Full-Time

Principal Software Engineer

AI Onboarding

Saviynt

Saviynt

1,001-5,000 employees

Cloud identity security and access governance

Compensation Overview

$240k - $250k/yr

Company Historically Provides H1B Sponsorship

Milpitas, CA, USA

Hybrid

Hybrid role; on-site in Milpitas, California.

Category
Software Engineering (1)
Required Skills
Kubernetes
Microsoft Azure
Git
Data Structures & Algorithms
JUnit
SQL
Apache Kafka
Java
Docker
Microservices
AWS
Elasticsearch
Maven
Redis
SCRUM
REST APIs
LangChain
Spring
Serverless
Google Cloud Platform

Get referred to Saviynt

See people who can refer or advise you

Requirements
  • 1+ year of experience as a Principal Software Engineer
  • Expert-level ability utilizing technologies such as Java, Spring Framework, REST and Microservices
  • Familiar with AI tools and curious about MCP, A2A, Agentic frameworks. Have a continuous learning mindset and not hesitate to venture into unchartered territory.
  • Ability to perform research and go deep into platforms is a strong plus.
  • Strong Experience as a Java Engineer developing applications based on Security principles, cloud platforms (AWS, Azure, or Google Cloud) and Containerization (Docker, Kubernetes)
  • Deep understanding of data structures, algorithms, and design patterns
  • Hands on experience with SQL, ElasticSearch, Redis, CI/CD, AWS Glue, Kafka
  • Experience in increasing levels of responsibility managing application development, solution architecture, design and delivery, and process improvement
  • Experience with unit, functional and system integration testing
  • Extensive understanding of working in an agile environment utilizing Scrum and Kanban
  • Experience with Git (GitHub/GitLab), automatic deployments, continuous integration
  • Hands on experience using IntelliJ or Eclipse/My Eclipse IDE, writing Junit test cases, working with Maven/Ant
  • Experience with AI development tools in SDLC such as Amazon Q, Github Copilot, Cursor, and similar productivity assistants.
  • Familiarity with various architectural patterns (e.g., event-driven, microservices, serverless) and their trade-offs
  • If required for this role, you will: Complete security & privacy literacy and awareness training during onboarding and annually thereafter Review (initially and annually thereafter), understand, and adhere to Information Security/Privacy Policies and Procedures such as (but not limited to): Data Classification, Retention & Handling Policy; Incident Response Policy/Procedures; Business Continuity/Disaster Recovery Policy/Procedures; Mobile Device Policy; Account Management Policy; Access Control Policy; Personnel Security Policy; Privacy Policy
Responsibilities
  • Design, implement, test and release end-to-end workflows for our AI security product
  • Work across multiple agent platforms like AWS Bedrock, Google AgentSpace, Salesforce AgentForce, building foundational solutions, using cloud, SAAS and AI design patterns and technologies
  • Use AI and Agents to secure AI, using CUA agents, various LLM’s , agentic frameworks like ADK, Langchain among others
  • Design and develop secure, scalable, multi-tenant software solutions that run seamlessly across major cloud platforms like AWS and Azure
  • Act as a technical expert and thought leader, influencing product direction and engineering best practices
  • Drive continuous improvement in engineering processes, tooling, and operational reliability
  • Collaborate with internal teams to produce software design and architecture
  • Test and deploy applications and systems
  • Revise, update, refactor and debug code
  • Ability to start a program from scratch as well as maintain existing services
  • Develop documentation throughout the software development life cycle
  • Serve as an expert on applications and provide technical support
  • Follow the true agile principles
Desired Qualifications
  • Ability to perform research and go deep into platforms is a strong plus

Saviynt provides a cloud-based identity security and access governance platform that helps organizations manage digital identities for employees, vendors, and machines. It offers identity governance and administration, third-party access governance, and cloud privileged access management, using automated workflows and identity analytics to reduce risks and maintain audit readiness. The product helps enterprises implement governance from the start, minimize separation-of-duty risks across apps, and stay compliant while lowering costs through a subscription model and scalable deployment across diverse industries.

Company Size

1,001-5,000

Company Stage

Series B

Total Funding

$1.1B

Headquarters

El Segundo, California

Founded

2010

Get referred to Saviynt

See people who can refer or advise you

Simplify Jobs

Simplify's Take

What believers are saying

  • July 28, 2026 ARR exceeded $300 million with bookings up over 80%.
  • July 2026 Zuma launch targets exploding AI-agent and non-human identity demand.
  • June 9, 2026 Zscaler partnership adds distribution, validation, and investor alignment.

What critics are saying

  • Microsoft Entra and SailPoint bundle adjacent controls, compressing Saviynt pricing by 2027.
  • AI-agent security remains unproven; one major breach destroys trust and slows deployments.
  • If Microsoft, AWS, or Zscaler absorb identity governance, Saviynt becomes a feature vendor.

What makes Saviynt unique

  • Saviynt governs human, non-human, and AI identities in one control plane.
  • Zuma blocks AI-agent actions at runtime with intent-aware authorization.
  • Zscaler integration links Saviynt governance to inline enforcement across sessions.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Remote Work Options

Flexible Work Hours

Growth & Insights and Company News

Headcount

6 month growth

0%

1 year growth

0%

2 year growth

1%
MSSP Alert
Jul 28th, 2026
Saviynt launches Zuma AI identity security platform as ARR tops $300 million.

Saviynt launches Zuma AI identity security platform as ARR tops $300 million. July 28, 2026 Saviynt has launched Zuma, an identity security platform designed to help enterprises discover, govern and control AI agents and other non-human identities. The launch comes as the company reported more than $300 million in annual recurring revenue, bookings growth above 80% and a 96% customer retention rate. Zuma addresses the growing number of AI agents, large language models, and AI applications gaining access to enterprise systems and data. These identities can be created and deployed quickly, leaving security teams with limited visibility into who owns them, what permissions they hold and how their access changes over time. The platform is divided into three areas. Zuma Insights discovers AI and non-human identities and maps their ownership, activity and access. Zuma Access evaluates an agent's intent, permissions, context and risk before allowing it to complete a task. Zuma Governance adds lifecycle controls, access reviews, policy enforcement and audit evidence for security and compliance teams. The launch moves Saviynt deeper into the emerging market for securing machine identities and autonomous agents. Enterprises are beginning to treat AI agents as a separate identity population that requires continuous discovery, narrowly defined permissions and clear accountability. Zuma gives Saviynt a way to extend its existing identity governance business into that work while giving partners a new opening for AI identity assessments, implementation and ongoing governance services.

Associated Press
Jul 28th, 2026
Saviynt surpasses $300M ARR and launches Zuma AI identity security platform

Saviynt, an identity security solutions provider, has surpassed $300 million in annual recurring revenue whilst growing bookings by over 80% and maintaining a 96% customer retention rate. The company has launched Zuma, an AI identity security platform designed to help organisations manage AI agents, large language models, AI-based applications, and non-human identities. Zuma comprises three components: Zuma Insights discovers and tracks AI agents and non-human identities across enterprises; Zuma Access evaluates agent intent and permissions at runtime to prevent privilege misuse; and Zuma Governance establishes ownership, lifecycle controls, and audit-ready evidence for AI and non-human identities. "AI is fundamentally changing the identity security equation," said Sachin Nayyar, chief executive officer of Saviynt. The platform is now available.

GlobeNewswire
Jul 28th, 2026
Saviynt exceeds $300 million in ARR and launches Zuma the enterprise AI identity security platform.

Saviynt exceeds $300 million in ARR and launches Zuma the enterprise AI identity security platform. New customer acquisitions grew more than 80% as organizations increasingly adopt new identity security solutions designed for the age of AI. July 28, 2026 14:00 ET | Source: Saviynt LOS ANGELES, July 28, 2026 (GLOBE NEWSWIRE) - Saviynt, a leading provider of identity security solutions, announced significant business momentum, surpassing $300 million in annual recurring revenue while growing bookings by more than 80% and maintaining a leading 96% customer retention rate. It also launched Zuma, a complete AI identity security platform that provides organizations with an innovative, agile, and effective solution to adopt, deploy, and scale AI solutions. "They need a control plane that can help them see every AI and non-human identity, govern it with accountability, and protect the business in real time. That..." "AI is fundamentally changing the identity security equation," "Enterprises are no longer securing only human users. They are now responsible for AI agents and non-human identities that can decide and access systems at..." "Like many large enterprises, we are looking at how to safely scale AI across the business without losing visibility or control," "The challenge is that AI agents and non-human identities don't fit neatly into legacy identity processes. Saviynt is bringing the right pieces together -..." "As AI adoption and automation accelerate, enterprise security teams are under increasing pressure to secure both human and non-human identities while..." "Identity has emerged as a vital control point that will define security in the AI era. The organizations that move fastest will be those that give cyber..." "Customers are telling us they need more than another dashboard," "They need a control plane that can help them see every AI and non-human identity, govern it with accountability, and protect the business in real time. That..." "AI is fundamentally changing the identity security equation," "Enterprises are no longer securing only human users. They are now responsible for AI agents and non-human identities that can decide and access systems at..." "Like many large enterprises, we are looking at how to safely scale AI across the business without losing visibility or control," "The challenge is that AI agents and non-human identities don't fit neatly into legacy identity processes. Saviynt is bringing the right pieces together -..." "As AI adoption and automation accelerate, enterprise security teams are under increasing pressure to secure both human and non-human identities while..." "Identity has emerged as a vital control point that will define security in the AI era. The organizations that move fastest will be those that give cyber..." "Customers are telling us they need more than another dashboard," "They need a control plane that can help them see every AI and non-human identity, govern it with accountability, and protect the business in real time. That..." Saviynt's financial achievements reflect the growing demand for modern identity security, especially with the challenges caused by the rapid utilization of AI. Saviynt developed Zuma after working closely with some of the world's leading organizations and understanding that AI agents, LLMs, AI-based applications, and non-human identities are multiplying across business functions, yet often without effective oversight. With the launch of Zuma, enterprises can now implement a complete, real-time, intent aware identity security solution purpose built for AI. "AI is fundamentally changing the identity security equation," said Sachin Nayyar, CEO of Saviynt. "Enterprises are no longer securing only human users. They are now responsible for AI agents and non-human identities that can decide and access systems at machine speed. Saviynt's momentum reflects the urgency we are seeing from customers around the world, and Zuma represents a major step forward in helping them embrace AI with confidence and control." "Like many large enterprises, we are looking at how to safely scale AI across the business without losing visibility or control," said Sarita Dsouza, IAM Leader, Cytiva, a Danaher company. "The challenge is that AI agents and non-human identities don't fit neatly into legacy identity processes. Saviynt is bringing the right pieces together - discovery, ownership, runtime controls, and governance, in a way that maps to how security teams actually need to manage this risk." AI moves too rapidly for legacy identity solutions, misapplied cybersecurity applications, and broad IT tools. These infirmities have left enterprises searching for a new approach because the current approaches cannot provide answers to fundamental questions, like: * Where are all my AI agents? * Who created these agents? * What are these agents doing? * Who is overseeing the actions of these agents? * What control do GovCloud Network has over the data and applications they access? Zuma answers these questions by bringing together new, AI-specific capabilities and existing identity best practices into a single unified control plane made up of Zuma Insights, Zuma Access, and Zuma Governance: * Zuma Insights = Visibility into all identities: Zuma Insights continuously discovers AI agents, LLMs, AI-based applications, and non-human identities across the enterprise. It helps organizations understand what these identities access, who owns them, sees lifecycle changes with a clear timeline view, and understand where risk exists before any gaps become business or financial risks. * Zuma Access = Protection applied at run-time: Zuma Access evaluates agent intent, context, permissions, and risk at runtime to ensure AI agents are only authorized to perform the actions required for a specific task. It prevents privilege misuse and anomalous activity before it can impact the business. * Zuma Governance = Accountability for all identities: Zuma Governance establishes ownership, lifecycle controls, policy guardrails, access reviews, and audit-ready evidence for AI agents and non-human identities. This lets organizations close governance gaps on unmanaged or orphaned agents and ensure AI and non-human identities are held to stronger accountability standards than human identities. "Customers are telling us they need more than another dashboard," added Nayyar. "They need a control plane that can help them see every AI and non-human identity, govern it with accountability, and protect the business in real time. That is the problem Zuma was built to solve." About Saviynt Saviynt is the identity security platform built to secure the modern enterprise. With Zuma, its complete AI identity security platform, Saviynt helps organizations build, run, and scale AI with confidence. The world's leading brands trust Saviynt to reduce risk, improve visibility, and support compliance while enabling business agility.

AI Governance
Jul 28th, 2026
Snowflake advances trusted agentic enterprise with Cortex AI Gateway, unified monitoring, and cost management.

Snowflake advances trusted agentic enterprise with Cortex AI Gateway, unified monitoring, and cost management. Snowflake today announced Cortex AI Gateway and a suite of AI security innovations aimed at establishing the foundation for trusted agent interoperability in the enterprise. The new capabilities address two of the biggest barriers to scaling AI agents: security and governance risks, and the lack of centralized visibility and control over AI consumption costs. As AI agents increasingly collaborate across data, applications, and platforms, they introduce new security and operational challenges that traditional architectures were not designed to handle. Snowflake positions Cortex AI Gateway as the connective layer for all trusted agent activity, enabling enterprises to govern how agents access models, tools, MCP servers, and enterprise systems while optimizing cost and performance. "Enterprise AI is moving from data interoperability to agent interoperability, and security has to be at the center of that shift. Agent interoperability only works when enterprises can trust how agents from different platforms access data, invoke tools, and take action on behalf of users. Snowflake provides the visibility, governance, and control capabilities needed to make that interoperability secure for production AI." Mayank Upadhyay, Chief Security and Trust Officer at Snowflake, said: Cortex AI Gateway supports both Snowflake-native agents (such as Snowflake CoWork and CoCo) and third-party agents built on platforms like Claude Code and Cursor. It centralizes access policies, authentication, permissions, and controls, while providing end-to-end visibility into agent activity and a unified view of AI consumption costs. Snowflake also announced the first wave of secure third-party agent access integrations with 1Password, Aembit, Linx Security, Okta, SailPoint, and Saviynt. The announcement builds on Snowflake's earlier acquisition of Natoma and continues the company's push to bring zero-trust principles to the agentic enterprise, with customers including BlackRock and Thomson Reuters highlighting the importance of strong security and governance as they scale AI. Conditions driving the change. * AI agents are rapidly evolving from isolated assistants into active participants that collaborate across enterprise data platforms, applications, and tools, creating an urgent need for a unified control plane that can govern their access and actions at scale. * Traditional security architectures were built for human users and static systems, leaving organizations without consistent ways to control which models, data, MCP servers, and tools each agent can reach or to audit the full sequence of steps an agent takes. * Fragmented AI usage across multiple models, teams, and workloads has made AI consumption costs difficult to track, attribute, and control, increasing the risk of runaway spending as agent activity expands. * Enterprises require secure interoperability for third-party agents built on external platforms such as Claude Code and Cursor, yet many vendor ecosystems remain closed or lack standardized identity, access, and audit controls. * Security and identity teams need task-scoped, short-lived access for agents rather than broad inheritance of user permissions, so that agents only receive the minimum privileges required for a specific job. * Organizations lack a single place to observe end-to-end agent activity, making it hard to answer basic questions about which agent acted, what systems it touched, and whether the action complied with policy. * The move from data interoperability to agent interoperability demands that trust, visibility, and governance sit at the center of every cross-system interaction if production-scale agent deployments are to succeed. * Leading security and identity vendors are beginning to integrate with data platforms to close the visibility and control gaps that arise when agents operate across organizational boundaries. * Customers in highly regulated and data-intensive industries are insisting on zero-trust principles, verified agent identities, and clear cost oversight before they will allow agentic AI into critical workflows. What AI security looked like before. Before platforms like Snowflake's Cortex AI Gateway emerged, enterprise AI security for agentic systems was fragmented, reactive, and poorly suited to the realities of production-scale agent deployments. Organizations typically managed AI agents through a patchwork of existing identity and access management tools, custom integrations, and model-provider safety features that were never designed for autonomous, cross-system agents. Access controls were often inherited from human user accounts, meaning agents frequently received far broader permissions than any single task required. Visibility into agent activity was limited to scattered logs or application-level traces, making it difficult to reconstruct the full sequence of actions an agent took across data platforms, tools, and MCP servers. Cost management was equally incomplete. AI consumption was tracked in silos by team, model, or workload, with little ability to attribute spending to specific agents or enforce real-time limits. Third-party agents operating on external platforms such as Claude Code or Cursor often sat outside the enterprise security perimeter entirely, creating blind spots around identity, authorization, and data access. Security teams struggled to answer basic questions: which agent acted, under whose authority, what systems it touched, and whether the action complied with policy. Governance was frequently applied after the fact rather than enforced at the moment of access. As a result, many enterprises limited agent adoption to low-risk use cases or delayed production deployments because they could not confidently control security, auditability, and cost across an increasingly complex agent landscape. What AI security looks like now. With the introduction of Snowflake's Cortex AI Gateway and supporting AI security innovations, enterprise AI security is shifting toward a centralized, trust-based control plane designed specifically for the agentic era. Cortex AI Gateway acts as the connective layer for both first-party and third-party agents, enabling organizations to govern how agents access models, tools, MCP servers, data, and enterprise systems from a single point of control. Access policies, authentication, permissions, and routing decisions are centralized, while every agent action is recorded in an end-to-end activity trail that gives security and operations teams the visibility needed to operate agents safely at scale. Cost management is no longer an afterthought. The gateway provides a unified view of AI consumption, attributes costs to the teams, agents, or workloads driving them, and supports spending limits that help prevent runaway usage before it occurs. Intelligent routing further optimizes quality, latency, and cost by directing requests to enterprise-approved models. New integrations with leading identity and security vendors - including 1Password, Aembit, Linx Security, Okta, SailPoint, and Saviynt - extend consistent governance to third-party agents, enabling task-scoped, short-lived access and clearer human-to-agent attribution. The overall model moves from fragmented, reactive protection to proactive, zero-trust control that supports secure agent interoperability across the enterprise while maintaining the visibility, auditability, and cost oversight required for production AI. Its take. AI security take. Snowflake's launch of Cortex AI Gateway and related AI security innovations marks a clear step toward making the agentic enterprise both secure and operationally manageable. As AI agents move from isolated tools to active participants that collaborate across data platforms, applications, and external systems, the absence of a unified control plane has become one of the biggest barriers to production adoption. Cortex AI Gateway directly addresses that gap by centralizing access governance, activity visibility, and cost control for both first-party and third-party agents. The most important shift is architectural. Instead of securing each agent or each model in isolation, Snowflake is positioning the gateway as the connective layer that enforces policy at the point of access, records every action, and provides a single view of consumption. Combined with new integrations from identity and security partners, this creates a path toward consistent, task-scoped governance for agents that would otherwise inherit broad user permissions or operate outside the enterprise perimeter. The result is a more practical model for zero-trust security in an environment where agents act continuously and at machine speed. For security and platform leaders, the practical value lies in the combination of control and enablement. Organizations can expand the use of agents across critical systems while maintaining clear answers to fundamental questions: which agent is acting, what it can reach, under whose authority, and at what cost. Those that continue relying on fragmented tooling and human-centric identity models will face growing risk and operational friction as agent volumes increase. Those that adopt centralized gateways with strong identity, data, and cost controls will be better positioned to scale agentic AI with confidence. Snowflake's announcement reinforces a broader industry trend: the future of enterprise AI security will be defined by platforms that treat agent interoperability, runtime governance, and cost transparency as first-class requirements rather than afterthoughts. Enterprises that prioritize these capabilities now will gain both risk reduction and a clearer path to realizing the business value of production-scale agents. Follow GetAIGovernance on LinkedIn

Yash
Jul 23rd, 2026
The "chink in the armor": why your SAP SoD framework is the ultimate strategic guardrail.

The "chink in the armor": why your SAP SoD framework is the ultimate strategic guardrail. Publish Date: July 23, 2026 In the high-stakes world of enterprise resource planning, breaches rarely announce themselves with a siren. More often, they whisper. They happen through a tiny chink in the armor - a single user with just enough "over-permissioned" access to bypass a control. Consider this: According to the ACFE 2024 Report to the Nations, organizations lose an estimated 5% of revenue to fraud each year [[1]], with a lack of internal controls (like SoD) being the primary contributing factor in nearly one-third of cases. All it takes is one individual to expose your organization to massive financial loss or regulatory wrath - segregation of Duties (SoD) in SAP addresses this challenge head-on. By dividing user access, SoD ensures no single person possesses end-to-end control over critical business cycles. It's not just a compliance checkbox; it's a strategic defense against fraud, theft, and data misuse. The modern SAP minefield: why SoD is getting harder. Building a robust SoD framework was simpler when everything lived behind a local firewall. Today, the landscape is shifting under its feet for four primary reasons: * S/4HANA Complexity: Moving from ECC to S/4HANA isn't just a technical upgrade; it's a security overhaul. Fiori-based roles and embedded analytics introduce new permission layers. If you "lift and shift" legacy roles, you're likely migrating hidden risks into your brand-new environment. * The Cloud Explosion: As we plug in SAP Ariba, SuccessFactors, and Concur, we create "silos of risk." These systems often have separate permission models that don't talk to your core ERP, allowing users to accumulate dangerous cross-system access. * Invisible Third-Party Gaps: Integrating non-SAP procurement or banking tools creates access paths that can bypass native SAP checks. Without a holistic view, these violations remain invisible until an auditor raises a red flag - or a breach occurs. * Fragmented Identity: Using Azure AD or Okta for authentication adds flexibility but can fragment governance. Unless SoD checks span across every identity source, your enforcement will be inconsistent at best. Seven pillars of a mature SoD framework. A framework that actually works - rather than just looking good on paper - requires a blend of policy and technology. Ten steps to building your SAP SoD fortress. How do you turn these elements into a functioning program? Follow this roadmap: * Establish Governance: Form a steering committee with IT, Audit, and Business owners. If nobody "owns" the risk, nobody fixes it. * Identify Critical Processes: Map out where the money moves - finance, procurement, and HR are your high-stakes zones. * Catalog Roles: Break down what every role actually does. Identify where a single role can both initiate and approve a transaction. * Develop a Risk Matrix: Create a standard rule set that defines incompatible duties (e.g., "Vendor Setup" vs. "Payment Processing"). * Select Your Tech: Don't do this manually. Tools like SAP GRC Access Control or SAP Cloud IAG are non-negotiable for modern enterprises. * Redesign & Cleanse: Apply the Principle of Least Privilege. Remove conflicts and, where unavoidable, implement compensating controls such as transaction logging. * Embed in the Lifecycle: Automate SoD checks so that no new user gets conflicting access by default during onboarding. * Quarterly Reviews: Business owners should validate their team's access at least twice a year. * Monitor & Remediate: Use real-time dashboards to track violations and trends. * Continuous Improvement: Audit your own framework. As your business changes, your SoD rules must evolve with it. Leveraging the right tools: the SAP advantage. Managing SoD at scale requires more than a spreadsheet and a prayer. * SAP GRC Access Control: The gold standard for automating role analysis and risk reporting. To take this further, YASH Technologies enhances GRC implementations with predictive analytics and custom rule sets to align controls with specific business goals. * SAP Cloud Identity Access Governance (IAG): Your bridge for hybrid landscapes, extending SoD into Ariba and S/4HANA Cloud. * SAP Fiori Apps: These provide intuitive dashboards for managers, making it easier for non-technical leaders to spot and stop risks. * Third-Party Integration: For multi-vendor environments, tools like SailPoint or Saviynt can be integrated with SAP GRC to centralize identity across the entire enterprise. For organizations looking to accelerate this journey and proactively close SoD control gaps, YASH Technologies' SAP GRC solutions provide advanced capabilities for automated SoD analysis, real-time risk monitoring, and streamlined remediation workflows. To learn more, connect with its SAP experts at [email protected].