Application Programming Interface (API), Applications Security, Artificial Intelligence (AI), Authentication, Cloud Computing, Digital Certificates, Distributed Computing, Internet Application, MCP - Microsoft Certified Professional, OAuth, Presentation/Verbal Skills, Public Key Infrastructure (PKI), Travel Industry, Writing Skills
Job Summary (List Format):
- Position: Security Engineer (Remote, Occasional Miami Travel)
- Industry: Travel/Vacation
- Experience Required: 8+ years in security engineering, application security, or platform security
- Key Responsibilities:
- Deliver enterprise IAM and non-human identity solutions
- Design fine-grained, least-privilege access models for distributed systems
- Implement web application and API security controls
- Address security for AI-enabled and automation-heavy systems
- Manage non-human identity (NHI) lifecycle in dynamic environments
- Collaborate with product, platform, AI/ML, and identity teams
- Technical Expertise Needed:
- Deep knowledge of OAuth 2.0/2.1, OIDC, token exchange (OBO), PKCE, audience binding, and short-lived tokens
- Experience with SPIFFE/SPIRE, mTLS, PKI/certificate-based authentication
- Experience with WAFs, API gateways, edge security, and service-to-service security in cloud-native environments
- Familiarity with Zero Trust, least privilege, identity lifecycle, and recertification
- Experience with secrets management and eliminating static/long-lived credentials
- Understanding of risks in agentic/autonomous systems and enforcing deterministic controls
- MCP Security Standards and agent runtime authorization
- Skills:
- Strong written and verbal communication
- Ability to reason about non-deterministic execution in security controls
- Additional Information:
- No visa restrictions; remote role with occasional Miami office travel
- Requires LinkedIn profile for submission
- Interview via video call
- No background check or drug screen requiredE
Expert Technology Services