level (not just project/subscription) & BYOK / CMEK integrations.2. Non-Human Identity & Workload Identity -huge for agentic AI. Service accounts / managed identities Workload Identity Federation (OIDC) Token exchange flows (STS) Least-privilege scoping for automation and agents3. Policy-as-Code & Guardrails for Low-code development + AI IAM guardrails Terraform modules (inputs ? opinionated defaults) policy engines (OPA, Sentinel, Azure Policy) Preventing key misuse via design/AI IAM framework module4. Low-Code / Integration Fluency/AI Azure Data Factory Logic Apps / Power Automate Notebook-driven pipelines (Databricks, Vertex) agents build experience (planner + tools + memory) Tool invocation patterns understanding of Prompt/tool separation vs credential access Experience with Vault and cloud KMS together (multi cloud environment experience) Event-driven automation (Pub/Sub, Event Grid) Exposure to AI platform security reviews and implementationDISQUALIFIERS – is there any information/experience on a candidate’s resume that would disqualify them from consideration for this position? 1.) N\A TIMELINES/IMPORTANT DATES:Upcoming PTO: No Supplier Call: April 17th 11:30 amDistribute Requisition: April 17th Halting: April 21st Shortlist De-Brief: 24hrs Target interview: April 23rd onward oInterview process: 2 rounds 1 virtual + 1 in person Interview de-brief: As completed Enable Skills-Based Hiring No $(function(){ $(".qualPlaceHolder").each(function(){ if($(this).parents('#jsLegend').length != 1 || $(this).find('ul').length == 0) { var requested = $(this).attr("requested"); var presented = $(this).attr("presented"); var dynamicId = $(this).attr("id"); var text = $(this).attr("text"); var readOnly = ($(this).attr("edit") === 'true'); var flexibleScaleLevels = $(this).attr("flexibleScaleLevels"); var flexibleScaleLevelNames = $(this).attr("flexibleScaleLevelNames"); new FG.Qual({ element: $(this), readOnly: readOnly, requested: requested, presented : presented, dynamicId : dynamicId, text : text, flexibleScaleLevels : flexibleScaleLevels, flexibleScaleLevelNames : flexibleScaleLevelNames, }).initialize(); } })});QualificationAssessmentMust HaveShort-listing QuestionsEngineering, designing and implementing IAM security platforms2 yearsHas this candidate worked as a former TD Contractor via SOW?NoHas this candidate worked at TD in any capacity?NoHas your candidate worked at TD as a Full Time employee?NoSkillsDev Sec Ops experience8 yearsExposure to technology risk, info security domains (IAM, Logging and Monitoring etc.)YesFamiliarity with Artificial intelligence projectsYesIAM integration with cloud providers like AWS/Azure/Google2 yearsProficiency with Infrastructure as Code provisioning (Terraform) and orchestration (GitHub Action5 yearsSolid IAM domain knowledge8 years Contractor Engagement Type RecruitedWill this contractor be expected to work onsite, remote or hybrid? Hybrid 
Applicant Notices & Disclaimers
  • For information on benefits, equal opportunity employment, and location-specific applicant notices, click here
 
At SPECTRAFORCE, we are committed to maintaining a workplace that ensures fair compensation and wage transparency in adherence with all applicable state and local laws. This position’s starting pay is: $ 7.25/hr.

Don't miss your next Big Opportunity!

Get notified when we find an opportunity for you