Okta logo

Senior Software engineer - Advanced Threat Protection

Okta · Posted Oct 5

Cloud-based identity and access management solutions for workforce and customer security

Bengaluru, IndiaFull-timeHybridLead/Staff4+ years₹40.0L–₹70.0L yearly88 applicants
Enterprise SoftwareCybersecurityIdentity ManagementCloud ComputingPublic Company
Full time

Get a personal compatibility score

Add a resume for personal matches

About the role

Okta is The World's Identity Company, and this role sits in a new Advanced Threat Protection team within the Auth0 Customer Identity product unit, part of a globally distributed security team supporting Okta's company-wide security strategy and Secure Identity Commitment. The team works at the intersection of identity, cloud infrastructure and AI security, researching how attackers will use AI against identity systems while building AI-assisted defenses for Okta's products, infrastructure and customers' tenants. This role researches the emerging AI threat landscape out to 12–24 months, hardens Auth0's AI security offering, and builds scalable tooling and automation that operationalize AI threat defenses across customer tenants.

What you will do

  • Research and lead how we can use AI to protect customer tenants — both proactively (hardening posture before an attack) and during active incidents (accelerating detection, triage, and response)
  • Research and build protections against novel AI attacks that Auth0 and Auth0's customers can be subjected to — adversarial ML, prompt injection, abuse of agentic protocols (MCP, A2A, UCP, and emerging equivalents), model and data poisoning — as they apply to identity systems and customer tenants
  • Partner with the identity security teams to help customers strengthen their own tenant security posture through AI-assisted defenses
  • Research the emerging AI threat landscape and translate it into a forward-looking (12–24 month) view of what we need to protect ourselves and our customers from — then architect, recommend, and build the tooling to get there
  • Review and harden Auth0's AI security offering, identifying gaps and recommending mitigations before they're exploited
  • Partner across a globally distributed product-aligned team of security engineers to turn research into shipped protections for customer tenants
  • Establish a deep understanding of Okta Customer Identity products and infrastructure
  • Build, deploy & maintain scalable security solutions and automation that operationalize AI threat defenses at scale
  • Help meet our operational security commitments by thinking like an attacker, assessing the risk, and advising on mitigation strategies
  • Collaborate with the Okta Security team on security operations and, where relevant, support investigations and root cause analysis

Skills used in this role

GoAWSAzureKubernetesOWASPLLMPrompt InjectionMCPAI/ML SecurityAdversarial MLIdentity and Access ManagementSecure CodingCloud InfrastructureSecure Software Development LifecycleCommunication

What the employer is looking for

  • You have hands-on experience with AI/ML security — attacking, defending, or both (e.g., adversarial ML, LLM/prompt-injection attacks, agentic-system or model abuse), and an interest in using AI to build defenses, not just to study attacks
  • You have 4+ years of experience in security engineering, with a strong foundation in cloud infrastructure and/or product security
  • You have hands-on development experience — Go preferred — sufficient to prototype tooling, build AI-powered defenses, and operationalize your research
  • You have working knowledge and hands-on experience with one or more of the following:
  • AWS and/or Azure security
  • Kubernetes
  • You have strong knowledge of OWASP (including the OWASP Top 10 for LLM Applications) and secure coding best practices
  • You have a strong foundation in secure software development lifecycle best practices
  • You have strong written and verbal communication skills, with the ability to turn research into clear guidance for engineering and product teams
  • You have experience working with a globally distributed and remote team

Preferred qualifications

  • You have published threat research, CVEs, or conference talks in AI/ML security or identity security
  • You have built AI/ML-powered security tooling or defensive automation in a production environment
  • You have working knowledge and experience with one or more of the following:
  • Adversarial ML, model red-teaming, or AI safety research
  • The AI agent / MCP ecosystem and its security implications
  • Identity and access management
  • Full-stack engineering
  • Site reliability engineering
  • Vulnerability and threat management
  • Governance, risk and compliance

Benefits and support

  • Compensation and benefits are detailed in the job posting

About Okta

Okta is a leading independent provider of cloud-based identity and access management solutions that securely connect people and technologies to the right applications. The company powers both Workforce Identity and Customer Identity platforms, allowing organizations to securely manage user access and navigate modern challenges like agentic AI security.

Industry
Enterprise Software
Company size
7500+ employees
Founded
2009
Location
San Francisco, California, USA
Funding stage
Public Company

Funding

Public Company · $228M raised

Sequoia CapitalAndreessen HorowitzGreylock PartnersKhosla VenturesAltimeter Capital
  • 2010-02-01Series A$10M
  • 2011-08-01Series B$16.5M
  • 2012-12-01Series C$25M
  • 2013-09-01Series D$27M
  • 2014-06-01Series E$75M
  • 2015-09-01Series F$75M
  • 2018-02-21Post IPO Debt$300M

Leadership

TM
Todd McKinnon

Co-Founder and Chief Executive Officer

FK
Frederic Kerrest

Co-Founder and Executive Vice Chairman

SD
Shannon Duffy

Chief Marketing Officer

SM
Scott Morgan

Chief Legal Officer