ARKION PlatformStandard
For Executives
Built for boards, CIOs, and audit committees
A non-technical overview of the NHI governance gap and how Arkion closes it. Built to forward to your board.
DORA, NIS2, ISO 27001:2022, SEC Cyber-Disclosure: mapped to exactly which Arkion capability satisfies each control.
Translate NHI exposure into dollars. The cost of a credential-related breach measured against the cost of governing one.
Security architecture, sub-processors, DPA / MSA / BAA templates, attestation roadmap. Built for procurement.
Learn
Field notes, principles, and the Standard
Version 1.1 of the Non-Human Identity Governance Standard. Principles, vocabulary, maturity model. Open for comment.
Regulatory updates, principle additions to the Standard, breach post-mortems. Slow, considered writing from inside the category.
What it means to govern an AI agent's identity: provisioning, scoping, revoking. Topic explainer.
From issuance through rotation to revocation. The cryptographic primitives Arkion is built on.
The single system of record for every non-human identity in your enterprise.
DORA. NIS2. SEC Cyber-Disclosure. The 2024–2026 timeline that turned NHI governance from optional to required.
Tools
Estimate, scan, and act
Two minutes. Seven questions. A directional estimate of how many non-human identities are operating outside any governance boundary.
A read-only scan of one environment. Every NHI found, named, scored. Delivered to your inbox. No agents installed.
Day 1 scan. Week 1 findings call. Week 2–3 pilot. Week 4 governed estate. The path from first call to first audit answer.
Browse the full libraryAll resources→
PricingTeam
We’re hiring·4 roles→Free ScanScan→
PlatformStandardResourcesPricingTeamRequest Discovery Scan→We’re hiring· 4 roles →
← All open roles
Technical Director / Software Architect
LocationRemote / Hybrid
TypeFull-Time
Reports toChief Product Officer
Apply for this role→
We are building a highly secure and scalable cloud-native platform for non-human identity governance. We are looking for a Software Architect to define and implement the technical architecture while ensuring compliance with modern cryptographic and security standards.
This role requires strong expertise in cryptographic protocols, PKI, and secure API development. You will collaborate with development engineers, the cloud & deployment engineer, and external partners to drive architectural decisions and ensure a robust, scalable, and secure product. You will also write production-grade code, troubleshoot security challenges, and shape cryptographic implementations.
If you enjoy coding at a deep technical level, solving complex security problems, and shaping cryptographic implementations, this is the role for you.
What you’ll own.
Technical leadership & architecture
- Design and implement secure software architectures with a strong focus on cryptographic protocols and non-human identity security.
- Design, implement, and optimize APIs for certificate management, key lifecycle management, and secure communications.
- Work with PKI, TLS/SSL, X.509 certificates, and cryptographic key management solutions.
- Ensure secure integration with cloud-native environments (AWS, Azure, GCP, Kubernetes) and HSMs/KMS for key storage.
- Lead decisions around microservices, event-driven architecture, and distributed systems.
- Write high-quality, scalable, and efficient code in Go, Python, Rust, or Java.
- Integrate with PKI, TLS/SSL, X.509 certificates, OCSP, and modern authentication mechanisms (OAUTH, Service Accounts, SCIM).
- Work on high-performance, low-latency cryptographic services that run in cloud-native environments.
- Develop secure microservices following best practices in containerization, Kubernetes, and CI/CD.
Security & cryptography
- Implement and advocate for cryptographic best practices (RSA, ECC, ECDSA, Ed25519, AES, SHA, HSMs).
- Work with security teams to perform threat modeling and risk assessments on APIs and architecture.
Collaboration & strategy
- Work closely with development teams to ensure alignment between business requirements and technical architecture.
- Collaborate with product leadership to define and prioritize architectural goals.
- Support cross-functional teams by documenting architectural decisions, security considerations, and best practices.
- Required Skills
What you’ll bring day one.
Technical
- Proficiency in Rust and Python for secure backend development.
- 5+ years of experience in software architecture, design, and implementation.
- Strong background in cryptographic protocols, PKI, and key management.
- Hands-on experience with TLS/SSL, X.509 certificates, OCSP, and certificate automation.
- Expertise in API security (OAuth, OpenID Connect, JWT, mTLS).
- Experience designing and securing RESTful & GraphQL APIs.
- Experience with HSMs, KMS (AWS KMS, Azure Key Vault, GCP KMS), and hardware-backed security.
- Experience with distributed systems, microservices, and event-driven architectures.
- Cloud expertise: AWS, Azure, GCP and Kubernetes.
- Containers and orchestrators (Docker, Kubernetes, ECS).
- CI/CD pipelines (GitHub Actions, GitLab CI/CD, Jenkins).
Non-technical
- Problem-solving mindset: debug and resolve complex cloud and deployment issues.
- Cross-team collaboration with Product, Sales, and Engineering.
- Process improvement: streamline deployments and automate manual work.
- Clear communication: explain technical concepts to non-technical stakeholders.
- Customer-centric approach: understand pain points, ensure smooth PoC deployments.
- Ownership mentality: work proactively, decide without waiting for instructions.
- Nice to Have
- Certificate Authorities (CAs), ACME protocols, and TLS certificate lifecycle management.
- Machine identity security, identity federation, and IAM solutions.
- Performance optimization and scaling of cryptographic services.
- Post-quantum cryptography (PQC) and emerging security trends.
- Who You Are
- Security-first mindset: you understand how to design resilient and secure architectures.
- Implementation mindset: you write code to test architectural components.
- Detail-oriented problem solver: you break down complex security and architectural challenges.
- Excellent communicator: you can explain cryptographic concepts to leadership.
- Pragmatic decision-maker: you balance security, performance, and business needs.
- Passionate about security and cryptography: you stay ahead of industry trends and best practices.
- Why Join Us
01
Remote & flexible: work from anywhere.
02
Fast-paced, no red tape: move quickly, own decisions, drive real change.
03
Collaborate with industry leaders in the cyber security space.
04
High-impact role: design, develop and own software architecture.
05
Growth opportunity: work with modern cloud and security technologies in a high-impact role.
Ready to apply?
Email your application directly to FR03@arkion.ai. Include the following so we can move quickly:
- Resume & portfolio
- GitHub profile (if available)
Apply by email→← All open roles
ARKION
The governance layer for non-human identity. Purpose-built for the machine estate beneath the enterprise: AI agents, service accounts, and the cryptographic substrate underneath them.
Product
- Platform
- Capabilities
- Discovery Scan
For Executives
- Executive Brief
- Compliance
- Cost of Inaction
- Risk Estimator
Learn
- NHIG Guide
- The NHIG Standard
- Vocabulary
- Field Notes
- AI Agent Governance
- Certificate Lifecycle
- Identity Registry
Company
- About
- Team
- Careers
- Pricing
- Contact
Trust & Legal
- Trust Center
- Security
- Privacy
- Terms
ARKION
© 2026 Arkion Identity Systems, Inc.