Full-Time

AI Gateway Engineer

StradIT

StradIT

Delivering AI-powered engineering solutions for finance

No salary listed

Jersey City, NJ, USA

Hybrid

Hybrid work is available in Jersey City, Dallas, or Tampa.

Bachelor's, Master's

Category
DevOps & Infrastructure (1)
Required Skills
LLM
Microsoft Azure
Incident Response
Computer Networking
OpenAI
RAG
Role-based Access Control
AWS
Snowflake
OAuth
Requirements
  • A bachelor's degree in Computer Science, Cyber Security, Information Technology, Engineering, or a related discipline.
  • At least 8 years of experience designing and operating enterprise API, application, or cloud platforms.
  • At least 5 years of experience in cloud architecture and security.
  • At least 3 years of experience with AI/ML platform technologies or enterprise AI deployments.
  • Hands-on experience implementing and managing Kong Gateway and Kong Enterprise solutions.
Responsibilities
  • Lead the architecture, engineering, security, and operational management of the enterprise AI Gateway platform, primarily using Kong AI Gateway.
  • Enable secure, resilient, compliant, and scalable consumption of Large Language Models, AI agents, Retrieval Augmented Generation services, Model Context Protocol services, and Agent-to-Agent communications.
  • Design, implement, and evolve enterprise AI Gateway solutions using Kong AI Gateway and Kong Enterprise.
  • Develop standardized onboarding patterns for applications, AI agents, and business services consuming AI.
  • Engineer reusable integration patterns for OpenAI, Azure OpenAI, AWS Bedrock, Anthropic, Snowflake Cortex, and internal and external AI services.
  • Implement intelligent model routing, failover, traffic shaping, and provider abstraction.
  • Develop custom Kong plugins and integrations supporting AI-specific governance and security requirements.
  • Define scalable control-plane and data-plane deployment architectures across hybrid and multi-cloud environments.
  • Architect and implement enterprise-grade identity controls for AI platforms and integrate the gateway with enterprise identity providers and IAM platforms.
  • Implement OAuth 2.0, OpenID Connect, JSON Web Tokens, mutual TLS, role-based access control, attribute-based access control, non-human identities, workload identities, and agent identities.
  • Establish fine-grained authorization controls at the model, agent, tool, prompt, and data-source levels.
  • Design identity-propagation patterns across AI workflows and MCP services.
  • Partner with security and compliance teams to establish AI governance and Zero Trust controls.
  • Implement AI security guardrails and policy-enforcement mechanisms, including prompt-injection protection, data-loss prevention, personally identifiable information detection and redaction, content-safety enforcement, prompt and response filtering, and model-access governance.
  • Establish policy-as-code practices to manage AI controls at scale.
  • Define logging, monitoring, and audit controls supporting regulatory and compliance requirements.
  • Design highly available and resilient AI platform architectures.
  • Establish multi-region deployment, provider failover, cross-cloud recovery, active-active architecture, disaster recovery, and business continuity controls.
  • Implement rate limiting, circuit breakers, load balancing, traffic throttling, semantic caching, and capacity management.
  • Define and manage service-level objectives, service-level indicators, error budgets, recovery-time objectives, and recovery-point objectives.
  • Conduct architecture reviews, resilience testing, and failure-scenario exercises.
  • Design AI access patterns across Microsoft Azure, Amazon Web Services, and Snowflake.
  • Integrate AI Gateway services with Azure OpenAI, AWS Bedrock, Snowflake Cortex, vector databases, data-protection platforms, and enterprise observability tooling.
  • Ensure secure connectivity and standardized governance across multi-cloud environments.
  • Build enterprise observability capabilities for AI workloads, including monitoring, metrics, tracing, and audit logging.
  • Analyze token consumption, latency, model utilization, cost-optimization opportunities, and security events.
  • Create operational dashboards for engineering, security, risk, and executive stakeholders.
  • Support incident response and platform troubleshooting efforts.
Desired Qualifications
  • Experience within regulated industries such as financial services, banking, insurance, or capital markets.
  • A Kong Certified Professional certification.
  • An AWS Solutions Architect certification.
  • A Microsoft Azure Solutions Architect certification.
  • A CISSP, CCSP, or equivalent security certification.
  • Experience implementing AI security controls and governance frameworks.
  • Familiarity with the NIST AI Risk Management Framework, NIST 800-53, NYDFS 500, PCI DSS, SOC 2, and other financial-services regulatory requirements.
  • Experience with data security posture management, data loss prevention, and enterprise data-protection controls.
  • A master's degree.

StradIT provides applied AI and engineering services for the global finance industry, helping banks, asset managers, exchanges, and custodian banks implement practical, scalable technology solutions. It integrates production-grade AI into core operations through Centers of Excellence in Applied AI, Data Analytics, Cybersecurity, Cloud & Infrastructure, Automated AI Testing, and Digital Assets & Blockchain, plus a Global Capability Center to build dedicated teams while StradIT handles setup and compliance. The company focuses on creating regulated, auditable systems such as distributed ledger infrastructure, smart contracts, and tokenization with regulatory alignment for bodies like the SEC and FCA. Its goal is to help financial institutions gain a sustainable competitive advantage by improving decision-making, security, and efficiency via AI and engineering.

Company Size

N/A

Company Stage

N/A

Total Funding

N/A

Headquarters

N/A

Founded

N/A

Simplify Jobs

Simplify's Take

What believers are saying

  • August 2026 careers page lists 18 open roles, signaling active hiring.
  • StradIT's digital-assets page cites SEC tokenization readiness, aligning with regulated market demand.
  • August 2026 job posts show SDET hiring for Treasury, Fixed Income, and Risk platforms.

What critics are saying

  • No public funding, customer logos, or revenue disclosures limit credibility versus larger consultancies.
  • StradIT's 2026 site leans on marketing claims; bank buyers can delay vendor approval.
  • If generative-AI delivery commoditizes, margins collapse and talent attrition can shrink StradIT quickly.

What makes StradIT unique

  • StradIT's August 2026 site bundles applied AI, cybersecurity, data, cloud, and blockchain delivery.
  • Its finance specialization targets capital markets, asset management, and mission-critical clearing workflows.
  • The GCC and Sun Model promise dedicated teams with continuous execution across regions.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Hybrid Work Options