Senior Security Engineer - Cloud Identity
Core
Designing and implementing modern Identity and Access Management (IAM) strategies to secure access across cloud-native systems, including AI/ML infrastructure.
Role type
Senior Security Engineer (IAM)
Builds
Secure, scalable IAM programs for a 100% cloud-based financial technology platform.
Domain
Cloud Security / Identity and Access Management (IAM)
Deliverable
production ML models | product features | infrastructure
Required skills
IAM tools (Okta, CyberArk, Ping, SailPoint), AWS IAM (roles, policies, permissions boundaries), infrastructure-as-code (Terraform, CloudFormation), authentication protocols (SAML, OAuth2, OpenID Connect), directory services (Active Directory, LDAP), scripting (Python, PowerShell), compliance standards (NIST, SOC 2, PCI DSS), CI/CD integration.
Preferred skills
CISSP, CISM, CIAM/CAMS, CyberArk Certified, Okta Certified Consultant, AWS Lambda/S3/DynamoDB/RDS/Aurora/SNS/SQS/CloudTrail/CloudWatch/CodePipeline.
Technologies
AWS (Lambda, EC2, S3, IAM, CloudTrail, CloudWatch, CodePipeline), Okta, CyberArk, Terraform, CloudFormation, Python, PowerShell, SAML, OAuth2, OpenID Connect, Kerberos.
Responsibilities
Build and evolve Identity Governance and Administration (IGA) capabilities; Implement and operate Privileged Access Management (PAM); Design Certificate Lifecycle Management solutions; Drive IAM integration across AWS services, SaaS, and DevOps pipelines; Design identity controls for AI/ML systems; Automate identity provisioning and access reviews; Mentor junior engineers.
Seniority
Senior, hands-on IC with mentorship responsibilities