# MTS Lead, Identity and Access Management at Reflection AI

- Company: Reflection AI
- What the company does: Make intelligence open and accessible to all. Backed by Battery, Lightspeed and Sequoia.
- Company website: https://reflection.ai/
- Type: Startups (AI role)
- Level: Senior
- Location: New York, NY
- Work setup: On-site
- Posted: 2026-07-14
- Apply by: 2026-10-08
- Apply: https://jobs.ashbyhq.com/reflectionai/3865d9c3-8cf8-464c-9451-81628427b867
- Page: https://www.1752.vc/careers/jobs/reflection-ai-mts-lead-identity-and-access-management/

## About the role

The Head of Identity and Access Management is responsible for architecting, building, and operating Reflection’s identity infrastructure — the foundational security layer in an environment where the perimeter is entirely identity-based and the threat model includes sophisticated, highly motivated nation-state actors targeting intellectual property, training pipelines, and model weights.

## What they're looking for

- 15+ years of dedicated experience in identity security, security architecture, or infrastructure engineering within high-growth startups, hyperscale cloud environments, or elite security teams
- Demonstrated track record of architecting and operating modern, zero-trust identity infrastructure at scale — including hardware-backed authentication, JIT credentialing, and workload identity systems
- Hands-on experience securing IAM boundaries across major cloud providers (AWS, GCP) and containerized environments, including Kubernetes identity federation and IAM roles for service accounts
- Practical experience building and operating privileged access management systems for large-scale compute environments, including GPU cluster access in cloud or neocloud contexts
- Prior experience partnering with detection and response teams to instrument identity telemetry and build adversary-focused detection logic targeting identity-layer attack techniques
- Deep, first-principles understanding of OAuth 2.0, OIDC, SAML, WebAuthn / FIDO2, and PKI — able to reason from cryptographic fundamentals, not just implement vendor tooling

Tags: Security
