
Arlington/Rosslyn, Virginia, United States
Baltimore, Maryland, United States
Washington, District of Columbia, United States
As organizations adopt generative AI, securing how AI agents, models, and automated workflows access enterprise systems and data has become a core engineering challenge. As an Identity & Gen AI Engineer, you will build generative AI solutions with identity, access, and trust engineered in from the start, securing both human and non-human identities and governing how AI agents and GenAI platforms reach data and downstream systems. This role focuses on hands-on engineering, integration, and continuous enhancement of AI solutions in which identity and access controls are a first-class concern.
Work you'll do
As an Identity & Gen AI Engineer on the Identity and Access Management team, you will be responsible for…
•Build and integrate generative AI solutions, including LLM applications, retrieval-augmented generation, and AI agents, with secure access to data and downstream systems.
•Engineer authentication, authorization, and identity controls for AI agents, service accounts, and other non-human identities operating across enterprise and cloud environments.
•Develop guardrails for agentic workflows, including scoped permissions, least-privilege access, credential and secrets management, and runtime policy enforcement.
•Implement logging, monitoring, and governance that provide traceability and accountability for AI system actions.
•Collaborate with IAM, security architecture, and data teams to embed identity controls into GenAI solution delivery and operations.
•Create and maintain reference architectures, reusable patterns, and technical documentation for building and securing AI systems.
A successful candidate would possess these skills:
The team
Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions and managed services that simplify complexity, we enable our clients to operate with resilience, grow with confidence, and proactively manage to secure success.
Our Digital Trust & Privacy offering enables trust and safety of online communications and digital products, protecting users, consumers, and patients from harm. Enables clients to provide consumer confidence in knowing with whom they are dealing and ensuring the integrity of access to data.
Qualifications
Required:
Preferred:
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $105,400 to $207,800.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.

Deloitte drives progress. Our firms around the world help clients become leaders wherever they choose to compete. Deloitte invests in outstanding people of diverse talents and backgrounds and empowers them to achieve more than they could elsewhere. Our work combines advice with action and integrity. We believe that when our clients and society are stronger, so are we.
Deloitte refers to one or more of Deloitte Touche Tohmatsu Limited (“DTTL”), its global network of member firms, and their related entities. DTTL (also referred to as “Deloitte Global”) and each of its member firms are legally separate and independent entities. DTTL does not provide services to clients. Please see www.deloitte.com/about to learn more.
The content on this page contains general information only, and none of Deloitte Touche Tohmatsu Limited, its member firms, or their related entities (collectively the “Deloitte Network”) is, by means of this publication, rendering professional advice or services. Before making any decision or taking any action that may affect your finances or your business, you should consult a qualified professional adviser. No entity in the Deloitte Network shall be responsible for any loss whatsoever sustained by any person who relies on content from this page.