--- title: 'Principal Forward Deployed Engineer at Okta' canonical: 'https://feeny.ai/job/principal-forward-deployed-engineer-okta-singapore-bsj1jqxswg79' type: 'job' last_seen: '2026-09-04' --- # Principal Forward Deployed Engineer at Okta - **Company:** Okta - **Location:** Singapore - **Posted:** 2026-07-14 - **Last confirmed live:** 2026-09-04 - **Apply:** https://www.okta.com/company/careers/opportunity/7980649?gh_jid=7980649 ## Job description Secure Every Identity, from AI to Human Identity is the key to unlocking the potential of AI. Okta secures AI by building the trusted, neutral infrastructure that enables organizations to safely embrace this new era. This work requires a relentless drive to solve complex challenges with real-world stakes. We are looking for builders and owners who operate with speed and urgency and execute with excellence. This is an opportunity to do career-defining work. We're all in on this mission. If you are too, let's talk. Principal Forward Deployed Engineer, Okta for AI Agents ## About Okta for AI Agents Okta secures access for 20,000 organizations and billions of users. Okta for AI Agents extends that work to the agentic shift. Deploying an AI agent is not like deploying traditional software. You are putting professional work output into production, and it needs deep integration, continuous tuning, and change management. Every agent needs an identity, a scope, an audit trail, and a way to be shut down when it goes wrong. Most enterprises have not built this yet. We are. We hire builders who see the cracks in enterprise agent identity that everyone else has learned to live with. ## The Role You embed inside four to five of Okta’s most strategic enterprise customers as their dedicated technical partner for agent identity. You sit alongside their identity, platform, and security engineering teams, develop sample and bespoke code, and own the technical outcome from prototype through production. You are a builder-consultant. You go past architecture diagrams to code, debug, and ship bespoke agent identity solutions inside the customer’s environment. You ship secure agents faster for the customer, and you feed real field insight back to Okta product engineering. ## Responsibilities - Become the customer’s trusted technical voice on agent security. Sit in their standups, design reviews, and incident reviews. Earn a seat on their architecture review board and security council for agent risk decisions. - Architect and deploy with the customer’s team. Build Okta’s agent security stack into their infrastructure: Cross-App Access (XAA), Fine-Grained Authorization (FGA), MCP Gateway, and agent client registration. Own the identity, delegation, audit, and kill-switch architecture end to end, and coach their engineers on the patterns. - Engage senior leadership. Brief the CISO, CIO, identity leaders, Chief AI Officer, and principal architects. Translate token-exchange flows into board-level agent risk, and AI governance mandates into architecture. - Deliver white-glove deployment. Agents in production with full identity coverage, security review passed, governance requirements met, and posture visibility online. The customer points to you as the reason their agent program is real. - Keep deployments defensible. Align architecture decisions to OWASP Top 10 for Agentic Applications, NIST AI RMF, and MITRE ATLAS, and to HIPAA, FedRAMP, or SOC 2 where the customer is regulated. - Wire Okta into the customer’s stack. Connect O4AA to their IdP for human-to-agent links, IGA for agent lifecycle, ISPM for posture, SIEM and EDR for behavior coverage, and policy engines for runtime decisions. - Build evals and observability. Authorization decision latency, scope sprawl across agents, anomalous delegation chains, audit completeness, kill-switch verification, and rogue agent detection. - Turn field patterns into product. Extract the recurring gaps from their architects and governance leads, and convert them into reusable modules and roadmap fixes that ship for every other customer. - Be on site. Regular presence at customer locations. Trust and governance alignment happen in the room. ## Requirements - Engineering pedigree. 7+ years shipping production software, still hands-on in the IDE, with on-call experience and operational maturity in systems that authenticate and authorize at high throughput. - Identity protocols. OAuth 2.0, OIDC, SAML, SCIM, RFC 8693 token exchange, act claims, CIMD and DCR, DPoP. - Agent security frameworks and platforms. Working knowledge of OWASP Top 10 for Agentic Applications, NIST AI RMF, and MITRE ATLAS. Familiarity with Python, MCP, A2A, ISO/IEC 42001, and the EU AI Act. Comfortable mapping deployments to HIPAA, FedRAMP, and SOC 2. - Fine-grained authorization. ReBAC and ABAC with policy engines (OPA, Cedar, OpenFGA, or equivalent), and a working understanding of how agents acquire tokens, call APIs, and delegate. - AI hands-on. Build production integrations with Claude, ChatGPT, Microsoft Copilot, Agentforce, Bedrock, LangChain, CrewAI, the OpenAI Agents SDK, or MCP servers. - AI-native development. Daily use of Claude Code, Cursor, GitHub Copilot, or equivalent. - Customer-facing range. At home in a customer standup and a CISO briefing on the same day. You build trust with senior engineering leaders and you stay in the room when their internal politics get sharp. - High agency, founder’s mindset. A zero-to-one self-starter who owns outcomes end to end. - Ability to travel, on occasion internationally, up to 35% The Okta Experience - [Supporting Your Well-Being](http://rewards.okta.com) - [Driving Social Impact](https://www.okta.com/company/okta-for-good/) - [Developing Talent and Fostering Connection + Community](https://www.okta.com/company/talent-connection-community/) We are intentional about connection. Our global community, spanning over 20 offices worldwide, is united by a drive to innovate. Your journey begins with an immersive, in-person onboarding experience designed to accelerate your impact and connect you to our mission and team from day one. Okta is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, ancestry, marital status, age, physical or mental disability, or status as a protected veteran. We also consider for employment qualified applicants with arrest and convictions records, consistent with applicable laws. If reasonable accommodation is needed to complete any part of the job application, interview process, or onboarding please [use this Form](https://docs.google.com/forms/d/1EfiEYZrIyhA2X4Fijk0R3RKYOzNoS3wtvyM4nhbZnXE/edit) to request an accommodation. Notice for New York City Applicants & Employees: Okta may use Automated Employment Decision Tools (AEDT), as defined by New York City Local Law 144, that use artificial intelligence, machine learning, or other automated processes to assist in our recruitment and hiring process. In accordance with NYC Local Law 144, if you are an applicant or employee residing in New York City, please [click here](https://talent.okta.com/new-york-city-aedt-notice.html) to view our full NYC AEDT Notice. ## About Okta ## Company Overview - **One-liner**: Okta is The World’s Identity Company™, providing cloud-based identity and access management (IAM) solutions that securely connect people to technology, now extended to AI agents. - **Entity Type**: Public (NASDAQ: OKTA) - **Headquarters**: San Francisco, California, USA - **Founded**: 2009 - **Founders**: Todd McKinnon and Frederic Kerrest ## Core Business - **Primary industry**: Cybersecurity – Identity and Access Management (IAM) - **Target customers**: B2B, Enterprise (two-thirds of the Fortune 100, major government agencies), SMBs, and developer teams (via Auth0) - **Mission or purpose**: “Free everyone to safely use any technology.” ## Products & Services - **[Okta Workforce Identity](https://www.okta.com/)**: Cloud-based IAM for employees, contractors, and partners – includes single sign-on (SSO), multi-factor authentication (MFA), lifecycle management, and privileged access controls. (SaaS) - **[Okta Customer Identity (Auth0)](https://www.okta.com/)**: Developer-friendly platform for authenticating and authorizing users in consumer and SaaS applications. (SaaS/API) - **[Okta for AI Agents](https://www.okta.com/)**: A new offering that brings AI agents into the identity security fabric – enables discovery, onboarding, protection, and governance of machine identities. (SaaS) ## Market Standing - **Valuation/Market Cap**: Not publicly available in provided sources (publicly traded; refer to stock exchange data). - **Key Metric**: Annual Revenue – Not publicly available in provided sources. - **Notable Investors/Partners**: Not detailed in provided materials; the company highlights that two-thirds of the Fortune 100 and thousands of organizations trust Okta [okta.com/company](https://www.okta.com/company/). - **Growth Signals**: Strong push into AI agent security; “Always secure. Always on.” commitment; global presence in 15 countries. ## Competitive Advantages - Trusted by the largest enterprises and governments – a deeply embedded identity standard. - Comprehensive platform covering both workforce and customer identity under one fabric. - Pioneering the identity framework for AI agents, creating a new moat in the machine-identity space. - **Okta Secure Identity Commitment (OSIC)** – a long-term pledge to lead against identity-based attacks, reinforcing reliability and transparency. ## Strategic Focus - Securing the “agentic enterprise” by extending identity governance to AI agents. - Continuous innovation in IAM to address emerging threats (phishing, AI-powered attacks). - Expanding the Auth0 developer ecosystem and deepening integrations with cloud platforms. ## Why Work Here - **Culture**: Values-driven (“Love our customers,” “Always secure. Always on.,” “Build and own it,” “Drive what’s next”). Strong emphasis on security, ownership, and customer success [okta.com/company/careers](https://www.okta.com/company/careers/). - **Work model**: Hybrid and remote-friendly – listings show “US Remote,” “UK Remote,” and office locations in 15 countries (e.g., San Francisco, Toronto, London, Tokyo, Bengaluru) [okta.com/company/careers/job-listing](https://www.okta.com/company/careers/job-listing/). - **Perks**: Competitive salary, employee stock purchase plan (ESPP), flexible PTO, professional development resources, and social impact programs (Okta for Good, 1% Pledge) [okta.com/company/careers](https://www.okta.com/company/careers/?gh_src=7j0um41). - **Engineering culture**: Teams build secure, reliable systems at scale; early career programs and a focus on AI identity security offer cutting-edge challenges. ## Sources 1. [okta.com](https://www.okta.com/) 2. [okta.com/company](https://www.okta.com/company/) 3. [okta.com/company/careers](https://www.okta.com/company/careers/) 4. [okta.com/company/careers (benefits)](https://www.okta.com/company/careers/?gh_src=7j0um41) 5. [okta.com/company/careers/job-listing](https://www.okta.com/company/careers/job-listing/) ## Other roles at Okta - [Senior Deal Operations Support](https://feeny.ai/job/senior-deal-operations-support-okta-manila-9rqryb2skkyg) — Manila, Philippines - [Senior Deal Operations Support](https://feeny.ai/job/senior-deal-operations-support-okta-manila-ephgt3dhyqjg) — Manila, Philippines - [Strategic Account Executive, North Carolina](https://feeny.ai/job/strategic-account-executive-north-carolina-okta-nc-70dyp472jyx2) — , NC - [Principal Recruiter, APJ](https://feeny.ai/job/principal-recruiter-apj-okta-singapore-r46h04dtzzv0) — Singapore - [Senior UX Researcher](https://feeny.ai/job/senior-ux-researcher-okta-bengaluru-32xvs8shfe2x) — Bengaluru, India - [Senior Solutions Engineer, Okta (Chicago)](https://feeny.ai/job/senior-solutions-engineer-okta-chicago-okta-chicago-he447tsyzxpg) — Chicago, IL / Michigan / Wisconsin - [Technical Architect](https://feeny.ai/job/technical-architect-okta-bellevue-5pq5xx6af35x) — Bellevue, WA / Chicago, IL / New York, NY / San Francisco, CA / Toronto, Canada - [Staff Product Marketing Manager, Okta Device Access](https://feeny.ai/job/staff-product-marketing-manager-okta-device-access-okta-bellevue-x8y8acpmr8hs) — Bellevue, WA / Chicago, IL / San Francisco, CA / Toronto, Canada - [Treasury Manager](https://feeny.ai/job/treasury-manager-okta-san-francisco-heb05bak1jnw) — San Francisco, CA - [Staff Fullstack Engineer - AI Acceleration](https://feeny.ai/job/staff-fullstack-engineer-ai-acceleration-okta-toronto-w9qm27jese3w) — Toronto, Canada