Senior Consultant, Strategy, Growth, and Transformation, Identity & Gen AI Engineer
Job Description
Deloitte offers an onsite Senior Consultant role in Baltimore, MD, focused on building secure GenAI solutions with identity, access, and governance controls. You will work on authentication, authorization, and policy enforcement for AI agents and data access across enterprise and cloud environments. The position provides a competitive salary range of USD 105,400 - 207,800 per year and a discretionary annual incentive program, with opportunities to collaborate closely with IAM, security architecture, and data teams to embed identity controls throughout GenAI delivery.
Location: Baltimore, MD (onsite)
Salary: USD 105,400 - 207,800 per year
Responsibilities
- Build and integrate generative AI solutions, including LLM applications, retrieval-augmented generation, and AI agents, with secure access to data and downstream systems.
- Engineer authentication, authorization, and identity controls for AI agents, service accounts, and other non-human identities operating across enterprise and cloud environments.
- Develop guardrails for agentic workflows, including scoped permissions, least-privilege access, credential and secrets management, and runtime policy enforcement.
- Implement logging, monitoring, and governance that provide traceability and accountability for AI system actions.
- Collaborate with IAM, security architecture, and data teams to embed identity controls into GenAI solution delivery and operations.
- Create and maintain reference architectures, reusable patterns, and technical documentation for building and securing AI systems.
Requirements
- Bachelor's degree in Cybersecurity, Computer Science, Information Systems, Engineering, or a similar technical field
- Ability to work onsite up to 5 days a week
- 3+ years of software engineering experience with Python or a comparable language
- 1+ year of hands-on experience building, integrating, or deploying generative AI solutions such as large language model applications, retrieval-augmented generation, or AI agents, including use of model APIs, orchestration frameworks, and AI development tools such as Claude Code, OpenAI Codex, GitHub Copilot, or Cursor
- Working knowledge of identity and access management concepts and protocols, including authentication, authorization, single sign-on, and standards such as OpenID Connect, SAML, OAuth, and JWT
- Ability to travel 15 percent on average based on client needs
- Ability to obtain and maintain the necessary security clearance
- Authorized to work in the United States without employer sponsorship now or in the future
Technologies
- Python
- Claude Code
- OpenAI Codex
- GitHub Copilot
- Cursor
- Identity platforms and access management tools such as SailPoint, Okta, Microsoft Entra ID
- Secrets management and IAM tooling like HashiCorp Vault, CyberArk
- LangChain, LangGraph, Model Context Protocol, OPA, Cedar, OpenFGA
- Cloud and automation: AWS, Microsoft Azure, Terraform, Ansible
Benefits
- Discretionary annual incentive program