Okta

Staff Product Security Engineer

Okta
Apply
10 days ago
Chicago, IL, USA +4 moreStaff+
H1B Sponsor

Base Salary

$161k - $247k/yr

Responsibilities

  • Lead research evaluating frontier LLMs and customized open-weight models for code analysis, autonomous attack, and logical security reasoning.
  • Build production-grade AI-assisted tools for vulnerability discovery, triage, risk validation, secure code repair, and proof-of-concept exploit generation.
  • Fine-tune open-source models and integrate AI models, unified APIs, and model-agnostic execution frameworks into Product Security tools.
  • Assess and secure internal AI platforms, agentic runtimes, AI coding-agent containers, orchestration layers, and LLM-integrated services.
  • Perform manual and AI-assisted code reviews, threat modeling, penetration testing, offensive security research, and vulnerability analysis across Okta products.
  • Operate an AI security vendor and tooling evaluation program with benchmarking harnesses.
  • Publish technical research through white papers, blog posts, conference presentations, reference blueprints, or open-source tooling.
  • Translate security research findings into actionable guidance for engineering teams building AI-powered features and platforms.

Requirements

  • 8+ years of experience in information security with depth in application security, offensive research, or AI/ML security.
  • Hands-on experience building security tooling and automation used by other engineers.
  • Demonstrated experience assessing LLM-integrated systems and agentic AI architectures and finding real vulnerabilities.
  • Proficiency in at least two programming languages: Python and one of Go, Java, TypeScript, or C/C++.
  • Advanced experience with threat modeling, manual code review, and penetration testing for complex distributed systems.
  • Knowledge of OIDC, OAuth 2.0, and SAML authentication and authorization protocols and their implementation risks.
  • Experience with vulnerability research, source-code auditing, penetration testing, proof-of-concept exploits, and cryptographic implementation flaws.
  • Familiarity with agentic framework internals, including tool-use protocols, MCP, function-calling patterns, and agent orchestration architectures.
  • Experience with SAST, DAST, SCA, or fuzzing tools applied to AI/ML pipelines or CI/CD systems.
  • Experience contributing to security standards, SDL processes, vulnerability research programs, external publications, conference talks, blog posts, or open-source security tooling.
  • Strong written and verbal communication skills for documenting research and presenting to technical and non-technical audiences.

Benefits

  • Annual base salary ranges are $180,000–$247,000 for the San Francisco Bay Area and $161,000–$221,000 for specified other locations.
  • Equity where applicable, bonus, health, dental and vision insurance, 401(k), flexible spending account, PTO, and parental leave are offered according to applicable plans and policies.
  • The role is listed as hybrid and remote, with an immersive in-person onboarding experience.
  • Okta supports professional development, social impact, well-being, and connection across a global community.

Categories

AI ResearchSecurity
Okta

About Okta

5,001-10,000 employees

Okta secures AI. Okta is The World’s Identity Company. Freeing everyone to safely use any technology—anywhere, on any device or app.

Contact me