Senior Identity Security Engineer

Palantir Technologies

New York (NY)

On-site

USD 95,000 - 142,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Medical, dental, and vision insurance
Paid time off
401k plan

Job summary

Palantir Technologies in New York is looking for a Senior Identity Security Engineer to own the identity security posture across their identity infrastructure. Responsibilities include driving the rollout of agent identity infrastructure and leading identity threat modeling.

With a salary range of $95,000 to $142,000 annually and extensive benefits including medical, dental, and flexible paid time off, this role offers a key opportunity for professionals in the information security sector.

Ideal candidates have at least 5 years in Information Security and experience with identity providers such as Okta.

Qualifications

  • Hands-on production experience with an enterprise identity provider.
  • Deep technical proficiency in identity protocols.
  • Strong communication skills across audiences.

Responsibilities

  • Own identity security posture across various identity planes.
  • Drive rollout of agent identity infrastructure.
  • Lead identity threat modeling and publish findings.

Skills

Experience with cloud IAM and workload identity patterns
Designing or evaluating non-human identity architectures
Familiarity with privileged access management
Reducing standing access
Identity threat detection and response
Red team or offensive security experience

Education

5+ years in Information Security or related discipline

Tools

Go
Python
PowerShell
TypeScript

Job description

A World-Changing Company

Palantir builds the world's leading software for data-driven decisions and operations. By bringing the right data to the people who need it, our platforms empower our partners to develop lifesaving drugs, forecast supply chain disruptions, locate missing children, and more.

The Role

As a Senior Identity Security Engineer on Palantir's Identity Security team, you will own the security posture of the identity infrastructure that Palantirians, customers, and services rely on every day. The Identity Security team is responsible for all identity types at Palantir – workforce, customer, workload, and agentic – giving you the rare ability to architect, threat model, and drive security outcomes across the full identity surface. You will help shape the technical direction for identity security at Palantir, reduce standing access, lead identity threat modeling, and contribute to the next generation of identity primitives including agent identity, JIT-native governance, and unified policy enforcement across workforce and customer IAM. As part of Palantir's best-in-class Information Security organization, you will research, architect, and scale solutions that help Palantir stay ahead of a dynamic identity threat landscape.

Core Responsibilities
  • Own the day-to-day identity security posture across corporate, production, customer, and US Government identity planes
  • Drive the rollout of agent identity infrastructure – short-lived credentials, lifecycle bound to a human principal, controlled workload onboarding
  • Architect authentication, federation, and authorization systems – including SAML, OIDC, and policy-driven access control models (RBAC, ABAC, policy-as-code) – across workforce and workload identity
  • Scale non-human identity patterns across service, workload, and agent populations – short-lived credentials, mTLS, identity-based networking
  • Drive adoption of just-in-time access patterns across the identity program, partnering with platform and engineering teams on governance rollout and policy enforcement
  • Lead identity threat modeling on a regular cadence; publish findings and track remediation
  • Serve as a primary security reviewer on identity architecture decisions and cross-team RFCs
  • Research and drive adoption of emerging identity security primitives and standards in partnership with Security Engineers across InfoSec
  • Partner with engineering teams across Palantir to reduce the attack surface of identity integrations at scale
What We Value
  • Experience with cloud IAM and workload identity patterns – service accounts and identity-based access in distributed environments
  • Experience designing or evaluating non-human identity (NHI) architectures – service, workload, and agent – and a strong point of view on where the industry is headed
  • Familiarity with privileged access management and secrets management patterns at scale
  • A track record of reducing standing access and shifting organizations toward just-in-time access postures in production environments
  • Experience with identity governance platforms and a clear-eyed view of their security implications
  • Identity threat detection and response experience, including detection engineering against identity telemetry
  • Red team, offensive security, or incident response background – especially with an identity focus
  • Exposure to regulated environments (FedRAMP, SOX, IL-levels)
  • Desire to further the identity security community through substantive contributions (e.g. conference talks, blog posts, public tool development, RFCs)
  • Current US security clearance, or eligibility to obtain clearance
What We Require
  • 5+ years of experience in Information Security, Identity and Access Management, or an equivalent discipline, with demonstrated depth in identity-specific security
  • Hands-on production experience with at least one enterprise identity provider (Entra ID, Okta, or equivalent), including its governance and security surface
  • Deep technical proficiency in identity protocols (SAML, OIDC, OAuth 2.0, SCIM, FIDO2, WebAuthn) and their attack surface
  • Working proficiency in Go, Python, PowerShell, or TypeScript – enough to prototype tooling, analyze identity-handling code for security defects, scale automation across the environment, and engage in code review
  • Strong communication skills and ability to communicate to a wide-ranging audience – from engineer-facing design reviews to leadership-facing risk calls
Salary

The salary range for this position is estimated to be $95,000 - $142,000/year. Total compensation for this position may also include Restricted Stock units, sign-on bonus and other potential future incentives. Further note that total compensation for this position will be determined by each individual's relevant qualifications, work experience, skills, and other factors. This estimate excludes the value of any potential sign-on bonus; the value of any benefits offered; and the potential future value of any long-term incentives.

Benefits
  • Employees (and their eligible dependents) can enroll in medical, dental, and vision insurance as well as voluntary life insurance
  • Employees are automatically covered by Palantir's basic life, AD&D and disability insurance
  • Commuter benefits
  • Take what you need paid time off, not accrual based
  • 2 weeks paid time off built into the end of each year (subject to team and business needs)
  • 10 paid holidays throughout the calendar year
  • Supportive leave of absence program including time off for military service and medical events
  • Paid leave for new parents and subsidized back‑up care for all parents
  • Fertility and family building benefits including but not limited to adoption, surrogacy, and preservation
  • Stipend to help with expenses that come with a new child
  • Employees can enroll in Palantir's 401k plan

Many teams do offer hybrid options (WFH a day or two a week), allowing our employees to strike the right trade‑off for their personal productivity. Based on business need, there are a few roles that allow for “Remote” work on an exceptional basis. If you are applying for one of these roles, you must work from the state in which you are employed. If the posting is specified as Onsite, you are required to work from an office.

If you need an accommodation for the application or hiring process, please reach out and let us know how we can help. Palantir is an Equal Opportunity Employer for all, including but not limited to Veterans and those with disabilities. Palantir is committed to making the application and hiring process accessible to everyone and will provide a reasonable accommodation for those living with a disability.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Platform Engineer - Identity Infrastructure
Platform Engineer - Identity Infrastructure

Palantir Technologies • Washington

Hybrid
USD 135,000 - 200,000
Relocation assistance
Commuter benefits
401k plan
+1
Platform Engineer - Identity Infrastructure
Platform Engineer - Identity Infrastructure

Palantir Technologies • New York (NY)

On-site
USD 135,000 - 200,000
Relocation assistance
PTO time off
Paid holidays
+7
Platform Engineer - Identity Infrastructure
Platform Engineer - Identity Infrastructure

Palantir Technologies • Palo Alto (CA)

Hybrid
USD 135,000 - 200,000
Relocation assistance
Commuter benefits
401k plan
+1
Platform Engineer - Identity Infrastructure
Platform Engineer - Identity Infrastructure

Socket.dev • Palo Alto (CA)

On-site
USD 135,000 - 200,000
Medical, dental, and vision insurance
Life insurance
AD&D and disability insurance
+7
Information Security Engineer - Infrastructure Security
Information Security Engineer - Infrastructure Security

Palantir • New York (NY)

On-site
USD 145,000 - 200,000
Medical insurance
Life insurance
Disability insurance
+7
Information Security Engineer
Information Security Engineer

Palantir • New York (NY)

On-site
USD 135,000 - 200,000
Medical, dental, vision insurance
Relocation assistance
Commuter benefits
+2
Technical Program Manager - Security
Technical Program Manager - Security

Palantir • Washington

On-site
USD 93,000 - 160,000
Medical, dental, and vision insurance
Commuter benefits
Paid time off
Technical Program Manager - Security
Technical Program Manager - Security

Palantir • New York (NY)

On-site
USD 93,000 - 160,000
Medical insurance
Dental insurance
Vision insurance
+5
Offensive Security Engineer
Offensive Security Engineer

Palantir Technologies • New York (NY)

Hybrid
USD 145,000 - 200,000
Medical, dental, and vision insurance
Commuter benefits
Relocation assistance
+4
Offensive Security Engineer
Offensive Security Engineer

Palantir Technologies • Washington

Hybrid
USD 145,000 - 200,000
Medical, dental, vision insurance
Commuter benefits
Relocation assistance
+1