Senior Consultant, Strategy, Growth, and Transformation, Identity & Gen AI Engineer
Job Description
As a Senior Consultant, Identity & Gen AI Engineer on Deloitte's Identity and Access Management team, you will help design and deploy secure generative AI solutions with identity, access, and governance ingrained from the start. This role combines advanced AI capabilities with enterprise security controls to enable scalable, compliant deployments that protect data and downstream systems.
Responsibilities
- Design and integrate generative AI capabilities, including large language model apps, retrieval-augmented generation workflows, and AI agents, with secure access to data and downstream systems.
- Create authentication, authorization, and identity controls for AI agents, service accounts, and other non-human identities across enterprise and cloud environments.
- Establish guardrails for agent-driven workflows, including scoped permissions, least-privilege access, secrets management, and runtime policy enforcement.
- Implement logging, monitoring, and governance to provide traceability and accountability for AI system actions.
- Collaborate with IAM, security architecture, and data teams to embed identity controls into GenAI solution delivery and operations.
- Develop and maintain reference architectures, reusable patterns, and technical documentation for building and securing AI systems.
Requirements
- Bachelor's degree in Cybersecurity, Computer Science, Information Systems, Engineering, or a related technical field
- Ability to work onsite up to five days a week
- 3+ years of software engineering experience with Python or a comparable language
- 1+ year of hands-on experience building, integrating, or deploying generative AI solutions such as LLM applications, RAG, or AI agents, including use of model APIs, orchestration frameworks, and AI development tools like Claude Code, OpenAI Codex, GitHub Copilot, or Cursor
- Working knowledge of identity and access management concepts and protocols, including authentication, authorization, single sign-on (SSO), and standards such as OpenID Connect (OIDC), SAML, OAuth, and JSON Web Token (JWT)
- Ability to travel 15% on average based on client needs
- Ability to obtain and maintain the necessary security clearance
- Legally authorized to work in the United States without employer sponsorship now or in the future
Technologies
- Python
- Claude Code
- OpenAI Codex
- GitHub Copilot
- Cursor
- LangChain
- LangGraph
- Model Context Protocol (MCP)
- Open Policy Agent (OPA)
- Cedar
- OpenFGA
- SailPoint
- Okta
- Microsoft Entra ID
- HashiCorp Vault
- CyberArk
- Terraform
- Ansible
- AWS
- Microsoft Azure
- OIDC
- SAML
- OAuth
- JWT
Benefits
- Discretionary annual incentive program
The Team
Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions that help clients navigate a dynamic threat landscape, with managed services that simplify complexity and enable resilient operations, confident growth, and proactive security management.
Our Digital Trust & Privacy offering focuses on enabling trust and safety for online communications and digital products, protecting users, consumers, and patients from harm. It supports clients in delivering consumer confidence and ensuring data access integrity.