Security and Identity Engineer securing enterprise AI platforms for transportation and operational technology clients. Designing identity, tenant isolation, threat modeling, and compliance-by-design foundations.
Responsibilities
Support an external software development organization as part of Inviso’s delivery team
Work closely with client product, engineering, security, and business stakeholders
Help design, secure, and deliver the foundations of an enterprise AI platform used in mission-critical transportation and operational technology environments
Apply threat modeling to architecture, engineering, and delivery decisions
Design and review tenant isolation across control plane, data plane, application, and infrastructure boundaries
Build security decisions into the platform architecture through compliance-by-design
Help client teams ship reliable, compliant, and secure platform capabilities
Raise the security bar while enabling delivery teams to move quickly and responsibly
Travel as needed due to client needs
Requirements
Experience designing and securing production software platforms, preferably in multi-tenant or regulated environments
Strong understanding of authentication, authorization, delegated access, token exchange, service identity, and least-privilege access patterns
Experience defining or contributing to platform threat models and applying them to architecture, engineering, and delivery decisions
Ability to design and review tenant isolation models across control plane, data plane, application, and infrastructure boundaries
Experience securing systems that execute untrusted content, code, tools, or agent actions
Familiarity with secure CI/CD practices including secrets management, scanning, policy enforcement, and secure release controls
Ability to support compliance-by-design practices including controls, evidence, data handling, and security documentation
Strong communication skills and ability to partner with engineers, product leaders, client stakeholders, and customer security teams
Pragmatic judgment with the ability to balance security, speed, reliability, and business value
Interest in responsible AI, secure AI systems, and controls for model, agent, and tool-based workflows
Experience designing authentication and authorization for a multi-tenant SaaS or platform environment
Deep familiarity with OAuth, OIDC, SAML, Entra ID, cloud IAM, or related identity technologies
Experience with SOC 2, ISO 27001, GDPR, or similar compliance frameworks
Experience securing AI, LLM, RAG, agentic, or tool-calling systems
Experience with enterprise-scale software, regulated delivery environments, or mission-critical systems
Experience using AI-assisted development tools while maintaining strong review and security discipline
Senior property advisor leading building safety, leases, and development projects for Desjardins. Advising stakeholders and managing complex strategic initiatives.
Développeur.euse en sécurité cloud protégeant l’infrastructure et les applications de nesto. Contribution à la modernisation du financement hypothécaire canadien grâce aux solutions DevSecOps.
Staff Security Engineer securing identity, cloud access, and AI platforms for GitLab’s DevSecOps platform. Engineering automated governance across Okta, GCP, AWS, and non - human identities.
Product Security Engineer using frontier AI to discover vulnerabilities and red - team AI systems at Coinbase. Building offensive security tooling and automating vulnerability response workflows.
Desjardins Red Team advisor conducting adversary simulations and offensive cybersecurity operations. Developing stealth tools, attack chains and tradecraft to strengthen cyber defence.
Expert Security Engineer building anti - cheat systems for Activision’s Call of Duty franchise. Strengthening game security, detection, performance, and fair play across studios.